Você está na página 1de 9

ACTIVE DIRECTORY

DEFINITIONS

FOLDERS
 AD Database Location: C:/Windows/NTDS/NTDS.dit
 SYSVol Folder: Stores the servers copy of the public files such as,
group policies, users etc.
 Lost & Found: contains the objects missed due to conflict, and
contain orphaned users accounts.
 Garbage Collection: is the process of the online defragmentation of
active directory, every 12 hours.

FOREST
is a collection of one or more
domains which may have one or
more trees.

TREE
Is a group of domains share a
common scheme, linked
together by a trust relationship.

DOMAIN
is defined as a logical group of
network objects (computers, users,
devices) that share the same active
directory database.

OU

OU

OU

OU

OU

ORGANIZATIONAL UNIT
Group of objects, such as user
accounts, groups, computers.

OBJECTS
Group of user accounts, printers,
devicesetc.

Scheme: is all object classes, and its


attributes.

ATTRIBUTES

GLOBAL CATALOG
A global catalog is a domain
controller that stores a copy of
all Active Directory objects in a
forest.
** is a searchable index.
Port number is 3268

ACTIVE DIRECTORY
STRUCTURE

TRUST IN AD
To allow users in one domain to access resources in another domain, AD
uses trusts!





One Way trust


Two way trust
Trusting domain This server is the user that share resource to trusted domains
Trusted domain this server trusted by other domain and any user in it can access other
trusting domains

INSTALL/REMOVE ACTIVE
DIRECTORY
Run > dcpromo

Backup:
Run > ntbackup

GROUPS VS OU
Groups: Used to apply permissions on users using shared files.
Organizational Unit: Used to apply policies on users using group
policies.

ADDITIONAL DOMAIN VS
RODC
Additional Domain: is a copy of the AD & used for load balance.
RODC: is same as the additional domain but just for read only.

GROUP TYPES
Security group: need more authorization, slower than the distributed group.
Distributed group: used in emails because it is faster than the security group.

NOTES
Credential files are stored in SAM file.
Kerberos use port number 88.

THANK
YOU

Você também pode gostar