Presentation is loading. Please wait.

Presentation is loading. Please wait.

Module 10: Identity and Access Services in Windows Server 2008 Active Directory.

Similar presentations


Presentation on theme: "Module 10: Identity and Access Services in Windows Server 2008 Active Directory."— Presentation transcript:

1 Module 10: Identity and Access Services in Windows Server 2008 Active Directory

2 Overview Install and configure Active Directory Federation Services Install and configure Active Directory Lightweight Directory Services Install and configure Active Directory Rights Management Services

3 Lesson 1: Active Directory Federation Services Describe AD FS operation Describe AD FS installation

4 AD FS Overview Corporate Network Client Account Federation Server Active Directory Resource Federation Server ADFS Enabled Web Server Active Directory Internal Client Corporate Network Perimeter Network

5 AD FS Installation Considerations Review the requirements for deploying ADFS in your organization. Install one or more federation servers Install one or more ADFS-enabled Web servers using the appropriate ADFS Web Agent Install either an Active Directory account store or an Active Directory Lightweight Directory Services account store Incoming claims must be associated with organization group claims or custom claims for SSO Install either a claims-aware application or a Windows NT token-based application, or both.

6 Lesson 2: Active Directory Lightweight Directory Services Describe previous Windows directory services technologies Describe AD LDS List benefits of using AD LDS Explain AD LDS usage scenarios

7 New Technology Active Directory Lightweight Directory Services Active Directory Application Mode

8 AD LDS Overview Active Directory Lightweight Directory Services AD DS

9 Benefits of AD LDS Functional Benefits Operational Benefits AD LDS uses same Directory Service Technology as AD DS. Increased scalability. Separate schema. X.500-style naming contexts. Secure. Backwards compatible. Easy to deploy. Doesn’t affect AD DS. Doesn’t require restart. Same administrative model as AD DS. Increased reliability.

10 AD LDS Usage Scenarios Application-specific directories that use customized schemas Directory-enabled application development that are separate from the enterprise’s domain structure Management of external client computer’s access to network resources Enabling of earlier LDAP client computers in a heterogeneous environment to authenticate against AD DS

11 Lesson 3: Active Directory Rights Management Services Explain how AD RMS works Describe AD RMS configuration tasks

12 AD RMS Overview 1 2 1 2

13 Configuring Active Directory Rights Management Services Install AD RMS Configure SSL Register a Service Connection Point Configure AD RMS Client and Client Service Discovery


Download ppt "Module 10: Identity and Access Services in Windows Server 2008 Active Directory."

Similar presentations


Ads by Google