Book description
Get the definitive, in-depth resource for designing, deploying, and maintaining Windows Server 2008 Active Directory in an enterprise environment. Written by experts on directory services and the Active Directory team at Microsoft, this technical resource is packed with concrete, real-world design and implementation guidance. You’ll get in-depth guidance on installation, Active Directory components, replication, security, administration, and more. You also get answers to common questions from network architects, engineers, and administrators about Windows Server 2008 Active Directory—plus scripts, utilities, job aids, and a fully searchable eBook on CD.
For customers who purchase an ebook version of this title, instructions for downloading the CD files can be found in the ebook.
Table of contents
- Windows Server® 2008 Active Directory® Resource Kit
- Dedication
- Acknowledgments
-
Introduction
-
Overview of Book
- Part I – Windows Server 2008 Active Directory Overview
- Part II – Designing and Implementing Windows Server 2008 Active Directory
- Part III – Administering Windows Server 2008 Active Directory
- Part IV – Maintaining Windows Server 2008 Active Directory
- Part V – Identity and Access Management with Active Directory
- Document Conventions
- Companion CD
- Find Additional Content Online
- Resource Kit Support Policy
-
Overview of Book
-
I. Windows Server 2008 Active Directory Overview
-
1. What’s New in Active Directory for Windows Server 2008
- What’s New in Active Directory Domain Services
- Additional Active Directory Service Roles
- Summary
-
2. Active Directory Domain Services Components
- AD DS Physical Structure
- AD DS Logical Structure
- Summary
- Additional Resources
- 3. Active Directory Domain Services and Domain Name System
- 4. Active Directory Domain Services Replication
-
1. What’s New in Active Directory for Windows Server 2008
-
II. Designing and Implementing Windows Server 2008 Active Directory
-
5. Designing the Active Directory Domain Services Structure
- Defining Directory Service Requirements
- Designing the Forest Structure
- Designing the Integration of Multiple Forests
- Designing the Domain Structure
- Designing Domain and Forest Functional Levels
- Designing the DNS Infrastructure
- Designing the Organizational Unit Structure
- Designing the Site Topology
- Summary
- Best Practices
- Additional Resources
- 6. Installing Active Directory Domain Services
-
7. Migrating to Active Directory Domain Services
- Migration Paths
- Determining Your Migration Path
- Upgrading the Domain
-
Restructuring the Domain
-
Interforest Migration
- Creating the Pristine Forest
- Creating the Migration Accounts
- Creating the Trusts
- Installing the Active Directory Migration Tool
- Enabling Auditing in the Target and Source Domains
- Migrating Global Group and Domain Local Group Accounts
- Migrating User Accounts
- Identifying Service Accounts
- Migrating Computer Accounts
- Migrating Service Accounts
- Decommissioning the Source Domains
-
Interforest Migration
- Intraforest Migration
- Configuring Interforest Trusts
- Summary
- Best Practices
- Additional Resources
-
5. Designing the Active Directory Domain Services Structure
-
III. Administering Windows Server 2008 Active Directory
-
8. Active Directory Domain Services Security
- AD DS Security Basics
- Kerberos Security
- NTLM Authentication
- Implementing Security for Domain Controllers
- Designing Secure Administrative Practices
- Summary
- Best Practices
- Additional Resources
- 9. Delegating the Administration of Active Directory Domain Services
-
10. Managing Active Directory Objects
- Managing Users
- Managing Groups
- Managing Computers
- Managing Printer Objects
- Managing Published Shared Folders
-
Automating Active Directory Object Management
- Command-Line Tools for Active Directory Management
- Using LDIFDE and CSVDE
- Using VBScript to Manage Active Directory Objects
- Summary
- Best Practices
- Additional Resources
-
11. Introduction to Group Policy
- Group Policy Overview
- Group Policy Components
- Group Policy Processing
- Implementing Group Policy
- Managing Group Policy Objects
- Scripting Group Policy Management
- Planning a Group Policy Implementation
- Troubleshooting Group Policy
- Summary
- Additional Resources
-
12. Using Group Policy to Manage User Desktops
- Desktop Management Using Group Policy
- Managing User Data and Profile Settings
- Administrative Templates
- Using Scripts to Manage the User Environment
-
Deploying Software Using Group Policy
- Windows Installer Technology
- Deploying Applications
- Using Group Policy to Distribute Non–Windows Installer Applications
- Configuring Software Package Properties
- Using Group Policy to Configure Windows Installer
- Planning for Group Policy Software Installation
- Limitations to Using Group Policy to Manage Software
- Overview of Group Policy Preferences
- Summary
- Additional Resources
-
13. Using Group Policy to Manage Security
- Configuring Domain Security with Group Policy
- Hardening Server Security Using Group Policy
- Configuring Network Security Using Group Policy
- Configuring Security Settings Using Security Templates
- Summary
- Additional Resources
-
8. Active Directory Domain Services Security
-
IV. Maintaining Windows Server 2008 Active Directory
- 14. Monitoring and Maintaining Active Directory
-
15. Active Directory Disaster Recovery
- Planning for a Disaster
- Active Directory Data Storage
- Backing Up Active Directory
-
Restoring Active Directory
- Restoring Active Directory by Creating a New Domain Controller
- Performing a Nonauthoritative Restore of Active Directory
- Performing an Authoritative Restore of Active Directory
- Restoring Group Memberships
- Reanimating Tombstone Objects
- Using the Active Directory Database Mounting Tool
- Restoring SYSVOL Information
- Restoring Operations Masters and Global Catalog Servers
- Summary
- Best Practices
- Additional Resources
-
V. Identity and Access Management with Active Directory
-
16. Active Directory Lightweight Directory Services
- AD LDS Overview
- AD LDS Architecture and Components
- Implementing AD LDS
- Configuring AD DS and AD LDS Synchronization
- Summary
- Best Practices
- Additional Resources
-
17. Active Directory Certificate Services
- Active Directory Certificate Services Overview
- Implementing AD CS
- Managing Certificates in AD CS
- Designing an AD CS Implementation
- Summary
- Best Practices
- Additional Resources
- 18. Active Directory Rights Management Services
-
19. Active Directory Federation Services
- AD FS Overview
-
Implementing AD FS
- AD FS Deployment Requirements
- Implementing AD FS in a Federation Web SSO Design
- Configuring the Account Partner Federation Service
- Configuring Resource Partner AD FS Components
- Configuring AD FS for Windows NT Token-based Applications
- Implementing a Web SSO Design
- Implementing a Federated Web SSO with Forest Trust Design
- Summary
- Best Practices
- Additional Resources
-
16. Active Directory Lightweight Directory Services
- A. About the Authors
- B. System Requirements
- Index
- About the Authors
- Copyright
Product information
- Title: Windows Server® 2008 Active Directory® Resource Kit
- Author(s):
- Release date: March 2008
- Publisher(s): Microsoft Press
- ISBN: 9780735625150
You might also like
book
Self-Paced Training Kit (Exam 70-640): Configuring Windows Server® 2008 Active Directory® (2nd Edition)
EXAM PREP GUIDE Fully updated for Windows Server 2008 R2! Ace your preparation for the skills …
book
Active Directory® for Microsoft® Windows® Server 2003 Technical Reference
The in-depth technical reference for network architects and administrators implementing Active Directory® for Windows® Server 2003. …
book
Windows Server® 2012 Unleashed
This is the most comprehensive and realistic guide to Windows Server 2012 planning, design, prototyping, implementation, …
book
MCTS Windows Server 2008 Active Directory Services Study Guide (Exam 70-640) (SET)
This certification will enable system administrators and network engineers to master server tasks