Models of Network Administration Week 5. Understanding the system as a whole Requires ability to see relationships and dependencies between distinct parts.

Slides:



Advertisements
Similar presentations
Microsoft Active Directory
Advertisements

Overview of local security issues in Campus Grid environments Bruce Beckles University of Cambridge Computing Service.
Welcome to Middleware Joseph Amrithraj
Automatic Configuration of DICOM Network Applications Experience with Frozen Draft of Supplement 67 DICOM Anniversary Conference & Workshop Baltimore,
Chapter 7 LAN Operating Systems LAN Software Software Compatibility Network Operating System (NOP) Architecture NOP Functions NOP Trends.
Distributed Systems 1 Topics  What is a Distributed System?  Why Distributed Systems?  Examples of Distributed Systems  Distributed System Requirements.
How to Succeed with Active Directory Robert Williams, PhD CEO Secure Logistix Corporation.
Naming Computer Engineering Department Distributed Systems Course Asst. Prof. Dr. Ahmet Sayar Kocaeli University - Fall 2014.
Objektorienteret Middleware Presentation 2: Distributed Systems – A brush up, and relations to Middleware, Heterogeneity & Transparency.
Active Directory: Final Solution to Enterprise System Integration
Distributed components
Network Management Overview IACT 918 July 2004 Gene Awyzio SITACS University of Wollongong.
City University London
3.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 3: Introducing Active Directory.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
Asper School of Business University of Manitoba Systems Analysis & Design Instructor: Bob Travica System architectures Updated: November 2014.
Systems Architecture, Fourth Edition1 Internet and Distributed Application Services Chapter 13.
2 Systems Architecture, Fifth Edition Chapter Goals Describe client/server and multi-tier application architecture and discuss their advantages compared.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
Windows 2000 Remote Access. Remote Access Overview With Windows 2000 remote access, remote access clients connect to remote access servers and are transparently.
Chapter 8: Network Operating Systems and Windows Server 2003-Based Networking Network+ Guide to Networks Third Edition.
3.1 © 2004 Pearson Education, Inc. Exam Managing and Maintaining a Microsoft® Windows® Server 2003 Environment Lesson 3: Introducing Active Directory.
Distributed Systems: Client/Server Computing
Installing and Maintaining ISA Server. Planning an ISA Server Deployment Understand the current network infrastructure Review company security policies.
By Karan Oberoi.  A directory service (DS) is a software application- or a set of applications - that stores and organizes information about a computer.
Understanding Active Directory
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
A centralized system.  Active Directory is Microsoft's trademarked directory service, an integral part of the Windows architecture. Like other directory.
1 CSIT 320. Just as the combination of a database and a database management system collects and organizes information about an institution/company/… as.
Chapter 14 Network Management Business Aspects Architectures Technology.
Chapter 11: Directory Services. Directory Services A directory service is a database that contains information about all objects on the network. Directory.
Directory services Unit objectives
Session 6 Windows Platform Dina Alkhoudari. Learning Objectives What is Active Directory Logical components of active directory Physical components of.
BASIC NETWORK CONCEPTS (PART 6). Network Operating Systems NNow that you have a general idea of the network topologies, cable types, and network architectures,
23/4/2001LDAP Overview - HEPix - LAL 2001 LDAP Overview HEPix – LAL Apr Michel Jouvin
Microsoft Active Directory(AD) A presentation by Robert, Jasmine, Val and Scott IMT546 December 11, 2004.
A detailed look at the Microsoft Windows Infrastructure at UWE including Active Directory (AD), MIIS, Exchange, SMS, IIS, SQL Server, Terminal Services.
Windows 2000 Operating System -- Active Directory Service COSC 516 Yuan YAO 08/29/2000.
COMP1321 Digital Infrastructure Richard Henson February 2014.
انستیتیوت تکنالوجی معلوماتی دیپارتمنت تکنالوجی معلوماتی IT 424 NETWORK ADMINISTRATION.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment, Enhanced Chapter 1: Introduction to Windows Server 2003.
Module 7 Active Directory and Account Management.
1 Introduction to Microsoft Windows 2000 Windows 2000 Overview Windows 2000 Architecture Overview Windows 2000 Directory Services Overview Logging On to.
LDAP (Lightweight Directory Access Protocol ) Speaker: Chang-Yu Wu Adviser: Quincy Wu Date:2007/08/22.
Microsoft Active Directory ITL. © 2005 Hans Kruse, Shawn Ostermann, Carl Bruggeman, Ohio University 2 Early Networking Schemes Windows LAN Manager, AppleTalk.
Windows 2000 Ronnie Park Jarod Nozawa Joe Stones Yassir Mhdhroui.
OVERVIEW OF ACTIVE DIRECTORY
Models of Network Administration Burgess (2 nd Ed) Chapter 6.
Linux Operations and Administration
Introduction to Active Directory
1 Active Directory Service in Windows 2000 Li Yang SID: November 2000.
Hussain Ali Department of Computer Engineering KFUPM, Dhahran, Saudi Arabia Active Directory.
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
1 Introduction to Active Directory Directory Services Uniquely identify users and resources on a network Provide a single point of network management.
Active Directory Domain Services (AD DS). Identity and Access (IDA) – An IDA infrastructure should: Store information about users, groups, computers and.
Planning an Active Directory Deployment Lesson 1.
E-commerce Architecture Ayşe Başar Bener. Client Server Architecture E-commerce is based on client/ server architecture –Client processes requesting service.
COMP1321 Digital Infrastructure Richard Henson March 2016.
1 Directory Services  What is a Directory Service?  Directory Services model  Directory Services naming model  X.500 and LDAP  Implementations of.
Internet and Distributed Application Services
Chapter 14 Network Management
File System Implementation
Active Directory Replication (Part 1) Paige Verwolf Support Professional Microsoft Corporation © 1999 Microsoft Corporation. All rights reserved.
Objectives Differentiate between the different editions of Windows Server 2003 Explain Windows Server 2003 network models and server roles Identify concepts.
CHAPTER 3 Architectures for Distributed Systems
Chapter 3: Windows7 Part 4.
Microsoft Active Directory
Introduction to Active Directory Directory Services
Chapter 14 Web-Based Management 14-1 Chapter 14
Ponder policy toolkit Jovana Balkoski, Rashid Mijumbi
Presentation transcript:

Models of Network Administration Week 5

Understanding the system as a whole Requires ability to see relationships and dependencies between distinct parts The idea of a causal web Complex system may have multiple operating modes – adaptive behaviour

Models for Management IETF (SNMP RFC1155) and ISO (TMN) have defined models for management of systems These dont always scale well Focus on managing devices Require a Human controller Micro-manage the system Best model are those which automate functions and regulate interactions of components

Information Models Represent the data used by an organisation eg database of Personnel, Assets and Services Uses a Directory service (eg X.500) Structured: hierarchical, object-oriented Common schema: allows interoperability Access Control: per record Optimised for read-only use. Not updated during use Specific vs General search White pages vs Yellow pages

Network Directory X.500 ISO 9594 (1988) Uses ASN.1 to define format of protocols Access method (DAP) defined in ISO terms LDAPv3 (RFC 2251–2256) Now replacing or being integrating into vendor solutions eg NDS and MS ActiveDirectory

Lightweight Directory Access Protocol (LDAP) Contains Name-Value(s) pairs (attributes) Attributes have rules (sub-attributes) controlling Method of value matching during search Order of value matching during search Whether attribute is mandatory or optional Attributes identified by Distinguished Name (DN) or Relative Distinguished Name (RDN) RDN is a Name-Value pair eg cn=Chris Freeman DN is a concatenation of RDNs in hierarchy

Hierarchical Directory Services Well suited to distributed environment; allows delegation of parts to separate hosts Directory tree may be partitioned into sub-trees with no overlap Cooperating groups with can then manage their own data locally and share with others May allow Availability and Redundancy through replication of data and service

Hierarchical Directory Services

Querying Directory Services Usually built-in to application software Unix system call: GetHostByName( ) Uses nsswitch to select one of several directory services See also Pluggable Authentication Modules (PAM) Original UNIX methods based on /etc files Later used NIS (aka YellowPages or yp) Non-hierarchical, lacked security Replaces by NIS+

Other Directory Services OpenLDAP Versatile, common platform Difficult syntax and sensitive to network LoS Novell Directory Service (NDS) Consistent distributed physical organisation of devices and software objects Directly implements the information model Microsoft Active Directory Replaced NT4 Domain model Compatible with simplified version of LDAP

System Infrastructure A network is a community of cooperating and competing components… Administrator selects components and assigns roles depending on tasks required This may involve machines and users (staff) Computing machinery: functional infrastructure Staff: build and maintain infrastructure

System Infrastructure Identify purpose of computer system Choose hardware and software Appropriate to task Set policies and procedures

Aspects of System Infrastructure Homogeneity All systems identical or Configure for purpose? Load Balancing One service per host or multi-service hosts? Separate data storage and data processing can double network traffic Human limitations on group size: max150 objects Mobile and AdHoc networks Peer-to-Peer: Scaled approach to management

Network Administration Models Central management – star model

Network Administration Models Centralised policy and enforcement JobRate controller =Rate 1 +Rate 2 +…Rate n If sum of Requests exceeds maxCapacity/n then work will queue at the controller Disadvantage of centralised control: bottleneck in communications with controller

Other Network Administration Models Star with intermittently connected hosts Mesh: centralised policy & local enforcement Each host gets own copy of common policy. Does not need constant connection to controller Each host updates itself according to policy But: Is policy up-to-date? Has policy been applied? Mesh: partial host autonomy & local enforcement Mesh: partial autonomy and peer policy exchange

Network Management Technologies SNMP OSI TMN and Others Java Management Extensions (JMX) Jini and UPnP: management-free networks WMI and WBEM

Building an Infrastructure What is the correct way to build a complex networked application from nothing? 1. NIC drivers 2. Local host config: Host name, SysLog 3. IP configuration (DHCP) 4. Domain Name configuration (Resolver, dDNS) 5. Middleware services (NIS, Kerberos, RADIUS) 6. Application services (MySQL, httpd, java, …) 7. Client applications (Browser, java, client-side APIs)

Aspects of Infrastructure Creating uniformity through Automation Revision control: HostFactory, RCS Software distribution & synchronisation Push model:rdist Pull model:cfengine, rsync Reliability through parallelism

System Maintenance models Reboot return to original (if it still exists!) Manual administration not scalable, relies on knowledgable user Central control HP Openview, Tivoli, Sun Solstice star model problems Immunology (self-maintenance) Eg. Windows automatic restore

Multiple Operating Systems in a LAN Convenience vs Differentiation Simple FTP vs Open file sharing? Software compatibility between systems Problems: Different object naming schemes File System sharing: different Naming & ACLs Different User ID and password schemes User Authentication