Managing Users, Computers, & Groups



Similar documents
Managing User and Computer Accounts

Other documents in this series are available at: servernotes.wazmac.com

APNS Certificate generating and installation

Global Image Management System For epad-vision. User Manual Version 1.10

Installation Guide for Microsoft SQL Server 2008 R2 Express. October 2011 (GUIDE 1)

Joining an XP workstation to a domain Version 1.00

Connecting to Remote Desktop Windows Users

Technology Services Group Procedures. IH Anywhere guide. 0 P a g e

How to remotely access your Virtual Desktop from outside the college using VMware View Client. How to guide

1. Navigate to Control Panel and click on User Accounts and Family Safety. 2. Click on User Accounts

ADSelfService Plus Client Software Installation Guide

ECA IIS Instructions. January 2005

Dynamics CRM 2011 Outlook Configuration Guide With Windows XP

Ascend Interface Service Installation

Password Manager Windows Desktop Client

Tool Tip. SyAM Management Utilities and Non-Admin Domain Users

Advanced Event Viewer Manual

TECHNICAL TRAINING LAB INSTRUCTIONS

Installation Guide. . All right reserved. For more information about Specops Deploy and other Specops products, visit

LepideAuditor Suite for File Server. Installation and Configuration Guide

Virtual Office Remote Installation Guide

How to configure your Desktop Computer and Mobile Devices post migrating to Microsoft Office 365

Colligo Manager 6.0. Offline Mode - User Guide

Getting Started with VMware Horizon View (Remote Desktop Access)

owncloud Configuration and Usage Guide

Creating Home Directories for Windows and Macintosh Computers

Video Administration Backup and Restore Procedures

Active Directory Software Deployment

Colligo Manager 6.0. Connected Mode - User Guide

Test Note Phone Manager Deployment Windows Group Policy Sever 2003 and XP SPII Clients

User Guide. Please visit the Helpdesk website for more information:


Windows Clients and GoPrint Print Queues

CONFIGURING TARGET ACTIVE DIRECTORY DOMAIN FOR AUDIT BY NETWRIX AUDITOR

This means that any user from the testing domain can now logon to Cognos 8 (and therefore Controller 8 etc.).

The question becomes, How does the competent Windows IT professional open up their print server to their Mac clients?

ThinManager and Active Directory

Automating client deployment

NSi Mobile Installation Guide. Version 6.2

APSCN VPN Settings for Windows 7 2. APSCN VPN Settings for Windows XP 8. APSCN VPN Settings for MAC OS 15

Installing TestNav Mac with Apple Remote Desktop

Mac OS X: INSTALLING TUNNELBLICK

Remote Desktop Web Access. Using Remote Desktop Web Access

Web Deployment on Windows 2012 Server. Updated: August 28, 2013

MS Outlook 2002/2003. V1.0 BullsEye Telecom

WebSpy Vantage Ultimate 2.2 Web Module Administrators Guide

Apple Mac VPN Service Setting up Remote Desktop

Password Reset Server Installation Guide Windows 8 / 8.1 Windows Server 2012 / R2

Concession FTP User Guide May 2011 Version 1.2

QUANTIFY INSTALLATION GUIDE

Application Note 8: TrendView Recorders DCOM Settings and Firewall Plus DCOM Settings for Trendview Historian Server

Active Directory Integration

Install and End User Reference Guide for Direct Access to Citrix Applications

Release 2.0. Cox Business Online Backup Quick Start Guide

Yale Software Library

mystanwell.com Installing Citrix Client Software Information and Business Systems

Joining my MAC laptop to the domain

Migrating MSDE to Microsoft SQL 2008 R2 Express

How to monitor AD security with MOM

Table of Contents WELCOME TO ADAUDIT PLUS Release Notes... 4 Contact ZOHO Corp... 5 ADAUDIT PLUS TERMINOLOGIES... 7 GETTING STARTED...

Configuring Microsoft Active Directory for Cisco WAAS Encrypted MAPI Acceleration

Home and Shared Folders on Windows Accessing Home and Shared Folders on Active Directory File Servers Using Windows

Initial Setup of Microsoft Outlook 2011 with IMAP for OS X Lion

Wazza s QuickStart 10. Leopard Server - Managing Preferences

Changing Passwords in Cisco Unity 8.x

Installation Steps for PAN User-ID Agent

Step-by-step installation guide for monitoring untrusted servers using Operations Manager ( Part 3 of 3)

safend a w a v e s y s t e m s c o m p a n y

RMS Cloud - Setup Instructions for Windows Computers

Colligo Manager 6.2. Offline Mode - User Guide

VMware/Hyper-V Backup Plug-in User Guide

PC Instructions for Miller LiveArc Software

Network Connect Installation and Usage Guide

Remote Terminal Service (RTS) User Guide (Version 2.1)

SSL VPN Setup for Windows

Using Remote Web Workplace Version 1.01

Defender EAP Agent Installation and Configuration Guide

VPN - AnyConnect on Windows

QUICK START GUIDE PRINT MANAGER PLUS STANDARD Take Control of Your Network Printing

EventTracker: Support to Non English Systems

Active Directory integration with CloudByte ElastiStor

Weston Public Schools Virtual Desktop Access Instructions

Quick Start Guide for Parallels Virtuozzo

INFORMATION SYSTEMS SERVICE NETWORKS AND TELECOMMUNICATIONS SECTOR. User Guide for the RightFax Fax Service. Web Utility

Verizon Remote Access User Guide

Mercy s Remote Access Instructions

Home and Shared Folders on Mac OS X Accessing Home and Shared Folders on Active Directory File Servers Using Mac OS X

SINGLE SIGN-ON FOR MTWEB

2. Using Notepad, create a file called c:\demote.txt containing the following information:

SQL Server Setup for Assistant/Pro applications Compliance Information Systems

For Mac User Directions, see page 5

FileZilla: Uploading/Downloading Files to SBI FTP

Instructions to connect to GRCC Remote Access using a Macintosh computer

Joining a workstation to the TAMU IT Domain and Profile Migration

Windows and MAC User Handbook Remote and Secure Connection Version /19/2013. User Handbook

Active Directory Management. User Interface Guide

Eduroam wireless network - Windows 7

Quality Center LDAP Guide

DESLock+ Basic Setup Guide Version 1.20, rev: June 9th 2014

Transcription:

Managing Users, Computers, & Groups IN THE AGNET.TAMU.EDU ACTIVE DIRECTORY DOMAIN Active Directory Administrative Center Managing Computers Managing Users & Groups Managing Organizational Units

Introduction to Active Directory Active Directory (AD) is a network directory service for centrally storing and managing security and information about the users and devices on a network. Individual records for users, computers, groups, etc., are called objects and they are organized into containers called Organizational Units.

Intro to AD, continued Active Directory can manage security policies and user interfaces as well as store user credentials and other information. Copies of the entire database can be stored and replicated on Domain Controllers, which are distributed throughout an enterprise. AD allows for as much centralization of management and support as an organization requires.

Intro to AD, continued In an Active Directory domain, user accounts are stored on the domain controller instead of on each workstation. By default, any domain user can log onto any domain computer as long as they enter the correct username and password. Individual computers still have local user accounts, but they aren t used except in special circumstances. Before a domain user can log into a computer, the computer must join the domain. Joining links a computer to a computer object in the AD database much like a user account.

Active Directory Administrative Center Active Directory Administrative Center is the primary tool you will use to manage the computer, user, and group objects for your organization. It will only work on Windows 7 Professional or higher. Home and Starter editions will not work. Download & install Remote Server Administrative Tools (RSAT) for Windows 7 from Microsoft s Download Center. (Be sure to download the 32-bit or 64-bit version to match your installed OS.)

Installing ADAC, continued Open Programs from the Control Panel and select Turn Windows features on and off. Expand the feature tree to Remote Server Administration Tools\Role Administration Tools\AD DS and AD LDS Tools\AD DS Tools and install Active Directory Administrative Center.

Installing ADAC, continued To launch ADAC, run dsac.exe, or select it from your Administrative Tools. Click on Add Navigation Nodes in the toolbar. Browse through the columns of Organizational Units to your local site. Highlight it and click the double arrow then OK. You now have a shortcut to your site OU in the Navigation Pane.

Managing Computers In Active Directory, computers use accounts and passwords just like users. A computer must join the domain (become associated with a computer account) before a person can use it to log into their own account. After the initial migration, this is the process you will use to add computers to the domain. First, create a computer account object in AD. 1. In ADAC, select the appropriate OU 2. Click New then Computer from the Tasks pane. 3. Enter the computer s name. (Make sure computer names are recognizably associated with your organization!) Log into the computer with a local administrator account.

Computers, continued Right click on Computer (My Computer in XP) and select Properties. Click on Change settings (except in XP) and click on the Change button. Make sure the computer name exactly matches the computer account you created in ADAC. Select the Domain radio button and enter agnet.tamu.edu as the domain name. Click OK.

Computers, continued Enter the username and password of an Active Directory account that is authorized to join computers to the domain. Click OK. Welcome to the agnet.tamu.edu domain. Acknowledge the Welcome message and close the properties window. Restart the computer. ***If you reinstall the OS on a computer, you must rejoin the domain!***

Computers, continued Joining a Mac to the domain For Leopard or Snow Leopard, create a computer account as described above. (Some users still have difficulties joining Snow Leopard to the domain.) On the Mac, open the System Preferences and go to Accounts. Click on the Login Options on the bottom left. On the right, click the Edit button for the Network Account Server. Click on the + button and enter agnet.tamu.edu. Authenticate with an AGNET account that is authorized to join computers to the domain.

Managing Users & Groups Creating a user account In ADAC, select the appropriate OU. Click New then User from the Tasks pane on the right. Enter the person s first and last name. Enter the user s logon name in the User UPN logon field. (Logon name should be First.Last or FirstM.Last.) Enter a password and other information as necessary.

Users & Groups, continued Resetting a user s password Highlight the user account in ADAC and click Reset password from the Tasks pane. Enter the new password twice and check the Unlock account box if necessary. Click OK.

Users & Groups, continued Creating a user group Select the appropriate OU. Click New then Group from the Tasks pane.* Enter a group name that can be readily associated with your organization. Add a description and comments if appropriate. * There are two ways to create a new object: First, click "New" in the Tasks pane; Second, right-click in the center pane and select New.

Users & Groups, continued Adding a user to a group From the User account object Highlight the user account object. Click on Add to group in the Tasks pane. Type the group name and click OK. From the Group object Open the Group object properties. Scroll down to the Members section (or click on Members in the Navigation pane.) Click the Add button. Type the name of the user or group you want to add. Separate multiple object names with a semicolon.

Managing Organizational Units Organizational Units are containers in Active Directory, used for grouping similar objects together. All end user, computer, and group accounts in agnet.tamu.edu are stored in a tree of OUs under a top-level OU called AgriLifeEmployees. Under your department s OU, there are three sub- OUs for computers, groups, and users. You may create new OUs under those three to suit your own organization s needs.

Managing OUs, continued To create a new sub-ou, navigate to the appropriate location of the directory tree in ADAC, right-click in the center pane, and select New, then Organizational Unit. or select New then Organizational Unit from the Tasks pane.

Managing OUs, continued Enter a name and description for your new OU. Click OK

Document Update History 2010.11.23 Jay Carper Added graphics, corrections 2010.11.23.1 Jay Carper Added info on OU management 2011.07.01 Jay Carper Modified Mac OSX information.