HildySoliz223

從 女性百科
於 2012年12月21日 (五) 11:34 由 HildySoliz223 (對話 | 貢獻) 所做的修訂 (新页面: Domains and Forests can also share sources obtainable in active directory. These resources are searched by Worldwide Catalog across domains and forests and this search is transparent to u...)

(差異) ←上個修訂 | 最新修訂 (差異) | 下個修訂→ (差異)
跳到: 導覽搜尋

Domains and Forests can also share sources obtainable in active directory. These resources are searched by Worldwide Catalog across domains and forests and this search is transparent to user. For example, if you make a search for all of the printers in a forest, this search goes to global catalog server for its query and then worldwide catalog returns the benefits. Without a international catalog server this query requirements to go to each domain in the forest of its outcome.

It is crucial to have a international catalog on at least 1 domain controller because a lot of applications use port 3268 for browsing. For example, if you do not have any global catalog servers in your network, the Search command on the Commence menu of Windows 2000/2003 cannot find objects in Active Directory.

The international catalog is a domain controller that includes attributes for each and every object in the Active Directory. By default, only the members of the Schema Admins group have rights to change which attributes stored in the international catalog, according to organization's needs.

The global catalog is made up of:

The frequently utilised attributes need in queries, such as a user's very first and last name, and logon name.

All the data or records which are crucial to figure out the place of any object in the directory.

A default subset of attributes for every single object variety.

All the access connected permissions for every object and attribute that is stored in the worldwide catalog. Say, without having permission you cannot access or view the objects. If you are browsing for an object where you do not have the suitable permissions to view, the object will not seem in the search outcomes. These access permissions ensure that users can find only objects to which they have been assigned access.

A international catalog server is a domain controller that consists of full and writable replica of its domain directory, and a partial, read-only replica of all other domain directory partitions in the forest. Let's take an instance of a user object by default user objects have lot of attributes such as 1st name, final name, address, phone number, and numerous a lot more. The Worldwide Catalog will retailer only the principal attributes of user objects in search operations like a user's initial name and last name, or login name. This partial attributes of that user object which is stored would be sufficient to allow a search for that object to be able to find the complete replica of the object in active directory. If a search comes to find objects, then first it goes to neighborhood international catalog and reduces network targeted traffic more than the WAN.

Domain Controllers usually contain the complete attribute list for objects belonging to their domain. If the Domain Controller is also a GC, it will also include a partial replica of objects from all other domains in the forest.

It is often encouraged to have a worldwide catalog server for every active directory website in an enterprise network. like i said