Guidelines For Designing The Ou Infrastructure For Server Role Security

Guidelines for Designing the OU Infrastructure for Server Role Security

by

Kayla

To make the best use of

CompTIA A+ certification

, design an OU infrastructure that can be used to apply the security templates. Follow these guidelines to design the OU infrastructure:

Use a top-level OU. This is where the baseline template will be applied.

Look for natural combinations of like server roles:

File Servers and Print Servers, for example, can be combined on one server or can be implemented on different computers, but a single File and Print OU might be sufficient.

[youtube]http://www.youtube.com/watch?v=fgH5zIkztX0[/youtube]

Other combinations might be to place DNS, DHCP, and WINS servers in an Infrastructure OU.

Look for areas where you might want to split server roles, such as:

When not all IIS servers should be treated the same. A natural division might be intranet servers and Internet servers.

When the decision to divide a server role should be based on security. Ask the

MCITP study guides free download

, “Would using a single incremental template for these servers weaken security?” If it would, split the server role.

Create an OU for each server role or server role combination.

Avoid making more OU layers than necessary. Place both Internet and intranet IIS OUs at the same level for example, do this rather than creating an IIS OU with two child OUs named Internet and Intranet.

In this practice, you will design an OU infrastructure for a fictitious company. Read the scenario and then complete the exercises that follow. If you are unable to answer a question, review the lesson materials and try the question again. You can find answers to the questions in the “Questions and Answers” section at the end of the chapter.

Groups added here can be used to allow policy control over their membership. Users added to the groups here are the only group members that will be allowed to remain in the local group member ship. Users not present locally but added here will be added to the local group.

This setting provides the ability to set the startup mode for the

MCSE study guides free download

, manual, or automatic. It also provides the abil?ity to restrict the users and/or groups that can change this information and stop and start: the service.

This setting provides the ability to set access controls and auditing controls on registry keys.

This setting provides the ability to set access controls and auditing controls on files and folders.

The

free practice tests

has been designed for professionals who analyze the business requirements. The autor devote herself to research the problems and knowledge of MCSE Certification.If you have any questions about MCSE,you can comments on the article the autor publiced.

Article Source:

ArticleRich.com