SlideShare a Scribd company logo
1 of 10
FABRIKAM
ACTIVE DIRECTORY
D E V E L O P E D B Y M I C R O S O F T F O R W I N D O W S D O M A I N
FABRIKAM 2
A server running the Active Directory
Domain Service (AD DS) role is called a
domain controller. It authenticates and
authorizes all users and computers in a
Windows domain type network,
assigning and enforcing security policies
for all computers, and installing or
updating software.
ACTIVE DIRECTORY SERVICES
Active Directory Services consist
of multiple directory services.
The best known is Active
Directory Domain Services,
commonly abbreviated as AD DS
or simply AD.
FABRIKAM 3
HISTORY
Microsoft previewed Active Directory in 1999, released it
first with Windows 2000 Server edition, and revised it to
extend functionality and improve administration in
Windows Server 2003. Active Directory support was also
added to Windows 95, Windows 98 and Windows NT 4.0
via patch, with some features being unsupported.
Additional improvements came with subsequent versions
of Windows Server. In Windows Server 2008, additional
services were added to Active Directory, such as Active
Directory Federation Services. The part of the directory in
charge of management of domains, which was previously
a core part of the operating system, was renamed Active
Directory Domain Services (ADDS) and became a server
role like others. "Active Directory" became the umbrella
title of a broader range of directory-based services.
According to Byron Hynes, everything related to identity
was brought under Active Directory's banner.
FABRIKAM 4
Active Directory Services
Domain Services
Active Directory Domain Services (AD DS) is the
foundation stone of every Windows domain network. It
stores information about members of the domain,
including devices and users, verifies their credentials
and defines their access rights.
Lightweight Directory Services
Active Directory Lightweight Directory Services (AD
LDS), formerly known as Active Directory Application
Mode (ADAM), is an implementation of LDAP protocol
for AD DS. AD LDS runs as a service on Windows Server.
Certificate Services
Active Directory Certificate Services (AD CS) establishes an on-
premises public key infrastructure. It can create, validate and
revoke public key certificates for internal uses of an organization.
Federation Services
Active Directory Federation Services (AD FS) is a single sign-on
service. With an AD FS infrastructure in place, users may use
several web-based services (e.g. internet forum, blog, online
shopping, webmail) or network resources using only one set of
credentials stored at a central location, as opposed to having to be
granted a dedicated set of credentials for each service.
FABRIKAM 5
Logical structure
As a directory service, an
Active Directory instance
consists of a database and
corresponding executable
code responsible for
servicing requests and
maintaining the database.
FABRIKAM
FABRIKAM 6
Objects - Active Directory structures are arrangements of
information about objects. The objects fall into two
broad categories: resources (e.g., printers) and security
principals (user or computer accounts and groups).
Security principals are assigned unique security
identifiers (SIDs).
Forest, trees and domains - The Active Directory
framework that holds the objects can be viewed at a
number of levels. The forest, tree, and domain are the
logical divisions in an Active Directory network.
Organizational units - The objects held within a domain
can be grouped into organizational units (OUs). OUs can
provide hierarchy to a domain, ease its administration,
and can resemble the organization's structure in
managerial or geographical terms. OUs can contain other
OUs—domains are containers in this sense.
Shadow groups - Active Directory requires a separate step
for an administrator to assign an object in an OU as a
member of a group also within that OU. Relying on OU
location alone to determine access permissions is
unreliable, because the object may not have been assigned
to the group object for that OU.
Partitions - The Active Directory database is organized in
partitions, each holding specific object types and following
a specific replication pattern.
Logical Structure
FABRIKAM 7
Physical Structure
Physically, the Active
Directory information is
held on one or more peer
domain controllers,
replacing the NT PDC/BDC
model. Each DC has a
copy of the Active
Directory. Servers joined
to Active Directory that
are not domain
controllers are called
Member Servers.
FABRIKAM
FABRIKAM 8
Replication - Active Directory synchronizes changes
using multi-master replication.] Replication by default is
'pull' rather than 'push', meaning that replicas pull changes
from the server where the change was effected.
Implementation - In general, a network utilizing Active
Directory has more than one licensed Windows server
computer. Backup and restore of Active Directory is possible
for a network with a single domain controller, but Microsoft
recommends more than one domain controller to provide
automatic failover protection of the directory.
Database - The Active-Directory database, the directory
store, in Windows 2000 Server uses the JET Blue -
based Extensible Storage Engine (ESE98) and is limited to 16
terabytes and 2 billion objects (but only 1 billion security
principals) in each domain controller's database. Microsoft
has created NTDS databases with more than 2 billion
objects.
Trusting
To allow users in one domain to access resources in
another, Active Directory uses trusts.
Trusts inside a forest are automatically created when
domains are created. The forest sets the default
boundaries of trust, and implicit, transitive trust is
automatic for all domains within a forest.
Physical Structure
FABRIKAM
QUIZ
1. It authenticates and authorizes all users and computers in a Windows domain type network, assigning and
enforcing security policies for all computers, and installing or updating software.
2. It stores information about members of the domain, including devices and users, verifies their credentials
and defines their access rights.
3. It can create, validate and revoke public key certificates for internal uses of an organization.
4. With an AD FS infrastructure in place, users may use several web-based services (e.g. internet forum, blog,
online shopping, webmail) or network resources using only one set of credentials stored at a central
location, as opposed to having to be granted a dedicated set of credentials for each service.
5. As a directory service, an Active Directory instance consists of a database and corresponding executable
code responsible for servicing requests and maintaining the database.
6. The Active Directory information is held on one or more peer domain controllers, replacing the NT
PDC/BDC model.
7. The Active Directory framework that holds the objects can be viewed at a number of levels.
8. Active Directory requires a separate step for an administrator to assign an object in an OU as a member of
a group also within that OU.
9. In general, a network utilizing Active Directory has more than one licensed Windows server computer.
10.Its allow users in one domain to access resources in another, Active Directory.
FABRIKAM
ANSWERS:
1. ACTIVE DIRECTORY
2. DOMAIN SERVICES
3. CERTIFICATE SERVICES
4. FEDERATION SERVICES
5. LOGICAL STRUCTURE
6. PHYSICAL STRUCTURE
7. FOREST, TREES AND DOMAINS
8. SHADOW GROUPS
9. IMPLEMENTATION
10. TRUST

More Related Content

What's hot

Introduction_of_ADDS
Introduction_of_ADDSIntroduction_of_ADDS
Introduction_of_ADDSHarsh Sethi
 
Domain Controller Critical Services
Domain Controller Critical ServicesDomain Controller Critical Services
Domain Controller Critical ServicesJani Sabtriady
 
Windows 2008 R2 Security
Windows 2008 R2 SecurityWindows 2008 R2 Security
Windows 2008 R2 SecurityAmit Gatenyo
 
Active directory ii
Active directory   iiActive directory   ii
Active directory iideshvikas
 
Designing the active directory logical structure
Designing the active directory logical structureDesigning the active directory logical structure
Designing the active directory logical structureJohn Carlo Catacutan
 
0505 Windows Server 2008 一日精華營 PartI
0505 Windows Server 2008 一日精華營 PartI0505 Windows Server 2008 一日精華營 PartI
0505 Windows Server 2008 一日精華營 PartITimothy Chen
 
Microsoft Active Directory
Microsoft Active DirectoryMicrosoft Active Directory
Microsoft Active Directorythebigredhemi
 
Windows Server 2008 Active Directory Guide
Windows Server 2008 Active Directory GuideWindows Server 2008 Active Directory Guide
Windows Server 2008 Active Directory Guidewebhostingguy
 
Active directory domain service
Active directory domain serviceActive directory domain service
Active directory domain serviceFestus Oriaku
 
Server 2008 r2 ppt
Server 2008 r2 pptServer 2008 r2 ppt
Server 2008 r2 pptRaj Solanki
 
Windows Server 2012 Managing Active Directory Domain
Windows Server 2012 Managing  Active Directory DomainWindows Server 2012 Managing  Active Directory Domain
Windows Server 2012 Managing Active Directory DomainNapoleon NV
 

What's hot (20)

Active Directory Training
Active Directory TrainingActive Directory Training
Active Directory Training
 
Introduction_of_ADDS
Introduction_of_ADDSIntroduction_of_ADDS
Introduction_of_ADDS
 
Domain Controller Critical Services
Domain Controller Critical ServicesDomain Controller Critical Services
Domain Controller Critical Services
 
WINDOWS SERVER 2008
WINDOWS SERVER 2008WINDOWS SERVER 2008
WINDOWS SERVER 2008
 
6425 c 01
6425 c 016425 c 01
6425 c 01
 
Windows 2008 R2 Security
Windows 2008 R2 SecurityWindows 2008 R2 Security
Windows 2008 R2 Security
 
Active directory ii
Active directory   iiActive directory   ii
Active directory ii
 
Mcse 2012
Mcse 2012Mcse 2012
Mcse 2012
 
Designing the active directory logical structure
Designing the active directory logical structureDesigning the active directory logical structure
Designing the active directory logical structure
 
0505 Windows Server 2008 一日精華營 PartI
0505 Windows Server 2008 一日精華營 PartI0505 Windows Server 2008 一日精華營 PartI
0505 Windows Server 2008 一日精華營 PartI
 
Microsoft Active Directory
Microsoft Active DirectoryMicrosoft Active Directory
Microsoft Active Directory
 
Windows Server 2008 Active Directory Guide
Windows Server 2008 Active Directory GuideWindows Server 2008 Active Directory Guide
Windows Server 2008 Active Directory Guide
 
70 640 Lesson01 Ppt 041009
70 640 Lesson01 Ppt 04100970 640 Lesson01 Ppt 041009
70 640 Lesson01 Ppt 041009
 
Active directory domain service
Active directory domain serviceActive directory domain service
Active directory domain service
 
Active Directory
Active Directory Active Directory
Active Directory
 
Server 2008 r2 ppt
Server 2008 r2 pptServer 2008 r2 ppt
Server 2008 r2 ppt
 
MCITP
MCITPMCITP
MCITP
 
Mcts chapter 4
Mcts chapter 4Mcts chapter 4
Mcts chapter 4
 
Windows Server 2012 Managing Active Directory Domain
Windows Server 2012 Managing  Active Directory DomainWindows Server 2012 Managing  Active Directory Domain
Windows Server 2012 Managing Active Directory Domain
 
Cl310
Cl310Cl310
Cl310
 

Similar to Active Directory

Microsoft Active Directory.pptx
Microsoft Active Directory.pptxMicrosoft Active Directory.pptx
Microsoft Active Directory.pptxmasbulosoke
 
IRJET- Research Paper on Active Directory
IRJET-  	  Research Paper on Active DirectoryIRJET-  	  Research Paper on Active Directory
IRJET- Research Paper on Active DirectoryIRJET Journal
 
Active directory basics
Active directory basicsActive directory basics
Active directory basicsSanjeev Gupta
 
Ctive directory interview question and answers
Ctive directory interview question and answersCtive directory interview question and answers
Ctive directory interview question and answerssankar palla
 
Windows Server 2008 - Active Directory Components
Windows Server 2008 - Active Directory ComponentsWindows Server 2008 - Active Directory Components
Windows Server 2008 - Active Directory ComponentsAndré Braga
 
Server interview[1]
Server interview[1]Server interview[1]
Server interview[1]sourav nanda
 
Active directory tools and domain
Active directory tools  and domainActive directory tools  and domain
Active directory tools and domainAxmedXasanh
 
29041329 interview-questions-for-server-2003
29041329 interview-questions-for-server-200329041329 interview-questions-for-server-2003
29041329 interview-questions-for-server-2003rafiq123
 
Active Directory Site And Services.pdf
Active Directory Site And Services.pdfActive Directory Site And Services.pdf
Active Directory Site And Services.pdfEIHEducation
 
Active Directory Site And Services.pdf
Active Directory Site And Services.pdfActive Directory Site And Services.pdf
Active Directory Site And Services.pdfEIHEducation
 
What is active directory
What is active directoryWhat is active directory
What is active directoryrajasekar1712
 
Activedirecotryfundamentals
ActivedirecotryfundamentalsActivedirecotryfundamentals
ActivedirecotryfundamentalsShekhar Singh
 
network administration directory access and remote access
network administration directory access and remote accessnetwork administration directory access and remote access
network administration directory access and remote accessSangeetha Rangarajan
 
Active directory
Active directoryActive directory
Active directorygunakhan
 
Describe- manage- and install Active Directory replication- federation.docx
Describe- manage- and install Active Directory replication- federation.docxDescribe- manage- and install Active Directory replication- federation.docx
Describe- manage- and install Active Directory replication- federation.docxearleanp
 
Proposal For Their Integration Of Windows Server
Proposal For Their Integration Of Windows ServerProposal For Their Integration Of Windows Server
Proposal For Their Integration Of Windows ServerBrenda Higgins
 

Similar to Active Directory (20)

Microsoft Active Directory.pptx
Microsoft Active Directory.pptxMicrosoft Active Directory.pptx
Microsoft Active Directory.pptx
 
IRJET- Research Paper on Active Directory
IRJET-  	  Research Paper on Active DirectoryIRJET-  	  Research Paper on Active Directory
IRJET- Research Paper on Active Directory
 
Active directory basics
Active directory basicsActive directory basics
Active directory basics
 
Active Directory
Active DirectoryActive Directory
Active Directory
 
Ctive directory interview question and answers
Ctive directory interview question and answersCtive directory interview question and answers
Ctive directory interview question and answers
 
Windows Server 2008 - Active Directory Components
Windows Server 2008 - Active Directory ComponentsWindows Server 2008 - Active Directory Components
Windows Server 2008 - Active Directory Components
 
Server interview[1]
Server interview[1]Server interview[1]
Server interview[1]
 
Active directory tools and domain
Active directory tools  and domainActive directory tools  and domain
Active directory tools and domain
 
29041329 interview-questions-for-server-2003
29041329 interview-questions-for-server-200329041329 interview-questions-for-server-2003
29041329 interview-questions-for-server-2003
 
Active Directory Site And Services.pdf
Active Directory Site And Services.pdfActive Directory Site And Services.pdf
Active Directory Site And Services.pdf
 
Active Directory Site And Services.pdf
Active Directory Site And Services.pdfActive Directory Site And Services.pdf
Active Directory Site And Services.pdf
 
Final domain control policy
Final domain control policy  Final domain control policy
Final domain control policy
 
What is active directory
What is active directoryWhat is active directory
What is active directory
 
Activedirecotryfundamentals
ActivedirecotryfundamentalsActivedirecotryfundamentals
Activedirecotryfundamentals
 
network administration directory access and remote access
network administration directory access and remote accessnetwork administration directory access and remote access
network administration directory access and remote access
 
Windows server Interview question and answers
Windows server Interview question and answersWindows server Interview question and answers
Windows server Interview question and answers
 
Active directory
Active directoryActive directory
Active directory
 
Describe- manage- and install Active Directory replication- federation.docx
Describe- manage- and install Active Directory replication- federation.docxDescribe- manage- and install Active Directory replication- federation.docx
Describe- manage- and install Active Directory replication- federation.docx
 
Proposal For Their Integration Of Windows Server
Proposal For Their Integration Of Windows ServerProposal For Their Integration Of Windows Server
Proposal For Their Integration Of Windows Server
 
Active directory slides
Active directory slidesActive directory slides
Active directory slides
 

Recently uploaded

Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdfFraming an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdfUjwalaBharambe
 
MICROBIOLOGY biochemical test detailed.pptx
MICROBIOLOGY biochemical test detailed.pptxMICROBIOLOGY biochemical test detailed.pptx
MICROBIOLOGY biochemical test detailed.pptxabhijeetpadhi001
 
DATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersDATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersSabitha Banu
 
Capitol Tech U Doctoral Presentation - April 2024.pptx
Capitol Tech U Doctoral Presentation - April 2024.pptxCapitol Tech U Doctoral Presentation - April 2024.pptx
Capitol Tech U Doctoral Presentation - April 2024.pptxCapitolTechU
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Celine George
 
Full Stack Web Development Course for Beginners
Full Stack Web Development Course  for BeginnersFull Stack Web Development Course  for Beginners
Full Stack Web Development Course for BeginnersSabitha Banu
 
Gas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxGas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxDr.Ibrahim Hassaan
 
ECONOMIC CONTEXT - LONG FORM TV DRAMA - PPT
ECONOMIC CONTEXT - LONG FORM TV DRAMA - PPTECONOMIC CONTEXT - LONG FORM TV DRAMA - PPT
ECONOMIC CONTEXT - LONG FORM TV DRAMA - PPTiammrhaywood
 
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...Marc Dusseiller Dusjagr
 
Blooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxBlooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxUnboundStockton
 
Computed Fields and api Depends in the Odoo 17
Computed Fields and api Depends in the Odoo 17Computed Fields and api Depends in the Odoo 17
Computed Fields and api Depends in the Odoo 17Celine George
 
CELL CYCLE Division Science 8 quarter IV.pptx
CELL CYCLE Division Science 8 quarter IV.pptxCELL CYCLE Division Science 8 quarter IV.pptx
CELL CYCLE Division Science 8 quarter IV.pptxJiesonDelaCerna
 
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdfEnzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdfSumit Tiwari
 
Historical philosophical, theoretical, and legal foundations of special and i...
Historical philosophical, theoretical, and legal foundations of special and i...Historical philosophical, theoretical, and legal foundations of special and i...
Historical philosophical, theoretical, and legal foundations of special and i...jaredbarbolino94
 
EPANDING THE CONTENT OF AN OUTLINE using notes.pptx
EPANDING THE CONTENT OF AN OUTLINE using notes.pptxEPANDING THE CONTENT OF AN OUTLINE using notes.pptx
EPANDING THE CONTENT OF AN OUTLINE using notes.pptxRaymartEstabillo3
 
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfLike-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfMr Bounab Samir
 
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdfssuser54595a
 
Crayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon ACrayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon AUnboundStockton
 

Recently uploaded (20)

Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdfFraming an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
Framing an Appropriate Research Question 6b9b26d93da94caf993c038d9efcdedb.pdf
 
MICROBIOLOGY biochemical test detailed.pptx
MICROBIOLOGY biochemical test detailed.pptxMICROBIOLOGY biochemical test detailed.pptx
MICROBIOLOGY biochemical test detailed.pptx
 
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdfTataKelola dan KamSiber Kecerdasan Buatan v022.pdf
TataKelola dan KamSiber Kecerdasan Buatan v022.pdf
 
DATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginnersDATA STRUCTURE AND ALGORITHM for beginners
DATA STRUCTURE AND ALGORITHM for beginners
 
Capitol Tech U Doctoral Presentation - April 2024.pptx
Capitol Tech U Doctoral Presentation - April 2024.pptxCapitol Tech U Doctoral Presentation - April 2024.pptx
Capitol Tech U Doctoral Presentation - April 2024.pptx
 
Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17Difference Between Search & Browse Methods in Odoo 17
Difference Between Search & Browse Methods in Odoo 17
 
Full Stack Web Development Course for Beginners
Full Stack Web Development Course  for BeginnersFull Stack Web Development Course  for Beginners
Full Stack Web Development Course for Beginners
 
Gas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptxGas measurement O2,Co2,& ph) 04/2024.pptx
Gas measurement O2,Co2,& ph) 04/2024.pptx
 
ECONOMIC CONTEXT - LONG FORM TV DRAMA - PPT
ECONOMIC CONTEXT - LONG FORM TV DRAMA - PPTECONOMIC CONTEXT - LONG FORM TV DRAMA - PPT
ECONOMIC CONTEXT - LONG FORM TV DRAMA - PPT
 
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
“Oh GOSH! Reflecting on Hackteria's Collaborative Practices in a Global Do-It...
 
Blooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docxBlooming Together_ Growing a Community Garden Worksheet.docx
Blooming Together_ Growing a Community Garden Worksheet.docx
 
Computed Fields and api Depends in the Odoo 17
Computed Fields and api Depends in the Odoo 17Computed Fields and api Depends in the Odoo 17
Computed Fields and api Depends in the Odoo 17
 
CELL CYCLE Division Science 8 quarter IV.pptx
CELL CYCLE Division Science 8 quarter IV.pptxCELL CYCLE Division Science 8 quarter IV.pptx
CELL CYCLE Division Science 8 quarter IV.pptx
 
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdfEnzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
Enzyme, Pharmaceutical Aids, Miscellaneous Last Part of Chapter no 5th.pdf
 
Historical philosophical, theoretical, and legal foundations of special and i...
Historical philosophical, theoretical, and legal foundations of special and i...Historical philosophical, theoretical, and legal foundations of special and i...
Historical philosophical, theoretical, and legal foundations of special and i...
 
EPANDING THE CONTENT OF AN OUTLINE using notes.pptx
EPANDING THE CONTENT OF AN OUTLINE using notes.pptxEPANDING THE CONTENT OF AN OUTLINE using notes.pptx
EPANDING THE CONTENT OF AN OUTLINE using notes.pptx
 
Model Call Girl in Bikash Puri Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Bikash Puri  Delhi reach out to us at 🔝9953056974🔝Model Call Girl in Bikash Puri  Delhi reach out to us at 🔝9953056974🔝
Model Call Girl in Bikash Puri Delhi reach out to us at 🔝9953056974🔝
 
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdfLike-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
Like-prefer-love -hate+verb+ing & silent letters & citizenship text.pdf
 
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
18-04-UA_REPORT_MEDIALITERAСY_INDEX-DM_23-1-final-eng.pdf
 
Crayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon ACrayon Activity Handout For the Crayon A
Crayon Activity Handout For the Crayon A
 

Active Directory

  • 1. FABRIKAM ACTIVE DIRECTORY D E V E L O P E D B Y M I C R O S O F T F O R W I N D O W S D O M A I N
  • 2. FABRIKAM 2 A server running the Active Directory Domain Service (AD DS) role is called a domain controller. It authenticates and authorizes all users and computers in a Windows domain type network, assigning and enforcing security policies for all computers, and installing or updating software. ACTIVE DIRECTORY SERVICES Active Directory Services consist of multiple directory services. The best known is Active Directory Domain Services, commonly abbreviated as AD DS or simply AD.
  • 3. FABRIKAM 3 HISTORY Microsoft previewed Active Directory in 1999, released it first with Windows 2000 Server edition, and revised it to extend functionality and improve administration in Windows Server 2003. Active Directory support was also added to Windows 95, Windows 98 and Windows NT 4.0 via patch, with some features being unsupported. Additional improvements came with subsequent versions of Windows Server. In Windows Server 2008, additional services were added to Active Directory, such as Active Directory Federation Services. The part of the directory in charge of management of domains, which was previously a core part of the operating system, was renamed Active Directory Domain Services (ADDS) and became a server role like others. "Active Directory" became the umbrella title of a broader range of directory-based services. According to Byron Hynes, everything related to identity was brought under Active Directory's banner.
  • 4. FABRIKAM 4 Active Directory Services Domain Services Active Directory Domain Services (AD DS) is the foundation stone of every Windows domain network. It stores information about members of the domain, including devices and users, verifies their credentials and defines their access rights. Lightweight Directory Services Active Directory Lightweight Directory Services (AD LDS), formerly known as Active Directory Application Mode (ADAM), is an implementation of LDAP protocol for AD DS. AD LDS runs as a service on Windows Server. Certificate Services Active Directory Certificate Services (AD CS) establishes an on- premises public key infrastructure. It can create, validate and revoke public key certificates for internal uses of an organization. Federation Services Active Directory Federation Services (AD FS) is a single sign-on service. With an AD FS infrastructure in place, users may use several web-based services (e.g. internet forum, blog, online shopping, webmail) or network resources using only one set of credentials stored at a central location, as opposed to having to be granted a dedicated set of credentials for each service.
  • 5. FABRIKAM 5 Logical structure As a directory service, an Active Directory instance consists of a database and corresponding executable code responsible for servicing requests and maintaining the database.
  • 6. FABRIKAM FABRIKAM 6 Objects - Active Directory structures are arrangements of information about objects. The objects fall into two broad categories: resources (e.g., printers) and security principals (user or computer accounts and groups). Security principals are assigned unique security identifiers (SIDs). Forest, trees and domains - The Active Directory framework that holds the objects can be viewed at a number of levels. The forest, tree, and domain are the logical divisions in an Active Directory network. Organizational units - The objects held within a domain can be grouped into organizational units (OUs). OUs can provide hierarchy to a domain, ease its administration, and can resemble the organization's structure in managerial or geographical terms. OUs can contain other OUs—domains are containers in this sense. Shadow groups - Active Directory requires a separate step for an administrator to assign an object in an OU as a member of a group also within that OU. Relying on OU location alone to determine access permissions is unreliable, because the object may not have been assigned to the group object for that OU. Partitions - The Active Directory database is organized in partitions, each holding specific object types and following a specific replication pattern. Logical Structure
  • 7. FABRIKAM 7 Physical Structure Physically, the Active Directory information is held on one or more peer domain controllers, replacing the NT PDC/BDC model. Each DC has a copy of the Active Directory. Servers joined to Active Directory that are not domain controllers are called Member Servers.
  • 8. FABRIKAM FABRIKAM 8 Replication - Active Directory synchronizes changes using multi-master replication.] Replication by default is 'pull' rather than 'push', meaning that replicas pull changes from the server where the change was effected. Implementation - In general, a network utilizing Active Directory has more than one licensed Windows server computer. Backup and restore of Active Directory is possible for a network with a single domain controller, but Microsoft recommends more than one domain controller to provide automatic failover protection of the directory. Database - The Active-Directory database, the directory store, in Windows 2000 Server uses the JET Blue - based Extensible Storage Engine (ESE98) and is limited to 16 terabytes and 2 billion objects (but only 1 billion security principals) in each domain controller's database. Microsoft has created NTDS databases with more than 2 billion objects. Trusting To allow users in one domain to access resources in another, Active Directory uses trusts. Trusts inside a forest are automatically created when domains are created. The forest sets the default boundaries of trust, and implicit, transitive trust is automatic for all domains within a forest. Physical Structure
  • 9. FABRIKAM QUIZ 1. It authenticates and authorizes all users and computers in a Windows domain type network, assigning and enforcing security policies for all computers, and installing or updating software. 2. It stores information about members of the domain, including devices and users, verifies their credentials and defines their access rights. 3. It can create, validate and revoke public key certificates for internal uses of an organization. 4. With an AD FS infrastructure in place, users may use several web-based services (e.g. internet forum, blog, online shopping, webmail) or network resources using only one set of credentials stored at a central location, as opposed to having to be granted a dedicated set of credentials for each service. 5. As a directory service, an Active Directory instance consists of a database and corresponding executable code responsible for servicing requests and maintaining the database. 6. The Active Directory information is held on one or more peer domain controllers, replacing the NT PDC/BDC model. 7. The Active Directory framework that holds the objects can be viewed at a number of levels. 8. Active Directory requires a separate step for an administrator to assign an object in an OU as a member of a group also within that OU. 9. In general, a network utilizing Active Directory has more than one licensed Windows server computer. 10.Its allow users in one domain to access resources in another, Active Directory.
  • 10. FABRIKAM ANSWERS: 1. ACTIVE DIRECTORY 2. DOMAIN SERVICES 3. CERTIFICATE SERVICES 4. FEDERATION SERVICES 5. LOGICAL STRUCTURE 6. PHYSICAL STRUCTURE 7. FOREST, TREES AND DOMAINS 8. SHADOW GROUPS 9. IMPLEMENTATION 10. TRUST