02-Active Directory Domain Services
02-Active Directory Domain Services
02-Active Directory Domain Services
Virtual
Academy
• Overview of AD DS
• AD DS Physical Components
• AD DS Logical Components
Module 1: Overview of AD DS
• Protocol
• What is Authentication?
• What is Authorization?
• Why Deploy AD DS?
• Requirements for Installing AD DS
• Overview of AD DS and DNS
• Overview of AD DS Components
Protocol
• Kerberos
• Lightweight Directory Access Protocol (LDAP)
– Based on TCP/IP
– A method for accessing, searching, and modifying a
directory service
What is Authentication?
Authentication is the process of verifying a user’s identity on a network
AD DS features include:
• Centralized directory
• Integrated security
Requirements for Installing AD DS
Object Description
TCP/IP • Configure appropriate TCP/IP and DNS server addresses.
DNS Domain
Name
DNS
• Replication • Forests
• Trust
• AD DS Objects
Module 2: Overview of AD DS Physical Components
• Domain Controllers
• Global Catalog Servers
• Data Store
• Replication
Domain Controllers
A domain controller is a server with the AD DS server role installed that has
specifically been promoted to a domain controller
Domain controllers:
• Host a copy of the AD DS directory store
AD DS replication:
• Ensures that all domain controllers have the same information
• AD DS Schema
• The Basics: Domains
• The Basics: Trees
• The Basics: Forests
• The Basics: Organizational Units (OUs)
• Trusts
• AD DS Objects
What is the AD DS Schema?
The AD DS Schema:
• Defines every type of object that can be stored in the directory
• Enforces rules regarding object creation and configuration
Contoso.com
Domains:
• An administrative boundary for applying policies to groups of objects
emea.contoso.com na.contoso.com
A forest is a collection of
one or more domain trees
Trusts
Trusts provide a mechanism for users to gain access to resources in another domain
• Apply policies
AD DS Objects
Object Description
User • Enables network resource access for a user
Shared folders • Enables users to search for shared folders based on properties
Thanks for Watching!