SlideShare a Scribd company logo
1 of 15
NOVEMBER, 2016
OUTLINE
 INTRODUCTION
 HISTORICAL BACKGROUND
 ARCHITECTURE OF AD DS
 PROTOCOL
 AUTHENTICATION
 AUTHORIZATION
 COMPONENTS OVERVIEW
 TRUSTS
 BENEFITS OF AD DS
 LIMITATIONS OF AD DS
 CONCLUSION
INTRODUCTION
Active Directory Domain Service (AD DS) is a server role in
Window Server Operating System that allows administrators to
centrally manage and store information about resources of a
network, as well as application data in a distributed database.
It is an outstanding versatile and secured technology for most
modern networking client-server environment
HISTORICAL BACKGROUND
 Mid 1990s, Active Directory was introduced by Microsoft
 Active Directory replaced Windows NT-style user
authentication
 Active Directory did not become a part of Windows
Operating System until the release of Windows 2000 in
2000
 Active Directory improved as Windows Server 2003 and
Windows Server 2008 was released
ARCHITECTURE OF AD DS
Figure 1: Showing the Architecture of AD DS (Microsoft, 2015)
PROTOCOL
 Lightweight Directory Access Protocol (LDAP)
 X.500 Standard
 Based on TCP/IP
 A method for accessing, searching, and modifying a
directory Service
 A client-server model
What is Authentication?
• Network authentication:
grants access to network
resources
• Interactive logon: grants
access to the local
computer
Authentication is the process of verifying a user’s identity
on a network.
Authentication includes two components
What is Authorization?
Security principals are
issued security identifiers
(SIDs) when the account is
created
User accounts are issued
security tokens during
authentication that include
the user’s SID and all related
group SIDs
Shared resources on a
network include access
control lists (ACL) that
define who can access the
resource
The security token is
compared against the
Discretionary Access Control
List (DACL) on the resource
and access is granted or
denied
Authorization is a process of verifying that an
authenticated user has permission to perform an action
COMPONENTS OVERVIEW
Physical Components
 Data Store
 Domain Controllers
 Global Catalog Server
 Replication
Logical Components
 Partitions
 Schema
 Domains
 Domain trees
 Forests
 Sites
 Organizational Units
(OUs)
...COMPONENTS OF AD DS
Domain tree Forest
Figure2 : Showing a domain tree and a forest (Microsoft, 2015)
TRUSTS
Trusts provide a mechanism for users to gain access to
resources in another domain
Types of Trust Description Diagram
Directional The trust direction flows
from trusting domain to
the trusted domain
Transitive The trust relationship is
extended beyond a two-
domain trust to include
other trusted domains
Access
TRUST
Trust &
Access
•All domains in a forest trust all other domains in the forest
•Trusts can extend outside the forest
Table 1: Showing different types of trust
BENEFITS OF AD DS
 Centralized Directory
 Single Sign on Access
 Scalability
 Common Management Interface
 Centralized Network Management
LIMITATIONS OF AD DS
 High maintenance costs
 Active Directory is OS dependent
 Cost of the infrastructure can be high
 It is prone to being hacked
CONCLUSION
Some firms today use workgroup network which
makes it difficult to centralize network
management. As a result of this, Active Directory
Domain Service comes handy which includes
storage of directory data and management of
communication between users and domains,
including user authentication and directory
searches.
THANKS
FOR
LISTENING

More Related Content

What's hot

Active directory and application
Active directory and applicationActive directory and application
Active directory and applicationaminpathan11
 
Windows Server 2012 Managing Active Directory Domain
Windows Server 2012 Managing  Active Directory DomainWindows Server 2012 Managing  Active Directory Domain
Windows Server 2012 Managing Active Directory DomainNapoleon NV
 
Active-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxActive-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxMeriemBalhaddad
 
Introduction to Active Directory
Introduction to Active DirectoryIntroduction to Active Directory
Introduction to Active Directorythoms1i
 
Active directory ii
Active directory   iiActive directory   ii
Active directory iideshvikas
 
Microsoft Offical Course 20410C_02
Microsoft Offical Course 20410C_02Microsoft Offical Course 20410C_02
Microsoft Offical Course 20410C_02gameaxt
 
Windows Server 2019.pptx
Windows Server 2019.pptxWindows Server 2019.pptx
Windows Server 2019.pptxmasbulosoke
 
Active directory domain services
Active directory domain servicesActive directory domain services
Active directory domain servicesIGZ Software house
 
Introduction_of_ADDS
Introduction_of_ADDSIntroduction_of_ADDS
Introduction_of_ADDSHarsh Sethi
 
active-directory-domain-services
active-directory-domain-servicesactive-directory-domain-services
active-directory-domain-services202066
 
Active directory architecture
Active directory architectureActive directory architecture
Active directory architecturerahuldaredia21
 
Windows Server 2016 First Look (Part 1)
Windows Server 2016 First Look (Part 1)Windows Server 2016 First Look (Part 1)
Windows Server 2016 First Look (Part 1)Tuan Yang
 

What's hot (20)

Active Directory
Active Directory Active Directory
Active Directory
 
Active directory and application
Active directory and applicationActive directory and application
Active directory and application
 
Windows Server 2012 Managing Active Directory Domain
Windows Server 2012 Managing  Active Directory DomainWindows Server 2012 Managing  Active Directory Domain
Windows Server 2012 Managing Active Directory Domain
 
Active-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxActive-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptx
 
Active Directory
Active DirectoryActive Directory
Active Directory
 
Introduction to Active Directory
Introduction to Active DirectoryIntroduction to Active Directory
Introduction to Active Directory
 
Active directory ii
Active directory   iiActive directory   ii
Active directory ii
 
DHCP & DNS
DHCP & DNSDHCP & DNS
DHCP & DNS
 
Microsoft Offical Course 20410C_02
Microsoft Offical Course 20410C_02Microsoft Offical Course 20410C_02
Microsoft Offical Course 20410C_02
 
Windows Server 2019.pptx
Windows Server 2019.pptxWindows Server 2019.pptx
Windows Server 2019.pptx
 
Active directory
Active directoryActive directory
Active directory
 
Active directory domain services
Active directory domain servicesActive directory domain services
Active directory domain services
 
Intro to DNS
Intro to DNSIntro to DNS
Intro to DNS
 
Introduction_of_ADDS
Introduction_of_ADDSIntroduction_of_ADDS
Introduction_of_ADDS
 
Active Directory
Active DirectoryActive Directory
Active Directory
 
slide on DNS
slide on DNSslide on DNS
slide on DNS
 
active-directory-domain-services
active-directory-domain-servicesactive-directory-domain-services
active-directory-domain-services
 
Active directory architecture
Active directory architectureActive directory architecture
Active directory architecture
 
Windows Server 2016 First Look (Part 1)
Windows Server 2016 First Look (Part 1)Windows Server 2016 First Look (Part 1)
Windows Server 2016 First Look (Part 1)
 
MCSA 70-412 Chapter 05
MCSA 70-412 Chapter 05MCSA 70-412 Chapter 05
MCSA 70-412 Chapter 05
 

Similar to Active directory domain service

Introduction to System and network administrations
Introduction to System and network administrationsIntroduction to System and network administrations
Introduction to System and network administrationsgirmayou1
 
ADDS (Active directory Domain Service) in side server
ADDS (Active directory Domain Service) in side serverADDS (Active directory Domain Service) in side server
ADDS (Active directory Domain Service) in side serverBilalMehmood44
 
Active-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxActive-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxJavedAjmal1
 
Active directory
Active directoryActive directory
Active directorygunakhan
 
AD Basic and Azure AD.pptx
AD Basic and Azure AD.pptxAD Basic and Azure AD.pptx
AD Basic and Azure AD.pptxSumTingWong8
 
Cloud Computing: Provide privacy and Security in Database-as-a-Service
Cloud Computing: Provide privacy and Security in Database-as-a-ServiceCloud Computing: Provide privacy and Security in Database-as-a-Service
Cloud Computing: Provide privacy and Security in Database-as-a-ServiceEditor Jacotech
 
Unlock the power of Active Directory with our comprehensive LinkedIn SlideSha...
Unlock the power of Active Directory with our comprehensive LinkedIn SlideSha...Unlock the power of Active Directory with our comprehensive LinkedIn SlideSha...
Unlock the power of Active Directory with our comprehensive LinkedIn SlideSha...Karan Patel
 
Active directory tools and domain
Active directory tools  and domainActive directory tools  and domain
Active directory tools and domainAxmedXasanh
 
Active directory basics
Active directory basicsActive directory basics
Active directory basicsSanjeev Gupta
 
Activedirecotryfundamentals
ActivedirecotryfundamentalsActivedirecotryfundamentals
ActivedirecotryfundamentalsShekhar Singh
 
Windows Server 2008 - Active Directory Components
Windows Server 2008 - Active Directory ComponentsWindows Server 2008 - Active Directory Components
Windows Server 2008 - Active Directory ComponentsAndré Braga
 
Active directory ds ws2008 r2
Active directory ds ws2008 r2Active directory ds ws2008 r2
Active directory ds ws2008 r2MICTT Palma
 
Active Directory Proposal
Active Directory ProposalActive Directory Proposal
Active Directory ProposalMJ Ferdous
 
Chapter_11_LDAP_and_Kerberos-converted.pptx
Chapter_11_LDAP_and_Kerberos-converted.pptxChapter_11_LDAP_and_Kerberos-converted.pptx
Chapter_11_LDAP_and_Kerberos-converted.pptxahmedsayed947221
 

Similar to Active directory domain service (20)

Introduction to System and network administrations
Introduction to System and network administrationsIntroduction to System and network administrations
Introduction to System and network administrations
 
70 640 Lesson01 Ppt 041009
70 640 Lesson01 Ppt 04100970 640 Lesson01 Ppt 041009
70 640 Lesson01 Ppt 041009
 
Final domain control policy
Final domain control policy  Final domain control policy
Final domain control policy
 
ADDS (Active directory Domain Service) in side server
ADDS (Active directory Domain Service) in side serverADDS (Active directory Domain Service) in side server
ADDS (Active directory Domain Service) in side server
 
Active Directory
Active DirectoryActive Directory
Active Directory
 
Active-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxActive-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptx
 
Active directory
Active directoryActive directory
Active directory
 
AD Basic and Azure AD.pptx
AD Basic and Azure AD.pptxAD Basic and Azure AD.pptx
AD Basic and Azure AD.pptx
 
1376842823 2982373
1376842823  29823731376842823  2982373
1376842823 2982373
 
Cloud Computing: Provide privacy and Security in Database-as-a-Service
Cloud Computing: Provide privacy and Security in Database-as-a-ServiceCloud Computing: Provide privacy and Security in Database-as-a-Service
Cloud Computing: Provide privacy and Security in Database-as-a-Service
 
1376842823 2982373
1376842823  29823731376842823  2982373
1376842823 2982373
 
Unlock the power of Active Directory with our comprehensive LinkedIn SlideSha...
Unlock the power of Active Directory with our comprehensive LinkedIn SlideSha...Unlock the power of Active Directory with our comprehensive LinkedIn SlideSha...
Unlock the power of Active Directory with our comprehensive LinkedIn SlideSha...
 
Active directory tools and domain
Active directory tools  and domainActive directory tools  and domain
Active directory tools and domain
 
Ad ds ws2008 r2
Ad ds ws2008 r2Ad ds ws2008 r2
Ad ds ws2008 r2
 
Active directory basics
Active directory basicsActive directory basics
Active directory basics
 
Activedirecotryfundamentals
ActivedirecotryfundamentalsActivedirecotryfundamentals
Activedirecotryfundamentals
 
Windows Server 2008 - Active Directory Components
Windows Server 2008 - Active Directory ComponentsWindows Server 2008 - Active Directory Components
Windows Server 2008 - Active Directory Components
 
Active directory ds ws2008 r2
Active directory ds ws2008 r2Active directory ds ws2008 r2
Active directory ds ws2008 r2
 
Active Directory Proposal
Active Directory ProposalActive Directory Proposal
Active Directory Proposal
 
Chapter_11_LDAP_and_Kerberos-converted.pptx
Chapter_11_LDAP_and_Kerberos-converted.pptxChapter_11_LDAP_and_Kerberos-converted.pptx
Chapter_11_LDAP_and_Kerberos-converted.pptx
 

Recently uploaded

How to setup Pycharm environment for Odoo 17.pptx
How to setup Pycharm environment for Odoo 17.pptxHow to setup Pycharm environment for Odoo 17.pptx
How to setup Pycharm environment for Odoo 17.pptxCeline George
 
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptx
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptxHMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptx
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptxmarlenawright1
 
The basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptxThe basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptxheathfieldcps1
 
UGC NET Paper 1 Unit 7 DATA INTERPRETATION.pdf
UGC NET Paper 1 Unit 7 DATA INTERPRETATION.pdfUGC NET Paper 1 Unit 7 DATA INTERPRETATION.pdf
UGC NET Paper 1 Unit 7 DATA INTERPRETATION.pdfNirmal Dwivedi
 
PANDITA RAMABAI- Indian political thought GENDER.pptx
PANDITA RAMABAI- Indian political thought GENDER.pptxPANDITA RAMABAI- Indian political thought GENDER.pptx
PANDITA RAMABAI- Indian political thought GENDER.pptxakanksha16arora
 
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptxHMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptxEsquimalt MFRC
 
On_Translating_a_Tamil_Poem_by_A_K_Ramanujan.pptx
On_Translating_a_Tamil_Poem_by_A_K_Ramanujan.pptxOn_Translating_a_Tamil_Poem_by_A_K_Ramanujan.pptx
On_Translating_a_Tamil_Poem_by_A_K_Ramanujan.pptxPooja Bhuva
 
OSCM Unit 2_Operations Processes & Systems
OSCM Unit 2_Operations Processes & SystemsOSCM Unit 2_Operations Processes & Systems
OSCM Unit 2_Operations Processes & SystemsSandeep D Chaudhary
 
Spellings Wk 4 and Wk 5 for Grade 4 at CAPS
Spellings Wk 4 and Wk 5 for Grade 4 at CAPSSpellings Wk 4 and Wk 5 for Grade 4 at CAPS
Spellings Wk 4 and Wk 5 for Grade 4 at CAPSAnaAcapella
 
Python Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docxPython Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docxRamakrishna Reddy Bijjam
 
NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...
NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...
NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...Amil baba
 
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptx
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptxCOMMUNICATING NEGATIVE NEWS - APPROACHES .pptx
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptxannathomasp01
 
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...Pooja Bhuva
 
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdf
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdfUnit 3 Emotional Intelligence and Spiritual Intelligence.pdf
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdfDr Vijay Vishwakarma
 
How to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POSHow to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POSCeline George
 
Play hard learn harder: The Serious Business of Play
Play hard learn harder:  The Serious Business of PlayPlay hard learn harder:  The Serious Business of Play
Play hard learn harder: The Serious Business of PlayPooky Knightsmith
 
AIM of Education-Teachers Training-2024.ppt
AIM of Education-Teachers Training-2024.pptAIM of Education-Teachers Training-2024.ppt
AIM of Education-Teachers Training-2024.pptNishitharanjan Rout
 
QUATER-1-PE-HEALTH-LC2- this is just a sample of unpacked lesson
QUATER-1-PE-HEALTH-LC2- this is just a sample of unpacked lessonQUATER-1-PE-HEALTH-LC2- this is just a sample of unpacked lesson
QUATER-1-PE-HEALTH-LC2- this is just a sample of unpacked lessonhttgc7rh9c
 
How to Add a Tool Tip to a Field in Odoo 17
How to Add a Tool Tip to a Field in Odoo 17How to Add a Tool Tip to a Field in Odoo 17
How to Add a Tool Tip to a Field in Odoo 17Celine George
 

Recently uploaded (20)

How to setup Pycharm environment for Odoo 17.pptx
How to setup Pycharm environment for Odoo 17.pptxHow to setup Pycharm environment for Odoo 17.pptx
How to setup Pycharm environment for Odoo 17.pptx
 
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptx
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptxHMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptx
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptx
 
Our Environment Class 10 Science Notes pdf
Our Environment Class 10 Science Notes pdfOur Environment Class 10 Science Notes pdf
Our Environment Class 10 Science Notes pdf
 
The basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptxThe basics of sentences session 3pptx.pptx
The basics of sentences session 3pptx.pptx
 
UGC NET Paper 1 Unit 7 DATA INTERPRETATION.pdf
UGC NET Paper 1 Unit 7 DATA INTERPRETATION.pdfUGC NET Paper 1 Unit 7 DATA INTERPRETATION.pdf
UGC NET Paper 1 Unit 7 DATA INTERPRETATION.pdf
 
PANDITA RAMABAI- Indian political thought GENDER.pptx
PANDITA RAMABAI- Indian political thought GENDER.pptxPANDITA RAMABAI- Indian political thought GENDER.pptx
PANDITA RAMABAI- Indian political thought GENDER.pptx
 
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptxHMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
 
On_Translating_a_Tamil_Poem_by_A_K_Ramanujan.pptx
On_Translating_a_Tamil_Poem_by_A_K_Ramanujan.pptxOn_Translating_a_Tamil_Poem_by_A_K_Ramanujan.pptx
On_Translating_a_Tamil_Poem_by_A_K_Ramanujan.pptx
 
OSCM Unit 2_Operations Processes & Systems
OSCM Unit 2_Operations Processes & SystemsOSCM Unit 2_Operations Processes & Systems
OSCM Unit 2_Operations Processes & Systems
 
Spellings Wk 4 and Wk 5 for Grade 4 at CAPS
Spellings Wk 4 and Wk 5 for Grade 4 at CAPSSpellings Wk 4 and Wk 5 for Grade 4 at CAPS
Spellings Wk 4 and Wk 5 for Grade 4 at CAPS
 
Python Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docxPython Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docx
 
NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...
NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...
NO1 Top Black Magic Specialist In Lahore Black magic In Pakistan Kala Ilam Ex...
 
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptx
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptxCOMMUNICATING NEGATIVE NEWS - APPROACHES .pptx
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptx
 
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
 
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdf
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdfUnit 3 Emotional Intelligence and Spiritual Intelligence.pdf
Unit 3 Emotional Intelligence and Spiritual Intelligence.pdf
 
How to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POSHow to Manage Global Discount in Odoo 17 POS
How to Manage Global Discount in Odoo 17 POS
 
Play hard learn harder: The Serious Business of Play
Play hard learn harder:  The Serious Business of PlayPlay hard learn harder:  The Serious Business of Play
Play hard learn harder: The Serious Business of Play
 
AIM of Education-Teachers Training-2024.ppt
AIM of Education-Teachers Training-2024.pptAIM of Education-Teachers Training-2024.ppt
AIM of Education-Teachers Training-2024.ppt
 
QUATER-1-PE-HEALTH-LC2- this is just a sample of unpacked lesson
QUATER-1-PE-HEALTH-LC2- this is just a sample of unpacked lessonQUATER-1-PE-HEALTH-LC2- this is just a sample of unpacked lesson
QUATER-1-PE-HEALTH-LC2- this is just a sample of unpacked lesson
 
How to Add a Tool Tip to a Field in Odoo 17
How to Add a Tool Tip to a Field in Odoo 17How to Add a Tool Tip to a Field in Odoo 17
How to Add a Tool Tip to a Field in Odoo 17
 

Active directory domain service

  • 2. OUTLINE  INTRODUCTION  HISTORICAL BACKGROUND  ARCHITECTURE OF AD DS  PROTOCOL  AUTHENTICATION  AUTHORIZATION  COMPONENTS OVERVIEW  TRUSTS  BENEFITS OF AD DS  LIMITATIONS OF AD DS  CONCLUSION
  • 3. INTRODUCTION Active Directory Domain Service (AD DS) is a server role in Window Server Operating System that allows administrators to centrally manage and store information about resources of a network, as well as application data in a distributed database. It is an outstanding versatile and secured technology for most modern networking client-server environment
  • 4. HISTORICAL BACKGROUND  Mid 1990s, Active Directory was introduced by Microsoft  Active Directory replaced Windows NT-style user authentication  Active Directory did not become a part of Windows Operating System until the release of Windows 2000 in 2000  Active Directory improved as Windows Server 2003 and Windows Server 2008 was released
  • 5. ARCHITECTURE OF AD DS Figure 1: Showing the Architecture of AD DS (Microsoft, 2015)
  • 6. PROTOCOL  Lightweight Directory Access Protocol (LDAP)  X.500 Standard  Based on TCP/IP  A method for accessing, searching, and modifying a directory Service  A client-server model
  • 7. What is Authentication? • Network authentication: grants access to network resources • Interactive logon: grants access to the local computer Authentication is the process of verifying a user’s identity on a network. Authentication includes two components
  • 8. What is Authorization? Security principals are issued security identifiers (SIDs) when the account is created User accounts are issued security tokens during authentication that include the user’s SID and all related group SIDs Shared resources on a network include access control lists (ACL) that define who can access the resource The security token is compared against the Discretionary Access Control List (DACL) on the resource and access is granted or denied Authorization is a process of verifying that an authenticated user has permission to perform an action
  • 9. COMPONENTS OVERVIEW Physical Components  Data Store  Domain Controllers  Global Catalog Server  Replication Logical Components  Partitions  Schema  Domains  Domain trees  Forests  Sites  Organizational Units (OUs)
  • 10. ...COMPONENTS OF AD DS Domain tree Forest Figure2 : Showing a domain tree and a forest (Microsoft, 2015)
  • 11. TRUSTS Trusts provide a mechanism for users to gain access to resources in another domain Types of Trust Description Diagram Directional The trust direction flows from trusting domain to the trusted domain Transitive The trust relationship is extended beyond a two- domain trust to include other trusted domains Access TRUST Trust & Access •All domains in a forest trust all other domains in the forest •Trusts can extend outside the forest Table 1: Showing different types of trust
  • 12. BENEFITS OF AD DS  Centralized Directory  Single Sign on Access  Scalability  Common Management Interface  Centralized Network Management
  • 13. LIMITATIONS OF AD DS  High maintenance costs  Active Directory is OS dependent  Cost of the infrastructure can be high  It is prone to being hacked
  • 14. CONCLUSION Some firms today use workgroup network which makes it difficult to centralize network management. As a result of this, Active Directory Domain Service comes handy which includes storage of directory data and management of communication between users and domains, including user authentication and directory searches.

Editor's Notes

  1. Course 6424A
  2. Course 6424A