Difference between revisions of "Active Directory/Documentation"
Jump to navigation
Jump to search
m (→Macintosh) |
|||
Line 61: | Line 61: | ||
==== Options for integrating Mac OS X clients with AD ==== | ==== Options for integrating Mac OS X clients with AD ==== | ||
− | *Billy's instructions on joining domain... [[/Joining Macs to WolfTech Domain]] | + | *Billy's instructions on joining domain... [[/Joining Macs to WolfTech Domain|Joining Macs to WolfTech Domain]] |
With the included Active Directory plug-in, OS X can be configured to authenticate to an AD domain, and use network home directories. More comprehensive management (MCX) requires one of the 3 options below: | With the included Active Directory plug-in, OS X can be configured to authenticate to an AD domain, and use network home directories. More comprehensive management (MCX) requires one of the 3 options below: |
Revision as of 13:27, 7 December 2009
Active Directory Users and Computers
Automatic Logon
Administrative Users
Automatic Updates (WSUS)
Details on the WolfTech WSUS Service Group can be found here.
- Configuring the Windows Update GPO Setting
- Manually Install Updates
- WSUS Management Console
- Manipulate Client Behavior Using Command-line Options
- Windows Update Agent force script
- Personal Computers on WSUS
- Configuring Domain Computers
Disaster Recovery
DNS
File Servers
Folder Redirection
Distributed File System (DFS)
Group Policy
Group Policy Preferences
- Overview
- Remote Server Administration Tools
- Configuring Preferences
- Clients & Deploying Preferences
- Item-Level Targeting
Internet Explorer 7
Laptops
Lights Out Management
- HP ILO
- Dell DRAC
Macintosh
- Parallels (BME is currently beta testing)
Options for integrating Mac OS X clients with AD
- Billy's instructions on joining domain... Joining Macs to WolfTech Domain
With the included Active Directory plug-in, OS X can be configured to authenticate to an AD domain, and use network home directories. More comprehensive management (MCX) requires one of the 3 options below:
- Extending the AD schema Adding 38 attributes and 10 classes to the AD schema.
- Dual directory Adding an Open Directory domain running on a Mac OS X Server, also known as a "Magic Triangle" configuration
- Third-party solutions Options include Thursby's ADmitMac or Centrify DirectControl.
Additional resources:
Issues to address:
- Configuring your mac to use your UnityID/paswd (specifically, by authing against the DCs, but alternatively against the campus KDC). Plus how the laptop reacts when not on the network - should be caching.
- Adding your Mac to the domain.
- Restricting access to AD defined users.
- Printing from your domain'd mac to a Windows print server; and to a WolfCopy printer.
- ksmbprintd v1.0 (http://www.deploystudio.com/News/Entries/2008/4/7_ksmbprintd_v1.0.html / http://www.deploystudio.com/Downloads/ksmbprintd_v1.0.dmg) -- courtesy of Everette, needs to be tested.
- Accessing Windows file shares from your domain mac
- Why DFS doesn't work, or if the new OS fixes this. And steps to get around this (3rd party apps - AdmitMac) or things to look out for).
- Options to apply policies to the mac client via GP? (likely to require 3rd party apps)
- Scripts to inventory hardware/applications on your mac clients (longterm we'd want a WolfTech Collector Agent for Macs)
- AFS client for Macs
- Software distribution to Mac via GP?
Migrating
- College of Textiles Migration
- GUID Collection Tool
- Computer Account Prestaging Tool
- Using the Computer Migrators group
Active Directory Migration Tool (ADMT)
MS-SQL
New OU Admins
Printing
- Printing via Print-a-File
- Windows 2003 R2 and Printing
- Printer Management and Vista/RSAT
- WolfPrint Accounted Printing
Public Labs / Kiosks
Remote Assistance
- Configuring AD for Remote Assistance
- Offering Remote Assistance
Remote Installation Services (RIS)
Scripting
- phpAD Library
- SysInternals Tools (incls psexec / pstools)
- GUI for psexec
- Using PsExec to delete old local profiles on lab machines
Services for UNIX
Software Packaging
- Packaging Notes
- Assigning Software via Group Policy
- Windows Installer
- Manually Uninstall MSI
- Removing Ghost Installs
- Controling Licenses via GPP