Active Directory Field Guide Laura E. Hunter Active Directory Field Guide Copyright (c) 2005 by Laura E. Hunter All rights reserved. No part of this work may be reproduced or transmitted in any form or by any means, electronic or mechanical, including photocopying, recording, or by any information storage or retrieval system, without the prior written permission of the copyright owner and the publisher. ISBN (pbk): 1-59059-492-4 Printed and bound in the United States of America 9 8 7 6 5 4 3 2 1 Trademarked names may appear in this book. Rather than use a trademark symbol with every occurrence of a trademarked name, we use the names only in an editorial fashion and to the benefit of the trademark owner, with no intention of infringement of the trademark. Lead Editor: Jim Sumser Technical Reviewer: Alexander N. Nepomnjashiy Editorial Board: Steve Anglin, Dan Appleman, Ewan Buckingham, Gary Cornell, Tony Davis, Jason Gilmore, Jonathan Hassell, Chris Mills, Dominic Shakeshaft, Jim Sumser Assistant Publisher: Grace Wong Project Manager: Beckie Stones Copy Manager: Nicole LeClerc Copy Editor: Ami Knox Production Manager: Kari Brooks-Copony Production Editor: Ellie Fountain Compositor: Diana Van Winkle Proofreader: Linda Marousek Indexer: Kevin Broccoli Artist: Diana Van Winkle Cover Designer: Kurt Krames Manufacturing Manager: Tom Debolski Distributed to the book trade in the United States by Springer-Verlag New York, Inc., 233 Spring Street, 6th Floor, New York, NY 10013, and outside the United States by Springer-Verlag GmbH & Co. KG, Tiergartenstr. 17, 69112 Heidelberg, Germany. In the United States: phone 1-800-SPRINGER, fax 201-348-4505, e-mail orders@springer-ny.com, or visit http://www.springer-ny.com. Outside the United States: fax +49 6221 345229, e-mail orders@springer.de, or visit http://www.springer.de. For information on translations, please contact Apress directly at 2560 Ninth Street, Suite 219, Berkeley, CA 94710. Phone 510-549-5930, fax 510-549-5939, e-mail info@apress.com, or visit http://www.apress.com. The information in this book is distributed on an as is basis, without warranty. Although every precaution has been taken in the preparation of this work, neither the author(s) nor Apress shall have any liability to any person or entity with respect to any loss or damage caused or alleged to be caused directly or indirectly by the information contained in this work. About the Author ... xi About the Technical Reviewer ... xiii Acknowledgments ... xv Introduction ... xvii CHAPTER 1 Installing Active Directory ... 1 CHAPTER 2 Integrating the Network Infrastructure ... 39 CHAPTER 3 Daily Administration ... 77 CHAPTER 4 Deploying Group Policy ... 113 CHAPTER 5 Active Directory Security ... 149 CHAPTER 6 Managing Large-Scale Deployments ... 187 CHAPTER 7 Active Directory Migrations ... 219 CHAPTER 8 Disaster Recovery ... 251 CHAPTER 9 Scripting and Schem(a)ing ... 281 INDEX ... 319 v Contents at a Glance