Speaking of AD DS we will not only have such a question, what it is, what the function and what it can bring to our work, and so on a series of questions, I will explain to you (personal opinion, welcome to discuss the Exchange ~)
AD DS What is it?
Speaking of AD DS had to mention Microsoft's server operating system: Windows Sever operating system, I believe a little it-based friends should Know win Server 2003, win server R2, win Server20 12 series of operating systems. These operating systems are generally installed in the company's purchased servers, which are used to provide different applications of the company's services, such as: File Sharing services, Web (website access) services, DNS domain name resolution services, etc. (these people should not be unfamiliar ~), this series of service functions are integrated in these win Server operating system, if you want to use the features, directly in the operating system to enable, simple and convenient.
ADDS and DNS, DHCP, and so on, is integrated in the win server version of the operating system, a role function, if you want to use the AD DS feature, directly enable, it is mainly to manage and control network resources in the enterprise, we described in detail later.
Note: Some friends will confuse adds and DC, here is a simple, AD DS is integrated in the win server operating system of a functional role, can be simply understood as a software. The DC is a hardware server that has the AD DS feature enabled.
AD DS What are the features?
ADDS provides a centralized system for managing users, computers, and other resources on the network, including centralized catalogs, single sign-on access, integrated security, scalability, public administration interfaces, and more. Simply put, AD DS is the security standardization management of the client. These are all very general, so here are a few examples of the scenarios and features that are simple to describe.
1 , user account password problem
General company will have a lot of staff, small dozens of people more than hundreds of people, thousands of people or even tens of thousands of people, each of these employees will have a login computer account password, and the different, and inevitably some users will forget their passwords, imagine if every day there are 3-5 personal secrets forgotten, Does it go to every client to hack the password? What makes it a colleague of it's Love ~ (can only hide in the corner secretly crying ~).
and AD can solve the above problems perfectly, in the enterprise deployment of AD can be user's account, password centralized management, simple and convenient. At any time can be reset through the background, modify the user account password, but also through the background to develop user password policies, such as: password complexity, in how long the password must be changed and password lock policy and other functions. Isn't it convenient? Not only can we not help but say: so easy! It no longer has to worry about password reset and other issues ~ (')
2 , Computer Management issues
A common phenomenon in enterprises is that employees will install a variety of software on the company's office computers, or copy things to their computers, and then lead to a heap of viruses in the computer, resulting in the inability to enter the operating system, and then call to seek it technical support, out of thin air increased a lot of work. No matter how hard and tired you have to do, who makes us it, but think about whether we can avoid this kind of thing happening?
Yes, you guessed it. AD DS makes it easy to control the user's ability to install software without any hassle for user-installable software, although AD DS can restrict users from installing software, as well as other features such as: You can use ad DS Unified to users of the PC deployment distribution software, restricting the computer's USB port, restricting the operation of specific software and background auto-uninstall software, the consent of the client desktop and other functions, centralized management of user PC software, greatly reducing the IT workload, so as it is we are not very happy?
3 , Integrated identity authentication function
ADDS In addition to standardized management of user accounts and computers, an advanced point is the integrated Identity authentication feature of AD DS, the so-called single sign-on.
An enterprise must have a lot of Office applications, such as: OA, cost control, CRM, PLM and other systems, and we will often use these systems in the work, imagine if the user every login to a system to enter a different user name and account password, I believe many users will crash , but also very easy to cause account password confusion, which in the invisible to the user's work burden. At this point we would like to be able to use the same account to log on to each system, so you can save the user memory password trouble. Then this requires a system for the account authentication of the authoritative authentication source, good AD DS can assume such a role. AD DS can be integrated with each system, for example: when the user logged into the Enterprise OA system, OA system through the background settings, the user's account information forwarded to the ad for identity authentication, AD account authentication passed, return to the authentication information to the OA system, the user can log into the OA system.
The above is the small part to nag content, today, hope that through this article can help you get a preliminary understanding of AD DS and its role, you are welcome to criticize correct, pots of friends we will talk next time, thank you.
This article is from the "is Wood Forest" blog, please be sure to keep this source http://qingmu.blog.51cto.com/4571483/1712012
Brief analysis of AD ds--ad DS overview