360 likes | 646 Views
Managing Windows Server 2003 and Active Directory Best Practices. ธนินทร์ น้อยรังษี Tanin Noirungsee Technology Specialist Microsoft (Thailand). What we will cover:. Active Directory operations and tasks DHCP operations and tasks DNS operations and tasks WINS operations and tasks
E N D
Managing Windows Server 2003 and Active Directory Best Practices ธนินทร์ น้อยรังษี Tanin Noirungsee Technology Specialist Microsoft (Thailand)
What we will cover: • Active Directory operations and tasks • DHCP operations and tasks • DNS operations and tasks • WINS operations and tasks • Best Practices: • Guide for Securing Windows Server Active Directory Installations • Windows Server 2003 Active Directory Branch Office
Agenda • Active Directory Operations • DHCP Operations • DNS Operations • WINS Operations • Best Practices: • Guide for Securing Windows Server Active Directory Installations • Windows Server 2003 Active Directory Branch Office
Service Level ManagementFinancial ManagementService Continuity MgmtAvailability ManagementCapacity ManagementWorkforce Management Change ManagementConfiguration MgmtRelease Management System AdministrationSecurity AdministrationService Monitoring and ControlJob SchedulingNetwork AdministrationDirectory Services AdministrationPrint Output MgmtStorage Management Service DeskIncident ManagementProblem Management Active Directory OperationsMicrosoft Operations Framework - MOF
Change management • Release/systems engineering • Configuration control/asset management • Software distribution/licensing • Quality assurance • Messaging operations • Database operations • Network administration • Monitoring metrics • Availability management • Enterprise architecture • Infrastructure engineering • Capacity management • Cost/IT budget mgmt • Resource and long range planning • Service desk/help desk • Production/production support • Problem management • Service level management • Maintenance vendors • Environment support • Managed services outsourcers • Managed services trading partners • Software/hardware suppliers • Intellectual property protection • Network and system security • Virus and intrusion detection • Audit and compliance admin • Contingency planning Active Directory OperationsMOF Team Model and Functional Roles R e l e a s e I n f r a s t r u c t u r e S e c u r i t y S u p p o r t P a r t n e r O p e r a t I o n s
Active Directory OperationsOperating Quadrant Processes • Daily • Back up Active Directory • As needed • Restore Active Directory • Manage a SYSVOL • Manage Sites • Recover a domain controller through reinstallation • Security • As needed
Active Directory OperationsOptimizing Quadrant Processes • Availability management • As needed • Managing the Active Directory database • Adding a Global Catalog • Managing the Windows Time Service • Managing trusts • Capacity management • As needed • Removing Global Catalog • Reducing workload on PDC emulator
Active Directory OperationsChanging Quadrant • Release Management • As needed • Installing a domain controller for an existing domain • Change Management • As needed • Removing Active Directory
demonstration • Active Directory Operations • Managing Windows Time Service • Managing the SYSVOL • Reducing Workload on the PDC Emulator • Choosing Standby Operations Master • Transferring to the Standby Operations Master Role
Agenda • Active Directory Operations • DHCP Operations • DNS Operations • WINS Operations • Best Practices: • Guide for Securing Windows Server Active Directory Installations • Windows Server 2003 Active Directory Branch Office
DHCP OperationsOperating Quadrant Processes • Daily • Data backup • Service monitoring and control • Weekly • Storage resource management • As needed • Data backup, restore and recovery
DHCP OperationsSupport Quadrant Processes • Daily • Classification and initial support • Investigation and diagnosis • Weekly • Investigation and diagnosis • As needed • Problem management
DHCP OperationsOptimizing Quadrant Processes • Monthly • Managing resource and service performance • Capacity management • Monitoring • Analyzing • Performance tuning • Reporting
DHCP OperationsChanging Quadrant Processes • Daily • Change classification • Monthly • Configuration management • Address pool exclusions • Lease durations • Reservations
demonstration • DHCP Operations • Data Backup, Restore and Recovery • Monitoring • Proactive Analysis and Review
Agenda • Active Directory Operations • DHCP Operations • DNS Operations • WINS Operations • Best Practices: • Guide for Securing Windows Server Active Directory Installations • Windows Server 2003 Active Directory Branch Office
DNS OperationsOperating Quadrant Processes • Daily • Perform monitoring • Data backup • Weekly • Storage resource management • As needed • Data backup, restore and recovery
DNS OperationsSupport Quadrant Processes • Daily • Proactive analysis and review • Weekly • Proactive analysis and review • Monthly • Incident closure • As needed • Problem recording and classification
DNS OperationsOptimizing Quadrant Processes • Daily • Managing resource and service performance • Monthly • Managing resource and service performance • As needed • Design for recovery
DNS OperationsChanging Quadrant Processes • Daily • Change classification and authorization • Weekly and Monthly • Review configuration items
demonstration • DNS Operations • Reviewing Configuration Items • Data Backup, Restore and Recovery • Managing Resources and Service Performance • Proactive Analysis and Review
Agenda • Active Directory Operations • DHCP Operations • DNS Operations • WINS Operations • Best Practices: • Guide for Securing Windows Server Active Directory Installations • Windows Server 2003 Active Directory Branch Office
WINS OperationsOperating Quadrant Processes • Daily • Data backup • Proactive analysis and review • Weekly • Storage resource management • As needed • Data backup, restore and recovery
WINS OperationsSupport Quadrant Processes • Daily • Investigation and diagnosis • Proactive analysis and review • Weekly • Investigation and diagnosis
WINS OperationsOptimizing Quadrant Processes • Monthly • Managing resources and server performance • Capacity management • Monitoring • Analyzing • Performance tuning • Reporting
WINS OperationsChanging Quadrant Processes • Daily • Change classification and authorization • Monthly • Reviewing configuration items
demonstration • WINS Operations • Reviewing Configuration Items • Data Backup, Restore and Recovery • Proactive Analysis and Review
Agenda • Active Directory Operations • DHCP Operations • DNS Operations • WINS Operations • Best Practices: • Guide for Securing Windows Server Active Directory Installations • Windows Server 2003 Active Directory Branch Office
For More Information… • Microsoft Solutions for Management • www.microsoft.com/business/reducecosts/efficiency/manageability/default.mspx • Microsoft Service Product Operations Guides • www.microsoft.com/technet/itsolutions/techguide/msm/winsrvmg/default.mspx
Best Practices: Guide for Securing Active Directory Installations • Planning In-Depth Active Directory Security • Establishing Secure Active Directory Boundaries • Deploying Secure Domain Controllers • Strengthening Domain and Domain Controller Policy Settings • Establishing Secure Administrative Practices • Securing DNS
Best Practices: Guide for Securing Active Directory Installations • ADSecurity2003.doc • Link: http://www.microsoft.com/windowsserver2003/techinfo/overview/adsecurity.mspx
Best Practices: Windows Server 2003 Active Directory Branch Office • Planning for Active Directory Deployment in a Branch Office Environment – Part I. 6 chapters • Active Directory branch office planning process and provide recommendations on how to go about it. • Technical background information to help you understand the rationale for implementing your branch office design. • Deploying Active Directory in a Branch Office Environment – Part II. 8 Chapters • Procedures necessary to deploy Active Directory in your branch office environment. • Scripts and Utilities • Scripts and updated utilities that you can use during the deployment process. • Significantly simplify some of the operations used in the deployment process outlined in this guide.
Best Practices: Windows Server 2003 Active Directory Branch Office • adbodg03.exe (self-extract zip file) • Link: http://www.microsoft.com/downloads/details.aspx?FamilyId=9353A4F6-A8A8-40BB-9FA7-3A95C9540112&displaylang=en
Session Summary • MSM is a combination of best practices to help customers achieve operational excellence • MOF includes how to plan and deploy and maintain IT operational processes • Each Team role has specific functions and goals in the MOF • Each function and goal plays a key role to success