SlideShare une entreprise Scribd logo
1  sur  31
Télécharger pour lire hors ligne
Domain Services for Windows:
Best Practices for Windows Interoperability




Nicel KM                  David Shepherd
Engineering Manager       Senior Technical Specialist
mnicel@novell.com         dhepherd@novell.com
Agenda

    •   What is Domain Services for Windows (DSfW)?
    •   Features in DSfW
    •   Prerequisites for Successful Deployment
    •   Deployment Options
    •   Demonstration
    •   DSfW in OES2 SP2 and beyond
    •   Third Party Applications Support


2   © Novell, Inc. All rights reserved.
What is Domain Services for Windows?
What is Domain Services for
    Windows?
    •   Domain Services for Windows (DSfW) is a suite of
        technologies

    •   Provides AD style authentication to users, applications

    •   eDirectory users can access AD resources and
                                   ™


        applications with a cross forest trust in place

    •   Seamless (need to depict that it doesnt change becos
        of dsfw) access to OES services like file and print
        services present on NSS or POSIX file systems


4   © Novell, Inc. All rights reserved.
DSfW: What Does It Achieve?

                                                  eDirectory Tree
                                                           ™
                                                                                 Active
                                                                                Directory
                                                                                 Forest




                                                    eDirectory

                                                  DSfW               Cross Forest Trust
                                                                                          Resource Access
                                                                    DSfW
          iManager
                                                                            AD Style Authentication         eDirectory
                                                                                 Applications                 User


                                                          Clientless Access

                                Add/Modify User
               MMC

                                                                           Windows
                                                                            User
5   © Novell, Inc. All rights reserved.
Features in DSfW
Features in DSfW

    •   AD protocol support

    •   Domain Emulation/Samba support

    •   Manageability – MMC/iManager

    •   Authentication




7   © Novell, Inc. All rights reserved.
Features in DSfW (cont.)

    •   need more information here.




8   © Novell, Inc. All rights reserved.
Prerequisites for
Successful Deployment
Understand What You Are Trying To
     Achieve
     •   What is DSfW going to be used for?
          –   Application support. Check that the Windows based application
              is going to work with DSfW. Do you need a Trust to a real AD
              Domain for this to work correctly? What is the support position
              on the proposed solution?
          –   Windows 2003 and 2008 are not yet supported as member
              servers but do seem to work
     •   DSfW into an existing Tree
          –   eDirectory versions need to be up to date. At least one existing
                                     ™


              eDirectory 8.8 Server should be in the tree with the rest at
              8.73.10 or later. Put at least one OES2 Linux Server in place to
              begin with with any NetWare 6.5 Servers on SP8
                                           ®




          –   Time synchronization is key. Kerboros is also time sensitive

10   © Novell, Inc. All rights reserved.
Understand What You Are Trying To
     Achieve
     •   Current eDirectory Structure      ™




          –   Examine your existing eDirectory structure. Flat eDirectory
              designs with many Organization objects at the Tree Root may
              be problematic to implement DSfW

          –   The first DSfW servers DNS Suffix needs to match the AD
              Domain Name and suffix. For example if your AD domain name
              is dc=novell,dc=com then the DNS Suffix needs to be
              novell.com

          –   Schema checks. Check your schema in accordance with Novell        ®



              tid 7003431. May require a dial in to fix

          –   Partitioning and replication. Check the general tree health and
              how the existing partitions map to DSfW
11   © Novell, Inc. All rights reserved.
Deployment Options
New Domain
     Non-Name Mapped Configuration
     •   Characteristics:
          –   eDirectory tree is new ™



          –   eDirectory Tree Administrator is newly created and the DN is
              fixed. The AD Forest Name is created at the Tree Root as a
              hierarchy of DC objects. User administrator is created in
              cn=administrator,cn=users,dc=novell,dc=com. The dc objects
              are actual eDirectory objects
                                                                 dc=example, dc=com



                                                                                      domain




                     Domain                server 1   server 2        server 3        server 4   server 5
                    Controllers




13   © Novell, Inc. All rights reserved.
New Domain
     Non-Name Mapped Configuration
     •   Why would this be used?
          –   Single Server Tree can only be configured in a Non-Name
              Mapped configuration

          –   New Tree just for DSfW. No other application considerations

          –   The eDirectory Tree Administrator is also the DSfW
              Administrator. No eDirectory user called admin is created

          –   A domain is automatically mapped to the eDirectory container.
              e.g. domain acme.com is mapped to container
              dc=novell,dc=com



14   © Novell, Inc. All rights reserved.
Into Existing eDirectory Trees                ™

     (Name Mapping Mode)

     •   Characteristics
          –   A existing eDirectory Tree's partitioned container is used to map
              the DSfW domain (Name Mapping Mode)

          –   The eDirectory Tree Administrator is different from the First
              Domain Administrator

          –   The domain mapping to eDirectory Tree is managed by the
              eDirectory Tree Administrator




15   © Novell, Inc. All rights reserved.
Into Existing eDirectory Trees                ™

     (Name Mapping Mode)

     •   Why would this be used ?
          –   To add DSfW to an existing eDirectory environment

          –   To allow the use of Novell Workstations without the Novell®



              Client

          –   To allow access through an AD style trust for Microsoft
              Applications to Novell Users and Data

          –   To preserve use of existing Novell based applications such as
              GroupWise and the Novell Client
                                       ®




16   © Novell, Inc. All rights reserved.
Demonstration of Deployment
Deployment of DSfW Into An Existing
     eDirectory Tree                       ™



     •   Existing NW6.5 SP8 Tree – Novell-Tree

     •   OES2 SP2 Server has already been part configured
         and joined to the tree

     •   The DSfW Provisioning wizard still needs to run

     •   Once deployed examine how access can be given to
         Microsoft Clients to data volumes hosted on the
         NetWare Server         ®




18   © Novell, Inc. All rights reserved.
DSfW in OES2 SP2 and Beyond
DSfW in OES2 SP2

     •   New Provisioning Wizard

     •   Sysvol replication

     •   Password Policies

     •   Upgrade




20   © Novell, Inc. All rights reserved.
DSfW Provisioning Wizard

     •   Allows autoYaST to configure a basic OES2 SP2
         system. A Java-based wizard is then used
     •   Gives more control and management over the DSfW
         install process then OES2 SP1
     •   Gives the opportunity for remedial action if an
         installation stage fails. Each stage can be executed
         multiple times until successful
     •   Is only run when the base OS is installed and
         operational
     •   Can be scripted if required
21   © Novell, Inc. All rights reserved.
DSfW Provisioning Wizard




22   © Novell, Inc. All rights reserved.
SysVol Replication

     •   Allows for the replication of sysvol between Domain
         Controllers in OES2 SP2

     •   Uses rsync to execute the synchronization

     •   Similar functionality to native Windows 2003 Domain
         Controller




23   © Novell, Inc. All rights reserved.
Password Policies

     •   Needs adding




24   © Novell, Inc. All rights reserved.
Upgrade

     •   Allows the in place upgrade of an existing DSfW
         Domain Controller




25   © Novell, Inc. All rights reserved.
DSfW in OES2 SP3

     •   Removing Partition Boundary Limitation
     •   DNS configuration on ADC
     •   Deployment limiters
          –   Not moving master replica

          –   Disconnected children

          –   Domain name != container name

     •   Windows 2008 member server support
     •   Application?

26   © Novell, Inc. All rights reserved.
Third Party Application Support
Citrix

     •   Supported configuration for Citrix XENDesktop and
         DSfW: http://support.citrix.com/article/CTX123281
          –   XenDesktop 3 and 4 are supported when used in an
              environment with Novell Domain Services for Windows (DSfW)
                                           ®



              in Open Enterprise Server 2 Support Pack 1 and higher as
              follows:
          –   The XenDesktop farm must be configured to use registry-based
              controller discovery, as documented in KB article CTX118976 -
              How to Configure XenDesktop to Function Properly Without an
              Organizational Unit in Active Directory, and all Desktop Delivery
              Controllers and virtual desktops must be a member of the same
              “Domain Services for Windows” domain. There is no
              requirement for Novell client software to be installed either on
              the Desktop Delivery Controllers or the virtual desktops

28   © Novell, Inc. All rights reserved.
NetApp

                                            DSfW
                                           Domain

                                                    USERS




                                                    COMPUTERS




29   © Novell, Inc. All rights reserved.
•Unpublished Work of Novell, Inc. All Rights Reserved.
•This work is an unpublished work and contains confidential, proprietary, and trade secret information of Novell,
Inc. Access to this work is restricted to Novell employees who have a need to know to perform tasks within the
scope of their assignments. No part of this work may be practiced, performed, copied, distributed, revised,
modified, translated, abridged, condensed, expanded, collected, or adapted without the prior written consent of
Novell, Inc. Any use or exploitation of this work without authorization could subject the perpetrator to criminal and
civil liability.
•
•General Disclaimer
•This document is not to be construed as a promise by any participating company to develop, deliver, or market a
product. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in
making purchasing decisions. Novell, Inc. makes no representations or warranties with respect to the contents
of this document, and specifically disclaims any express or implied warranties of merchantability or fitness for any
particular purpose. The development, release, and timing of features or functionality described for Novell products
remains at the sole discretion of Novell. Further, Novell, Inc. reserves the right to revise this document and to
make changes to its content, at any time, without obligation to notify any person or entity of such revisions or
changes. All Novell marks referenced in this presentation are trademarks or registered trademarks of Novell, Inc.
in the United States and other countries. All third-party trademarks are the property of their respective owners.

Contenu connexe

Tendances

Lessons Learned: Novell Open Enterprise Server Upgrades Made Easy
Lessons Learned: Novell Open Enterprise Server Upgrades Made EasyLessons Learned: Novell Open Enterprise Server Upgrades Made Easy
Lessons Learned: Novell Open Enterprise Server Upgrades Made EasyNovell
 
Novell Filr Overview
Novell Filr OverviewNovell Filr Overview
Novell Filr OverviewNovell, Inc.
 
Novell File Management Suite: Intelligently Manage File Storage for Maximum B...
Novell File Management Suite: Intelligently Manage File Storage for Maximum B...Novell File Management Suite: Intelligently Manage File Storage for Maximum B...
Novell File Management Suite: Intelligently Manage File Storage for Maximum B...Novell
 
Securing Your Endpoints Using Novell ZENworks Endpoint Security Management
Securing Your Endpoints Using Novell ZENworks Endpoint Security ManagementSecuring Your Endpoints Using Novell ZENworks Endpoint Security Management
Securing Your Endpoints Using Novell ZENworks Endpoint Security ManagementNovell
 
Novell Open Enterprise Server Architecture
Novell Open Enterprise Server ArchitectureNovell Open Enterprise Server Architecture
Novell Open Enterprise Server ArchitectureNovell
 
Novell Teaming: Automating Business Processes with Forms and Workflows
Novell Teaming: Automating Business Processes with Forms and WorkflowsNovell Teaming: Automating Business Processes with Forms and Workflows
Novell Teaming: Automating Business Processes with Forms and WorkflowsNovell
 
Finding Virtual Coins in the Couch
Finding Virtual Coins in the CouchFinding Virtual Coins in the Couch
Finding Virtual Coins in the CouchNovell
 
Novell Open Enterprise Server for Beginners
Novell Open Enterprise Server for BeginnersNovell Open Enterprise Server for Beginners
Novell Open Enterprise Server for BeginnersNovell
 
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and FutureGWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and FutureGWAVA
 
NSS File System Performance, Clustering and Auditing in Novell Open Enterpris...
NSS File System Performance, Clustering and Auditing in Novell Open Enterpris...NSS File System Performance, Clustering and Auditing in Novell Open Enterpris...
NSS File System Performance, Clustering and Auditing in Novell Open Enterpris...Novell
 
Novell filr customer slides richard lindstedt
Novell filr customer slides richard lindstedtNovell filr customer slides richard lindstedt
Novell filr customer slides richard lindstedtGWAVA
 
Using Novell Sentinel Log Manager to Monitor Novell Applications
Using Novell Sentinel Log Manager to Monitor Novell ApplicationsUsing Novell Sentinel Log Manager to Monitor Novell Applications
Using Novell Sentinel Log Manager to Monitor Novell ApplicationsNovell
 

Tendances (20)

Lessons Learned: Novell Open Enterprise Server Upgrades Made Easy
Lessons Learned: Novell Open Enterprise Server Upgrades Made EasyLessons Learned: Novell Open Enterprise Server Upgrades Made Easy
Lessons Learned: Novell Open Enterprise Server Upgrades Made Easy
 
Novell Filr Overview
Novell Filr OverviewNovell Filr Overview
Novell Filr Overview
 
Novell File Management Suite: Intelligently Manage File Storage for Maximum B...
Novell File Management Suite: Intelligently Manage File Storage for Maximum B...Novell File Management Suite: Intelligently Manage File Storage for Maximum B...
Novell File Management Suite: Intelligently Manage File Storage for Maximum B...
 
Securing Your Endpoints Using Novell ZENworks Endpoint Security Management
Securing Your Endpoints Using Novell ZENworks Endpoint Security ManagementSecuring Your Endpoints Using Novell ZENworks Endpoint Security Management
Securing Your Endpoints Using Novell ZENworks Endpoint Security Management
 
Novell Open Enterprise Server Architecture
Novell Open Enterprise Server ArchitectureNovell Open Enterprise Server Architecture
Novell Open Enterprise Server Architecture
 
Cl115
Cl115Cl115
Cl115
 
Novell Teaming: Automating Business Processes with Forms and Workflows
Novell Teaming: Automating Business Processes with Forms and WorkflowsNovell Teaming: Automating Business Processes with Forms and Workflows
Novell Teaming: Automating Business Processes with Forms and Workflows
 
Cl107
Cl107Cl107
Cl107
 
Cl309
Cl309Cl309
Cl309
 
Finding Virtual Coins in the Couch
Finding Virtual Coins in the CouchFinding Virtual Coins in the Couch
Finding Virtual Coins in the Couch
 
Cl219
Cl219Cl219
Cl219
 
Cl207
Cl207Cl207
Cl207
 
Novell Open Enterprise Server for Beginners
Novell Open Enterprise Server for BeginnersNovell Open Enterprise Server for Beginners
Novell Open Enterprise Server for Beginners
 
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and FutureGWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
 
Cl221
Cl221Cl221
Cl221
 
Cl310
Cl310Cl310
Cl310
 
Cl116
Cl116Cl116
Cl116
 
NSS File System Performance, Clustering and Auditing in Novell Open Enterpris...
NSS File System Performance, Clustering and Auditing in Novell Open Enterpris...NSS File System Performance, Clustering and Auditing in Novell Open Enterpris...
NSS File System Performance, Clustering and Auditing in Novell Open Enterpris...
 
Novell filr customer slides richard lindstedt
Novell filr customer slides richard lindstedtNovell filr customer slides richard lindstedt
Novell filr customer slides richard lindstedt
 
Using Novell Sentinel Log Manager to Monitor Novell Applications
Using Novell Sentinel Log Manager to Monitor Novell ApplicationsUsing Novell Sentinel Log Manager to Monitor Novell Applications
Using Novell Sentinel Log Manager to Monitor Novell Applications
 

En vedette

Difference between standlone hyper-v vs role based
Difference between standlone hyper-v vs role basedDifference between standlone hyper-v vs role based
Difference between standlone hyper-v vs role basedAshwin Pawar
 
Hyper-V vs. vSphere: Understanding the Differences
Hyper-V vs. vSphere: Understanding the DifferencesHyper-V vs. vSphere: Understanding the Differences
Hyper-V vs. vSphere: Understanding the DifferencesSolarWinds
 
VMWare on VMWare - How VMware IT Implemented Micro-Segmentation and Deployed ...
VMWare on VMWare - How VMware IT Implemented Micro-Segmentation and Deployed ...VMWare on VMWare - How VMware IT Implemented Micro-Segmentation and Deployed ...
VMWare on VMWare - How VMware IT Implemented Micro-Segmentation and Deployed ...VMware
 
virtualization (Hyper-V)
virtualization (Hyper-V)virtualization (Hyper-V)
virtualization (Hyper-V)Mohamed Hesham
 
Implementing a Hyper-V Virtualization Infrastructure
Implementing a Hyper-V Virtualization InfrastructureImplementing a Hyper-V Virtualization Infrastructure
Implementing a Hyper-V Virtualization InfrastructureASPE, Inc.
 
Hyper V in Windows Server 2012
Hyper V in Windows Server 2012Hyper V in Windows Server 2012
Hyper V in Windows Server 2012Lai Yoong Seng
 
Modern Security for the Modern Data Center
Modern Security for the Modern Data CenterModern Security for the Modern Data Center
Modern Security for the Modern Data CenterVMware
 
VMWARE VS MS-HYPER-V
VMWARE VS MS-HYPER-VVMWARE VS MS-HYPER-V
VMWARE VS MS-HYPER-VDavid Ramirez
 
Virtualization in cloud computing
Virtualization in cloud computingVirtualization in cloud computing
Virtualization in cloud computingMehul Patel
 
1.Introduction to virtualization
1.Introduction to virtualization1.Introduction to virtualization
1.Introduction to virtualizationHwanju Kim
 
Virtualization and cloud Computing
Virtualization and cloud ComputingVirtualization and cloud Computing
Virtualization and cloud ComputingRishikese MR
 
VMware vSphere technical presentation
VMware vSphere technical presentationVMware vSphere technical presentation
VMware vSphere technical presentationaleyeldean
 
Virtualization presentation
Virtualization presentationVirtualization presentation
Virtualization presentationMangesh Gunjal
 
Virtualization in cloud computing ppt
Virtualization in cloud computing pptVirtualization in cloud computing ppt
Virtualization in cloud computing pptMehul Patel
 

En vedette (16)

Difference between standlone hyper-v vs role based
Difference between standlone hyper-v vs role basedDifference between standlone hyper-v vs role based
Difference between standlone hyper-v vs role based
 
Hyper-V vs. vSphere: Understanding the Differences
Hyper-V vs. vSphere: Understanding the DifferencesHyper-V vs. vSphere: Understanding the Differences
Hyper-V vs. vSphere: Understanding the Differences
 
VMWare on VMWare - How VMware IT Implemented Micro-Segmentation and Deployed ...
VMWare on VMWare - How VMware IT Implemented Micro-Segmentation and Deployed ...VMWare on VMWare - How VMware IT Implemented Micro-Segmentation and Deployed ...
VMWare on VMWare - How VMware IT Implemented Micro-Segmentation and Deployed ...
 
virtualization (Hyper-V)
virtualization (Hyper-V)virtualization (Hyper-V)
virtualization (Hyper-V)
 
Implementing a Hyper-V Virtualization Infrastructure
Implementing a Hyper-V Virtualization InfrastructureImplementing a Hyper-V Virtualization Infrastructure
Implementing a Hyper-V Virtualization Infrastructure
 
Hyper V in Windows Server 2012
Hyper V in Windows Server 2012Hyper V in Windows Server 2012
Hyper V in Windows Server 2012
 
Modern Security for the Modern Data Center
Modern Security for the Modern Data CenterModern Security for the Modern Data Center
Modern Security for the Modern Data Center
 
VMWARE VS MS-HYPER-V
VMWARE VS MS-HYPER-VVMWARE VS MS-HYPER-V
VMWARE VS MS-HYPER-V
 
Virtualization in cloud computing
Virtualization in cloud computingVirtualization in cloud computing
Virtualization in cloud computing
 
1.Introduction to virtualization
1.Introduction to virtualization1.Introduction to virtualization
1.Introduction to virtualization
 
Virtualization and cloud Computing
Virtualization and cloud ComputingVirtualization and cloud Computing
Virtualization and cloud Computing
 
VMware vSphere technical presentation
VMware vSphere technical presentationVMware vSphere technical presentation
VMware vSphere technical presentation
 
VMware Presentation
VMware PresentationVMware Presentation
VMware Presentation
 
Virtualization presentation
Virtualization presentationVirtualization presentation
Virtualization presentation
 
Virtualization in cloud computing ppt
Virtualization in cloud computing pptVirtualization in cloud computing ppt
Virtualization in cloud computing ppt
 
Introduction to virtualization
Introduction to virtualizationIntroduction to virtualization
Introduction to virtualization
 

Similaire à Domain Services for Windows: Best Practices for Windows Interoperability

There's More to Docker than the Container: The Docker Platform - Kendrick Col...
There's More to Docker than the Container: The Docker Platform - Kendrick Col...There's More to Docker than the Container: The Docker Platform - Kendrick Col...
There's More to Docker than the Container: The Docker Platform - Kendrick Col...{code} by Dell EMC
 
Lesson 4 intro to advanced o perating systems
Lesson 4 intro to advanced o perating systemsLesson 4 intro to advanced o perating systems
Lesson 4 intro to advanced o perating systemsJo Ko
 
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...Novell
 
Domain Services for Windows on OES11SP1
Domain Services for Windows on OES11SP1Domain Services for Windows on OES11SP1
Domain Services for Windows on OES11SP1Bas Penris
 
What is Trove, the Database as a Service on OpenStack?
What is Trove, the Database as a Service on OpenStack?What is Trove, the Database as a Service on OpenStack?
What is Trove, the Database as a Service on OpenStack?OpenStack_Online
 
OpenStack Online Meetup
OpenStack Online MeetupOpenStack Online Meetup
OpenStack Online MeetupTesora
 
Windows Server Infrastructure Upgrade and Redesign at EchoSoft. .docx
Windows Server Infrastructure Upgrade and Redesign at EchoSoft. .docxWindows Server Infrastructure Upgrade and Redesign at EchoSoft. .docx
Windows Server Infrastructure Upgrade and Redesign at EchoSoft. .docxambersalomon88660
 
Windows Server Infrastructure Upgrade and Redesign at ELearning. .docx
Windows Server Infrastructure Upgrade and Redesign at ELearning. .docxWindows Server Infrastructure Upgrade and Redesign at ELearning. .docx
Windows Server Infrastructure Upgrade and Redesign at ELearning. .docxadolphoyonker
 
Windows Server Infrastructure Upgrade and Redesign at ESoft.Over.docx
Windows Server Infrastructure Upgrade and Redesign at ESoft.Over.docxWindows Server Infrastructure Upgrade and Redesign at ESoft.Over.docx
Windows Server Infrastructure Upgrade and Redesign at ESoft.Over.docxcooperapleh
 
Windows Server Infrastructure Upgrade and Redesign at ELearning.docx
Windows Server Infrastructure Upgrade and Redesign at ELearning.docxWindows Server Infrastructure Upgrade and Redesign at ELearning.docx
Windows Server Infrastructure Upgrade and Redesign at ELearning.docxhelzerpatrina
 
Managing ScaleIO as Software on Mesos - David vonThenen - Dell EMC World 2017
Managing ScaleIO as Software on Mesos - David vonThenen - Dell EMC World 2017Managing ScaleIO as Software on Mesos - David vonThenen - Dell EMC World 2017
Managing ScaleIO as Software on Mesos - David vonThenen - Dell EMC World 2017{code} by Dell EMC
 
Data Analytics Using Container Persistence Through SMACK - Manny Rodriguez-Pe...
Data Analytics Using Container Persistence Through SMACK - Manny Rodriguez-Pe...Data Analytics Using Container Persistence Through SMACK - Manny Rodriguez-Pe...
Data Analytics Using Container Persistence Through SMACK - Manny Rodriguez-Pe...{code} by Dell EMC
 
Server interview[1]
Server interview[1]Server interview[1]
Server interview[1]sourav nanda
 
Mesosphere and the Enterprise: Run Your Applications on Apache Mesos - Steve ...
Mesosphere and the Enterprise: Run Your Applications on Apache Mesos - Steve ...Mesosphere and the Enterprise: Run Your Applications on Apache Mesos - Steve ...
Mesosphere and the Enterprise: Run Your Applications on Apache Mesos - Steve ...{code} by Dell EMC
 
Kubernetes and ScaleIO demo - Clinton Kitson - Dell EMC World 2017
Kubernetes and ScaleIO demo - Clinton Kitson - Dell EMC World 2017Kubernetes and ScaleIO demo - Clinton Kitson - Dell EMC World 2017
Kubernetes and ScaleIO demo - Clinton Kitson - Dell EMC World 2017{code} by Dell EMC
 
Windows Server Infrastructure Upgrade and Redesign at ELearning
Windows Server Infrastructure Upgrade and Redesign at ELearningWindows Server Infrastructure Upgrade and Redesign at ELearning
Windows Server Infrastructure Upgrade and Redesign at ELearningrosacrosdale
 

Similaire à Domain Services for Windows: Best Practices for Windows Interoperability (20)

There's More to Docker than the Container: The Docker Platform - Kendrick Col...
There's More to Docker than the Container: The Docker Platform - Kendrick Col...There's More to Docker than the Container: The Docker Platform - Kendrick Col...
There's More to Docker than the Container: The Docker Platform - Kendrick Col...
 
teste
testeteste
teste
 
Lesson 4 intro to advanced o perating systems
Lesson 4 intro to advanced o perating systemsLesson 4 intro to advanced o perating systems
Lesson 4 intro to advanced o perating systems
 
MCSA 70-412 Chapter 04
MCSA 70-412 Chapter 04MCSA 70-412 Chapter 04
MCSA 70-412 Chapter 04
 
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
Migrating from Novell ZENworks 7 Desktop Management to Novell ZENworks Config...
 
Domain Services for Windows on OES11SP1
Domain Services for Windows on OES11SP1Domain Services for Windows on OES11SP1
Domain Services for Windows on OES11SP1
 
What is Trove, the Database as a Service on OpenStack?
What is Trove, the Database as a Service on OpenStack?What is Trove, the Database as a Service on OpenStack?
What is Trove, the Database as a Service on OpenStack?
 
OpenStack Online Meetup
OpenStack Online MeetupOpenStack Online Meetup
OpenStack Online Meetup
 
Windows Server Infrastructure Upgrade and Redesign at EchoSoft. .docx
Windows Server Infrastructure Upgrade and Redesign at EchoSoft. .docxWindows Server Infrastructure Upgrade and Redesign at EchoSoft. .docx
Windows Server Infrastructure Upgrade and Redesign at EchoSoft. .docx
 
Windows Server Infrastructure Upgrade and Redesign at ELearning. .docx
Windows Server Infrastructure Upgrade and Redesign at ELearning. .docxWindows Server Infrastructure Upgrade and Redesign at ELearning. .docx
Windows Server Infrastructure Upgrade and Redesign at ELearning. .docx
 
Windows Server Infrastructure Upgrade and Redesign at ESoft.Over.docx
Windows Server Infrastructure Upgrade and Redesign at ESoft.Over.docxWindows Server Infrastructure Upgrade and Redesign at ESoft.Over.docx
Windows Server Infrastructure Upgrade and Redesign at ESoft.Over.docx
 
Windows Server Infrastructure Upgrade and Redesign at ELearning.docx
Windows Server Infrastructure Upgrade and Redesign at ELearning.docxWindows Server Infrastructure Upgrade and Redesign at ELearning.docx
Windows Server Infrastructure Upgrade and Redesign at ELearning.docx
 
Virtualization and Containers
Virtualization and ContainersVirtualization and Containers
Virtualization and Containers
 
Managing ScaleIO as Software on Mesos - David vonThenen - Dell EMC World 2017
Managing ScaleIO as Software on Mesos - David vonThenen - Dell EMC World 2017Managing ScaleIO as Software on Mesos - David vonThenen - Dell EMC World 2017
Managing ScaleIO as Software on Mesos - David vonThenen - Dell EMC World 2017
 
Data Analytics Using Container Persistence Through SMACK - Manny Rodriguez-Pe...
Data Analytics Using Container Persistence Through SMACK - Manny Rodriguez-Pe...Data Analytics Using Container Persistence Through SMACK - Manny Rodriguez-Pe...
Data Analytics Using Container Persistence Through SMACK - Manny Rodriguez-Pe...
 
Server interview[1]
Server interview[1]Server interview[1]
Server interview[1]
 
Mesosphere and the Enterprise: Run Your Applications on Apache Mesos - Steve ...
Mesosphere and the Enterprise: Run Your Applications on Apache Mesos - Steve ...Mesosphere and the Enterprise: Run Your Applications on Apache Mesos - Steve ...
Mesosphere and the Enterprise: Run Your Applications on Apache Mesos - Steve ...
 
Kubernetes and ScaleIO demo - Clinton Kitson - Dell EMC World 2017
Kubernetes and ScaleIO demo - Clinton Kitson - Dell EMC World 2017Kubernetes and ScaleIO demo - Clinton Kitson - Dell EMC World 2017
Kubernetes and ScaleIO demo - Clinton Kitson - Dell EMC World 2017
 
Windows Server Infrastructure Upgrade and Redesign at ELearning
Windows Server Infrastructure Upgrade and Redesign at ELearningWindows Server Infrastructure Upgrade and Redesign at ELearning
Windows Server Infrastructure Upgrade and Redesign at ELearning
 
Resume 0.1
Resume 0.1Resume 0.1
Resume 0.1
 

Plus de Novell

Filr white paper
Filr white paperFilr white paper
Filr white paperNovell
 
Social media class 4 v2
Social media class 4 v2Social media class 4 v2
Social media class 4 v2Novell
 
Social media class 3
Social media class 3Social media class 3
Social media class 3Novell
 
Social media class 2
Social media class 2Social media class 2
Social media class 2Novell
 
Social media class 1
Social media class 1Social media class 1
Social media class 1Novell
 
Social media class 2 v2
Social media class 2 v2Social media class 2 v2
Social media class 2 v2Novell
 
LinkedIn training presentation
LinkedIn training presentationLinkedIn training presentation
LinkedIn training presentationNovell
 
Twitter training presentation
Twitter training presentationTwitter training presentation
Twitter training presentationNovell
 
Getting started with social media
Getting started with social mediaGetting started with social media
Getting started with social mediaNovell
 
Strategies for sharing and commenting in social media
Strategies for sharing and commenting in social mediaStrategies for sharing and commenting in social media
Strategies for sharing and commenting in social mediaNovell
 
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECH
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECHInformation Security & Compliance in Healthcare: Beyond HIPAA and HITECH
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECHNovell
 
Workload iq final
Workload iq   finalWorkload iq   final
Workload iq finalNovell
 
The Identity-infused Enterprise
The Identity-infused EnterpriseThe Identity-infused Enterprise
The Identity-infused EnterpriseNovell
 
Shining the Enterprise Light on Shades of Social
Shining the Enterprise Light on Shades of SocialShining the Enterprise Light on Shades of Social
Shining the Enterprise Light on Shades of SocialNovell
 
Accelerate to the Cloud
Accelerate to the CloudAccelerate to the Cloud
Accelerate to the CloudNovell
 
The New Business Value of Today’s Collaboration Trends
The New Business Value of Today’s Collaboration TrendsThe New Business Value of Today’s Collaboration Trends
The New Business Value of Today’s Collaboration TrendsNovell
 
Preventing The Next Data Breach Through Log Management
Preventing The Next Data Breach Through Log ManagementPreventing The Next Data Breach Through Log Management
Preventing The Next Data Breach Through Log ManagementNovell
 
Iaas for a demanding business
Iaas for a demanding businessIaas for a demanding business
Iaas for a demanding businessNovell
 
Workload IQ: A Differentiated Approach
Workload IQ: A Differentiated ApproachWorkload IQ: A Differentiated Approach
Workload IQ: A Differentiated ApproachNovell
 
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...Novell
 

Plus de Novell (20)

Filr white paper
Filr white paperFilr white paper
Filr white paper
 
Social media class 4 v2
Social media class 4 v2Social media class 4 v2
Social media class 4 v2
 
Social media class 3
Social media class 3Social media class 3
Social media class 3
 
Social media class 2
Social media class 2Social media class 2
Social media class 2
 
Social media class 1
Social media class 1Social media class 1
Social media class 1
 
Social media class 2 v2
Social media class 2 v2Social media class 2 v2
Social media class 2 v2
 
LinkedIn training presentation
LinkedIn training presentationLinkedIn training presentation
LinkedIn training presentation
 
Twitter training presentation
Twitter training presentationTwitter training presentation
Twitter training presentation
 
Getting started with social media
Getting started with social mediaGetting started with social media
Getting started with social media
 
Strategies for sharing and commenting in social media
Strategies for sharing and commenting in social mediaStrategies for sharing and commenting in social media
Strategies for sharing and commenting in social media
 
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECH
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECHInformation Security & Compliance in Healthcare: Beyond HIPAA and HITECH
Information Security & Compliance in Healthcare: Beyond HIPAA and HITECH
 
Workload iq final
Workload iq   finalWorkload iq   final
Workload iq final
 
The Identity-infused Enterprise
The Identity-infused EnterpriseThe Identity-infused Enterprise
The Identity-infused Enterprise
 
Shining the Enterprise Light on Shades of Social
Shining the Enterprise Light on Shades of SocialShining the Enterprise Light on Shades of Social
Shining the Enterprise Light on Shades of Social
 
Accelerate to the Cloud
Accelerate to the CloudAccelerate to the Cloud
Accelerate to the Cloud
 
The New Business Value of Today’s Collaboration Trends
The New Business Value of Today’s Collaboration TrendsThe New Business Value of Today’s Collaboration Trends
The New Business Value of Today’s Collaboration Trends
 
Preventing The Next Data Breach Through Log Management
Preventing The Next Data Breach Through Log ManagementPreventing The Next Data Breach Through Log Management
Preventing The Next Data Breach Through Log Management
 
Iaas for a demanding business
Iaas for a demanding businessIaas for a demanding business
Iaas for a demanding business
 
Workload IQ: A Differentiated Approach
Workload IQ: A Differentiated ApproachWorkload IQ: A Differentiated Approach
Workload IQ: A Differentiated Approach
 
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
Virtual Appliances: Simplifying Application Deployment and Accelerating Your ...
 

Domain Services for Windows: Best Practices for Windows Interoperability

  • 1. Domain Services for Windows: Best Practices for Windows Interoperability Nicel KM David Shepherd Engineering Manager Senior Technical Specialist mnicel@novell.com dhepherd@novell.com
  • 2. Agenda • What is Domain Services for Windows (DSfW)? • Features in DSfW • Prerequisites for Successful Deployment • Deployment Options • Demonstration • DSfW in OES2 SP2 and beyond • Third Party Applications Support 2 © Novell, Inc. All rights reserved.
  • 3. What is Domain Services for Windows?
  • 4. What is Domain Services for Windows? • Domain Services for Windows (DSfW) is a suite of technologies • Provides AD style authentication to users, applications • eDirectory users can access AD resources and ™ applications with a cross forest trust in place • Seamless (need to depict that it doesnt change becos of dsfw) access to OES services like file and print services present on NSS or POSIX file systems 4 © Novell, Inc. All rights reserved.
  • 5. DSfW: What Does It Achieve? eDirectory Tree ™ Active Directory Forest eDirectory DSfW Cross Forest Trust Resource Access DSfW iManager AD Style Authentication eDirectory Applications User Clientless Access Add/Modify User MMC Windows User 5 © Novell, Inc. All rights reserved.
  • 7. Features in DSfW • AD protocol support • Domain Emulation/Samba support • Manageability – MMC/iManager • Authentication 7 © Novell, Inc. All rights reserved.
  • 8. Features in DSfW (cont.) • need more information here. 8 © Novell, Inc. All rights reserved.
  • 10. Understand What You Are Trying To Achieve • What is DSfW going to be used for? – Application support. Check that the Windows based application is going to work with DSfW. Do you need a Trust to a real AD Domain for this to work correctly? What is the support position on the proposed solution? – Windows 2003 and 2008 are not yet supported as member servers but do seem to work • DSfW into an existing Tree – eDirectory versions need to be up to date. At least one existing ™ eDirectory 8.8 Server should be in the tree with the rest at 8.73.10 or later. Put at least one OES2 Linux Server in place to begin with with any NetWare 6.5 Servers on SP8 ® – Time synchronization is key. Kerboros is also time sensitive 10 © Novell, Inc. All rights reserved.
  • 11. Understand What You Are Trying To Achieve • Current eDirectory Structure ™ – Examine your existing eDirectory structure. Flat eDirectory designs with many Organization objects at the Tree Root may be problematic to implement DSfW – The first DSfW servers DNS Suffix needs to match the AD Domain Name and suffix. For example if your AD domain name is dc=novell,dc=com then the DNS Suffix needs to be novell.com – Schema checks. Check your schema in accordance with Novell ® tid 7003431. May require a dial in to fix – Partitioning and replication. Check the general tree health and how the existing partitions map to DSfW 11 © Novell, Inc. All rights reserved.
  • 13. New Domain Non-Name Mapped Configuration • Characteristics: – eDirectory tree is new ™ – eDirectory Tree Administrator is newly created and the DN is fixed. The AD Forest Name is created at the Tree Root as a hierarchy of DC objects. User administrator is created in cn=administrator,cn=users,dc=novell,dc=com. The dc objects are actual eDirectory objects dc=example, dc=com domain Domain server 1 server 2 server 3 server 4 server 5 Controllers 13 © Novell, Inc. All rights reserved.
  • 14. New Domain Non-Name Mapped Configuration • Why would this be used? – Single Server Tree can only be configured in a Non-Name Mapped configuration – New Tree just for DSfW. No other application considerations – The eDirectory Tree Administrator is also the DSfW Administrator. No eDirectory user called admin is created – A domain is automatically mapped to the eDirectory container. e.g. domain acme.com is mapped to container dc=novell,dc=com 14 © Novell, Inc. All rights reserved.
  • 15. Into Existing eDirectory Trees ™ (Name Mapping Mode) • Characteristics – A existing eDirectory Tree's partitioned container is used to map the DSfW domain (Name Mapping Mode) – The eDirectory Tree Administrator is different from the First Domain Administrator – The domain mapping to eDirectory Tree is managed by the eDirectory Tree Administrator 15 © Novell, Inc. All rights reserved.
  • 16. Into Existing eDirectory Trees ™ (Name Mapping Mode) • Why would this be used ? – To add DSfW to an existing eDirectory environment – To allow the use of Novell Workstations without the Novell® Client – To allow access through an AD style trust for Microsoft Applications to Novell Users and Data – To preserve use of existing Novell based applications such as GroupWise and the Novell Client ® 16 © Novell, Inc. All rights reserved.
  • 18. Deployment of DSfW Into An Existing eDirectory Tree ™ • Existing NW6.5 SP8 Tree – Novell-Tree • OES2 SP2 Server has already been part configured and joined to the tree • The DSfW Provisioning wizard still needs to run • Once deployed examine how access can be given to Microsoft Clients to data volumes hosted on the NetWare Server ® 18 © Novell, Inc. All rights reserved.
  • 19. DSfW in OES2 SP2 and Beyond
  • 20. DSfW in OES2 SP2 • New Provisioning Wizard • Sysvol replication • Password Policies • Upgrade 20 © Novell, Inc. All rights reserved.
  • 21. DSfW Provisioning Wizard • Allows autoYaST to configure a basic OES2 SP2 system. A Java-based wizard is then used • Gives more control and management over the DSfW install process then OES2 SP1 • Gives the opportunity for remedial action if an installation stage fails. Each stage can be executed multiple times until successful • Is only run when the base OS is installed and operational • Can be scripted if required 21 © Novell, Inc. All rights reserved.
  • 22. DSfW Provisioning Wizard 22 © Novell, Inc. All rights reserved.
  • 23. SysVol Replication • Allows for the replication of sysvol between Domain Controllers in OES2 SP2 • Uses rsync to execute the synchronization • Similar functionality to native Windows 2003 Domain Controller 23 © Novell, Inc. All rights reserved.
  • 24. Password Policies • Needs adding 24 © Novell, Inc. All rights reserved.
  • 25. Upgrade • Allows the in place upgrade of an existing DSfW Domain Controller 25 © Novell, Inc. All rights reserved.
  • 26. DSfW in OES2 SP3 • Removing Partition Boundary Limitation • DNS configuration on ADC • Deployment limiters – Not moving master replica – Disconnected children – Domain name != container name • Windows 2008 member server support • Application? 26 © Novell, Inc. All rights reserved.
  • 28. Citrix • Supported configuration for Citrix XENDesktop and DSfW: http://support.citrix.com/article/CTX123281 – XenDesktop 3 and 4 are supported when used in an environment with Novell Domain Services for Windows (DSfW) ® in Open Enterprise Server 2 Support Pack 1 and higher as follows: – The XenDesktop farm must be configured to use registry-based controller discovery, as documented in KB article CTX118976 - How to Configure XenDesktop to Function Properly Without an Organizational Unit in Active Directory, and all Desktop Delivery Controllers and virtual desktops must be a member of the same “Domain Services for Windows” domain. There is no requirement for Novell client software to be installed either on the Desktop Delivery Controllers or the virtual desktops 28 © Novell, Inc. All rights reserved.
  • 29. NetApp DSfW Domain USERS COMPUTERS 29 © Novell, Inc. All rights reserved.
  • 30.
  • 31. •Unpublished Work of Novell, Inc. All Rights Reserved. •This work is an unpublished work and contains confidential, proprietary, and trade secret information of Novell, Inc. Access to this work is restricted to Novell employees who have a need to know to perform tasks within the scope of their assignments. No part of this work may be practiced, performed, copied, distributed, revised, modified, translated, abridged, condensed, expanded, collected, or adapted without the prior written consent of Novell, Inc. Any use or exploitation of this work without authorization could subject the perpetrator to criminal and civil liability. • •General Disclaimer •This document is not to be construed as a promise by any participating company to develop, deliver, or market a product. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in making purchasing decisions. Novell, Inc. makes no representations or warranties with respect to the contents of this document, and specifically disclaims any express or implied warranties of merchantability or fitness for any particular purpose. The development, release, and timing of features or functionality described for Novell products remains at the sole discretion of Novell. Further, Novell, Inc. reserves the right to revise this document and to make changes to its content, at any time, without obligation to notify any person or entity of such revisions or changes. All Novell marks referenced in this presentation are trademarks or registered trademarks of Novell, Inc. in the United States and other countries. All third-party trademarks are the property of their respective owners.