01 Introduction To Active Directory and Network Infrastructure
01 Introduction To Active Directory and Network Infrastructure
: PPT/2K403/02
• Trust Relationships
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• Domains
• Trees
• Forests
• OUs
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Active
Active Directory
Directory
Objects
Objects
Printers
Attributes
Attributes
Printer1
Printer
Printer Name
Name
Printer Printer2
Printer Location
Location
Printers
Printers
Printer3 Attribute
Attribute
Value
Value
Users
Attributes
Attributes
First
First Name
Name Jane Doe
Last
Last Name
Name John Doe
Users
Users Logon
Logon Name
Name
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Objects
Objects Active Directory Schema Is:
• Dynamically Available
Class
Class Examples
Examples • Dynamically Updateable
• Protected by DACLs
Attribute
Attribute
Examples
Examples
Computers
Computers
Attributes
Attributesof
ofUsers
Users List
Listof
ofAttributes
Attributes
Might
MightContain:
Contain:
accountExpires
accountExpires accountExpires
accountExpires
department
department department
department
distinguishedName
Users
Users distinguishedName
distinguishedName distinguishedName
directReports
middleName
middleName directReports
dNSHostName
dNSHostName
operatingSystem
operatingSystem
repsFrom
repsFrom
repsTo
repsTo
Printers
Printers middleName
middleName
……
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Domains
9
r1 Replication
Replication r1
Us e Us e
r2 r2
Us e Us e
Windows
WindowsServer
Server2003
2003
Domain
Domain
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Trees
10
microsoft.com
uk.microsoft.com us.microsoft.com
sls.uk.microsoft.com
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Forests
11
microsoft.com msn.com
sls.uk.microsoft.com sls.uk.msn.com
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Organizational Units
12
microsoft.com
Orders OU
Admin
US
Computers
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Trust Relationships
13
Forest 1 Tree/Root
Tree/Root Forest
Forest Forest 2
Trust
Trust Trust
Trust
Parent/Child
Parent/Child
Trust
Trust Forest
Forest (root)
Domain D (root)
Shortcut
Shortcut Trust
Trust Realm
Realm External
External
Domain F Domain C Trust
Trust Trust
Trust
Kerberos Realm
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• Domain Controller
• Site
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Domain Controllers
15
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• Forest-Wide Roles
– Schema Master
• Domain-Wide Roles
– RID Master
– PDC Emulator
– Infrastructure Master
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Sites
18
Seattle
New York
Chicago
Los Angeles
IP subnet
Site
• Sites: IP subnet
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• Intra-site Replication
• Intersite Replication
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• Name Resolution
• Understanding DNS
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Name Resolution
21
• HOSTS Files
• LMHOSTS Files
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Understanding DNS
22
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
sales research
Root Domain
Top-Level Domain server1 server2
Second-Level Domain
Third-Level Domain
Host Names
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Types of Zones
24
• Standard Primary
• Standard Secondary
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Types Of Queries
25
• Forward Lookup
• Reverse Query
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• TCP/IP Architecture
• IP Addressing
• IP Routing
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
TCP/IP Architecture
28
Transport
TCP UDP
Layer
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
IP Addressing
29
• Public IP Addressing
• Private IP Addressing
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Public IP Address
30
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Private IP Address
31
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
IP Address Classes
32
D 224-239 1110
Reserved for Multicast Addressing
E 240-254 1111
Reserved for experimental use
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Class
ClassCCExample
Example
CIDR
CIDREntry
Entry
Network ID Subnet mask Subnet mask (binary)
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
IP Routing
34
• Static Routing
• Dynamic Routing
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• Dial-Up Networking
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
Dial-Up Networking
38
Remote Access
Server
Domain
Controller
Dial-up Client
1 Dial-up
Dial-up client
the
the RA
client calls
RA server
server
calls
3 RA
RA server
and
server authenticates
authenticates
and authorizes
authorizes the
the client
client
2 RA
RA server
server
answers
answers the
the call
call 4 RA
RA server
data
data
server transfers
transfers
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
VPN Server
Domain
Controller
VPN Client
1 VPN
VPN client
VPN
client calls
VPN server
server
calls the
the
3 VPN
VPN server
and
server authenticates
authenticates
and authorizes
authorizes the
the client
client
2 VPN
VPN server
server
answers
answers the
the call
call 4 VPN
VPN server
data
data
server transfers
transfers
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• Point-to-Protocol (PPP)
• RAS Protocol
• NetBIOS Gateway
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
• Authentication Protocols
– PAP
– SPAP
– CHAP
– MSCHAP
– MSCHAP v2
– EAP
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute
Revision no.: PPT/2K403/02
42
© CMS INSTITUTE, 2004. All rights reserved. No part of this material may be reproduced, stored or emailed without the prior permission of Programme Director, CMS Institute