160 likes | 216 Vues
Learn about Domain, Tree, Forest, Container, Organizational Unit, Object, Domain Controller, Replication, Schema in Active Directory. Understand the centralized security and organization of AD. Explore the role of domains and various server roles in AD. Dive into class discussions on network models, tree vs. forest, schema significance, replication, and more.
 
                
                E N D
1.1 Install Active Directory TestOut Server Pro 2016: Identity Active Directory Overview
Key Terms • Domain Tree Forest Container Organizational Unit (OU) Object Domain Controller Replication Schema TestOut Server Pro 2016: Identity
Domain: An administratively-defined collection of network resources that share a common directory database and security policies. Tree: A tree is a combination of one or more domains that share the same contiguous namespace and schema. Forest: A collection of related domain trees. If more than one tree exists, each tree will have a unique namespace. Container: A container is a built-in object that cannot be altered without making changes to the Active Directory schema. They are used to organize Active Directory objects. TestOut Server Pro 2016: Identity
Organizational Unit (OU): An OU provides the means of organizing network resources within a domain. An OU can hold other organizational units and objects, such as users and computers. An OU can be used to simplify security administration. Object: Within Active Directory, each resource is identified as an object, such as users, groups, computers, printers, and shared folders. Each object contains additional information about the shared resource that can be used for locating and securing resources. TestOut Server Pro 2016: Identity
Domain Controller: A server that has Active Directory Directory Service (AD DS) installed and holds the Active Directory database or a copy of the Active Directory database. Replication: Active Directory replication ensures that the information or data between domain controllers remains updated and consistent. Schema: The schema in Active Directory contains a formal definition of every object class that can be created in an Active Directory forest. The schema also contains formal definitions of every attribute that can exist in an Active Directory object. TestOut Server Pro 2016: Identity
Active Directory Overview TestOut Server Pro 2016: Identity
Active Directory Overview TestOut Server Pro 2016: Identity
Centralized Security • Active Directory is the security database. TestOut Server Pro 2016: Identity
Active Directory Organization • Forest • The highest level One per organization (best practice) Exceptions include: • Company merger Application requirement TestOut Server Pro 2016: Identity
Active Directory Organization • Domains • Domains establish trusts. • Common Schema • Trees • Share common name space (for example, ACME.com). • Have parent-child relationships. • Can include multiple domains. TestOut Server Pro 2016: Identity
Active Directory Domains • AD domains are security and replication boundaries. The first domain is the forest root domain. Computers belong to only one domain. TestOut Server Pro 2016: Identity
Active Directory Overview TestOut Server Pro 2016: Identity
Active Directory Overview TestOut Server Pro 2016: Identity
Active Directory Overview TestOut Server Pro 2016: Identity
Active Directory Roles • Clients include: • An operating system A database named SAM (Security Account Manager) • Member servers include: • An operating system A database named SAM • Domain controllers include: • An operating system • A copy of Active Directory TestOut Server Pro 2016: Identity
Class Discussion • What are the different advantages of a client-server network model and a workgroup model? What is the difference between a tree and a forest? How can you tell when a new domain starts a new tree? What is the function of the schema? How does Active Directory ensure that each domain controller has the most current information from other domain controllers? TestOut Server Pro 2016: Identity