{"id":15,"date":"2014-04-27T12:00:59","date_gmt":"2014-04-27T17:00:59","guid":{"rendered":"http:\/\/blog.metcorp.org\/?p=15"},"modified":"2014-04-29T20:26:04","modified_gmt":"2014-04-30T01:26:04","slug":"ad-reading-active-directory-core-concepts","status":"publish","type":"post","link":"https:\/\/adsecurity.org\/?p=15","title":{"rendered":"AD Reading: Active Directory Core Concepts"},"content":{"rendered":"<p>The following are extremely useful resources for understanding Active Directory Core Concepts.<\/p>\n<p><strong>Core Directory Concepts &amp; Key Items<\/strong><\/p>\n<ul>\n<li><a href=\"https:\/\/blogs.technet.com\/b\/askpfeplat\/archive\/2012\/07\/23\/mcm-core-active-directory-internals.aspx?Redirected=true\">MCM Core AD Internals<\/a><\/li>\n<li><a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/aa772157(VS.85).aspx\">Core Concepts of Active Directory Domain Services<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/ms675155%28v=vs.85%29.aspx\">Attributes<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/ms675741%28v=vs.85%29.aspx\">Containers and Leaves<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/ms677615%28v=vs.85%29.aspx\">Object Names and Identities<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/ms677604%28v=vs.85%29.aspx\">Naming Contexts and Directory Partitions<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/ms675914%28v=vs.85%29.aspx\">Domain Trees<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/ms676906%28v=vs.85%29.aspx\">Forests<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/ms674986%28v=vs.85%29.aspx\">Active Directory Servers and Dynamic DNS<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/msdn.microsoft.com\/en-us\/library\/ms677921%28v=vs.85%29.aspx\">Replication and Data Integrity<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc977985.aspx\">Active Directory <\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc978008.aspx\">Active Directory Logical Structure<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc961774.aspx\">Active Directory Data Storage<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc978018.aspx\">Name Resolution in Active Directory<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc961581.aspx\">Active Directory Schema<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc961726.aspx\">Service Publication in Active Directory<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc961788.aspx\">Active Directory Replication<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc961936.aspx\">Managing Flexible Single-Master Operations<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc961943.aspx\">Monitoring Performance in Active Directory<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc961927.aspx\">Active Directory Backup and Restore<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc961807.aspx\">Active Directory Diagnostics, Troubleshooting, and Recovery<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780036%28WS.10%29.aspx\">Active Directory Collection<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780036%28WS.10%29.aspx#w2k3tr_ad_over_qbjd\">Active Directory on a Windows Server Network<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780036%28WS.10%29.aspx#w2k3tr_ad_over_gjov\">Active Directory Application Mode<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780036%28WS.10%29.aspx#w2k3tr_ad_over_vzwp\">Structure and Storage Technologies<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780036%28WS.10%29.aspx#w2k3tr_ad_over_xobo\">Domain Controller Roles<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780036%28WS.10%29.aspx#w2k3tr_ad_over_rlzh\">Replication Technologies<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780036%28WS.10%29.aspx#w2k3tr_ad_over_fugs\">Search and Publication Technologies<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780036%28WS.10%29.aspx#w2k3tr_ad_over_khvy\">Installation, Upgrade, and Migration Technologies<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx\">AD Users, Computers, and Groups<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx#EHAA\">Introduction<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx#EGAA\">Active Directory User and Computer Accounts<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx#EFAA\">Active Directory Groups<\/a> <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx#EEAA\">User Authentication<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx#EDAA\">User Authorization<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx#ECAA\">Summary<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx#EBAA\">Appendix A: Built-in, Predefined, and Special Groups<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/bb727067.aspx#EAAA\">Appendix B: User Rights<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc754678%28WS.10%29.aspx\">AD DS Design Guide<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc731331%28v=ws.10%29.aspx\">Understanding AD DS Design<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc771518%28v=ws.10%29.aspx\">Identifying Your AD DS Design and Deployment Requirements<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc732239%28v=ws.10%29.aspx\">Mapping Your Requirements to an AD DS Deployment Strategy<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc770806%28v=ws.10%29.aspx\">Designing the Logical Structure for Windows Server 2008 AD DS<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc772013%28v=ws.10%29.aspx\">Designing the Site Topology for Windows Server 2008 AD DS<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc771216%28v=ws.10%29.aspx\">Enabling Advanced Features for AD DS<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc725742%28v=ws.10%29.aspx\">Evaluating AD DS Deployment Strategy Examples<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc733173%28v=ws.10%29.aspx\">Appendix A: Reviewing Key AD DS Terms<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/www.microsoft.com\/technet\/prodtechnol\/windows2000serv\/reskit\/distrib\/dsba_pt2_vesa.mspx?mfr=true\">Distributed Systems Guide<\/a><a href=\"http:\/\/www.microsoft.com\/technet\/prodtechnol\/windows2000serv\/reskit\/distrib\/dsba_pt2_vesa.mspx?mfr=true\">.<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc978008\">Active Directory Logical Structure<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc961774\">Active Directory Data Storage<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc978018\">Name Resolution in Active Directory<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc961581\">Active Directory Schema<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc961726\">Service Publication in Active Directory<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc961788\">Active Directory Replication<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc961936\">Managing Flexible Single-Master Operations<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc961943\">Monitoring Performance in Active Directory<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc961927\">Active Directory Backup and Restore<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-US\/library\/cc961807\">Active Directory Diagnostics, Troubleshooting, and Recovery<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc738955%28WS.10%29.aspx\">Domain and Forest Trusts Technical Reference<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc757352%28v=ws.10%29.aspx\">What Are Domain and Forest Trusts?<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc773178%28v=ws.10%29.aspx\">How Domain and Forest Trusts Work<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc756944%28v=ws.10%29.aspx\">Domain and Forest Trust Tools and Settings<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc755321%28v=ws.10%29.aspx\">Security Considerations for Trusts<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc775731%28WS.10%29.aspx\">Global Catalog Technical Reference<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc728188%28v=ws.10%29.aspx\">What Is the Global Catalog?<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/how-global-catalog-servers-work%28v=ws.10%29.aspx\">How the Global Catalog Works<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc737102%28v=ws.10%29.aspx\">Global Catalog Tools and Settings<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780758%28WS.10%29.aspx\">Operations Masters Technical Reference<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc779716%28v=ws.10%29.aspx\">What are Operations Masters?<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc780487%28v=ws.10%29.aspx\">How Operations Masters Work<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc757863%28v=ws.10%29.aspx\">Operations Masters Tools and Settings<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc778264%28WS.10%29.aspx\">TCP\/IP Technical Reference<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc775418%28v=ws.10%29.aspx\">What Is TCP\/IP?<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc786128%28v=ws.10%29.aspx\">How TCP\/IP Works<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc786724%28v=ws.10%29.aspx\">TCP\/IP Tools and Settings<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/dd728034%28WS.10%29.aspx\">Active Directory Domain Services in the Perimeter Network<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/dd728030%28v=ws.10%29.aspx\">Planning Deployment of AD DS in the Perimeter Network<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/dd728028%28v=ws.10%29.aspx\">Designing RODCs in the Perimeter Network<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/dd728035%28v=ws.10%29.aspx\">Deploying RODCs in the Perimeter Network<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/virtual_active_directory_domain_controller_virtualization_hyperv%28WS.10%29.aspx\">Running Domain Controllers in Hyper-V<\/a><\/li>\n<\/ul>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/virtual_active_directory_domain_controller_virtualization_hyperv%28WS.10%29.aspx#bkmk1_planning_to_virtualize_domain_controllers\">Planning to Virtualize Domain Controllers<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/virtual_active_directory_domain_controller_virtualization_hyperv%28WS.10%29.aspx#deployment_considerations_for_virtualized_domain_controllers\">Deployment Considerations for Virtualized Domain Controllers<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/virtual_active_directory_domain_controller_virtualization_hyperv%28WS.10%29.aspx#operational_considerations_for_virtualized_domain_controllers\">Operational Considerations for Virtualized Domain Controllers<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/virtual_active_directory_domain_controller_virtualization_hyperv%28WS.10%29.aspx#backup_and_restore_considerations_for_virtualized_domain_controllers\">Backup and Restore Considerations for Virtualized Domain Controllers<\/a><\/p>\n<p>o\u00a0\u00a0 <a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/virtual_active_directory_domain_controller_virtualization_hyperv%28WS.10%29.aspx#usn_and_usn_rollback\">USN and USN Rollback<\/a><\/p>\n<ul>\n<li><a href=\"http:\/\/support.microsoft.com\/kb\/312403\/\">Distributed Link Tracking on Windows-based domain controllers<\/a><\/li>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/cc759402%28WS.10%29.aspx\">Active Directory Schema Technical Reference<\/a><\/li>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/solutionaccelerators\/ee395428\">Infrastructure Planning and Design Guides for Windows Server 2008<\/a><\/li>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/library\/dd772723%28WS.10%29.aspx\">Active Directory and Active Directory Domain Services Port Requirements<\/a><\/li>\n<li><a href=\"https:\/\/blogs.technet.com\/themes\/blogs\/generic\/post.aspx?WeblogApp=askds&amp;y=2011&amp;m=03&amp;d=22&amp;WeblogPostName=what-does-dcdiag-actually-do&amp;GroupKeys=\">DCDIAG Technical Reference: What does DCDIAG actually\u2026 do?<\/a><\/li>\n<li><a href=\"https:\/\/blogs.technet.com\/themes\/blogs\/generic\/post.aspx?WeblogApp=ad&amp;y=2009&amp;m=09&amp;d=23&amp;WeblogPostName=these-are-the-updates-you-are-looking-for&amp;GroupKeys=\">High Water Mark and Up To Dateness Vector (These are the updates you are looking for)<\/a><\/li>\n<li><a href=\"http:\/\/technet.microsoft.com\/en-us\/magazine\/2009.09.sdadminholder.aspx\">AdminSDHolder<\/a><\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The following are extremely useful resources for understanding Active Directory Core Concepts. Core Directory Concepts &amp; Key Items MCM Core AD Internals Core Concepts of Active Directory Domain Services o\u00a0\u00a0 Attributes o\u00a0\u00a0 Containers and Leaves o\u00a0\u00a0 Object Names and Identities o\u00a0\u00a0 Naming Contexts and Directory Partitions o\u00a0\u00a0 Domain Trees o\u00a0\u00a0 Forests o\u00a0\u00a0 Active Directory Servers &hellip; <\/p>\n<p><a class=\"more-link btn\" href=\"https:\/\/adsecurity.org\/?p=15\">Continue reading<\/a><\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[5,6],"class_list":["post-15","post","type-post","status-publish","format-standard","hentry","category-technical-reading","tag-adreading","tag-mcm","item-wrap"],"_links":{"self":[{"href":"https:\/\/adsecurity.org\/index.php?rest_route=\/wp\/v2\/posts\/15","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/adsecurity.org\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/adsecurity.org\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/adsecurity.org\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/adsecurity.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=15"}],"version-history":[{"count":1,"href":"https:\/\/adsecurity.org\/index.php?rest_route=\/wp\/v2\/posts\/15\/revisions"}],"predecessor-version":[{"id":17,"href":"https:\/\/adsecurity.org\/index.php?rest_route=\/wp\/v2\/posts\/15\/revisions\/17"}],"wp:attachment":[{"href":"https:\/\/adsecurity.org\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=15"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/adsecurity.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=15"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/adsecurity.org\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=15"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}