Você está na página 1de 30

Harold Wong

Senior Technology Specialist


Microsoft Corporation
24 Hours of Exchange Server 2007
(Part 01 of 24): Integration of Exchange
Server 2007 and Active Directory
What Will We cover?
Microsoft

Exchange Server 2007 integration


with Active Directory

directory service
Message routing using Active
Directory sites
New Exchange Server administrator roles
Level 200
Helpful Experience
Experience with Active Directory
Understanding of Active Directory sites
Experience with Microsoft Exchange Server
2003
Agenda
Integrating with Active Directory
Planning for Exchange Server 2007
Understanding Exchange Server permissions
Architectural Goals
Active Directory Topologies
Resource Forest Cross Forest Single Forest
Review: Integrating with Active
Directory (1)
Which of the following was not one of the
basic architectural goals in the development
of Exchange Server 2007?

Complexity
Flexibility
Trustworthiness
Scalability
Review: Integrating with Active
Directory (2)
Which type of Active Directory topology
allows you to separate the administration of
Exchange Server from that of Active Directory?

Single forest topology
Cross-forest topology
Resource forest topology
Multiple forest topology
Review: Integrating with Active
Directory (3)
In a cross-forest infrastructure, what
Exchange Server 2007 role manages the
communication between organizations?

Client Access server role
Edge Transport server role
Hub Transport server role
Mailbox server role
Agenda
Integrating with Active Directory
Planning for Exchange Server 2007
Understanding Exchange Server permissions
Active Directory Site Structure
for Routing Mail
Overview of IP Site Links
IP Site Link
10
10
15
10
15
10
10
10
Access to Active Directory
User Configuration
Site Configuration
Exchange Server 2007 Roles
Schema
Partition
Configuration
Partition
Domain
Partition
Edge Transport Server Role
Server Roles and Active
Directory
Schema
Partition
Configuration
Partition
Domain
Partition
Active
Directory
API
Mailbox Server Role
Unified Messaging Server Role
Client Access Server Role
Hub Transport Server Role
Exploring the Demo Environment

Explore Domain Users and Computers
Check the Active Directory Partitions
demonstration
Review: Planning for Exchange
Server 2007 (1)
Where does Exchange Server 2007 store
attribute, configuration, and recipient
information?

1. Schema partition
2. Configuration partition
3. Domain partition
4. All of the above
Review: Planning for Exchange
Server 2007 (2)
How does Exchange Server 2007 determine the best
route to deliver mail within an Exchange
organization?

1. By the cost of an IP site link
2. By the fastest WAN connection
3. Using routes configured in Exchange Server
4. By the replication interval of a site link
Review: Planning for Exchange
Server 2007 (3)
Which server role will first attempt direct
communication rather than examining site
link costs when sending data between sites?

1. Client Access server role
2. Edge Transport server role
3. Hub Transport server role
4. Mailbox server role
Agenda
Integrating with Active Directory
Planning for Exchange Server 2007
Understanding Exchange Server permissions
Administrative Changes
Exchange Server 2003/2000 Administrative Groups
Insufficient flexibility to effectively manage permissions
Rarely used in Exchange Server 2003 organizations
Exchange Server Security and
Permissions
Exchange Server 2003

Predefined Security Roles
Lack of specificity
Little difference between roles
No clear separation between
Exchange Administrative Roles
and Active Directory Admins
Exchange Server 2007

New Administrator Roles
Managed from either the
Exchange Management
Console or the Exchange
Management Shell
No need to alter ACL settings
Split Permissions Model
Administrator Roles in Exchange
Server
Owners of the Exchange organization
Read access to all domain user containers
Write access to all Exchange-specific attributes
Owner of all local server configuration data
Must run Setup /PrepareDomain for each
domain for this group to be applicable
Read access to all the Domain User containers
Write access to all the Exchange-specific attributes
Owner of all local server configuration data.
Local administrator on the computer on which
Exchange Server is installed.
Members of Exchange View-Only Administrators
Read-only access to the entire Exchange
organization tree
Exchange
Organization
Administrators
Exchange Recipient
Administrators
Exchange Server
Administrators
Exchange View-Only
Administrators
Global
Data
Recipient
Data
Server
Data
Accessing Administrative Roles

Explore the Administrative Roles
demonstration
Review: Understanding
Exchange Permissions (1)
How many predefined administrative groups
are provided with Exchange Server 2007?

1. Three
2. Four
3. Five
4. Six
Review: Understanding
Exchange Permissions (2)
Which role provides permissions to modify any
Exchange property on an Active Directory user,
contact, group, or public folder object?

1. Exchange Organization Administrators
2. Exchange Recipient Administrators
3. Exchange Server Administrators
4. Exchange View-Only Administrators
Review: Understanding
Exchange Permissions (3)
Which role does not provide organization-wide
permissions to an Exchange administrator?

1. Exchange organization administrators
2. Exchange recipient administrators
3. Exchange server administrators
4. Exchange view-only administrators
Session Summary
Exchange Server 2007 utilizes Active
Directory sites and site links for routing mail
Each server role manages Exchange data in
Active Directory partitions
Improved Exchange administrative roles
simplify permission delegation
Questions and Answers
Submit text questions using the Ask button.
Dont forget to fill out the survey.
For upcoming and previously live webcasts:
www.microsoft.com/webcasts
Got webcast content ideas? Contact us at:
http://go.microsoft.com/fwlink/?LinkId=41781
Today's webcast was presented using Microsoft


Office Live Meeting. Get a free 14-day trial by
visiting: www.microsoft.com/presentlive

Você também pode gostar