SlideShare a Scribd company logo
3
Most read
8
Most read
11
Most read
Active Directory
PREPARED HAMEDA HURMAT
Describe objects found in Active
Describe the role of a directory service
Used of Active directory
Verifying the File System
Directory Work with forests, trees, and domains
Understanding the functionality of Domain and Forest Functionality
New to know Active Directory
Learn about Read-Only Domain Controllers
Active Directory Prerequisites
Install Active Directory
The Role of a Directory Service
A network directory service stores information about a computer
network and offers features for retrieving and managing that
information.
Generally considered to be an administrative tool, but users make use
of directory services to find resources
Directory services provide a centralized management tool, but due to
complexity, requires careful planning prior to setup
Windows Active Directory
Active Directory offers the following features:
Hierarchical organization
Centralized but distributed database
Scalability
Security
Flexibility
Policy-based administration
Verifying the File System
When you’re planning your Active Directory deployment, the file system that the
operating system uses is an important concern for two reasons.
The file system can provide the ultimate level of security for all the information
stored on the server itself. Second, it is responsible for managing and tracking all of
this data. The Windows Server 2016 platform supports three file systems:
■ File Allocation Table 32 (FAT32)
■ Windows NT File System (NTFS)
■ Resilient File System (ReFS)
Although ReFS was new to Windows Server 2012, NTFS has been around for many
years, and NTFS in Windows Server 2016 has been improved for better
performance. you could choose between FAT32, NTFS, and ReFS
Understanding Domain and Forest Functionality
Windows Server 2016 Active Directory uses a concept called domain and forest
functionality. The functional level that you choose during the Active Directory
installation determines which features your domain can use.
Domain Functional Level
Windows Server 2016 will support the following domain functional levels:
■ Windows Server 2008
■ Windows Server 2008 R2
■ Windows Server 2012
■ Windows Server 2012 R2
■ Windows Server 2016
function level you use depends on the domain controllers you have installed on
your network. This is an important fact to remember. You can use any version of
Windows Server as long as those servers are member servers only. You can only use
Domain Controllers as low as your function level.
Forest Functionality
Windows Server 2016 forest functionality applies to all of
the domains in a forest. All domains have to be upgraded
to Windows Server 2016 before the forest can be
upgraded to Windows Server 2016.
There are five levels of forest functionality:
■■ Windows Server 2008
■■ Windows Server 2008 R2
■■ Windows Server 2012
■■ Windows Server 2012 R2
■■ Windows Server 2016
Planning the Domain Structure
■ The DNS name of the domain
■ The computer name or the NetBIOS name of the server (which will be used by
previous versions of Windows to access server resources)
■ In which domain function level the domain will operate
■ Whether other DNS servers are available on the network
■ What type of and how many DNS servers are available on the network
DNS is a requirement of Active Directory. You can install DNS during the Active
Directory installation.
■ If this domain controller will join an existing domain, you should know the name
of that domain. You will also either require a password for a member of the
Enterprise Administrators group for that domain or have someone with those
permissions create a domain account before promotion.
■ You should know whether the new domain will join an existing tree and, if so, the
name of the tree it will join.
■ You should know the name of a forest to which this domain will connect (if
applicable).
New to Active Directory
As with any new version of Windows Server, Microsoft has made some
improvements to Active Directory. The following changes have been made
to Windows Server 2016 Active Directory:
Privileged Access Management Privileged access management (PAM)
allows you to alleviate security concerns about the Active Directory
environment. Some of these security issues include credential theft
techniques (pass-the-hash & spear phishing) along with other types of
similar attacks.
Azure AD Join Azure Active Directory Join allows you to setup an Office 365
based Azure network and then easily join your end-users systems to that
domain.
Microsoft Passport Microsoft Passport allows your users to setup a key-
based authentication that allows your users to authenticate by using more
than just their password (biometrics or PIN numbers). Your users would
then log on to their systems using a biometric or PIN number that is linked
to a certificate or an asymmetrical key pair.
Read-Only Domain Controllers
Windows Server 2016 supports another type of domain controller
called the read-only domain controller (RODC).
This is a full copy of the Active Directory database without the ability to
write to Active Directory. The RODC gives an organization the ability to
install a domain controller in a location (onsite or offsite) where security
is a concern.
RODCs need to get their Active Directory database from another
domain controller. If there are no domain controllers setup yet for a
domain, RODCs will not be available (the option will be greyed out).
Implementing an RODC is the same as adding another domain
controller to a domain. The installation is exactly the same except that
when you get to the screen to choose Domain Controller options, you
check the box for RODC. Again, this is ONLY available if there are other
domain controllers already in the domain.
Active Directory Prerequisites
Before you install Active Directory into your network, you must first
make sure that your network and the server meet some minimum
requirements. Table 18.2 will show you the requirements needed for
Active Directory.
Active Directory
Thank you

More Related Content

PPTX
Microsoft Active Directory.pptx
PPTX
Understanding the Windows Server Administration Fundamentals (Part-1)
PPTX
Windows Server 2019.pptx
PPT
Active directory and application
PPT
Active Directory
PPTX
Administer Active Directory
PPT
Active directory
PPT
Active directory slides
Microsoft Active Directory.pptx
Understanding the Windows Server Administration Fundamentals (Part-1)
Windows Server 2019.pptx
Active directory and application
Active Directory
Administer Active Directory
Active directory
Active directory slides

What's hot (20)

PPTX
Windows Server 2012 Managing Active Directory Domain
PDF
DNS (Domain Name System)
PPTX
Introduction to Active Directory
PPTX
What is active directory
PPTX
Active Directory
PPT
Microsoft Active Directory
PPTX
Active directory domain service
PPT
Active Directory Services
PPT
Active Directory Training
PPTX
Active directory architecture
PPTX
File permissions
PPT
Active directory
PPTX
Introduction_of_ADDS
PDF
Microsoft Windows Server 2022 Overview
PPTX
02-Active Directory Domain Services.pptx
PPTX
Azure Networking (1).pptx
PDF
Microsoft Azure Active Directory
PPTX
Microsoft Offical Course 20410C_02
PPT
Windows Server 2012 Managing Active Directory Domain
DNS (Domain Name System)
Introduction to Active Directory
What is active directory
Active Directory
Microsoft Active Directory
Active directory domain service
Active Directory Services
Active Directory Training
Active directory architecture
File permissions
Active directory
Introduction_of_ADDS
Microsoft Windows Server 2022 Overview
02-Active Directory Domain Services.pptx
Azure Networking (1).pptx
Microsoft Azure Active Directory
Microsoft Offical Course 20410C_02
Ad

Similar to Active Directory (20)

PPTX
Activedirecotryfundamentals
PPT
70 640 Lesson01 Ppt 041009
PDF
Case Project 12-2 Devising an AD DS Design with RODC, AD RMS, and A.pdf
PPT
70 640 Lesson02 Ppt 041009
PDF
Administering computer accounts and resources in active directory
PPTX
Host Management active directory and domain services in windows server.pptx
DOCX
Windows sys admin interview questions
PPTX
Windows server 2008 active directory
PDF
Material modulo01 asf6501(6419-a_01)
PPT
Mcts chapter 3
PDF
50 most commonly asked windows server interview questions
PDF
Material modulo04 asf6501(6425-a_01)
PDF
Active directory basics
PPT
Active Directory Ii
PPT
Active directory ii
PPTX
1 introduction to windows server 2016
PPT
Ads Overview En
PPT
Ads Overview En
PDF
Server 2008 r2 ppt
Activedirecotryfundamentals
70 640 Lesson01 Ppt 041009
Case Project 12-2 Devising an AD DS Design with RODC, AD RMS, and A.pdf
70 640 Lesson02 Ppt 041009
Administering computer accounts and resources in active directory
Host Management active directory and domain services in windows server.pptx
Windows sys admin interview questions
Windows server 2008 active directory
Material modulo01 asf6501(6419-a_01)
Mcts chapter 3
50 most commonly asked windows server interview questions
Material modulo04 asf6501(6425-a_01)
Active directory basics
Active Directory Ii
Active directory ii
1 introduction to windows server 2016
Ads Overview En
Ads Overview En
Server 2008 r2 ppt
Ad

More from Hameda Hurmat (20)

PPTX
15 Setup BIND 9
PPTX
14 FILE Server
PPTX
13 DHCP Configuration in Linux
PPT
11-IIS server 2016
PPTX
10 implementing GPOs
PPTX
7 understanding DNS
PPTX
6 understanding DHCP
PPTX
5 configuring TCP/IP
PPTX
4. install and configure hyper v
PPTX
3 configuring basic and dynamic disks
PPTX
2 introduction of storage
PPTX
12 introduction to Linux OS
PPSX
Flowers Album
PPTX
Change management
PDF
ویندو7
PPT
Interview skill
PPSX
Waste management
PDF
Ethical Hacker
PPTX
Rule of Work
PDF
Holy quran tafsir kaboli-3-pdf
15 Setup BIND 9
14 FILE Server
13 DHCP Configuration in Linux
11-IIS server 2016
10 implementing GPOs
7 understanding DNS
6 understanding DHCP
5 configuring TCP/IP
4. install and configure hyper v
3 configuring basic and dynamic disks
2 introduction of storage
12 introduction to Linux OS
Flowers Album
Change management
ویندو7
Interview skill
Waste management
Ethical Hacker
Rule of Work
Holy quran tafsir kaboli-3-pdf

Recently uploaded (20)

PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
NewMind AI Monthly Chronicles - July 2025
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
cuic standard and advanced reporting.pdf
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PPTX
Cloud computing and distributed systems.
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
NewMind AI Weekly Chronicles - August'25 Week I
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PPT
Teaching material agriculture food technology
PDF
Encapsulation_ Review paper, used for researhc scholars
PPTX
Understanding_Digital_Forensics_Presentation.pptx
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Electronic commerce courselecture one. Pdf
PPTX
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Unlocking AI with Model Context Protocol (MCP)
NewMind AI Monthly Chronicles - July 2025
Reach Out and Touch Someone: Haptics and Empathic Computing
cuic standard and advanced reporting.pdf
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Cloud computing and distributed systems.
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
Per capita expenditure prediction using model stacking based on satellite ima...
NewMind AI Weekly Chronicles - August'25 Week I
Chapter 3 Spatial Domain Image Processing.pdf
Teaching material agriculture food technology
Encapsulation_ Review paper, used for researhc scholars
Understanding_Digital_Forensics_Presentation.pptx
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Digital-Transformation-Roadmap-for-Companies.pptx
Electronic commerce courselecture one. Pdf
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
The Rise and Fall of 3GPP – Time for a Sabbatical?
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication

Active Directory

  • 2. Describe objects found in Active Describe the role of a directory service Used of Active directory Verifying the File System Directory Work with forests, trees, and domains Understanding the functionality of Domain and Forest Functionality New to know Active Directory Learn about Read-Only Domain Controllers Active Directory Prerequisites Install Active Directory
  • 3. The Role of a Directory Service A network directory service stores information about a computer network and offers features for retrieving and managing that information. Generally considered to be an administrative tool, but users make use of directory services to find resources Directory services provide a centralized management tool, but due to complexity, requires careful planning prior to setup
  • 4. Windows Active Directory Active Directory offers the following features: Hierarchical organization Centralized but distributed database Scalability Security Flexibility Policy-based administration
  • 5. Verifying the File System When you’re planning your Active Directory deployment, the file system that the operating system uses is an important concern for two reasons. The file system can provide the ultimate level of security for all the information stored on the server itself. Second, it is responsible for managing and tracking all of this data. The Windows Server 2016 platform supports three file systems: ■ File Allocation Table 32 (FAT32) ■ Windows NT File System (NTFS) ■ Resilient File System (ReFS) Although ReFS was new to Windows Server 2012, NTFS has been around for many years, and NTFS in Windows Server 2016 has been improved for better performance. you could choose between FAT32, NTFS, and ReFS
  • 6. Understanding Domain and Forest Functionality Windows Server 2016 Active Directory uses a concept called domain and forest functionality. The functional level that you choose during the Active Directory installation determines which features your domain can use. Domain Functional Level Windows Server 2016 will support the following domain functional levels: ■ Windows Server 2008 ■ Windows Server 2008 R2 ■ Windows Server 2012 ■ Windows Server 2012 R2 ■ Windows Server 2016 function level you use depends on the domain controllers you have installed on your network. This is an important fact to remember. You can use any version of Windows Server as long as those servers are member servers only. You can only use Domain Controllers as low as your function level.
  • 7. Forest Functionality Windows Server 2016 forest functionality applies to all of the domains in a forest. All domains have to be upgraded to Windows Server 2016 before the forest can be upgraded to Windows Server 2016. There are five levels of forest functionality: ■■ Windows Server 2008 ■■ Windows Server 2008 R2 ■■ Windows Server 2012 ■■ Windows Server 2012 R2 ■■ Windows Server 2016
  • 8. Planning the Domain Structure ■ The DNS name of the domain ■ The computer name or the NetBIOS name of the server (which will be used by previous versions of Windows to access server resources) ■ In which domain function level the domain will operate ■ Whether other DNS servers are available on the network ■ What type of and how many DNS servers are available on the network DNS is a requirement of Active Directory. You can install DNS during the Active Directory installation. ■ If this domain controller will join an existing domain, you should know the name of that domain. You will also either require a password for a member of the Enterprise Administrators group for that domain or have someone with those permissions create a domain account before promotion. ■ You should know whether the new domain will join an existing tree and, if so, the name of the tree it will join. ■ You should know the name of a forest to which this domain will connect (if applicable).
  • 9. New to Active Directory As with any new version of Windows Server, Microsoft has made some improvements to Active Directory. The following changes have been made to Windows Server 2016 Active Directory: Privileged Access Management Privileged access management (PAM) allows you to alleviate security concerns about the Active Directory environment. Some of these security issues include credential theft techniques (pass-the-hash & spear phishing) along with other types of similar attacks. Azure AD Join Azure Active Directory Join allows you to setup an Office 365 based Azure network and then easily join your end-users systems to that domain. Microsoft Passport Microsoft Passport allows your users to setup a key- based authentication that allows your users to authenticate by using more than just their password (biometrics or PIN numbers). Your users would then log on to their systems using a biometric or PIN number that is linked to a certificate or an asymmetrical key pair.
  • 10. Read-Only Domain Controllers Windows Server 2016 supports another type of domain controller called the read-only domain controller (RODC). This is a full copy of the Active Directory database without the ability to write to Active Directory. The RODC gives an organization the ability to install a domain controller in a location (onsite or offsite) where security is a concern. RODCs need to get their Active Directory database from another domain controller. If there are no domain controllers setup yet for a domain, RODCs will not be available (the option will be greyed out). Implementing an RODC is the same as adding another domain controller to a domain. The installation is exactly the same except that when you get to the screen to choose Domain Controller options, you check the box for RODC. Again, this is ONLY available if there are other domain controllers already in the domain.
  • 11. Active Directory Prerequisites Before you install Active Directory into your network, you must first make sure that your network and the server meet some minimum requirements. Table 18.2 will show you the requirements needed for Active Directory.