SlideShare uma empresa Scribd logo
1 de 28
ACTIVE DIRECTORY
Active directory is single point of reference, called directory
services, to all the objects in a network, including users,
groups, computer, printer, polices and permissions.
For a user or an administrator AD provides a single hierarchical
View from which to access and manage all of the network
resources.
• AD utilizes ip protocol and standards like
ssl(secure socket layer), transport layer
security (tls) authentication, LDAP (Light
weight directory protocol, DNS
ACTIVE DIRECTOR and DNS
• Active directory uses the DNS.
• Dns domains are organise into a hierarchical
structure.
• Different level of dns identify computer,
organisational domain, and top level domain.
• DNS also maps host name i.e.(Fully qualified
name to IP ADDRESS.
• Fqn for airforce name PC IN DOMAIN Defence
with top level domain def is
airforce.defence.def
Core Unit Of AD
• DOMAINS
• TREE
• FOREST
• Oraganisational unit (OU)
DOMAIN
• Is a logical structure of AD.
i.e Office at Aahmedabad is a physical Object,
Office at Gandhinagar is a physical object, But at
Gandhinagar or Aahmendabad office we are
making a logial gruouping of
Users,groups,printers,polices,Faxes and
computers.
You can dicide your office computer network into
logical parts called domain depends upon your
requirment.
Domain
• Domain is the boundary of replication
: Domains within the AD replicate the information
about objects between domains
Objects like
Users
Groups
Contacts
OU
Computer
Domain
• Doman is the boundary of authentication
: Boundary of users account
Group permission
Resource Access
• Domain is the boundary of administration
Domain
• Domain is the boundary of DNS Name space
Dns service recordes in AD is the way of locating services
Computers in a domain defence is entered into daomin as
a.defence.def
b.defence.def
Child domain are entered as
Gandhi.defence.def
**Child domain takes their name from parent Domain
Computer in child domins are entered as
a.gandhi.defence.def
b.gandhi.defence.def
All domains have both domain name , Fully qulIFIED domain name and
Netbios name for NT4 PDC and BDC
Tree
• Tree is hiaeracy of domain desined is a way to match the
DNS structure.
• Tree share transit trust relationship between domain
i.e Users can access their resources in a domain where
they loged in, They can also access resouces in other
domain within tree if proper rights given.
They Share
Schema
configuration and
global Catlog
SCHEMA
• Schema is defination of object in AD
Objects in AD are
Users
Groups
Contacts etc
These all objects are made from common object
defination schema
All domains within tree has to aggree with this
common schema.
Configuration
• Domains within tree share the
configuration between them i.e Information
about users, groups, resources etc
Each domain knows about other domain
and their objects.
Global Catlog
• Global catlog is the centar repositary it
contains the reference to all objects in
AD.
• Define a new tree with DCPROMO
FOREST
• When we create a single domain a forest is created
• Within forest we can create multiple child domains or
trees with continguous namespace
airforce.def
a.airforce.def
Gandhi.airforce.def
• Within forest we can create multiple trees with disjoined
namespace
airforce.def airforce.edu
a.airforce.def a.airforce.edu
Forest
• All domains within forest share transit trust
relationship
• All domain in forest share
Common Schema
Configuration
Global Catlog
Organisational Unit
• OU are containers within Domain
They contain objects of domain
You can create an Oraganisational unit to
organise users , computers or groups etc.
For example
You can create a OU for sales team to
manage sales team employe and their
computers
Organisational Unit
• Distint unit of administration
You can delegate the administrative rights for
administrating OU
In windows NT if you want to give administration
rights on some objects of domain to any
particular you have to make him domain
administrator but in windows 2003 you can
create OU delegare administrative rights on that
particular OU to concern autherity.
Organisational Unit
• OU are unique to domain.
i.e OU can be container for objects of
domain in which OU is created
1)OU can be created to Manage users and
computer
2)you can create group policy and apply on
3)Delegae administration using OU
Demostration
Logical Objects
Active directory domain,tree,and forest
Users,groups and OU
Create new tree in AD using DCPROMO
Active DIRECTORY
• When we promote Server DOMAIN
WE ACTUALLY install Active directory database.
Database file name is NTDS.dit
dit--(Directory information tree)
AD database is divided into four parts
Domain --Users,groups,computer
Schema --Object defination
Configuration –Configutaion of domins
Application --Aapplications like DNS
while in windows 2000 AD Database is divided into three parts
Domain --uSERS, groups , computers, DNS
Schema
Configuration
Replication Model
• IN windows nt Replication is done
between PDC to BDC
Known as Single master replication model
• In Wwindows 2003 all domain replicate
between each other
known as Multiple master replication
Site
• A site is a well connected IP Subnet
i.e if all subnets in a Network are connected
through well connected network like LAN
(10/100/1000 ETHERNET) than we can treate or
create it as single site
For example : If there is one office at ahmedabad
and one at Gandhinagar connected by modem
we can treate each as a different site
If we are having two offices at gandhinagar
connected by lease line of 10 mbps than we can
treate theis two offices as single site
Domain Vs Site
• Domain is logical concept
• Site is physical concept
• A site can contain multiple domain
• Now two site can have single domain
Because sites are connected through
expensive low speed network there is no
point is forwarding authentication process
over such a slow and expensive network.
site
• Site provides local logon services and
Distributed file system (DFS)
• REPLICATION: Replication between all
domins in a site and during off hours
between sites.
• Group Policy: Site level group policy
Site Requirment
• Member ship in enterprise admin group i.e. admin rights
on forest
• Unique IP Subnet range or ranges i.e. two different site
must be on different subnet or subntes
• Every site must have at least one domain controller
• Inter site transport : Sites are connected with each other
with low speed network they USE
IP OR SMTP protocl to replicate.
IP is more traffice Insentive and SMTP is 25 % less
traffice consumin than IP but is processor hungry
Global Catlog
• Prtial replica of all the object in forest :
Each site must have one global catlog ,it contains the
refference of all objects in a forest only reference not the
complete information of object . This refference will help
AD TO LOCATE THE object fast.
GC also known as cetral repository
• Configurable subset of Aattributes : You can select what
attributes to be send to GC as refference for an object.
• These attributes will help AD to locate objects fast forest
wide search.
• Required for logon univarsal group membership: Global
catlog is require for logon authentication that’s why each
site must have a GC.
GC
Gc is required if a site has more than 100
users
If there is relibel lease line connectivity
(Means good network connectivity
between two Physically saprate site than
we may not require GC AT BOTH SITE.
If there is no GC Dependent server like
exchange server we may avoid keeping
GC AT that particular site
Demostration
• Site and global catlog
• Creating a site , gc

Mais conteúdo relacionado

Mais procurados (19)

Big data
Big dataBig data
Big data
 
Introduction
IntroductionIntroduction
Introduction
 
Giraffa - November 2014
Giraffa - November 2014Giraffa - November 2014
Giraffa - November 2014
 
Hadoop Distributed File System
Hadoop Distributed File SystemHadoop Distributed File System
Hadoop Distributed File System
 
Meet Hadoop Family: part 1
Meet Hadoop Family: part 1Meet Hadoop Family: part 1
Meet Hadoop Family: part 1
 
Hadoop HDFS Concepts
Hadoop HDFS ConceptsHadoop HDFS Concepts
Hadoop HDFS Concepts
 
HDFS Architecture
HDFS ArchitectureHDFS Architecture
HDFS Architecture
 
Lecture 2 part 1
Lecture 2 part 1Lecture 2 part 1
Lecture 2 part 1
 
Introduction to HDFS
Introduction to HDFSIntroduction to HDFS
Introduction to HDFS
 
Apache hadoop basics
Apache hadoop basicsApache hadoop basics
Apache hadoop basics
 
Hadoop training in bangalore
Hadoop training in bangaloreHadoop training in bangalore
Hadoop training in bangalore
 
Sector Vs Hadoop
Sector Vs HadoopSector Vs Hadoop
Sector Vs Hadoop
 
Seminar ppt
Seminar pptSeminar ppt
Seminar ppt
 
HADOOP
HADOOPHADOOP
HADOOP
 
Tutorial Haddop 2.3
Tutorial Haddop 2.3Tutorial Haddop 2.3
Tutorial Haddop 2.3
 
Hdfs architecture
Hdfs architectureHdfs architecture
Hdfs architecture
 
Hadoop distributed file system
Hadoop distributed file systemHadoop distributed file system
Hadoop distributed file system
 
Hadoop HDFS Concepts
Hadoop HDFS ConceptsHadoop HDFS Concepts
Hadoop HDFS Concepts
 
HDFS Tiered Storage
HDFS Tiered StorageHDFS Tiered Storage
HDFS Tiered Storage
 

Destaque

[Maths] algebra
[Maths] algebra[Maths] algebra
[Maths] algebraOurutopy
 
[Maths] arithmetic
[Maths] arithmetic[Maths] arithmetic
[Maths] arithmeticOurutopy
 
Mutia Rizqa Firdiah (25010112140145 kls B 2012) Biomol
Mutia Rizqa Firdiah (25010112140145 kls B 2012) BiomolMutia Rizqa Firdiah (25010112140145 kls B 2012) Biomol
Mutia Rizqa Firdiah (25010112140145 kls B 2012) BiomolMutia Rizqa Ofir
 
XING - Das Businessnetzwerk (Die Profil-Optimierung)
XING - Das Businessnetzwerk (Die Profil-Optimierung)XING - Das Businessnetzwerk (Die Profil-Optimierung)
XING - Das Businessnetzwerk (Die Profil-Optimierung)Sascha Tams
 
A/B test case study - Hoe wij de conversie met 19,8% hebben verhoogd
A/B test case study - Hoe wij de conversie met 19,8% hebben verhoogdA/B test case study - Hoe wij de conversie met 19,8% hebben verhoogd
A/B test case study - Hoe wij de conversie met 19,8% hebben verhoogdMark van den Ing
 
Potensi Bahaya di Magelang
Potensi Bahaya di MagelangPotensi Bahaya di Magelang
Potensi Bahaya di MagelangMutia Rizqa Ofir
 
25010112140145 Mutia Rizqa Firdiah_SPSS
25010112140145 Mutia Rizqa Firdiah_SPSS25010112140145 Mutia Rizqa Firdiah_SPSS
25010112140145 Mutia Rizqa Firdiah_SPSSMutia Rizqa Ofir
 
Epg kelompKAITAN FAKTOR SOSIAL BUDAYA & PENDIDIKAN YANG MEMPENGARUHI GIZI BU...
Epg kelompKAITAN  FAKTOR SOSIAL BUDAYA & PENDIDIKAN YANG MEMPENGARUHI GIZI BU...Epg kelompKAITAN  FAKTOR SOSIAL BUDAYA & PENDIDIKAN YANG MEMPENGARUHI GIZI BU...
Epg kelompKAITAN FAKTOR SOSIAL BUDAYA & PENDIDIKAN YANG MEMPENGARUHI GIZI BU...Mutia Rizqa Ofir
 
Cleaning method statements 2004 uk
Cleaning method statements 2004 ukCleaning method statements 2004 uk
Cleaning method statements 2004 ukManel Ferreira
 
tanggap darurat bencana tsunami
tanggap darurat bencana tsunamitanggap darurat bencana tsunami
tanggap darurat bencana tsunamiMutia Rizqa Ofir
 
Algebra equations & inequalities
Algebra equations & inequalitiesAlgebra equations & inequalities
Algebra equations & inequalitiesOurutopy
 
WP7 HUB_Introducción a Silverlight
WP7 HUB_Introducción a SilverlightWP7 HUB_Introducción a Silverlight
WP7 HUB_Introducción a SilverlightMICTT Palma
 
WP7 HUB_Platform overview
WP7 HUB_Platform overviewWP7 HUB_Platform overview
WP7 HUB_Platform overviewMICTT Palma
 
Ingles kiki isabel
Ingles kiki isabelIngles kiki isabel
Ingles kiki isabelsextobasica
 
Material modulo04 asf6501(6425-a_01)
Material   modulo04 asf6501(6425-a_01)Material   modulo04 asf6501(6425-a_01)
Material modulo04 asf6501(6425-a_01)JSantanderQ
 
Material modulo03 asf6501(6425-b_02)
Material   modulo03 asf6501(6425-b_02)Material   modulo03 asf6501(6425-b_02)
Material modulo03 asf6501(6425-b_02)JSantanderQ
 
Material modulo01 asf6501(6419-a_01)
Material   modulo01 asf6501(6419-a_01)Material   modulo01 asf6501(6419-a_01)
Material modulo01 asf6501(6419-a_01)JSantanderQ
 

Destaque (20)

[Maths] algebra
[Maths] algebra[Maths] algebra
[Maths] algebra
 
Analisis bahaya
Analisis bahaya Analisis bahaya
Analisis bahaya
 
[Maths] arithmetic
[Maths] arithmetic[Maths] arithmetic
[Maths] arithmetic
 
Mutia Rizqa Firdiah (25010112140145 kls B 2012) Biomol
Mutia Rizqa Firdiah (25010112140145 kls B 2012) BiomolMutia Rizqa Firdiah (25010112140145 kls B 2012) Biomol
Mutia Rizqa Firdiah (25010112140145 kls B 2012) Biomol
 
XING - Das Businessnetzwerk (Die Profil-Optimierung)
XING - Das Businessnetzwerk (Die Profil-Optimierung)XING - Das Businessnetzwerk (Die Profil-Optimierung)
XING - Das Businessnetzwerk (Die Profil-Optimierung)
 
A/B test case study - Hoe wij de conversie met 19,8% hebben verhoogd
A/B test case study - Hoe wij de conversie met 19,8% hebben verhoogdA/B test case study - Hoe wij de conversie met 19,8% hebben verhoogd
A/B test case study - Hoe wij de conversie met 19,8% hebben verhoogd
 
Qué es un servicio
Qué es un servicioQué es un servicio
Qué es un servicio
 
Potensi Bahaya di Magelang
Potensi Bahaya di MagelangPotensi Bahaya di Magelang
Potensi Bahaya di Magelang
 
25010112140145 Mutia Rizqa Firdiah_SPSS
25010112140145 Mutia Rizqa Firdiah_SPSS25010112140145 Mutia Rizqa Firdiah_SPSS
25010112140145 Mutia Rizqa Firdiah_SPSS
 
Epg kelompKAITAN FAKTOR SOSIAL BUDAYA & PENDIDIKAN YANG MEMPENGARUHI GIZI BU...
Epg kelompKAITAN  FAKTOR SOSIAL BUDAYA & PENDIDIKAN YANG MEMPENGARUHI GIZI BU...Epg kelompKAITAN  FAKTOR SOSIAL BUDAYA & PENDIDIKAN YANG MEMPENGARUHI GIZI BU...
Epg kelompKAITAN FAKTOR SOSIAL BUDAYA & PENDIDIKAN YANG MEMPENGARUHI GIZI BU...
 
Cleaning method statements 2004 uk
Cleaning method statements 2004 ukCleaning method statements 2004 uk
Cleaning method statements 2004 uk
 
tanggap darurat bencana tsunami
tanggap darurat bencana tsunamitanggap darurat bencana tsunami
tanggap darurat bencana tsunami
 
Algebra equations & inequalities
Algebra equations & inequalitiesAlgebra equations & inequalities
Algebra equations & inequalities
 
WP7 HUB_Introducción a Silverlight
WP7 HUB_Introducción a SilverlightWP7 HUB_Introducción a Silverlight
WP7 HUB_Introducción a Silverlight
 
WP7 HUB_Platform overview
WP7 HUB_Platform overviewWP7 HUB_Platform overview
WP7 HUB_Platform overview
 
Ingles kiki isabel
Ingles kiki isabelIngles kiki isabel
Ingles kiki isabel
 
Material modulo04 asf6501(6425-a_01)
Material   modulo04 asf6501(6425-a_01)Material   modulo04 asf6501(6425-a_01)
Material modulo04 asf6501(6425-a_01)
 
Material modulo03 asf6501(6425-b_02)
Material   modulo03 asf6501(6425-b_02)Material   modulo03 asf6501(6425-b_02)
Material modulo03 asf6501(6425-b_02)
 
Material modulo01 asf6501(6419-a_01)
Material   modulo01 asf6501(6419-a_01)Material   modulo01 asf6501(6419-a_01)
Material modulo01 asf6501(6419-a_01)
 
Ad ds ws2008 r2
Ad ds ws2008 r2Ad ds ws2008 r2
Ad ds ws2008 r2
 

Semelhante a Active directory

Directory Services Nma Unit-1
Directory Services Nma Unit-1Directory Services Nma Unit-1
Directory Services Nma Unit-1GPAPassedStudents
 
What is active directory
What is active directoryWhat is active directory
What is active directoryrajasekar1712
 
Active-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxActive-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxJavedAjmal1
 
Active directory interview_questions
Active directory interview_questionsActive directory interview_questions
Active directory interview_questionssubhashmr
 
Active directory interview_questions
Active directory interview_questionsActive directory interview_questions
Active directory interview_questionsUmesh Sawant
 
Security and LDAP integration in InduSoft Web Studio
Security and LDAP integration in InduSoft Web StudioSecurity and LDAP integration in InduSoft Web Studio
Security and LDAP integration in InduSoft Web StudioAVEVA
 
09 - Active Directory.ppt
09 - Active Directory.ppt09 - Active Directory.ppt
09 - Active Directory.pptssuserf7cd2b
 
Active Directory Domain Services.pptx
Active Directory Domain Services.pptxActive Directory Domain Services.pptx
Active Directory Domain Services.pptxsyedasadraza13
 
Directory services by SAJID
Directory services by SAJIDDirectory services by SAJID
Directory services by SAJIDSajid khan
 
02-Active Directory Domain Services.pptx
02-Active Directory Domain Services.pptx02-Active Directory Domain Services.pptx
02-Active Directory Domain Services.pptxAdiWidyanto2
 
Active-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxActive-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxMeriemBalhaddad
 
Active directory installation windows 2003 1
Active directory installation windows 2003 1Active directory installation windows 2003 1
Active directory installation windows 2003 1tameemyousaf
 
Windows Network concepts
Windows Network conceptsWindows Network concepts
Windows Network conceptsDuressa Teshome
 
Server interview[1]
Server interview[1]Server interview[1]
Server interview[1]sourav nanda
 

Semelhante a Active directory (20)

Directory Services Nma Unit-1
Directory Services Nma Unit-1Directory Services Nma Unit-1
Directory Services Nma Unit-1
 
What is active directory
What is active directoryWhat is active directory
What is active directory
 
Active-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxActive-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptx
 
Active directory interview_questions
Active directory interview_questionsActive directory interview_questions
Active directory interview_questions
 
Active directory interview_questions
Active directory interview_questionsActive directory interview_questions
Active directory interview_questions
 
Active directoryfinal
Active directoryfinalActive directoryfinal
Active directoryfinal
 
Security and LDAP integration in InduSoft Web Studio
Security and LDAP integration in InduSoft Web StudioSecurity and LDAP integration in InduSoft Web Studio
Security and LDAP integration in InduSoft Web Studio
 
09 - Active Directory.ppt
09 - Active Directory.ppt09 - Active Directory.ppt
09 - Active Directory.ppt
 
Active Directory
Active Directory Active Directory
Active Directory
 
Active Directory Domain Services.pptx
Active Directory Domain Services.pptxActive Directory Domain Services.pptx
Active Directory Domain Services.pptx
 
Active directory slides
Active directory slidesActive directory slides
Active directory slides
 
Final domain control policy
Final domain control policy  Final domain control policy
Final domain control policy
 
Directory services by SAJID
Directory services by SAJIDDirectory services by SAJID
Directory services by SAJID
 
70 640 Lesson01 Ppt 041009
70 640 Lesson01 Ppt 04100970 640 Lesson01 Ppt 041009
70 640 Lesson01 Ppt 041009
 
02-Active Directory Domain Services.pptx
02-Active Directory Domain Services.pptx02-Active Directory Domain Services.pptx
02-Active Directory Domain Services.pptx
 
Active Directory Training
Active Directory TrainingActive Directory Training
Active Directory Training
 
Active-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptxActive-Directory-Domain-Services.pptx
Active-Directory-Domain-Services.pptx
 
Active directory installation windows 2003 1
Active directory installation windows 2003 1Active directory installation windows 2003 1
Active directory installation windows 2003 1
 
Windows Network concepts
Windows Network conceptsWindows Network concepts
Windows Network concepts
 
Server interview[1]
Server interview[1]Server interview[1]
Server interview[1]
 

Último

Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Mattias Andersson
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024The Digital Insurer
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 3652toLead Limited
 
Leverage Zilliz Serverless - Up to 50X Saving for Your Vector Storage Cost
Leverage Zilliz Serverless - Up to 50X Saving for Your Vector Storage CostLeverage Zilliz Serverless - Up to 50X Saving for Your Vector Storage Cost
Leverage Zilliz Serverless - Up to 50X Saving for Your Vector Storage CostZilliz
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Patryk Bandurski
 
Commit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyCommit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyAlfredo García Lavilla
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Scott Keck-Warren
 
The Future of Software Development - Devin AI Innovative Approach.pdf
The Future of Software Development - Devin AI Innovative Approach.pdfThe Future of Software Development - Devin AI Innovative Approach.pdf
The Future of Software Development - Devin AI Innovative Approach.pdfSeasiaInfotech2
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenHervé Boutemy
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machinePadma Pradeep
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupFlorian Wilhelm
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek SchlawackFwdays
 
Powerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time ClashPowerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time Clashcharlottematthew16
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfAddepto
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxhariprasad279825
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsMiki Katsuragi
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsMemoori
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024Stephanie Beckett
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebUiPathCommunity
 

Último (20)

Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?Are Multi-Cloud and Serverless Good or Bad?
Are Multi-Cloud and Serverless Good or Bad?
 
My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024My INSURER PTE LTD - Insurtech Innovation Award 2024
My INSURER PTE LTD - Insurtech Innovation Award 2024
 
Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365Ensuring Technical Readiness For Copilot in Microsoft 365
Ensuring Technical Readiness For Copilot in Microsoft 365
 
Leverage Zilliz Serverless - Up to 50X Saving for Your Vector Storage Cost
Leverage Zilliz Serverless - Up to 50X Saving for Your Vector Storage CostLeverage Zilliz Serverless - Up to 50X Saving for Your Vector Storage Cost
Leverage Zilliz Serverless - Up to 50X Saving for Your Vector Storage Cost
 
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
Integration and Automation in Practice: CI/CD in Mule Integration and Automat...
 
Commit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easyCommit 2024 - Secret Management made easy
Commit 2024 - Secret Management made easy
 
Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024Advanced Test Driven-Development @ php[tek] 2024
Advanced Test Driven-Development @ php[tek] 2024
 
The Future of Software Development - Devin AI Innovative Approach.pdf
The Future of Software Development - Devin AI Innovative Approach.pdfThe Future of Software Development - Devin AI Innovative Approach.pdf
The Future of Software Development - Devin AI Innovative Approach.pdf
 
DevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache MavenDevoxxFR 2024 Reproducible Builds with Apache Maven
DevoxxFR 2024 Reproducible Builds with Apache Maven
 
Install Stable Diffusion in windows machine
Install Stable Diffusion in windows machineInstall Stable Diffusion in windows machine
Install Stable Diffusion in windows machine
 
Streamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project SetupStreamlining Python Development: A Guide to a Modern Project Setup
Streamlining Python Development: A Guide to a Modern Project Setup
 
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
"Subclassing and Composition – A Pythonic Tour of Trade-Offs", Hynek Schlawack
 
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptxE-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
E-Vehicle_Hacking_by_Parul Sharma_null_owasp.pptx
 
Powerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time ClashPowerpoint exploring the locations used in television show Time Clash
Powerpoint exploring the locations used in television show Time Clash
 
Gen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdfGen AI in Business - Global Trends Report 2024.pdf
Gen AI in Business - Global Trends Report 2024.pdf
 
Artificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptxArtificial intelligence in cctv survelliance.pptx
Artificial intelligence in cctv survelliance.pptx
 
Vertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering TipsVertex AI Gemini Prompt Engineering Tips
Vertex AI Gemini Prompt Engineering Tips
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial Buildings
 
What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024What's New in Teams Calling, Meetings and Devices March 2024
What's New in Teams Calling, Meetings and Devices March 2024
 
Dev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio WebDev Dives: Streamline document processing with UiPath Studio Web
Dev Dives: Streamline document processing with UiPath Studio Web
 

Active directory

  • 1. ACTIVE DIRECTORY Active directory is single point of reference, called directory services, to all the objects in a network, including users, groups, computer, printer, polices and permissions. For a user or an administrator AD provides a single hierarchical View from which to access and manage all of the network resources.
  • 2. • AD utilizes ip protocol and standards like ssl(secure socket layer), transport layer security (tls) authentication, LDAP (Light weight directory protocol, DNS
  • 3. ACTIVE DIRECTOR and DNS • Active directory uses the DNS. • Dns domains are organise into a hierarchical structure. • Different level of dns identify computer, organisational domain, and top level domain. • DNS also maps host name i.e.(Fully qualified name to IP ADDRESS. • Fqn for airforce name PC IN DOMAIN Defence with top level domain def is airforce.defence.def
  • 4. Core Unit Of AD • DOMAINS • TREE • FOREST • Oraganisational unit (OU)
  • 5. DOMAIN • Is a logical structure of AD. i.e Office at Aahmedabad is a physical Object, Office at Gandhinagar is a physical object, But at Gandhinagar or Aahmendabad office we are making a logial gruouping of Users,groups,printers,polices,Faxes and computers. You can dicide your office computer network into logical parts called domain depends upon your requirment.
  • 6. Domain • Domain is the boundary of replication : Domains within the AD replicate the information about objects between domains Objects like Users Groups Contacts OU Computer
  • 7. Domain • Doman is the boundary of authentication : Boundary of users account Group permission Resource Access • Domain is the boundary of administration
  • 8. Domain • Domain is the boundary of DNS Name space Dns service recordes in AD is the way of locating services Computers in a domain defence is entered into daomin as a.defence.def b.defence.def Child domain are entered as Gandhi.defence.def **Child domain takes their name from parent Domain Computer in child domins are entered as a.gandhi.defence.def b.gandhi.defence.def All domains have both domain name , Fully qulIFIED domain name and Netbios name for NT4 PDC and BDC
  • 9. Tree • Tree is hiaeracy of domain desined is a way to match the DNS structure. • Tree share transit trust relationship between domain i.e Users can access their resources in a domain where they loged in, They can also access resouces in other domain within tree if proper rights given. They Share Schema configuration and global Catlog
  • 10. SCHEMA • Schema is defination of object in AD Objects in AD are Users Groups Contacts etc These all objects are made from common object defination schema All domains within tree has to aggree with this common schema.
  • 11. Configuration • Domains within tree share the configuration between them i.e Information about users, groups, resources etc Each domain knows about other domain and their objects.
  • 12. Global Catlog • Global catlog is the centar repositary it contains the reference to all objects in AD.
  • 13. • Define a new tree with DCPROMO
  • 14. FOREST • When we create a single domain a forest is created • Within forest we can create multiple child domains or trees with continguous namespace airforce.def a.airforce.def Gandhi.airforce.def • Within forest we can create multiple trees with disjoined namespace airforce.def airforce.edu a.airforce.def a.airforce.edu
  • 15. Forest • All domains within forest share transit trust relationship • All domain in forest share Common Schema Configuration Global Catlog
  • 16. Organisational Unit • OU are containers within Domain They contain objects of domain You can create an Oraganisational unit to organise users , computers or groups etc. For example You can create a OU for sales team to manage sales team employe and their computers
  • 17. Organisational Unit • Distint unit of administration You can delegate the administrative rights for administrating OU In windows NT if you want to give administration rights on some objects of domain to any particular you have to make him domain administrator but in windows 2003 you can create OU delegare administrative rights on that particular OU to concern autherity.
  • 18. Organisational Unit • OU are unique to domain. i.e OU can be container for objects of domain in which OU is created 1)OU can be created to Manage users and computer 2)you can create group policy and apply on 3)Delegae administration using OU
  • 19. Demostration Logical Objects Active directory domain,tree,and forest Users,groups and OU Create new tree in AD using DCPROMO
  • 20. Active DIRECTORY • When we promote Server DOMAIN WE ACTUALLY install Active directory database. Database file name is NTDS.dit dit--(Directory information tree) AD database is divided into four parts Domain --Users,groups,computer Schema --Object defination Configuration –Configutaion of domins Application --Aapplications like DNS while in windows 2000 AD Database is divided into three parts Domain --uSERS, groups , computers, DNS Schema Configuration
  • 21. Replication Model • IN windows nt Replication is done between PDC to BDC Known as Single master replication model • In Wwindows 2003 all domain replicate between each other known as Multiple master replication
  • 22. Site • A site is a well connected IP Subnet i.e if all subnets in a Network are connected through well connected network like LAN (10/100/1000 ETHERNET) than we can treate or create it as single site For example : If there is one office at ahmedabad and one at Gandhinagar connected by modem we can treate each as a different site If we are having two offices at gandhinagar connected by lease line of 10 mbps than we can treate theis two offices as single site
  • 23. Domain Vs Site • Domain is logical concept • Site is physical concept • A site can contain multiple domain • Now two site can have single domain Because sites are connected through expensive low speed network there is no point is forwarding authentication process over such a slow and expensive network.
  • 24. site • Site provides local logon services and Distributed file system (DFS) • REPLICATION: Replication between all domins in a site and during off hours between sites. • Group Policy: Site level group policy
  • 25. Site Requirment • Member ship in enterprise admin group i.e. admin rights on forest • Unique IP Subnet range or ranges i.e. two different site must be on different subnet or subntes • Every site must have at least one domain controller • Inter site transport : Sites are connected with each other with low speed network they USE IP OR SMTP protocl to replicate. IP is more traffice Insentive and SMTP is 25 % less traffice consumin than IP but is processor hungry
  • 26. Global Catlog • Prtial replica of all the object in forest : Each site must have one global catlog ,it contains the refference of all objects in a forest only reference not the complete information of object . This refference will help AD TO LOCATE THE object fast. GC also known as cetral repository • Configurable subset of Aattributes : You can select what attributes to be send to GC as refference for an object. • These attributes will help AD to locate objects fast forest wide search. • Required for logon univarsal group membership: Global catlog is require for logon authentication that’s why each site must have a GC.
  • 27. GC Gc is required if a site has more than 100 users If there is relibel lease line connectivity (Means good network connectivity between two Physically saprate site than we may not require GC AT BOTH SITE. If there is no GC Dependent server like exchange server we may avoid keeping GC AT that particular site
  • 28. Demostration • Site and global catlog • Creating a site , gc