AD域部署方案.pptx丰联金融-WindowsAD域架构设计方案公司:丰联金融项目:windowsAD域设计方案时间:2014-7目录一、前言···························································································`·············································································································································································································································································································································································································5二、公司域架构规划·······························································································································································································································································、GPO和用户组实现域安全的管理······················································································································································································································7一、前言由于Windows网络系统架构在公司应用中的普及,公司会面临大量客户端及服务器的统一安全管理;AD域的规划架构需要根据公司现有的网络规模布局和IT管理制度,以适应公司当前和长远的发展需求,有效地保护用户的资料,减少用户的风险。针对整个公司的域架构规划和实施,前期需要先完成公司域规划及部署:实现公司统一的目录服务管理,统一的公司用户信息、安全策略。Windows网络架构客户端默认属于工作组的办公环境,所有的用户账号均保存在本地客户端上,网络共享数据时只能允许所有人everyone查看的权限,数据共享及网络安全存在较多的风险。Windows域架构管理模式可以解决众多网络安全性问题,域环境下可以轻易实现网络用户账号的集中管理,规范客户端密码长度和复杂性;在域环境下,可以实现所有客户端系统的补丁自动更新,有效提高服务器及桌面系统的安全性。在WindowsAD域的办公环境下,并不会太多改变原有的客户端工作组下的办公习惯;域账号登陆默认缓存功能,用户离开公司网络,同样可以使用域用户账号在本机登陆,不会改变原有工作组的工作习惯。另外公司应用系统中,很多应用系统是基于微软的AD架构,如MSCluster集群高可用系统、Exchange邮件系统、OCS及时通讯系统、MOSS公司门户网站协作系统等等;所以AD域的架构管理不但可以方便公司内部安全管理,还为以后的公司应用扩展提供了系统基础。
AD域部署方案 来自淘豆网m.daumloan.com转载请标明出处.