当前位置:网站首页>Introduction to Microsoft ad super Foundation
Introduction to Microsoft ad super Foundation
2022-07-08 01:53:00 【nington01】
Microsoft Active Directory(AD) It can be said to be the most famous local directory service or identity source in the world (IdP). It was developed in 20 century 90 In the late S and 21 The beginning of the century witnessed the modernization of identity management . But no matter IT How the environment develops , Administrators and enterprises are right AD Always have a lot of questions , Even misunderstandings , Even in the AD It has not been completely eliminated after wide application .
This issue is about Microsoft AD The basics of the Q & a series , The article will try to use the simplest and intuitive explanation to answer about AD All kinds of problems , This issue mainly includes Microsoft AD Basic concepts of 、 Protocol used 、 Target customers, etc .
1. What is? Active Directory?
AD Is a directory service or identity provider (IdP), On 1999 First launched in AD, and Windows 2000 Server Release with version .AD It is mainly to help administrators connect users to Windows Of IT resources , At the same time, management and protection are based on Windows Business systems and Applications .AD Responsible for storing relevant network objects ( Such as user 、 Group 、 System 、 The Internet 、 application 、 Digital assets, etc ) And their interrelationships .
Administrators can use AD Create users and authorize them to access Windows terminal 、 Servers and Applications . in addition ,AD It can also be used to control system groups 、 Enforce security settings and software updates . Access and control are implemented based on the concept of domain . So called domain , In fact, it is a concept of inclusion and exclusion , Traditionally, it is used to distinguish physical locations . There used to be a lot of IT Resources are hosted locally , Become a domain ( Intranet ) Part of . Intranet users can access the local resources they need . Users outside the intranet need VPN , Pretend that the user is on the intranet , To access . When IT When resources and personnel are in the same physical environment , This access control method can achieve good results . by comparison ,AD Identity and access management (IAM) And further expand the scope of application , It usually also involves single sign on (SSO) Or mobile device management (MDM) And other auxiliary solutions .
2. Active Directory Which protocol to use ?
Active Directory Mainly used DNS/DHCP Network protocol and Lightweight Directory Access Protocol (LDAP), And Microsoft proprietary for authentication Kerberos edition . Many people ask why AD There are so few native supported protocols , No, SAML and RADIUS These commonly used protocols . Although I don't know what Microsoft thinks , But multi protocol is indeed the future direction of identity and access management . And let AD Support SAML、RADIUS Such agreement , You can use Microsoft add-on solutions or third-party solutions .
3. Why? Active Directory It is called active directory ?
For now AD The most appropriate explanation for the origin of the name is AD It will actively update the information stored in the directory . for example , When an administrator adds or removes users from the organization ,Active Directory The user's changes will be automatically copied to all directory servers . This change happens regularly , In order to synchronize the latest information . In today's IT In the system ,AD This initiative to update information has become commonplace . however , Before directory services were computerized , The concept of automatic directory update is still of some innovative significance . After all AD There is no Wikipedia in the era of launch , People still rely on encyclopedias to check things .
4. Which enterprises are using Active Directory?
Generally speaking , The enterprise deployed AD after , Employees use it every day without knowing it AD The function of , Including the login of the working machine 、 Access to applications 、 Printer and file sharing . but AD The main users of are actually administrators , They need to be practical 、 Management and configuration AD. Specifically, it may include IT department 、IT The security department 、 Development, operation and maintenance and IT The engineering team .
Almost all enterprises and organizations in the world will use AD Directory services including , In addition to improving productivity , It can also control the impact on enterprises IT Access to resources . Access control is a major focus of modern enterprise operations .
5. Why? Active Directory Very important ?
As early as 21 At the beginning of the century ,Active Directory It has been one of the gears driving the business world . Almost all enterprises, large and small, have deployed AD. Such a basic tool runs in the background in obscurity , So that you use it every day AD Of users are not even aware of its existence , I don't know it's a secure access terminal 、 application 、 The great hero of the network and documents . In short , The main responsibility of directory service is to connect users to the corresponding IT resources , and AD Connect users to Windows Resources have been served for nearly 20 year .
边栏推荐
- Why did MySQL query not go to the index? This article will give you a comprehensive analysis
- Voice of users | winter goes and spring comes, waiting for flowers to bloom -- on gbase 8A learning comprehension
- C language - modularization -clion (static library, dynamic library) use
- 跨模态语义关联对齐检索-图像文本匹配(Image-Text Matching)
- Leetcode exercise - Sword finger offer 36 Binary search tree and bidirectional linked list
- burpsuite
- Tencent game client development interview (unity + cocos) double bombing social recruitment 6 rounds of interviews
- 从Starfish OS持续对SFO的通缩消耗,长远看SFO的价值
- ROS problems (topic types do not match, topic datatype/md5sum not match, MSG XXX have changed. rerun cmake)
- adb工具介绍
猜你喜欢

The function of carbon brush slip ring in generator

Optimization of ecological | Lake Warehouse Integration: gbase 8A MPP + xeos

【目标跟踪】|DiMP: Learning Discriminative Model Prediction for Tracking

Voice of users | understanding of gbase 8A database learning

I don't know. The real interest rate of Huabai installment is so high

ArrayList源码深度剖析,从最基本的扩容原理,到魔幻的迭代器和fast-fail机制,你想要的这都有!!!

COMSOL----微阻梁模型的搭建---最终的温度分布和变形情况---材料的添加

Leetcode exercise - Sword finger offer 36 Binary search tree and bidirectional linked list

给刚入门或者准备转行网络工程师的朋友一些建议

Partage d'expériences de contribution à distance
随机推荐
Break algorithm --- map
为什么更新了 DNS 记录不生效?
Matlab r2021b installing libsvm
qt--將程序打包--不要安裝qt-可以直接運行
Qml 字体使用pixelSize来自适应界面
[error] error loading H5 weight attributeerror: 'STR' object has no attribute 'decode‘
Redux使用
List of top ten domestic industrial 3D visual guidance enterprises in 2022
How mysql/mariadb generates core files
Working principle of stm32gpio port
QT build with built-in application framework -- Hello World -- use min GW 32bit
I don't know. The real interest rate of Huabai installment is so high
微信小程序uniapp页面无法跳转:“navigateTo:fail can not navigateTo a tabbar page“
Qt - - Packaging Programs - - Don't install Qt - can run directly
SQLite3 data storage location created by Android
common commands
Is it necessary for project managers to take NPDP? I'll tell you the answer
不算不知道,花呗分期的真实利率居然这么高
Nacos microservice gateway component +swagger2 interface generation
Mysql database (2)