当前位置:网站首页>Introduction to Microsoft ad super Foundation
Introduction to Microsoft ad super Foundation
2022-07-08 01:53:00 【nington01】
Microsoft Active Directory(AD) It can be said to be the most famous local directory service or identity source in the world (IdP). It was developed in 20 century 90 In the late S and 21 The beginning of the century witnessed the modernization of identity management . But no matter IT How the environment develops , Administrators and enterprises are right AD Always have a lot of questions , Even misunderstandings , Even in the AD It has not been completely eliminated after wide application .
This issue is about Microsoft AD The basics of the Q & a series , The article will try to use the simplest and intuitive explanation to answer about AD All kinds of problems , This issue mainly includes Microsoft AD Basic concepts of 、 Protocol used 、 Target customers, etc .
1. What is? Active Directory?
AD Is a directory service or identity provider (IdP), On 1999 First launched in AD, and Windows 2000 Server Release with version .AD It is mainly to help administrators connect users to Windows Of IT resources , At the same time, management and protection are based on Windows Business systems and Applications .AD Responsible for storing relevant network objects ( Such as user 、 Group 、 System 、 The Internet 、 application 、 Digital assets, etc ) And their interrelationships .
Administrators can use AD Create users and authorize them to access Windows terminal 、 Servers and Applications . in addition ,AD It can also be used to control system groups 、 Enforce security settings and software updates . Access and control are implemented based on the concept of domain . So called domain , In fact, it is a concept of inclusion and exclusion , Traditionally, it is used to distinguish physical locations . There used to be a lot of IT Resources are hosted locally , Become a domain ( Intranet ) Part of . Intranet users can access the local resources they need . Users outside the intranet need VPN , Pretend that the user is on the intranet , To access . When IT When resources and personnel are in the same physical environment , This access control method can achieve good results . by comparison ,AD Identity and access management (IAM) And further expand the scope of application , It usually also involves single sign on (SSO) Or mobile device management (MDM) And other auxiliary solutions .
2. Active Directory Which protocol to use ?
Active Directory Mainly used DNS/DHCP Network protocol and Lightweight Directory Access Protocol (LDAP), And Microsoft proprietary for authentication Kerberos edition . Many people ask why AD There are so few native supported protocols , No, SAML and RADIUS These commonly used protocols . Although I don't know what Microsoft thinks , But multi protocol is indeed the future direction of identity and access management . And let AD Support SAML、RADIUS Such agreement , You can use Microsoft add-on solutions or third-party solutions .
3. Why? Active Directory It is called active directory ?
For now AD The most appropriate explanation for the origin of the name is AD It will actively update the information stored in the directory . for example , When an administrator adds or removes users from the organization ,Active Directory The user's changes will be automatically copied to all directory servers . This change happens regularly , In order to synchronize the latest information . In today's IT In the system ,AD This initiative to update information has become commonplace . however , Before directory services were computerized , The concept of automatic directory update is still of some innovative significance . After all AD There is no Wikipedia in the era of launch , People still rely on encyclopedias to check things .
4. Which enterprises are using Active Directory?
Generally speaking , The enterprise deployed AD after , Employees use it every day without knowing it AD The function of , Including the login of the working machine 、 Access to applications 、 Printer and file sharing . but AD The main users of are actually administrators , They need to be practical 、 Management and configuration AD. Specifically, it may include IT department 、IT The security department 、 Development, operation and maintenance and IT The engineering team .
Almost all enterprises and organizations in the world will use AD Directory services including , In addition to improving productivity , It can also control the impact on enterprises IT Access to resources . Access control is a major focus of modern enterprise operations .
5. Why? Active Directory Very important ?
As early as 21 At the beginning of the century ,Active Directory It has been one of the gears driving the business world . Almost all enterprises, large and small, have deployed AD. Such a basic tool runs in the background in obscurity , So that you use it every day AD Of users are not even aware of its existence , I don't know it's a secure access terminal 、 application 、 The great hero of the network and documents . In short , The main responsibility of directory service is to connect users to the corresponding IT resources , and AD Connect users to Windows Resources have been served for nearly 20 year .
边栏推荐
- QT build with built-in application framework -- Hello World -- use min GW 32bit
- 用户之声 | 冬去春来,静待花开 ——浅谈GBase 8a学习感悟
- Usage of hydraulic rotary joint
- Introduction à l'outil nmap et aux commandes communes
- Is it necessary for project managers to take NPDP? I'll tell you the answer
- Redux使用
- Matlab r2021b installing libsvm
- ClickHouse原理解析与应用实践》读书笔记(8)
- 不算不知道,花呗分期的真实利率居然这么高
- Version 2.0 of tapdata, the open source live data platform, has been released
猜你喜欢
能力贡献 GBASE三大解决方案入选“金融信创生态实验室-金融信创解决方案(第一批)”
日志特征选择汇总(基于天池比赛)
Voice of users | understanding of gbase 8A database learning
Nmap tool introduction and common commands
Application of slip ring in direct drive motor rotor
Apache多个组件漏洞公开(CVE-2022-32533/CVE-2022-33980/CVE-2021-37839)
给刚入门或者准备转行网络工程师的朋友一些建议
nacos-微服务网关Gateway组件 +Swagger2接口生成
break net
List of top ten domestic industrial 3D visual guidance enterprises in 2022
随机推荐
node js 保持长连接
SQLite3 data storage location created by Android
Reading notes of Clickhouse principle analysis and Application Practice (7)
Capability contribution three solutions of gbase were selected into the "financial information innovation ecological laboratory - financial information innovation solutions (the first batch)"
If time is a river
List of top ten domestic industrial 3D visual guidance enterprises in 2022
Usage of xcolor color in latex
The method of using thread in PowerBuilder
QML fonts use pixelsize to adapt to the interface
uniapp一键复制功能效果demo(整理)
Is it safe to open an account on your mobile phone for small amount of stock speculation?
由排行榜实时更新想到的数状数值
common commands
Voice of users | winter goes and spring comes, waiting for flowers to bloom -- on gbase 8A learning comprehension
[SolidWorks] modify the drawing format
Break algorithm --- map
Kafka connect synchronizes Kafka data to MySQL
【SolidWorks】修改工程图格式
Cross modal semantic association alignment retrieval - image text matching
Leetcode exercise - Sword finger offer 36 Binary search tree and bidirectional linked list