Web Server Administration Chapter 5 Managing a Server.

Slides:



Advertisements
Similar presentations
Chapter Five Users, Groups, Profiles, and Policies.
Advertisements

Module 6: Configuring Windows XP Professional to Operate in a Microsoft Network.
1 Chapter Overview Understanding and Applying NTFS Permissions Assigning NTFS Permissions and Special Permissions Solving Permissions Problems.
1 Chapter Overview Understanding NTFS Permissions Assigning NTFS Permissions Assigning Special Permissions.
Chapter 9 Chapter 9: Managing Groups, Folders, Files, and Object Security.
Chapter 4 Chapter 4: Planning the Active Directory and Security.
70-290: MCSE Guide to Managing a Microsoft Windows Server 2003 Environment Chapter 1: Introduction to Windows Server 2003.
Chapter 5 Managing a Server. Overview  Server management  Examine networking models  Learn how users are authenticated  Manage users and groups 
11 SHARING FILE SYSTEM RESOURCES Chapter 9. Chapter 9: SHARING FILE SYSTEM RESOURCES2 CHAPTER OVERVIEW  Create and manage file system shares and work.
Module 6 Windows 2000 Professional 6.1 Installation 6.2 Administration/User Interface 6.3 User Accounts 6.4 Managing the File System 6.5 Services.
Resource Sharing Over a Network
By Rashid Khan Lesson 8-Crowd Control: Controlling Access to Resources Using Groups.
Chapter 5 Managing a Server. Overview  Server management  Examine networking models  Learn how users are authenticated  Manage users and groups 
11 MANAGING USERS AND GROUPS Chapter 13. Chapter 13: MANAGING USERS AND GROUPS2 OVERVIEW  Configure and manage user accounts  Manage user account properties.
1 Securing Network Resources Understanding NTFS Permissions Assigning NTFS Permissions Assigning Special Permissions Copying and Moving Files and Folders.
Installing Windows XP Professional Using Attended Installation Slide 1 of 41Session 2 Ver. 1.0 CompTIA A+ Certification: A Comprehensive Approach for all.
Group Accounts; Securing Resources with Permissions
1 Chapter Overview Creating User and Computer Objects Maintaining User Accounts Creating User Profiles.
Chapter 7 WORKING WITH GROUPS.
11 WORKING WITH USER ACCOUNTS Chapter 6. Chapter 6: WORKING WITH USER ACCOUNTS2 CHAPTER OVERVIEW Understand the differences between local user and domain.
11 SHARING FILE SYSTEM RESOURCES Chapter 9. Chapter 9: SHARING FILE SYSTEM RESOURCES2 CHAPTER OVERVIEW Create and manage file system shares and work with.
Guide to Operating System Security Chapter 5 File, Directory, and Shared Resource Security.
Working with Workgroups and Domains
Web Servers Web server software is a product that works with the operating system The server computer can run more than one software product such as .
Chapter-4 Windows 2000 Professional Win2K Professional provides a very usable interface and was designed for use in the desktop PC. Microsoft server system.
70-294: MCSE Guide to Microsoft Windows Server 2003 Active Directory Chapter 9: Active Directory Authentication and Security.
The University of Akron Summit College Business Technology Dept.
Sharing Resources Lesson 6. Objectives Manage NTFS and share permissions Determine effective permissions Configure Windows printing.
CN1176 Computer Support Kemtis Kunanuraksapong MSIS with Distinction MCT, MCTS, MCDST, MCP, A+
CN1260 Client Operating System Kemtis Kunanuraksapong MSIS with Distinction MCT, MCITP, MCTS, MCDST, MCP, A+
1 User Account Administration Introduction to User Accounts Planning New User Accounts Creating User Accounts Creating User Profiles Creating Home Directories.
User Manager for Domains.  Manages the user accounts in a domain  It is located in the PDC  While User Manager exists in each NT machine, but it is.
Module 10: Configuring Windows XP Professional to Operate in Microsoft Networks.
C HAPTER 6 NTFS PERMISSIONS & SECURITY SETTING. INTRODUCTION NTFS provides performance, security, reliability & advanced features that are not found in.
5 Chapter Five Web Servers. 5 Chapter Objectives Learn about the Microsoft Personal Web Server Software Learn how to improve Web site performance Learn.
Network Operating Systems versus Operating Systems Computer Networks.
IOS110 Introduction to Operating Systems using Windows Session 8 1.
FTP Server and FTP Commands By Nanda Ganesan, Ph.D. © Nanda Ganesan, All Rights Reserved.
DIT314 ~ Client Operating System & Administration CHAPTER 5 MANAGING USER ACCOUNTS AND GROUPS Prepared By : Suraya Alias.
Managing Groups, Folders, Files and Security Local Domain local Global Universal Objects Folders Permissions Inheritance Access Control List NTFS Permissions.
Chapter 13 Users, Groups Profiles and Policies. Learning Objectives Understand Windows XP Professional user accounts Understand the different types of.
Active Directory Administration Lesson 5. Skills Matrix Technology SkillObjective DomainObjective # Creating Users, Computers, and Groups Automate creation.
Introduction to Microsoft Management Console (MMC) MMC is a common console framework for management applications. MMC provides a common environment for.
Active Directory Harikrishnan V G 18 March Presentation titlePage 2 Agenda ► Introduction – Active Directory ► Directory Service ► Benefits of Active.
Chapter 9: SHARING FILE SYSTEM RESOURCES1 CHAPTER OVERVIEW  Create and manage file system shares and work with share permissions.  Use NTFS file system.
1 Administering Shared Folders Understanding Shared Folders Planning Shared Folders Sharing Folders Combining Shared Folder Permissions and NTFS Permissions.
Module 3 Configuring File Access and Printers on Windows ® 7 Clients.
Computer Networking From LANs to WANs: Hardware, Software, and Security Chapter 13 FTP and Telnet.
Module 3 Configuring File Access and Printers on Windows 7 Clients.
Chapter 10: Rights, User, and Group Administration.
Working with Workgroups and Domains Lesson 9. Objectives Understand users and groups Create and manage local users and groups Understand the difference.
Module 3: Configuring File Access and Printers on Windows 7 Clients
Chapter 8 Configuring and Managing Shared Folder Security.
Fall 2011 Nassau Community College ITE153 – Operating Systems Session 21 Administering User Accounts and Groups 1.
1 Chapter Overview Managing Object and Container Permissions Locating and Moving Active Directory Objects Delegating Control Troubleshooting Active Directory.
© ITT Educational Services, Inc. All rights reserved. IS3230 Access Security Unit 6 Implementing Infrastructure Controls.
NetTech Solutions Security and Security Permissions Lesson Nine.
Module 4: Managing Access to Resources. Overview Overview of Managing Access to Resources Managing Access to Shared Folders Managing Access to Files and.
1 Chapter Overview Understanding Shared Folders Planning, Sharing, and Connecting to Shared Folders Combining Shared Folder Permissions and NTFS Permissions.
IS 4506 Windows NTFS and IIS Security Features.  Overview Windows NTFS Server security Internet Information Server security features Securing communication.
Sharing Resources Lesson 6. Objectives Manage NTFS and share permissions Determine effective permissions Configure Windows printing.
6/19/2016 أساسيات الأتصال و الشبكات Communication & Networks Fundamentals lab 4.
ITMT Windows 7 Configuration Chapter 6 – Sharing Resource ITMT 1371 – Windows 7 Configuration 1.
Nassau Community College
ACTIVE DIRECTORY ADMINISTRATION
Active Directory Administration
Chapter 4: Planning the Active Directory and Security
Chapter 9: Managing Groups, Folders, Files, and Object Security
The University of Akron College of Applied Science & Technology Dept
Presentation transcript:

Web Server Administration Chapter 5 Managing a Server

Overview Understand the Web server administrator's view of server management Examine networking models Learn how users are authenticated Manage users and groups

Overview Manage file system permissions Share resources in a network Enforce network policies

Web Administrator's View of Server Management Web server software is a product that works with the operating system The server computer can run more than one software product such as and FTP With both a LAN and the Web, controlling access is very important The Web server can be part of the LAN Web communication and LAN communication are different

Microsoft LAN Networking Models- Workgroup Treats each computer in the network as an equal, or peer Also called peer-to-peer networking Each computer is a client and a server When you allow others to access resources on your computer, your computer is acting as a server When you access resources on another computer, your computer is acting as a client

Microsoft LAN Networking Models- Workgroup Appropriate for networks with 10 or less computers A number of disadvantages Most users do not want to administer resources on their computer Need user names and passwords of users who need resources Difficult to keep track of changing passwords

Microsoft LAN Networking Models- Domain One or more servers centralize control Computers are part of a domain Single, centralized logon Single point of control Users can be given access to resources anywhere in the domain

Client/Server Networking Model Client represents a program such as a browser or an client Server has a corresponding program that communicates with the client Server program known as a service in Windows or a daemon in Linux Networking in Linux follows the client/server model Telnet is used to log on to another computer

Authenticating Users Process of determining a user's true identity Three basic methods What you know – user name and passwords What you have – entry card Who you are – biometrics

Implementing an Authentication System If a Windows network has older computers running NT, 95, or 98, the server must use NTLM It is not as secure as Kerberos, which is the default for Windows 2000, 2003, and XP

Managing Users and Groups Users need accounts to access resources on a server On a Web server there is a restricted account that is used on behalf of Internet users In a LAN, users with common resource needs are put in a group, and the group is given access to the resource

Managing Users and Groups in Windows Windows has an account called system It represents the operating system and it has many of the same privileges of the administrator Often needed by server programs Linux typically uses unique accounts for each daemon

Users and Groups in Windows Local accounts exist on a single computer and can be used to control resources only on that computer Domain accounts can be used to control resources on all the computers that are part of the domain Active Directory (AD) allows domains to be grouped into a forest Microsoft Exchange requires AD

Groups in Windows Domain local groups have members from the same domain Assign permissions to resources in the same domain Global groups have members from the same domain Can be used to assign permissions to resources in any domain Universal groups can have members from any domain Can be used to assign permissions to resources in any domain

Users and Groups in Linux Properties of user accounts ItemDescription User nameLogon name of the user Full nameThe full name of the user or any comment PasswordThe password must be at least six characters Home directoryThe default is /home/username GroupThe default is to create a group with the same name as the user Login shellThe default is /bin/bash, which determines the characteristic of the shell environment

File System Permissions Permission allow you to control access to the resources on a computer such as a Web page, a document, or a program In Windows, the NTFS file system is required in order to assign permissions All Linux file systems incorporate permissions

File System Permissions in Windows PermissionDescription Full ControlFull Control includes all other permissions and allows you to take ownership of the file or folder and change the attributes of a file ModifyAllows read, write, and delete ReadWith this permission, you can read files but cannot execute them WriteWhen set on a file, this permission allows you to write to files; when set on a folder, you can write to the folder Read & ExecuteRead files and run programs List Folder ContentsThis permission allows you to view the contents of a folder Special Permissions (Windows 2003 only) This is not a specific permission; under the list of permissions for users, when this permission is checked, it means that this user has one or more of the 14 individual permissions set

File System Permissions in Linux Permission type When used with filesWhen used with directories ReadRead a file or copy a fileList the contents of a directory WriteWrite to the file, including deleting the file Create files ExecuteExecute programs and shell scripts, which are text files containing Linux commands Modify the file permissions

Linux Permissions Permissions are set for user, group, and others Each permission is set with a single digit from 0 to 7 based on the combination of permissions read = 4 write = 2 execute = 1

Using chmod to Set Permissions CommandPermissions OwnerGroupOther chmod 755 myfile rwxr-x chmod 540 myfile r-xr----- chmod 744 myfile rwxr--

Sharing Resources in a Windows Network Shared folders require permissions When comparing share permissions and NTFS permissions, the most restrictive permission takes precedence PermissionDescription Full ControlAllow files to be added, deleted, changed, and read ChangeAllow existing files to be written to ReadCan only read files

Enforcing Network Policies You can control a number of policies in both Windows and Linux Windows has many more policies but the majority are appropriate for LANs A common policy involves passwords Number of days before change allowed Number of days before change required

Summary The Web server has a guest user account that is used to access Web pages Windows LAN models include the workgroup and domain models Linux only uses the client/server model Authentication is based on what you know, what you have, and who you are Core of security incorporates users, groups, and permissions