8. Active Directory Domain Services (AD DS) are the core
functions in Active Directory that manage users and
computers and allow sysadmins to organize the data
into logical hierarchies.
Active Directory Domain Services (AD DS), provides the
methods for storing directory data and making this
data available to network users and administrators.
AD DS stores information about user accounts, such as
names, passwords, phone numbers, and so on, and
enables other authorized users on the same network to
access this information.
9. Active Directory uses a structured data store as the
basis for a logical, hierarchical organization of directory
information.
Active Directory provides the structure to centralize the
network and store information about network
resources across the entire domain. It uses Domain
Controllers to keep this centralized storage available to
network users.
Active Directory stores information about objects on
the network and makes this information easy for
administrators and users to find and use. It’s a kind of
database use to store the information of User, Groups
and Computers and centralize Database of Object and
11. A server running Active Directory Domain
Services (AD DS) is called Domain Controller.
It authentication and authorizes all users and
computers in Windows type network.
A single sign-on environment Use in a large
network environment
Centralized group policy
13. In order to understand
AD DS, there are some
key terms to define.
14. Schema: The set of user configured
rules that govern objects and
attributes in AD DS.
Global Catalog: The container of all
objects in AD DS. If you need to find
the name of a user, that name is
stored in the Global Catalog.
15. Query and Index Mechanism: This
system allows users to find each
other in AD. A good example would
be when you start typing a name in
your mail client, and the mail client
shows you possible matches.
Replication Service: The replication
service makes sure that every DC on
the network has the same Global
Catalog and Schema
16. Sites: Sites are representations of the
network topology, so AD DS knows
what objects go together to optimize
replication and indexing.
Lightweight Directory Access
Protocol: LDAP is a protocol that allows
AD to communicate with other LDAP
enabled directory services across
platforms.
18. 1.You can customize how your
data is organized to meet
your companies needs.
2. You can manage AD DS
from any computer on the
network, if necessary
19. 3. AD DS provides built in
replication and redundancy: if one
Domain Controller (DC) fails,
another DC picks up the load
4. All access to network resources
goes through AD DS, which keeps
network access rights management
centralized
21. 1.Domain Services: Stores data and
manages communications between
the users and the DC. This is the
primary functionality of AD DS.
2. Certificate Services: Allows your
DC to serve digital certificates,
signatures, and public key
cryptography.
22. 3. Lightweight Directory Services:
Supports LDAP for cross platform
domain services, like any Linux
computers in your network.
4. Directory Federation Services:
Provides SSO authentication for multiple
applications in the same session, so
users don’t have to keep providing the
same credentials.
23. 5. Rights Management: Controls
information rights and data access policies.
For example, Rights Management
determines if you can access a folder or
send an email.
24. STEPS TO ADD ACTIVE
DIRECTORY DOMAIN
SERVICES ROLE TO A
WINDOWS SERVER 2008
R2.
37. IDENTIFICATION: Identify the following. Write your answer on the
space provided.
__________________1. It is a hierarchical structure that stores
information about objects on the network.
__________________ 2. provides the methods for storing directory data
and making this data available to network users and administrators.
__________________3. typically include shared resources such as servers,
volumes, printers, and the network user and computer accounts.
__________________ 4.this users can access resources anywhere on the
network.
__________________ 5. can manage directory data and organization
throughout their network.
39. Performance Task!!
Instruction: Perform in your computers how to add
ACTIVE DIRECTORY DOMAIN SERVICES ROLE to
a WINDOWS SERVER 2008 R2. After you perform,
you please call your teacher for them to check your
output or performance.