Changes to Active Directory from Server 2003 SP1 to Server 2008:
- Verbose Auditing: Server 2008 log values on changes that are made to AD objects.
- Restartable Active Directory Services.
- Fine-grained password policies.
- Read-only Domain Controllers.
- Improvements in AD Installation Wizard (dcpromo.exe).
- Read-only Domain Controller (RODC)
As the name implies, Read-only domain controller only contains read only copy of Active Directory database. This allows IT administrators to place domain controller in insecure physical location such as branch offices.
- Active Directory Lightweight Directory Service (ADLDS)
ADLDS is a Lightweight Directory Access Protocol (LDAP) directory service application. It is previously known as “Active Directory Application Mode (ADAM)” in Server 2003.
- Active Directory Rights Management Service (ADRMS)
ADRMS provides information protection service to organizations. For example, email can be restricted to read-only; it cannot be printed, duplicated, or forwarded.
- Active Directory Federation Services (ADFS)
ADFS allows cross-forest authentication to external resources, such UNIX environment or another forest.
0 comments:
Post a Comment