Active Directory Administration Cookbook - Second Edition: Proven solutions to everyday identity and authentication challenges for both on-premises an
暫譯: Active Directory 管理食譜 - 第二版:針對本地及雲端身份與認證挑戰的有效解決方案

Berkouwer, Sander

  • 出版商: Packt Publishing
  • 出版日期: 2022-07-15
  • 售價: $1,900
  • 貴賓價: 9.5$1,805
  • 語言: 英文
  • 頁數: 696
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1803242507
  • ISBN-13: 9781803242507
  • 立即出貨 (庫存=1)

相關主題

商品描述

Simplified actionable recipes for managing Active Directory and Azure AD, as well as Azure AD Connect, for administration on-premise and in the cloud with Windows Server 2022

Key Features

• Expert solutions for name resolution, federation, certificates, and security with Active Directory
• Explore Microsoft Azure AD and Azure AD Connect for effective administration on the cloud
• Automate security tasks using Active Directory tools and PowerShell

Book Description

Updated to the Windows Server 2022, this second edition covers effective recipes for Active Directory administration that will help you leverage AD's capabilities for automating network, security, and access management tasks in the Windows infrastructure.

Starting with a detailed focus on forests, domains, trusts, schemas, and partitions, this book will help you manage domain controllers, organizational units, and default containers. You'll then explore Active Directory sites management as well as identify and solve replication problems. As you progress, you'll work through recipes that show you how to manage your AD domains as well as user and group objects and computer accounts, expiring group memberships, and Group Managed Service Accounts (gMSAs) with PowerShell. Once you've covered DNS and certificates, you'll work with Group Policy and then focus on federation and security before advancing to Azure Active Directory and how to integrate on-premise Active Directory with Azure AD. Finally, you'll discover how Microsoft Azure AD Connect synchronization works and how to harden Azure AD.

By the end of this AD book, you'll be able to make the most of Active Directory and Azure AD Connect.

What you will learn

• Manage the Recycle Bin, gMSAs, and fine-grained password policies
• Work with Active Directory from both the graphical user interface (GUI) and command line
• Use Windows PowerShell to automate tasks
• Create and remove forests, domains, domain controllers, and trusts
• Create groups, modify group scope and type, and manage memberships
• Delegate, view, and modify permissions
• Set up, manage, and optionally decommission certificate authorities
• Optimize Active Directory and Azure AD for security

Who this book is for

This book is for administrators of existing Active Directory Domain Service environments as well as for Azure AD tenants looking for guidance to optimize their day-to-day tasks. Basic networking and Windows Server Operating System knowledge will be useful for getting the most out of this book.

商品描述(中文翻譯)

簡化可行的食譜,用於管理 Active Directory 和 Azure AD,以及 Azure AD Connect,以便在 Windows Server 2022 上進行本地和雲端的管理。

主要特點

• 專家解決方案,針對 Active Directory 的名稱解析、聯邦、證書和安全性

• 探索 Microsoft Azure AD 和 Azure AD Connect,以便在雲端進行有效的管理

• 使用 Active Directory 工具和 PowerShell 自動化安全任務

書籍描述

本書已更新至 Windows Server 2022,第二版涵蓋了有效的 Active Directory 管理食譜,幫助您利用 AD 的功能自動化 Windows 基礎架構中的網路、安全性和存取管理任務。

本書從森林、網域、信任、架構和分區的詳細介紹開始,幫助您管理網域控制器、組織單位和預設容器。接著,您將探索 Active Directory 站點管理,並識別和解決複製問題。隨著進展,您將學習如何使用 PowerShell 管理 AD 網域、使用者和群組物件、電腦帳戶、過期的群組成員資格以及群組管理服務帳戶 (gMSAs)。在涵蓋 DNS 和證書後,您將學習群組政策,然後專注於聯邦和安全性,最後進入 Azure Active Directory 及如何將本地 Active Directory 與 Azure AD 整合。最後,您將了解 Microsoft Azure AD Connect 同步的運作方式以及如何加強 Azure AD 的安全性。

在本書結束時,您將能夠充分利用 Active Directory 和 Azure AD Connect。

您將學到的內容

• 管理回收站、gMSAs 和細粒度密碼政策

• 從圖形使用者介面 (GUI) 和命令列操作 Active Directory

• 使用 Windows PowerShell 自動化任務

• 創建和刪除森林、網域、網域控制器和信任

• 創建群組、修改群組範圍和類型,並管理成員資格

• 委派、查看和修改權限

• 設置、管理並選擇性地停用證書授權

• 優化 Active Directory 和 Azure AD 的安全性

本書適合對象

本書適合現有 Active Directory 網域服務環境的管理員,以及尋求指導以優化日常任務的 Azure AD 租戶。具備基本的網路和 Windows Server 作業系統知識將有助於您充分利用本書。

目錄大綱

1. Optimizing Forests, Domains, and Trusts
2. Managing Domain Controllers
3. Managing Active Directory Roles and Features
4. Managing Containers and Organizational Units
5. Managing Active Directory Sites and Troubleshooting Replication
6. Managing Active Directory Users
7. Managing Active Directory Groups
8.. Managing Active Directory Computers
9. Managing DNS
10. Getting the Most Out of Group Policy
11. Securing Active Directory
12. Managing Certificates
13. Managing Federation
14. Handling Authentication in a Hybrid World (AD FS, PHS, PTA and DSSO)
15. Handling Synchronization in a Hybrid World (Azure AD Connect)
16. Hardening Azure AD

目錄大綱(中文翻譯)

1. Optimizing Forests, Domains, and Trusts

2. Managing Domain Controllers

3. Managing Active Directory Roles and Features

4. Managing Containers and Organizational Units

5. Managing Active Directory Sites and Troubleshooting Replication

6. Managing Active Directory Users

7. Managing Active Directory Groups

8.. Managing Active Directory Computers

9. Managing DNS

10. Getting the Most Out of Group Policy

11. Securing Active Directory

12. Managing Certificates

13. Managing Federation

14. Handling Authentication in a Hybrid World (AD FS, PHS, PTA and DSSO)

15. Handling Synchronization in a Hybrid World (Azure AD Connect)

16. Hardening Azure AD