Introduction to Active Directory. December 10th, 2008 1-3pm Daniels 407



Similar documents
What we are going to cover...

WolfTech Active Directory: OU Administration

70-417: Upgrading Your Skills to MCSA Windows Server 2012

MS Exam Objectives Administering Windows Server 2012 R2

MS-50255: Managing, Maintaining, and Securing Your Networks Through Group Policy. Course Objectives. Required Exam(s) Price.

Planning and Implementing Windows Server 2008

SINGLE COURSE. 136 Total Hours. After completing this course, students will be able to:

Planning for Windows Server 2008 Servers

Managing Windows Environments with Group Policy 50255D; 5 Days, Instructor-led

411-Administering Windows Server 2012

MCTS Guide to Microsoft Windows 7. Chapter 13 Enterprise Computing

Training Name Installing and Configuring Windows Server 2012

Administering Windows Server 2012

IT SYSTEMS ADMINISTRATOR PROGRAM

MS 50255B: Managing Windows Environments with Group Policy (4 Days)

MCSA Instructor-led Live Online Training Program. Course Outline MCSA Deploying and Managing Windows Server 2012

Implementing and Administering Windows Small Business Server 2008

Administering Windows Server 2012

Installation Guide. . All right reserved. For more information about Specops Deploy and other Specops products, visit

Course Description. Course Page - Page 1 of 9. Administering Windows Server 2012 M Length: 5 days Price: $2,795.00

Managing Windows Environments with Group Policy

INUVIKA OPEN VIRTUAL DESKTOP FOUNDATION SERVER

MOC 20413C: Designing and Implementing a Server Infrastructure

70-685: Enterprise Desktop Support Technician

Designing and Implementing a Server Infrastructure

6445A - Implementing and Administering Small Business Server 2008

MOC 6419: Configuring, Managing, and Maintaining Windows Server 2008

MOC 6436A: Designing Active Directory Infrastructure and Services in Windows Server 2008

MCSA Windows Server 2008 Active Directory, Configuring:

Admin Report Kit for Active Directory

Windows 7, Enterprise Desktop Support Technician

WolfTech Active Directory: SCCM 101

Fundamentals, Security, and the Managed Desktop

Configuring, Managing and Maintaining Windows Server 2008 Servers

Group Policy 21/05/2013

Designing and Implementing a Server Infrastructure

VNLINFOTECH JOIN US & MAKE YOUR FUTURE BRIGHT. mcsa (70-413) Microsoft certified system administrator. (designing & implementing server infrasturcure)

Designing and Implementing a Server Infrastructure

Designing and Implementing a Server Infrastructure MOC 20413

M6419 Configuring, Managing and Maintaining Windows Server 2008 Servers

MOC 6435A Designing a Windows Server 2008 Network Infrastructure

Designing and Implementing a Server Infrastructure

MCSA: Windows Server 2012 Boot Camp

You need to recommend a monitoring solution to ensure that an administrator can review the availability information of Service1. What should you do?

Configuring Managing and Maintaining Windows Server 2008 Servers (6419B)

This module explains how to configure and troubleshoot DNS, including DNS replication and caching.

Windows" 7 Desktop Support

MS Implementing an Advanced Server Infrastructure

SPECOPS DEPLOY / OS 4.6 DOCUMENTATION

Windows Server. Introduction to Windows Server 2008 and Windows Server 2008 R2

6419: Configuring, Managing, and Maintaining Server 2008

JapanCert 専 門 IT 認 証 試 験 問 題 集 提 供 者

Windows Server 2012 Directory Partition Containers- A Walk Through

MCITP MCITP: Enterprise Administrator on Windows Server 2008 (5 Modules)

COURSE 20413C: DESIGNING AND IMPLEMENTING A SERVER INFRASTRUCTURE

10215A Implementing and Managing Microsoft Server Virtualization

Parallels Mac Management for Microsoft SCCM

Designing and Implementing a Server Infrastructure

Designing a Windows Server 2008 Network Infrastructure

Designing and Implementing a Server Infrastructure 20413C; 5 days, Instructor-led

Course 20413: Designing and Implementing a Server Infrastructure

Designing and Implementing a Server Infrastructure

Configuring, Managing and Maintaining Windows Server 2008 Servers

Desingning and Implementing a Server Infrastructure

ICT Professional Optional Programmes

Implementing and Managing Microsoft Server Virtualization

Lesson Plans Windows Server 2008 Server Administrator

Deploying BitDefender Client Security and BitDefender Windows Server Solutions

Module 1: Overview of Network Infrastructure Design This module describes the key components of network infrastructure design.

Exam Number/Code: Exam Name: Designing and. Version: Demo. Implementing a Server Infrastructure. original question and answer

Exam : Administrating Windows Server 2012 R2. Course Overview

Administering Windows Server 2012

AV-006: Installing, Administering and Configuring Windows Server 2012

Configuring, Managing and Maintaining Windows Server 2008 Servers

1. Installation Overview

Windows Server 2008 Active Directory Resource Kit

Microsoft Exam

Configuring, Managing, and Maintaining Server 2008 R2

20413C: Designing and Implementing a Server Infrastructure

Course 6419A: Configuring, Managing and Maintaining Windows Server 2008 Servers

Understanding Group Policy Basics to Manage Windows Vista Systems

Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Designing and Implementing a Server Infrastructure Course#20413B

Designing and Implementing a Server Infrastructure

ecopy ShareScan v4.3 Pre-Installation Checklist

Course Syllabus. Deploying Microsoft Windows Server Key Data. Audience. At Course Completion

MCSA: Windows 2012 Server

Table of Contents Release Notes 2013/04/08. Introduction in OS Deployment Manager. in Security Manager Known issues

MCSA Windows Server Eğitimi İçeriği

6445A - Implementing and Administering Windows Small Business Server 2008

WolfTech Active Directory: Diagnostic Tools

Transcription:

Introduction to Active Directory December 10th, 2008 1-3pm Daniels 407

What we are going to cover... The basics of Active Directory What AD is What AD isn't Tools Management Concepts Additional Services Q & A

Active Directory is... A directory service that provides the ability for centralized: Authentication Authorization Management Active Directory is based on LDAP. LDAP is an industry standard method to access information from a remote database. LDAP does not define what sorts of info are stored or how it should be stored, only how to access it. Any type of data can be stored in a properly constructed LDAP service. In fact, Active Directory Application Mode is just a stand-alone LDAP server. Active directory stores copies of it's data on several Domain Controllers (DC's). If one fails, services are still available.

Tools Remote Server Administration Toolkit (RSAT) includes: Active Directory Users and Computers (ADUC) Group Policy Management Console (GPMC) Group Policy Editor DFS Management Console Print Managment Console Domain-wide Administration: Active Directory Sites and Services Active Directory Domains and Trusts

AD Objects Organizational Units Users Computers Groups Links (publishing): Shares Print Shares

What AD isn't A 100% solution A desktop environment Microsoft only The same as Novell 100% Automatable A true identity management system Perfect

Authentication Native: Kerberos (Version 5) NTLMv2 LDAP Smart Cards/Certificates Extendable to include: Biometrics Client machines authenticate as well, not just user accounts Supports dual factor authentication Mac, Linux clients can auth against AD

Trusts Trusts don't imply any sort of authorization or rights assignment. If Domain "A" trusts Domain "B" all it implies is that accounts from "B" can be used in "A" No rights assignments of any kind are made automatically. This makes it possible to access resources in multiple domains using a single account. Trusts: Intra-Forest Inter-Forest Cross Realm

Groups are key to any good permissions model *AD supports Nested Groups* Authorization Delegation Wizard Types of Permissions: Directory GPO's Manage Groups Machine Local/Remote Login User vs. Admin Group Policy allows setting any local permission

Management Concepts Domain Structure OU structure User/Computer Locations Grouping Strategy Group Policy Linking Filtering Groups WMI Filters Starter GPO's Copying GPO's Group Policy Modelling

Policies vs. Preferences Policies: Policies usually cannot be changed by end user Configuring IE Deploying Software Configuring Desktop Experience Preferences: End user override optional per setting Pushing Files/Reg Keys/Shortcuts Item-Level Targeting Both have User and Computer Settings Loopback - Process User settings using Computer location

Group Policy Examples Remote Assistance - Policy Remote Administration - Policy Configure Wireless - Policy Configure Firewall - Policy Deploy Printers - Policy or GPP Deploy Startup/Shutdown/Logon/Logoff Scripts - Policy or GPP Deploy Software (.msi's) - Policy Deploy Scheduled Tasks - GPP Mapped Drives - GPP Power Settings - GPP

Windows Server Update Services (WSUS) Unified Patch Management for MS Products - FREE Apply patches based on grouping Server side groups *Client Side Targeting via Group Policy* Types of Patches: Service Packs/Security Patches/Bugfixes Drivers Defender definitions Office Patches/Service Packs Add-ons: Windows Media, Silverlight, GPP, etc. Server Products: SQL, IIS Ability to back out patches per group of machines (not always supported by the patches)

Distributed File System (DFS) DFS is a Network File System Core CAL Required Roots (Namespaces) Delegation Folders Create Arbitrary structure Targets Where the files are Multi-Master Replication

Windows Distribution Services (WDS) Replaces Remote Installation Services (RIS) Core CAL Required Imaging for XP/Vista/2K3 Server/2K8 Server Uses PXE for medialess install Uses WinPE (think Vista on a CD) as install environment Can have a library of drivers GUI tools for setting up: Post-install scripts Joining a domain

Additional Services Core CAL Required (NCSU has a Site License!): Certificate Services - PKI File Services (Clustering, iscsi) Print Services IIS / Webdav Sharepoint Services 3.0 Additional stuff we don't use: DNS/DHCP Additional CAL Required: Terminal Services

Questions?