Sunday, May 6, 2018

Active Directory

Eli is a great guy, but very verbose:

DC is Domain Controller, the instance of AD. It contains UA User Accounts and CA Computer Accounts; UA are tagged with OU Organizational Units, very useful to manage Authorization. UA and CA belong to a DOMAIN, which is managed by a DC.

A DOMAIN can be split in SUBDOMAINs, where 2-WAY IMPLICIT (transitive) TRUST can take place. If a domain has subdomains, this forms a TREE.

