مضى على الشبكة و يوم من العطاء.

Active Directory and Central Administration: Lesson 1

الطاييرالطايير is verified member.

.:: اداري سابق ::.
.:: اداري سابق ::.

firefox
linux

السمعة:

What is a directory server​


A directory server contains a look up service that provides mapping between network resources and their network addresses. It’s used to organize and look up organizational objects and entities ranging from things like user accounts, user groups, telephone numbers and network shares. Instead of managing user accounts and computer information locally on every machine, all that information can be stored on a directory server for easy access and management
اختصارا للكلام : بدل ميكون الأدمن مجبر انه يسبت برنامج او policy معينه لاكثر من user في الشركة اللي ممكن تكون فيها أكثر من ١٠٠ موظف بدل انه يقوم بالتاسك ده اكتر من ١٠٠ مرة علي ١٠٠ جهاز مختلف ، عن طريق directory server هيكون تاسك لمرة واحدة بس
هل سبق لك البحث عن رقم هاتف شخص ما في دليل هاتف أو
اتستخدمت قائمة دليل في مركز تسوق للعثور على متجر معين ،
يوفر Directory server بشكل أساسي الوظيفة نفسها.
The ideal enterprise quality directory server should support replication

Replication

This means that the stored directory data can be copied and distributed across a number of physically distributed servers but still appear as one unified data store for acquiring and administering​

Why is replication important


It provides redundancy by having multiple service available simultaneously. So there will be minimal disruption to the service in the event that one of the server explodes, replication also decreases latency when you access the directory service. By having replicas of your directory survey located in each office, you’re able to answer directory service queries more quickly

The directory service should also be flexible allowing you to easily create new object types as your needs change. Access to the information stored in the directory server database should be accessible from a variety of OS types and from the designated areas of the corporate network​
بالرجوع للهدف الاساسي من استخدام ال Directory servers فلازم يكون سهل انه يوفرلك المرونه انك تنشأ سياسات جديدة او تغيرات في الخصائص وان يكون سهل انك توصله من مختلف الاجهزه المتصله بقاعدة البيانات للسيرفر او من اي جهاز حتي مع اختلاف نظام التشغيل علي الجهاز ده .
Directory services are useful for organizing data and making it searchable for an organization. This is achieved through the use of a hierarchical model of objects and containers. The containers are referred to as organizational units or OUs and they can contain objects or more organizational units. This is similar in organizational structure to a file system

OUs are like folders which can contain individual files or objects for directory service

OUs can also contain additional folders. The management benefits of this structure are pretty clear. Can you imagine trying to keep your music library organized if there was no such thing as sub folders? Crazy. This hierarchal structure can be used to convey additional information about what’s stored within​
ممكن تفكر في ال OUs علي انها مجلدات فيها ملفات ولكن الملفات دي هي المستخدمين وكل خصائصهم

Take your directory structure as an example, you may have an OU called users which contains all user accounts. Within this OU there could be additional use which represent the actual team structure of your organization. The users OU could contain additional OUs like sales engineering, marketing which include the user account objects for the individuals that belong to these teams. This structure can be used to convey differences between these sub values of users. For example, we could enforce stricter password requirements from members of engineering without affecting sales and marketing. Sub members inherit their characteristics of their parent OU. So any changes made to the higher level users OU would affect all sub values including sales, marketing and engineering

Active-Directory-Structure-Example

Example-2

وأخيرا وليس آخرا
Someone with the responsibilities of a systems administrator, whether that’s a system admin or IT support specialist would be responsible for the setup, configuration and maintenance of the directory server. This includes the OS itself on which the directory service would run. Standard OS management tasks are involved here, like ensuring that updates are installed and configuring standard services. Other responsibilities include the installation and configuration of the directory service itself, so installing the service and configuring any related services. If multiple servers are used in a replication setup, this needs to be configured too. It’s very likely that the hierarchy and overall structure of the director itself would also be up to the sys admin to design and implement. Well, that covers the high level overview of what exactly a directory service is​


وهنا يخلص الدرس الأول
والدرس التاني هيكون عن : كيفية تطبيق ال Directory services
Implementing Directory Services
 
التعديل الأخير:
**بسم الله ما شاء الله زعيم **
إبداع 🤍

الله يعطيك العافيه حبيبي وبميزان حسناتك ان شاء الله <3

استمر زعيم لا توقف 🤍
 
الله يعطيكم العافيه علي المجهود الكبير .
الاخوه المحترمين عندي استفسار لو تكرمتم .
لما اريد اعمل bitlocker جروب بوليسي واحاول اطبقو علي كل المستخدمين اللي علي OU معينه او جروب معين .
هل فيه طريقه ان اطبقها علي الاجهزه دي من غير ما اروح علي كل جهاز واعمل Bitlocker on .
عملت الجروب بوليسي علي ال activ directory لكن مش بتطبق عند المستخدمين غير لما اروح لكل جهاز واعمل تشغيل ال bitlocker .
ومشكورين جزاكم الله خير.
 
صراحة وقت تفعيل ال bitlocker للمستخدمين كان التفعيل لكل موظف وقت تسليمه الجهاز و ال AD لتسجيل ال recovery keys

لكن للاجابة علي سؤال حضرتك بعد بحث اونلاين وصلت انه هيكون عن طريق ال scripting من خلال ال powershell و اوامر مثل : manage-bde و Windows PowerShell cmdlets

وكل شي موضح من خلال التالي :



اتمنى يساعدك​
 
التعديل الأخير:
جزاك الله خير بش مهندس نفعك الله بالعلم الصالح
 

آخر المشاركات

عودة
أعلى