170 likes | 301 Views
UFEEP4-15-M - Week 3 The Microsoft Windows Infrastructure at UWE.
E N D
UFEEP4-15-M - Week 3 The Microsoft Windows Infrastructure at UWE A detailed look at the Microsoft Windows Infrastructure at UWE including Active Directory (AD), MIIS, Exchange, SMS, IIS, SQL Server, Terminal Services. We’ll consider how we use the Microsoft technologies platform to automate and manage the infrastructure. Alistair Sandford
Agenda • Windows infrastructure at UWE • Managing a Windows Infrastructure • Bigger picture
OPERATING SYSTEM DATABASE BACKUP & MONITORING LAYER SERVER/HARDWARE LAYER APPLICATION LAYER USER INTERFACE LAYER PHYSICAL LAYER NETWORK LAYER Where Windows fits in OPERATIONAL
Windows Infrastructure @ UWE Microsoft Active Directory (AD) Microsoft Identity Integration Server (MIIS) Users (30,000) Microsoft Systems Management Server (SMS) Applications (300) PCs (3,200) / Windows Terminals (1,800) Servers (250)
Management - Active Directory • What is Active Directory? • Logical concepts • Physical concepts • The UWE AD
What is Active Directory? • Directory Service (LDAP) • Structured Database of ‘objects’ • Searchable, Indexed, consistent schema • Authentication and Authorisation • Confirms the user is valid (username & password) • Allows or denies access to resources • Enables administration of resources • Assign policies (user and computer) • deploy software and updates
Logical Concepts / Domains • Database storing collections of objects • Structured (Logical not physical/geographical) • Boundary of administration • Controls access to resources Do I know you? Do you have access to this PC? Do I need to configure the PC for you? Do I need to secure the PC from you? Do you have access to other resources? university.ac.uk
Logical Concepts / Trees • Hierarchy of Domains forming a contiguous namespace • Connected via Trust Relationships • All domains in the tree share • Schema • Configuration • Global Catalog abc.com uk.abc.com usa.abc.com it.uk.abc.com
Logical Concepts / Forests • Hierarchy of Domains forming a contiguous or disjoint namespace • Connected via Trust Relationships • All domains in the forest share • Schema • Configuration • Global Catalog abc.com uk.abc.com usa.abc.com xyz.com
Physical Concepts / DCs • Domain Controllers • Multiple DCs for resilience • Each can run different multiple roles • Replication between controllers
Physical Concepts / Sites • What is a site? • A set of well connected IP subnets • Sites are connected with site links New york London paris abc.com
Physical Concepts / GC • What is the Global Catalog? • A subset of the schema attributes • Contains key information which is shared across forests
The UWE AD • 2 x Forests (Internal + DMZ) • 3 x Domains • 1 x Site (for all campuses) • 55,000 Objects • 5,000 computers • 48,000 users • 7,000 groups • 7 x DCs ads campus perim campus.ads.uwe.ac.uk
Managing the infrastructure / SMS • Systems Management Server • Software Distribution • Application ‘Packaged’ (creation of a customised installation) then ‘Advertised’ (made available as mandatory or optional) to a ‘Collection’ (an individual or group of computers or users) • Asset Management (Hardware and Software) • Update/Patch Management • Operating System Deployment Pack • Add-on to enable the building of PC’s / Servers
Managing the infrastructure / MIIS • Microsoft Identity Integration Server • Synchronises identity information between different systems • Provisions and de-provisions accounts • Synchronises and manages passwords
Windows Infrastructure @ UWE • Products currently in use: - • Windows Server 2003 / 2000 • Windows XP / 2000 • Windows Mobile / XP Tablet Edition • SQL Server 2005 / 2000 [50+ Databases] • Exchange Server 2003 • Internet Information Server (IIS) [100+ Web Sites] • Terminal Services [40+ Server Farm] • Live Communication Server • Identity Integration Server (MIIS) • ISA Server • Office SharePoint Server • Systems Management Server (SMS)