Windows Server 2008 R2 Active Directory

Slides:



Advertisements
Ähnliche Präsentationen
Web-Entwicklung mit ASP.NET 2.0 und Visual Studio 2005 Uwe Baumann Marketing Manager Developer Tools Microsoft Deutschland GmbH Oliver Scheer Developer.
Advertisements

Windows Vista Deployment
Windows Vista für Entwickler
Security Development Lifecycles
Neue Mobilität Frank Prengel Developer Evangelist Developer Platform & Strategy Group Microsoft Deutschland GmbH
Windows Server 2003 Daniel Wessels MSP Uni Bremen, MVP SPS.
Windows Server 2003 Managment Eric Hellmich
Mit Sicherheit – Ein Blick in die Zukunft Michael Kalbe & Dirk Primbs.
WebCast: Managed Smart Tags mit VSTO Jens Häupel.NET Technologieberater Microsoft Deutschland GmbH
Host Integration Service 8.6
Automatisierung mit Windows PowerShell V1 / V2
Gehärtet von Anfang an { Windows 2008: Spezielle Aufgaben }
Arbeiten mit der neuen Versionsverwaltung im TFS
Microsoft Office Forms Server
Windows Essential Business Server 2008
{ SQL Server 2008 Verwaltungstools und Policy-based Management } Oliver Goletz Technologieberater Datenbanken & Business Intelligence Microsoft Deutschland.
Hybrid Cloud mit System Center und Windows Azure
Data Mining mit SQL Server 2008 und Excel 2007
3rd Review, Vienna, 16th of April 1999 SIT-MOON ESPRIT Project Nr Siemens AG Österreich Robotiker Technische Universität Wien Politecnico di Milano.
© All rights reserved. Zend Technologies, Inc. Jan Burkl System Engineer, Zend Technologies Zend Server im Cluster.
SQL Server Grundlagen für den Teilzeit-DBA
| Basel Von der SharePoint Taskliste zum gemanagten Project in Project Server Luca Argentiero Solution Specialist Microsoft
Your name Bedeutung von Internet- Technologien Gruppe 1 Andreas Feuerstein Philipp Hochratner Christian Weinzinger.
Jan Hentschel Microsoft Expert Student Partner Windows Azure Windows Azure SQL Server auf IaaS How-to.
Jan Hentschel Microsoft Expert Student Partner Windows Azure Windows Azure Windows Azure Mobile Services.
Swiss TechNet Events Herzlich Willkommen Die Microsoft UC Story - Exchange 2013 und Lync 2013 unplugged 13. September 2012 Philipp Beck, Tech. Spec. /
Swiss TechNet Events Herzlich Willkommen Windows Server alles Wichtige zum neuen Server-Betriebssystem von Microsoft – 4. Oktober 2012 Walter Pitrof,
Neno Loje Berater & MVP für Visual Studio ALM und TFS (ehemals VSTS) Hochqualitative Produkte mit Visual Studio & TFS 2010.
| Basel Developing apps for SharePoint 2013 using Visual Studio 2013 René Modery, Office 365 MVP, 1stQuad Solutions.
Ralf M. Schnell Technical Evangelist Microsoft Deutschland GmbH.
Die Active Directory Domain Services unter Windows Server 2008 bieten zahlreiche neue Möglichkeiten, mit Hilfe derer Sie Domänen konsolidieren können,
Swiss TechNet Events Herzlich Willkommen Windows 8 3. April 2013 Martin Weber, Technical Solution Professional Thomas Schindler, V-Technical Solution Professional.
Frank Fischer + Bernhard Frank Microsoft Deutschland GmbH.
Swiss TechNet Events Herzlich Willkommen Windows Server 2012 R2 - die Neuerungen 9. Januar 2014 Michael Rüefli, Senior Consultant, Inserto AG Walter Pitrof,
TechNet Schweiz – Herzlich Willkommen System Center 2012 LIVE - Modernes Systems Management als Kernstück der Microsoft Private Cloud 28. März 2012 Walter.
Swiss TechNet Events Herzlich Willkommen Windows 8.1 Überblick & moderne Workplace Szenarien 25. November 2013 Martin Weber, Tech Solutions Professional,
HandsOn Cloud, Infrastruktur, Architektur, Solution Design SharePoint for Internet Sites: Erfahrung aus der Praxis.
Swiss TechNet Events Herzlich Willkommen Virtualisierung auf Basis von Windows Server 2012: von "on-premise" in die Cloud und zurück 15. Mai 2013 Michael.
Sven Thimm Senior Presales Consultant Microsoft Deutschland GmbH Oliver Sommer MVP SBS/EBS aka Essential Server Solutions Family TrinityComputer.de.
3/28/2017 8:11 PM Visual Studio Tools für Office { Rapid Application Development für Office } Jens Häupel Platform Strategy Manager Microsoft Deutschland.
Frank Koch Infrastructure Architect Microsoft Schweiz / Deutschland.
Windows Server 2008 { für Branch Offices }
TechNet Schweiz – Herzlich Willkommen Microsoft Forefront Identity Manager 2010 R2 - effektives und nachhaltiges IT Service Management 2. Dezember 2011.
Swiss TechNet Events Herzlich Willkommen Windows 8 9. Januar 2013 Daniel von Büren, Redtoo AG Andras Khan, Microsoft Schweiz Martin Weber, Microsoft Schweiz.
PresenterCompanyContact Windows Azure ASP.NET Web-Anwendungen schnell und zuverlässig bereitstellen.
TechNet Schweiz – Herzlich Willkommen Unified Communication: Neuigkeiten zu Exchange, Lync und Windows Phone November 2011 André Hagmann, Microsoft.
Virtual Earth Visualisierung von Geodaten Daniel Walzenbach, Microsoft Deutschland GmbH
Template v5 October 12, Copyright © Infor. All Rights Reserved.
Cyber-Security und Datenschutz in der Cloud Wie passt das zusammen?
Windows Azure Training Modul: Windows Azure Media Services (4) Name des Referenten (Berufsbezeichnung)
Swiss TechNet Events Herzlich Willkommen Windows Server 2012 R2: Fokus Hyper-V und Storage 27. März 2014 Michael Rüefli, Senior Consultant, Inserto AG.
FIM 2010 R2 The real benefit of an Identity Management System!
Swiss TechNet Events Herzlich Willkommen SharePoint Server 2013 Preview - What's new? 26. September 2012 Joel Hasler, IOZ AG Daniel Schnyder, IOZ AG Stephan.
TechNet Schweiz – Herzlich Willkommen Der moderne Business Desktop - Microsoft-Technologie für flexibles Arbeiten 1. März 2012 Martin Weber, Microsoft.
Bernd Marquardt Software+Consulting. Einführung Download, Voraussetzungen, Installation Parallelerweiterungen für das Framework Schleifen parallelisieren.
Office Business Anwendungen mit SharePoint Fabian Moritz | MVP Office SharePoint Server.
Windows Azure VMs und Storage
Microsoft Cloud Day Herzlich willkommen!. Microsoft Cloud Day MSDN Veranstaltung Die Cloud Plattform als Erfolgsbaustein – Wie Sie als Softwarefirma von.
3rd Review, Vienna, 16th of April 1999 SIT-MOON ESPRIT Project Nr Siemens AG Österreich Robotiker Technische Universität Wien Politecnico di Milano.
1 Intern | ST-IN/PRM-EU | | © Robert Bosch GmbH Alle Rechte vorbehalten, auch bzgl. jeder Verfügung, Verwertung, Reproduktion, Bearbeitung,
Launch ON Global.vi System ID object name classname Services to suscribe Observer Control Ref vi-path Service name Step 1 : Objects register to the Global.vi´s,
Cloud nach Ihren Bedürfnissen Cloud in Ihrer Geschwindigkeit Cloud als Business Enabler.
Swiss TechNet Events Herzlich Willkommen Windows 8 – 24. Oktober 2012
Swiss TechNet Events Herzlich Willkommen Windows Server 2012 R2 + System Center 2012 R2 27. August 2013 Markus Erlacher, itnetx GmbH Thomas Maurer, itnetx.
Microsoft Partner Network (MPN)
Ingo Rammer thinktecture.
TechNet Schweiz – Herzlich Willkommen SQL Server 2012 – Was ist neu? 6. Dezember 2011 Roger Breu, Microsoft Bernd Schneider, Microsoft Dr. Bernd Kiupel,
Enterprise Search - René Knöfel tech.days h.
Computer Services Business challenge
Azure Mobile Services Deep dive into node.js scripting
 Präsentation transkript:

Windows Server 2008 R2 Active Directory 3/28/2017 8:11 PM Windows Server 2008 R2 Active Directory Wolfgang Sauer Principal Consultant AddOn Systemhaus GmbH © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Windows Server 2008 RTM Active Directory Funktionen AD DS auf Servercore Read Only Domain Controller AD Snapshot Mehrere Kennwort Richtlinien Restartable AD DS Attributsfeine Überwachung Policy Maker Integration GP Preferences

Windows Server 2008 R2 Active Directory DNS / DHCP Features Administrative Center Powershell Automation Best Practice Analyzer Papierkorb Managed Service Accounts Offline Domain Join DNS / DHCP Features DNS Blockliste, Replizierter Forwarder DHCP Link Layer Filter, Name Protection, …

Administrative Center Aufgabenorientiert, Flexible Filter Multi Domain, Multi Forest Gut geeignet für seeeehr große AD Formulare Extensions

Powershell Automation AD Powershell Provider über 70 Cmdlets wird beim "dcpromo" mit installiert über RSAT optional installierbar AD Powershell aufrufen alle Cmdlets auflisten Get-Command *-ad*

Powershell Automation Einfache Beispiele (Dejá Vu Exchange 2007) Hilfe Get-Help Get-ADUser [-full, -examples] Benutzer analysieren Get-ADUser hdampf Get-ADUser hdampf –Properties * Terminalserver Eigenschaften  Get-ADUser hdampf –Properties UserParameters

Best Practices Analyzer Validiert "Best Practices" für Active Directory Zertifikatsdienste Remote Desktop Services DNS, IIS

Powershell Automation Administrative Center Best Practice Analyzer Demo Powershell Automation Administrative Center Best Practice Analyzer

AD DS Papierkorb Lebensdauer eines Objekts: bestimmt durch "Tombstone Lifetime" Forestweite Konfiguration 60 bzw. 180 Tage

Wiederherstellung Autorisierende Wiederherstellung 3/28/2017 8:11 PM Wiederherstellung Autorisierende Wiederherstellung DC in den DSRM booten Backup wiederherstellen Versionsnummer mit "ntdsutil" erhöhen Reanimierung des Tombstone Ldp oder 3rd Party Tools Attributsgewinnung durch AD Snapshot oder "Werding" (http://www.faq-o-matic.net/2007/08/25/werding-v2-english-version-online-data-recovery-for-active-directory/) © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Lebensdauer eines Objekts Zwei Phasen "Deleted Object Lifetime" "Tombstone Lifetime"

Lebensdauer eines Objekts Objekte analysieren "deleted objects": OID: 1.2.840.113556.1.4.417 "recycled und deleted objects" OID: 1.2.840.113556.1.4.2064

Lebensdauer eines Objekts 180 Tage Live Object Tombstone Object Garbage collection Windows Server 2008 Returns Tombstones LDAP OID 1.2.840.113556.1.4.417 Windows Server 2008 R2 with Recycle Bin enabled (If not enabled, behavior is similar to Windows Server 2008) Returns Deleted LDAP OID 1.2.840.113556.1.4.2064 Returns Deleted and Recycled Live Object Deleted Object Recycled Object Garbage collection 180 Tage 180 Tage

Voraussetzungen und Nebenwirkungen AD Papierkorb erst wenn: alle Domänen Controller in der Gesamtstruktur auf Windows Server 2008 R2 umgestellt sind in den Gesamtstrukturfunktionsmodus "Windows Server 2008 R2" umgeschalten wurde Wenn der AD Papierkorb aktiviert ist können nur Objekte wiederhergestellt werden die sich in der "Deleted Object Lifetime" Phase befinden

Papierkorb Aktivieren Forestweiter Geltungsbereich und nicht reversibel Enable-ADOptionalFeature "Recycle Bin Feature" -Scope Forest –Target <forest> Get-ADOptionalFeature -Filter {Name –Like "*"}

Papierkorb aktiviert? Active Directory Recycle Bin, GUID 766ddcd8-acd0-445e-f3b9-a7f9b6744f2a

Managed Service Accounts Neuer AD Kontentyp automatisches Kennwort Management vereinfachtes SPN Management Verwaltung und Voraussetzung (noch?) nicht mit AD Benutzer & Computer mit Powershell New-ADServiceAccount –SAMAccountName <name> Install-ADServiceAccount –Identity <name> jeweils nur auf einem Computer verwendbar .Net Framework 3.5 (oder 3.5.1) RSAT AD Powershell

Managed Service Accounts verwaltet im AD für Service oder IIS Appl.pool Virtual Account Logon Name = "NT SERVICE\<svcname>"

Offline Domain Join "Domain Join" ohne Kontakt zum DC Computer werden im AD "prestaged" spart einen Reboot -> schnellere Bereitstellung massenweiser VMs PC Lieferant kann Rechner fertig vorinstallieren

AD DS Papierkorb Wiederherstellen gelöschter Objekte Demo AD DS Papierkorb Wiederherstellen gelöschter Objekte

Your MSDN resources check out these websites, blogs & more! 3/28/2017 8:11 PM Your MSDN resources check out these websites, blogs & more! Presentations TechDays: www.techdays.ch MSDN Events: http://www.microsoft.com/switzerland/msdn/de/presentationfinder.mspx MSDN Webcasts: http://www.microsoft.com/switzerland/msdn/de/finder/default.mspx MSDN Events MSDN Events: http://www.microsoft.com/switzerland/msdn/de/events/default.mspx Save the date: Tech•Ed 2009 Europe, 9-13 November 2009, Berlin MSDN Flash (our by weekly newsletter) Subscribe: http://www.microsoft.com/switzerland/msdn/de/flash.mspx MSDN Team Blog RSS: http://blogs.msdn.com/swiss_dpe_team/Default.aspx Developer User Groups & Communities Mobile Devices: http://www.pocketpc.ch/ Microsoft Solutions User Group Switzerland: www.msugs.ch .NET Managed User Group of Switzerland: www.dotmugs.ch FoxPro User Group Switzerland: www.fugs.ch © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Your TechNet resources check out these websites, blogs & more! 3/28/2017 8:11 PM Your TechNet resources check out these websites, blogs & more! Presentations TechDays: www.techdays.ch TechNet Events TechNet Events: http://technet.microsoft.com/de-ch/bb291010.aspx Save the date: Tech•Ed 2009 Europe, 9-13 November 2009, Berlin TechNet Flash (our by weekly newsletter) Subscribe: http://technet.microsoft.com/de-ch/bb898852.aspx Schweizer IT Professional und TechNet Blog RSS: http://blogs.technet.com/chitpro-de/ IT Professional User Groups & Communities SwissITPro User Group: www.swissitpro.ch NT Anwendergruppe Schweiz: www.nt-ag.ch PASS (Professional Association for SQL Server): www.sqlpass.ch © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Save the date for tech·days next year! 3/28/2017 8:11 PM Save the date for tech·days next year! 7. – 8. April 2010 Congress Center Basel © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

Premium Sponsoring Partners 3/28/2017 8:11 PM Premium Sponsoring Partners Classic Sponsoring Partners Media Partner © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.

3/28/2017 8:11 PM © 2007 Microsoft Corporation. All rights reserved. Microsoft, Windows, Windows Vista and other product names are or may be registered trademarks and/or trademarks in the U.S. and/or other countries. The information herein is for informational purposes only and represents the current view of Microsoft Corporation as of the date of this presentation. Because Microsoft must respond to changing market conditions, it should not be interpreted to be a commitment on the part of Microsoft, and Microsoft cannot guarantee the accuracy of any information provided after the date of this presentation. MICROSOFT MAKES NO WARRANTIES, EXPRESS, IMPLIED OR STATUTORY, AS TO THE INFORMATION IN THIS PRESENTATION.