HOME  |    TRAINING  |   FREE TUTORIALS   |   JOBS
Find out more about our new RSS feed.
FREE Tutorial
WINDOWS 2000 ADMINISTRATIVE OVERVIEW

CATEGORY
SEARCH OUR OTHER TUTORIALS

DESCRIPTION

This is module 1 of our full membership training course MCSE - Windows 2000 Administration.
Click here to be kept informed of our new Tutorials.


TUTORIAL TAKEN FROM COURSE : MCSE - WINDOWS 2000 ADMINISTRATION

FULL COURSE DETAILS

This course provides readers with the knowledge and skills necessary to perform administration tasks in a single-domain Microsoft Windows 2000-based network. Learning is reinforced by practical, hands-on lab sessions and review questions throughout the course. When taken in conjunction with our "MCSE - Windows 2000 Support" course, this course will help to prepare readers for the following Microsoft Certified Professional exams: (70-210) Installing, Configuring and Administering Microsoft Windows 2000 Professional and (70-215) Installing, Configuring and Administering Microsoft Windows 2000 Server.

TO ACCESS THE FULL COURSE AND HUNDREDS OF OTHERS, CLICK HERE.


What you will learn in this module:

  • Understand the difference between workgroups and domains
  • Differentiate between domains and Organisational Units
  • Be able to use the DCPROMO command to promote a server
  • Identify trees and forests
  • Be able to use Management Console and create a taskpad
  • Be able to create an OU, and delegate control to it

Directory Services

Computers on a Microsoft network are grouped logically into either workgroups or domains. Computers in a workgroup are sometimes referred to as standalone computers; computers in a domain are sometimes called member computers.

When you have installed Windows 2000, the computer can be moved from a workgroup into a domain; it can also be moved between domains, and ultimately, removed from a domain and placed back in a workgroup environment.

Workgroups



Workgroups are designed to support small groups of users. There is no centralised management of user accounts or of resources, and each machine requires a separate administrator.

A workgroup may evolve as an organisation starts to network its small number of computers.

However, once there are a certain number of machines on the network, the ad-hoc nature of a workgroup no longer suits, and the domain model should be utilised to manage the resources.

Domains



In Windows 2000, it is possible to configure domains. These are logical groups of computers on a network, like workgroups, but there the similarity ends.

A domain is the basic administrative building block in Windows 2000. To create a domain, you will need a Windows 2000 server, and the administrator of the system will need to promote the machine to domain controller.

You can define as many domain controllers as you need using this process.

Now we have our domain, the key benefits are :

  • Centralised logon control
  • Centralised user and group management
  • Better control of resources
  • Single group policy for whole domain

In Windows NT 4 the domain was :

  • A replication boundary - All domain controllers received updates to their SAM via the PDC at automated intervals
  • An administrative boundary - An administrator in the domain can manage all of the domain

However, in Windows 2000, the domain can be broken down into administrative units called OUs (Organisational Units). This allows for the delegation of administration.

In addition, the physical topology of the network can be made separate from the logical topology, through the use of sites. In Windows 2000 a site is the replication boundary, although all computers initially belong to the same site. This means the domain is no longer the replication boundary.

Active Directory Structures

Trees



A Domain Tree is a group of domains that share a contiguous namespace as above. These domains are all connected together and users in any domain potentially have access to resources in any of the domains within the tree.

The lines between the domains represent automatic two way, transitive trusts. This means that when you add a domain to a tree there is no need to set up trust relationships between the domains. It also means, as is the case of the illustration above, that a user in admin.glasgow.comsurf.co.uk could potentially access resources in comsurf.co.uk even though there is not a direct trust.

As a network designer, you should attempt to minimise the number of domains because it will simplify things.

To create a tree, the installer creates the root domain first by promoting a domain controller in that domain. Then all other domains are promoted in such a way as to define the link between these domains, and the parent-child relationship.


NEXT PAGE



5 RELATED COURSES AVAILABLE
MCSE - UPDATING TO WINDOWS 2000
The goal of this course is to provide Microsoft Windows NT 4.0 support professionals with the knowledge and skill....
MCSE - WINDOWS 2000 ADMINISTRATION
This course provides readers with the knowledge and skills necessary to perform administration tasks in a single-....
MCSE - WINDOWS 2000 SUPPORT
This course is designed to provide support professionals with the knowledge and skills necessary to install and c....
MCSE - DESIGNING AND IMPLEMENTING WINDOWS 2000 DIRECTORY SERVICES
This practical course willl provide support professionals with the knowledge and skills necessary to plan, design....
MCSE - SUPPORTING EXCHANGE SERVER 2000
This course will teach support professionals the skills necessary to support Microsoft Exchange Server 2000. Lear....
 
1 RELATED JOBS AVAILABLE
SUPPORT SERVICES ENGINEER
<P>Support services Engineer</P><P>My client is looking for an experienced IT Maintenance....
CONTACT US
Monday 8th September 2008  © COPYRIGHT 2008 - VISUALSOFT