Summary
Domains, trees, and forests are the basic building blocks of Active Directory. Even if you have only one domain, you still have a single-domain tree and a single-tree forest.
Although a domain serves as a boundary for replication, security, and administration, you must have at least one domain to have Active Directory. In many cases, you will find that you will create more than one domain for security purposes, as well as an additional level of control for replication.
A tree is a collection of domains with a contiguous namespace that are connected by Kerberos transitive trusts. The top-level domain in the tree is known as the tree root.
A forest is a collection of one or more domains in one or more trees that are connected by Kerberos ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access