hardaware ,networking,firewall,router desktop,switch,server,nas,san,lan,wan software download ,animation knowledge all it and computer knowledge
Your custom script
Friday, 27 November 2015
Organizational Unit:An organizational unit (OU) is a
container used to organize objects within one domain into logical
administrative groups. An OU can contain objects such as user accounts, groups,
computers, printers, applications, shared folders, and other OUs from the same
domain. OUs are represented by a folder icon with a book inside. The Domain
Controllers OU is created by default when Active Directory is installed to hold
new Microsoft Windows Server 2003 domain controllers. OUs can be added to other
OUs to form a hierarchical structure; this process is known as nesting OUs.
Each domain has its own OU structure—the OU structure within a domain is
independent of the OU structures of other domains.There are three reasons for defining
an OU:
Q. What are the physical components of active directory? Logical Components of Active Directory
In creating the hierarchical database structure of Active Directory, Microsoft facilitated locating resources such as folders and printers by name rather than by physical location. These logical building blocks include domains, trees, forests, and OUs. The physical location of objects within Active Directory is represented by including all objects in a given location in its own site. Because a domain is the basic unit on which Active Directory is built, the domain is introduced first; followed by trees and forests (in which domains are located); and then OUs, which are containers located within a domain.
ACTIVE DIRECTERY-
Q. What is Active Directory?
Active Directory is the directory service used by Windows 2000. A directory
service is a centralized, hierarchical database that contains information about
users and resources on a network. In Windows 2000, this database is called the Active
Directory data store. The Active Directory data store contains information
about various types of network objects, including printers, shared folders,
user accounts, groups, and computers. In a Windows 2000 domain, a read/write
copy of the Active Directory data store is physically located on each domain
controller in the domain.
Three primary purposes of Active
Directory are:
- · To provide user logon and authentication services
- · To enable administrators to organize and manage user
accounts groups, and network resources
- · To enable authorized users to easily locate network
resources, regardless of where they are located on the network
A directory service consists
of two parts—a centralized, hierarchical database that contains information
about users and resources on a network, and a service that manages the database
and enables users of computers on the network to access the database. In
Windows 2008, the database is called the Active Directory data store, or
sometimes just the directory. The Active Directory data store contains
information about various types of network objects, including printers, shared
folders, user accounts, groups, and computers. Windows 2000 Server computers
that have a copy of the Active Directory data store, and that run Active
Directory are called domain controllers. In a Windows 2008 domain, a
read/write copy of the Active Directory data store is physically located on
each domain controller in the domain.
WHAT IS FOREST ?
Forests
A forest is a grouping or
hierarchical arrangement of one or more separate, completely independent domain
trees. As such, forests have the following characteristics:
- All domains in a forest share a common schema.
- All domains in a forest share a common global catalog.
- All domains in a forest are linked by implicit two-way
transitive trusts.
Trees in a forest have different
naming structures, according to their domains. Domains in a forest operate
independently, but the forest enables communication across the entire
organization.
WHAT IS TREE ?
Trees
A tree is a group of domains
that shares a contiguous namespace. In other words, a tree consists of a parent
domain plus one or more sets of child domains whose name reflects that of a
parent. For example, a parent domain named examcram.com can include child
domains with names such as products.examcram.com, sales.examcram.com, and
manufacturing.examcram.com. Furthermore, the tree structure can contain
grandchild domains such as america.sales.examcram.com or
europe.sales.examcram.com, and so on, as shown in Figure 1-2. A domain called
que.com would not belong to the same tree. Following the inverted tree concept
originated by X.500, the tree is structured with the parent domain at the top
and child domains beneath it. All domains in a tree are linked with two-way,
transitive trust relationships; in other words, accounts in any one domain can
access resources in another domain and vice versa.
WHAT IS DOMAIN ?
Domain:
A domain is a logical
grouping of networked computers in which one or more of the computers has one
or more shared resources, such as a shared folder or a shared printer, and in
which all of the computers share a common central domain directory database
that contains user account security information. One distinct advantage of
using a domain, particularly on a large network, is that administration of user
account security for the entire network can be managed from a centralized
location. In a domain, a user has only one user account, which is stored in the
domain directory database. This user account enables the user to access shared
resources (that the user has permissions to access) located on any computer in
the domain
Active Directory domains can hold
millions of objects, as opposed to the Windows NT domain structure, which was
limited to approximately 40,000 objects. As in previous versions of Active
Directory, the Active Directory database file (ntds.dit) defines the domain.
Each domain has its own ntds.dit file, which is stored on (and replicated
among) all domain controllers by a process called multimaster replication.
The domain controllers manage the configuration of domain security and store
the directory services database. This arrangement permits central administration
of domain account privileges, security, and network resources. Networked
devices and users belonging to a domain validate with a domain controller at
startup. All computers that refer to a specific set of domain controllers make
up the domain. In addition, group accounts such as global groups and domain
local groups are defined on a domain-wide basis.
Subscribe to:
Posts (Atom)
