Microsoft Active Directory 2000/2003/2008: Active Directory Data Store:
NTDS.DIT
Windows Server 2008 Active Directory: <% System-Root %> \NTDS\ NTDS.DIT
WINDOWS\NTDS\NTDS.DIT
Active Directory, Identity and Access (IDA)
o Stores Information
Objects Active Directory - Directory Partitions:
Identities
Schema Partition
o Authenticate an Identity
o Control Access Configuration Partition
o Provide an Audit Trail Global Catalog
Active Directory Domain Services(Identity) AD DS Domain Naming Context
Active Directory Lightweight Directory Services
(Applications) AS LDS
Active Directory Certificate Services (Trust) AD CS
Microsoft Windows Server 2000/2003/2008:
Active Directory Right Management Services(Integrity) AD
RMS
Active Directory Federation Services (Partnership) AD FS Windows 2000 Operating Systems:
Windows 2000 Professional
Windows 2000 Server
New Active Directory Features in the Windows Server 2003 Family: Windows 2000 Advanced Server
Windows 2000 Datacenter Server
New System-Wide Active Directory Features:
Windows Server 2003 Product Editions:
Multiple selection of directory objects
Windows Server 2003, Web Edition
Drag-and-drop functionality
Windows Server 2003, Standard Edition
Efficient search capabilities
Windows Server 2003, Enterprise Edition
Saved queries
Windows Server 2003, Datacenter Edition
Active Directory command-line tools
InetOrgPerson class
Windows Server 2003 Product Versions:
Application directory partitions
32-bit Versions
Install additional domain controllers in existing domains
64-bit Versions
using backup media
Embedded Versions
Universal group membership caching
Domain functional levels Common Features:
Forest functional levels Plug and Play
Secure LDAP traffic New file system support - FAT32 & Encrypting File System
Active Directory quotas (EFS)
Power Options in Control Panel
New Change and Configuration Management Features:
Internet Explorer 5
File Management:
New Group Policy settings o Distributed file system (DFS) & Disk Quotas
Resultant Set of Policy capability Application Support:
Administrative template improvements o Application Support & Terminal Services
New command-line tools Multiprocessing, Multithreading, and Multitasking
Easier use of folder redirection Security:
Advanced software installation options o New security protocol - Kerberos version 5
Cross-forest support protocol
The Software Restriction Policies security area Users can gain access to any network
resource (that the user has permissions
to) with a single logon.
New Domain- and Forest-Wide Active Directory Features:
o Remote Authentication - Dial-In User Service
(RADIUS)
Domain controller renaming RADIUS is an industry standard
Domain renaming authentication service that provides
Forest restructuring centralized management of user
Forest trusts authentication and authorization for
Replication enhancements remote access servers.
User resource access control between domains and forests
Deactivating defunct schema objects Networking:
o Routing Information Protocol (RIP) version 2
Supporting dynamic auxiliary classes
o Open Shortest Path First (OSPF) routing
Tuning global catalog replication
o Asynchronous Transfer Mode (ATM)
Active Directory (AD) General Overviews and Concepts:
Microsoft Windows Server 2003
Windows Server 2003:
Manage Your Server
Enhanced Help & Support Center.
Enhanced Interface
Windows Server 2003 Product Editions
o Web Edition
Processors => 2
RAM => 2
o Standard Edition
Processors => 4
RAM => 4
o Enterprise Edition
Processors => 8
RAM => 32/64
8 Node Cluster
Network Load Balancing
Hot Add Memory
Non Uniform Memory Access
o Datacenter Edition
Processors => 32/64/128
RAM => 64/512
High Availability
Vender Only.
Windows Server 2008 Functional Levels:
Forest Functional Level
o Windows 2003 Forest Functional Level
o Windows 2008 Forest Functional Level
Domain Functional Level
o Windows 2000 Native Domain Functional Level
o Windows 2003 Domain Functional Level
o Windows 2008 Domain Functional Level
Ports-Protocols:
21 FTP
23 Telnet
25 SMTP
42 WINS
53 DNS
67 DHCP
80 HTTP
102 X.400 Massage Transfer Agent (MTA) Massage Handling
Systems (MHS)
110 POP 3
155 FTPS
119 Newsgroup
123 NTP
135 RPC
137 NetBIOS Name Service / WINS
143 IMAP4
161 SNMP
379 SRS
389 LDAP
443 HTTPS
445 AD/SMB (MWN)
636 LDAP-SSL
993 IMAP-SSL
1701 L2TP
1720 PPTP
3101 RIM (BES)
3389 RDP
8080 HTTP