Active Directory Windows2003 Server. Agenda What is Active Directory What is Active Directory Building an Active Directory Building an Active Directory.

Slides:



Advertisements
Similar presentations
Windows Server 2003 AD 安裝設定與管理維護 林寶森
Advertisements

Managing User Settings with Group Policy
Chapter 4 Chapter 4: Planning the Active Directory and Security.
Introduction to Active Directory
3.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 3: Introducing Active Directory.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
1 Chapter 1 Introduction to Windows Server Two main goals for Net Admin Make network resources available to users Files, folders, printers, etc.
By Rashid Khan Lesson 4-Preparing to Serve: Understanding Microsoft Networking.
Chapter 4 Introduction to Active Directory and Account Management
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
7.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 7: Introducing Group Accounts.
3.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 3: Introducing Active Directory.
© N. Ganesan, Ph.D., All rights reserved. Active Directory Nanda Ganesan, Ph.D.
Understanding Active Directory
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
© N. Ganesan, Ph.D., All rights reserved. Active Directory Nanda Ganesan, Ph.D.
1 Chapter Overview Creating User and Computer Objects Maintaining User Accounts Creating User Profiles.
Hands-On Microsoft Windows Server 2008 Chapter 8 Managing Windows Server 2008 Network Services.
Corso referenti S.I.R.A. – Modulo 2 Local Security 20/11 – 27/11 – 05/12 11/12 – 13/12 (gruppo 1) 12/12 – 15/12 (gruppo 2) Cristiano Gentili, Massimiliano.
Hands-On Microsoft Windows Server 2008
HalFILE 3.0 Active Directory Integration. halFILE 3.0 AD – What is it? Centralized organization of network objects and security – servers, computers,
Hands-On Microsoft Windows Server 2008
Ch 8-3 Working with domains and Active Directory.
Overview of Active Directory Domain Services Lesson 1.
Overview of Active Directory Domain Services Lesson 1.
(ITI310) SESSIONS : Active Directory By Eng. BASSEM ALSAID.
9.1 © 2004 Pearson Education, Inc. Lesson 9: Implementing Group Policy in Windows 2000 Server Exam Microsoft® Windows® 2000 Directory Services Infrastructure.
70-270: MCSE Guide to Microsoft Windows XP Professional Chapter 5: Users, Groups, Profiles, and Policies.
Windows Server 2008 Chapter 4 Last Update
9.1 © 2004 Pearson Education, Inc. Exam Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure.
Review. 2 Main Areas Client and Server / Active Directory.
MCTS Guide to Configuring Microsoft Windows Server 2008 Active Directory Chapter 3: Introducing Active Directory.
Chapter-4 Windows 2000 Professional Win2K Professional provides a very usable interface and was designed for use in the desktop PC. Microsoft server system.
Corso referenti S.I.R.A. – Modulo 2 07 – Group Policy 20/11 – 27/11 – 05/12 11/12 – 13/12 (gruppo 1) 12/12 – 15/12 (gruppo 2) Cristiano Gentili, Massimiliano.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 9: Implementing and Using Group Policy.
Hands-On Microsoft Windows Server 2008
Hands-On Microsoft Windows Server Security Enhancements in Windows Server 2008 Windows Server 2008 was created to emphasize security –Reduced attack.
Windows 2003 Overview Lecture 1. Windows Networking Evolution Windows for Workgroups – peer-to-peer networking built into the OS Windows NT – separate.
KAPLAN SCHOOL OF INFORMATION SYSTEMS AND TECHNOLOGY Welcome to Unit 4 IT278 Network Administration Course Name – IT278 Network Administration Instructor.
Section 1: Introducing Group Policy What Is Group Policy? Group Policy Scenarios New Group Policy Features Introduced with Windows Server 2008 and Windows.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Chapter 13 Users, Groups Profiles and Policies. Learning Objectives Understand Windows XP Professional user accounts Understand the different types of.
September 18, 2002 Windows 2000 Server Active Directory By Jerry Haggard.
Module 7 Active Directory and Account Management.
Module 6: Configuring User Environments Using Group Policy.
Active Directory Harikrishnan V G 18 March Presentation titlePage 2 Agenda ► Introduction – Active Directory ► Directory Service ► Benefits of Active.
Implementing Group Policy. Overview What is Group Policy Introduction to Group Policy Group Policy Structure How Group Policy Settings Are Applied in.
GPO - WINDOWS SERVER AGENDA: Introduction Group Policy Overview Types of Group Policies/Objects Associated Technologies How to implement.
 Identify Active Directory functions and Benefits.  Identify the major components that make up an Active Directory structure.  Identify how DNS relates.
Page 1 Active Directory and DNS Lecture 2 Hassan Shuja 09/14/2004.
Module 1: Implementing Active Directory ® Domain Services.
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory, Enhanced Chapter 11: Group Policy for Corporate Policy.
OVERVIEW OF ACTIVE DIRECTORY
Introduction to Active Directory
Module 6: Configuring User Environments Using Group Policies.
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
Windows 2003 Architecture, Active Directory & DNS Lecture # 3 Hassan Shuja 02/14/2006.
Directory Services CS5493/7493. Directory Services Directory services represent a technological breakthrough by integrating into a single management tool:
1 Introduction to Active Directory Directory Services Uniquely identify users and resources on a network Provide a single point of network management.
Active Directory Domain Services (AD DS). Identity and Access (IDA) – An IDA infrastructure should: Store information about users, groups, computers and.
Overview of Active Directory Domain Services Lesson 1.
Pass Microsoft Installing and Configuring Windows Server 2012 exam in just 24 HOURS! 100% REAL EXAM QUESTIONS ANSWERS Microsoft Installing.
Managing User Desktops with Group Policy
Overview of Active Directory Domain Services
Overview of Active Directory Domain Services
(ITI310) SESSIONS 6-7-8: Active Directory.
Objectives Differentiate between the different editions of Windows Server 2003 Explain Windows Server 2003 network models and server roles Identify concepts.
Unit 3 NT1330 Client-Server Networking II Date: 1/6/2016
Network Administration
Windows Active Directory Environment
Presentation transcript:

Active Directory Windows2003 Server

Agenda What is Active Directory What is Active Directory Building an Active Directory Building an Active Directory Using Active Directory Features Using Active Directory Features Active Directory Objects Active Directory Objects Auditing Active Directory Auditing Active Directory

Group Names Charles Guzman Charles Guzman Daniel Gebretensai Daniel Gebretensai Ervand Akopyan Ervand Akopyan Hovik Gharadaghi Hovik Gharadaghi

Active Directory

What is Active Directory Efficient Directory Management service Based on Standard Internet Protocols Helps to Clearly Define a Network’s structure

Requirements The computer must be Windows 2k, 2k3 Server, Advanced Server or Datacenter Server. The computer must be Windows 2k, 2k3 Server, Advanced Server or Datacenter Server. At least one volume on the computer must be formatted with NTFS. At least one volume on the computer must be formatted with NTFS. DNS must be active on the network prior to AD installation or be installed during AD installation. DNS must be active on the network prior to AD installation or be installed during AD installation. DNS must support SRV records and be dynamic. DNS must support SRV records and be dynamic. The computer must have IP protocol installed and have a static IP address. The computer must have IP protocol installed and have a static IP address. The Kerberos v5 authentication protocol must be installed. The Kerberos v5 authentication protocol must be installed. Time and zone information must be correct. Time and zone information must be correct.

Installation Of Active Directory

DCPROMO

Why Install DNS? Clients use DNS to locate Active Directory controllers. Clients use DNS to locate Active Directory controllers. Servers and client computers register their names and IP addresses with the DNS server. Servers and client computers register their names and IP addresses with the DNS server.

Active Directory Domains – Group of computers Domains – Group of computers Domain Trees –Share contiguous Namespace Domain Trees –Share contiguous Namespace Domain Forests – Share common directory information Domain Forests – Share common directory information Organizational Units – Subgroup of Domains that mirror an organization Organizational Units – Subgroup of Domains that mirror an organization

Logical View Child, Tree, Forest

Creating a Child Domain

Requirements Existing Domain Existing Domain Member Server Member Server

Logical View Child, Tree, Forest

What does Active Directory do for us Keep a central list of users and passwords Keep a central list of users and passwords Provide a set of servers to act as “authentication servers” known as a Domain Controller Provide a set of servers to act as “authentication servers” known as a Domain Controller Maintain a searchable index of the things in the domain Maintain a searchable index of the things in the domain Allow you to create users with different levers of powers Allow you to create users with different levers of powers

USING ACTIVE DIRECTORY FEATURES Directory service back up reminders Directory service back up reminders Added replication security and fewer errors Added replication security and fewer errors Install from Media Improvement for Installing DNS servers Install from Media Improvement for Installing DNS servers Support for running domain controllers in virtual machines Support for running domain controllers in virtual machines Extended storage of deleted objects Extended storage of deleted objects

New AD Features in Windows 2003 Multiple selection of user objects Multiple selection of user objects Drag and Drop functionality Drag and Drop functionality Efficient search capabilites Efficient search capabilites Saved Queries Saved Queries

New Domain and Forest Wide AD Features Domain control rename tool Domain control rename tool Different location option for user and computer accounts Different location option for user and computer accounts Forest trusts Forest trusts Replication enhancements Replication enhancements User access control to resources between domains and forests User access control to resources between domains and forests

Group Policy Feature Defines the various components of the users desktop environment that an administrator must manage Defines the various components of the users desktop environment that an administrator must manage Applies not only to user and client computers but also to member servers, domain controllers, and other 2003 server in scope of management Applies not only to user and client computers but also to member servers, domain controllers, and other 2003 server in scope of management

Group Policy cont’d Manage registry-based policy with Administrative Templates Manage registry-based policy with Administrative Templates Assign scripts. This includes scripts such as computer startup, shutdown, logon, and logoff Assign scripts. This includes scripts such as computer startup, shutdown, logon, and logoff redirect folders, such as My Documents and My Pictures, from the Documents and Settings folder on the local computer to network locations redirect folders, such as My Documents and My Pictures, from the Documents and Settings folder on the local computer to network locations

GP Screenshots Configuring a custom console

GP Screenshots Adding a group policy object link

Active Directory Objects ADDING AND REMOVING OBJECTS

Active Directory Objects An object is a distinct named set of attributes that represents a network resource. Typical objects are users, groups, computers and printers. Each object has a number of attributes. For example, the user object has attributes such as password, name, password length and address. Objects are typically grouped into classes, such as groups (a number of user accounts), computers and printers. When objects are grouped together, they are placed into a container that holds the objects (its like a desk draw that holds a number of objects). Objects

If you try to add AD users using lusrmgr.msc you will receive the following error

How to join a Domain Network