240 likes | 472 Views
Understanding Active Directory. Christopher Chapman | MCT Content PM, Microsoft Learning, PDG Planning , Microsoft. Active Directory Rights Management Services (AD RMS). Module Overview . AD RMS Overview Understanding AD RMS Managing AD RMS . Lesson 1: AD RMS Overview .
E N D
Understanding Active Directory Christopher Chapman | MCT Content PM, Microsoft Learning, PDG Planning , Microsoft
Module Overview • AD RMS Overview • Understanding AD RMS • Managing AD RMS
Lesson 1: AD RMS Overview • Overview of AD RMS • How AD RMS Works • Options for Using AD RMS
AD RMS can be used to: Overview of AD RMS Active Directory Rights Management Services (AD RMS) is an information protection technology that works with AD RMS-enabled applications to help safeguard digital information from unauthorized use Restrict access to an organization’s intellectual property Limit the actions users can perform on content Limit the risk of content being exposed outside the organization
How AD RMS Works RMS Server 1 4 5 3 2 Information Author Recipient
Lesson 2: Understanding AD RMS • AD RMS Components • AD RMS Certificates and Licenses • How AD RMS Secures Content • How AD RMS Restricts Access to Data • Demonstration: How AD RMS Works
AD RMS Components SQL Server Active Directory Domain Controller AD RMS Server RMS Enabled Application Information Author Recipient
AD RMS Certificates and Licenses include: AD RMS Certificates and Licenses • Lockbox • Machine certificate • Rights account certificate • Client licensor certificate • Publishing license • Use license • Revocation list
How AD RMS Protects Content SQL Server Active Directory Domain Controller 3 AD RMS Server 2 1 RMS-enabled Application 4 Recipient Information Author
How AD RMS Restricts Access to Data 3 Active Directory Domain Controller SQL Server 2 AD RMS Server 4 5 1 RMS-enabled Application Recipient Information Author
Demonstration: Installing AD RMS In this demonstration, you will see how to install AD RMS
Lesson 3: Managing AD RMS • AD RMS Server Role Installation Overview • Demonstration: AD RMS Management Console • What Are Exclusion Policies? • What Are Rights Policy Templates?
Installation Requirements: AD RMS Server Role Installation Overview • The server must be a member of the domain • Additional Roles required: • Web Server (IIS) • Windows Process Activation Service (WPAS) • Message Queuing • Windows Internal Database • Service Account • Microsoft SQL Server
Demonstration: AD RMS Management Console • In this demonstration, you will see the AD RMS Management Console
Exclusion can be enabled by: What Are Exclusion Policies? Exclusion policies prevent users, applications, lockboxes, and operating systems from acquiring certificates and licenses from servers in the cluster • User ID • Public Key String • Application by version • Lockbox Version • Windows Version
Administrators can use rights policy templates to: What Are Rights Policy Templates? Rights policy templates provide a manageable, consistent way for workers to apply predefined policies to information Apply expiration policies for content and licenses • Set extended policies that: • Allow content to be viewed in a browser • Disable client-side caching of use licenses Set revocation policies to enable content rights to be revoked Templates are defined for each language to be supported
Module Review and Takeaways • Review Questions • Summary of AD RMS