Hussain Ali Department of Computer Engineering KFUPM, Dhahran, Saudi Arabia Active Directory.

Slides:



Advertisements
Similar presentations
Windows Server 2003 AD 安裝設定與管理維護 林寶森
Advertisements

Module 1: Introduction to Active Directory in Windows 2000
How to Succeed with Active Directory Robert Williams, PhD CEO Secure Logistix Corporation.
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory, Enhanced Chapter 1: Introduction to Active Directory.
Chapter 6 Introducing Active Directory
Chapter 4 Chapter 4: Planning the Active Directory and Security.
Introduction to Active Directory
3.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 3: Introducing Active Directory.
70-270, MCSE/MCSA Guide to Installing and Managing Microsoft Windows XP Professional and Windows Server 2003 Chapter One Introduction to Windows.
CS603 Active Directory February 1, 2001.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
Hands-On Microsoft Windows Server 2003 Administration Chapter 1 Windows Server 2003 Network Administration.
Hands-On Microsoft Windows Server 2003 Administration Chapter 3 Administering Active Directory.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
3.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 3: Introducing Active Directory.
Network+ Guide to Networks, Fourth Edition Chapter 8 Network Operating Systems and Windows Server 2003-Based Networking.
Understanding Active Directory
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Module 1: Introduction to Active Directory
A centralized system.  Active Directory is Microsoft's trademarked directory service, an integral part of the Windows architecture. Like other directory.
1 CSIT 320. Just as the combination of a database and a database management system collects and organizes information about an institution/company/… as.
Vikram Thakur Introduction to Active Directory Structure.
Introduction to Active Directory Services Completely integrated with Microsoft Windows 2000 Server Integrates the Internet concept of namespace with the.
Overview of Active Directory Domain Services Lesson 1.
Overview of Active Directory Domain Services Lesson 1.
Corso referenti S.I.R.A. – Modulo 2 06 – Active Directory 20/11 – 27/11 – 05/12 11/12 – 13/12 (gruppo 1) 12/12 – 15/12 (gruppo 2) Cristiano Gentili, Massimiliano.
Nassau Community College
(ITI310) SESSIONS : Active Directory By Eng. BASSEM ALSAID.
Chapter 11: Directory Services. Directory Services A directory service is a database that contains information about all objects on the network. Directory.
BZUPAGES.COM An Introduction to. BZUPAGES.COM Introduction Large corporations today face the following problems Finding a certain file. Seeing everything.
Directory services Unit objectives
11 REVIEWING MICROSOFT ACTIVE DIRECTORY CONCEPTS Chapter 1.
Chapter 4 Introduction to Active Directory and Account Management
Session 6 Windows Platform Dina Alkhoudari. Learning Objectives What is Active Directory Logical components of active directory Physical components of.
Windows Server 2008 Chapter 4 Last Update
MCTS Guide to Configuring Microsoft Windows Server 2008 Active Directory Chapter 3: Introducing Active Directory.
Windows 2000 Operating System -- Active Directory Service COSC 516 Yuan YAO 08/29/2000.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
September 18, 2002 Windows 2000 Server Active Directory By Jerry Haggard.
1 Chapter Summary Understanding DNS Understanding Name Resolution Configuring a DNS Client Understanding Active Directory Understanding Active Directory.
Module 7 Active Directory and Account Management.
Active Directory Maryam Izadi. Topics Covered NT Vs 2000/2003 Active Directory LDAP MMC.
Module 1: Introduction to Active Directory Infrastructure
 Identify Active Directory functions and Benefits.  Identify the major components that make up an Active Directory structure.  Identify how DNS relates.
Page 1 Active Directory and DNS Lecture 2 Hassan Shuja 09/14/2004.
Introduction to Active Directory Domain Services
Hands-On Microsoft Windows Server 2008 Chapter 4-Part 1 Introduction to Active Directory and Account Manager.
Active Directory Infrastructure Microsoft Windows 2003 Active Directory Infrastructure MCSE Exam
Introduction to Active Directory in Windows 2000/2003.
Installing a Domain Controller
OVERVIEW OF ACTIVE DIRECTORY
Introduction to Active Directory
© Wiley Inc All Rights Reserved. MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition.
Module 1: Introduction to Active Directory
Logical and Physical Network Design 1. Active Directory Objects Objects Represent Network Resources (Users,Groups,Computers,Printers) Attributes Store.
CEG 2400 Fall 2012 Directory Services Active Directory Tree Domain.
Windows 2003 Architecture, Active Directory & DNS Lecture # 3 Hassan Shuja 02/14/2006.
1 Introduction to Active Directory Directory Services Uniquely identify users and resources on a network Provide a single point of network management.
MCSE: Windows Server 2003 Active Directory Planning, Implementation, and Maintenance Study Guide, Second Edition (70-294) Chapter 1: Overview of the Active.
Active Directory Domain Services (AD DS). Identity and Access (IDA) – An IDA infrastructure should: Store information about users, groups, computers and.
Planning an Active Directory Deployment Lesson 1.
Overview of Active Directory Domain Services Lesson 1.
Overview of Active Directory Domain Services
Overview of Active Directory Domain Services
(ITI310) SESSIONS 6-7-8: Active Directory.
Objectives Differentiate between the different editions of Windows Server 2003 Explain Windows Server 2003 network models and server roles Identify concepts.
Active Directory Stored collection of information about objects
Windows Active Directory Environment
Introduction to Active Directory Directory Services
Presentation transcript:

Hussain Ali Department of Computer Engineering KFUPM, Dhahran, Saudi Arabia Active Directory

Outline l Introduction to Active Directory l Logical Structure »Domain, Organizational Units, Trees and Forests, Schema l Physical Structure »Sites »Domain Controllers »Specific Domain Controller Roles l Installing Active Directory

Introduction l Directory ? »A directory is an information source used to store information about interesting objects. Ex: Telephone directory »A directory service differs from a directory in that it is both the directory information source and the services making the information available and usable to the users.

The Need for Directory Service l Why Have a Directory Service? »Enforce security defined by administrators »Distribute a directory across many computers »Replicate a directory to make it available to more users and resistant to failure »Partition a directory into multiple stores to allow the storage of a very large number of objects

Active Directory Features l What is the Active Directory? »Directory Service included with Windows 2000 »It is secure, distributed, partitioned »It uses multi-master replication »Scalable: No restriction on size of objects »It replaces the SAM database of Windows NT »It can go upto million of objects. NT supports 25,000 users (40MB SAM size). »Organizes information hierarchically to ease network use and management.

Active Directory Features l Features »DNS Integration »Dynamic DNS »Access to the Active Directory (LDAP, X.500, MAPI-RPC) »Application Programming Interface »Directory Service Functionality –AD provides central organization, management and control of access to network resources. »Centralized Management –Single point administration –Single sign on I.e. users log on once for full access to resources throughout directory

Supported Technologies l TCP/IP: Network transport l DHCP: Dynamic Host Control Protocol l DNS: Domain Name System l SNTP: Simple Network Time Protocol l LDAP: Lightweight Director Access Protocol v3 l LDIF: LDAP data interchange format l Kerberos v5 for authentication l X.509 certificates for authentication

Naming Convention l Distinguished Name (DN) »CN=Kareem, CN=Users,DC=ccse,DC=kfupm,DC=edu, DC=sa Where CN=common name DC=domain component l Relative DN »Attribute of the object »Ex: RDN of the Kareem user object is Kareem and RDN for parent object is Users.

Naming Convention l User Principal Name »UPN of a user object is composed of the user’s logon name and DNS name of the domain. »Ex: l Globally Unique Identifier (GUIDs) »GUID is a 128-bit hexadecimal representation to objects l Uniqueness of Names »DN are guaranteed to be unique in the forest

Logical Structure l Domains l Organizational Units l Trees and Forests l Schema Domain Tree OU Domain Tree Domain Forest

Logical Structure l Domains »Security Boundary »Unit of Replication »Multi-Master replication model »Domain Modes –Mixed mode (Windows 2000 & NT controllers) –Native mode (Windows 2000 controllers only)

Logical Structure l Organization Units »Organization Unit (OU) is a container object that is used to organize objects within a domain. It contains user accounts, groups, computers, printers and other OUs. l OU Hierarchy »Organization structure based on department or geographical boundaries »Organization structure based on administrative responsibilities like users, computers etc. l Administrative Control »OU administrative control can be delegated over the objects within the OU.

Logical Structure l Trees »A tree is a hierarchical arrangement of Windows 2000 domains that share a contiguous namespace. »While adding a domain to an existing tree, the new domain is a child domain of an existing parent domain. Root Kfupm.edu.sa ccse

Logical Structure l Forests »A forest is a group of trees that do not share a contiquous namespace. The trees in a forest share a common configuration. Root Kfupm.edu.sa Ksu.edu.sa ccse

Logical Structure l Schema »It contains the definitions of all objects such as users, computers and printers. »Two types of definitions: Classes and attributes »Examples: –Classes: Computers, Users and Servers –Attribute: accountExpires, mail, Name, badPasswordTime etc…. »Only one schema for the entire forest so that all objects created in AD conform to the same rules »Schema is stored in a database.

Physical Structure l Sites l Domain Controllers SiteDomain

Domain Controller Roles l Global Catalog Server (GCS) »Global Catalog is Repository of information that contains a subset of attributes for all objects in Active Directory. »Most frequent used attributes are stored in GC. »GCS is a domain controller that stores a copy of an processes queries to the global catalog. »It enables a user to find directory information in the entire forest, regardless of the location of the data.

Domain Controller Roles l Single Master Operations »Schema Master »Domain Naming Master »RID Master »PDC Emulator »Infrastructure Master