11 active directory maintenance, troubleshooting, and disaster recovery chapter 11

Post on 22-Dec-2015

240 Views

Category:

Documents

2 Downloads

Preview:

Click to see full reader

TRANSCRIPT

11

ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

Chapter 11

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

2

MAINTAINING ACTIVE DIRECTORY

Active Directory Database. Managed by Extensible Storage Engine

(ESE).

Changes to the database are made as transactions.

Database fragmentation occurs over time.

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

3

ACTIVE DIRECTORY TRANSACTIONS

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

4

DEFRAGMENTATION

Automatic online defragmentation Garbage collection process

Tombstone (default life 60 days)

Manual offline defragmentation F8 – Directory Services Restore mode

Ntdsutil files

Compact to drive:\directory

Replace %systemroot%\ntds\ntds.dit

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

5

MOVING THE ACTIVE DIRECTORY DATABASE

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

6

SYSTEM STATE DATA BACKUP

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

7

RESTORING SYSTEM STATE DATA

Normal restore

Primary restore

Authoritative restore

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

8

NORMAL RESTORE PROCESS

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

9

PRIMARY RESTORE

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

10

AUTHORITATIVE RESTORE

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

11

MONITORING ACTIVE DIRECTORY AND FILE REPLICATION

Measurement tool

Gaining a performance baseline

Objects: NTDS and FileReplicaSet

Other benefits Early warnings to problems

Improved system reliability

Fewer support calls

Improved system performance

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

12

DIRECTORY SERVICE LOG

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

13

FILE REPLICATION SERVICE LOG

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

14

SYSTEM MONITOR: NTDS

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

15

SYSTEM MONITOR: FILEREPLICASET

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

16

DIAGNOSTIC LOGGING

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

17

DCDIAG

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

18

DSASTAT

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

19

REPLMON

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

20

REPADMIN

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

21

NETDOM

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

22

NTDSUTIL

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

23

NTFRSUTL

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

24

NETDIAG

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

25

ADSIEDIT.MSC

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

26

LDP.EXE

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

27

KERBTRAY.EXE

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

28

NLTEST.EXE

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

29

DSACLS.EXE

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

30

SYSTEM SERVICES

Distributed file system

File replication

Intersite messaging

Kerberos key distribution

Remote procedure call (RPC)

DNS server

Net logon

Windows time

Chapter 11: ACTIVE DIRECTORY MAINTENANCE, TROUBLESHOOTING, AND DISASTER RECOVERY

31

SUMMARY

Which startup option allows you to perform offline maintenance on the Active Directory database?

Which tool allows you to defragment and compact ntds.dit?

What is the difference between an authoritative restore and a normal restore?

In which tool do you find the option to perform a primary restore?

Which tool allows you to baseline Active Directory performance on NTDS and the FileReplicaSet?

top related