Thursday, July 7, 2011

New Active Directory Changes from Server 2003 SP1 to Server 2008

Changes to Active Directory from Server 2003 SP1 to Server 2008:
  • Verbose Auditing: Server 2008 log values on changes that are made to AD objects.
  • Restartable Active Directory Services.
  • Fine-grained password policies.
  • Read-only Domain Controllers.
  • Improvements in AD Installation Wizard (dcpromo.exe).


New Roles in Server 2008:

  • Read-only Domain Controller (RODC)
    As the name implies, Read-only domain controller only contains read only copy of Active Directory database. This allows IT administrators to place domain controller in insecure physical location such as branch offices.
  • Active Directory Lightweight Directory Service (ADLDS)
    ADLDS is a Lightweight Directory Access Protocol (LDAP) directory service application. It is previously known as “Active Directory Application Mode (ADAM)” in Server 2003.
  • Active Directory Rights Management Service (ADRMS)
    ADRMS provides information protection service to organizations. For example, email can be restricted to read-only; it cannot be printed, duplicated, or forwarded.
  • Active Directory Federation Services (ADFS)
    ADFS allows cross-forest authentication to external resources, such UNIX environment or another forest.

0 comments:

Twitter Delicious Facebook Digg Stumbleupon Favorites More

 
Design by Free WordPress Themes | Bloggerized by Lasantha - Premium Blogger Themes | Hosted Desktops