Windows 2000ã§åããŠMicrosoft Active DirectoryïŒADïŒããªãªãŒã¹ãããŸãããåœæã®äž»ãªã¿ã¹ã¯ã¯ãPCãŠãŒã¶ãŒãšWindowsãµãŒããŒã®éäžèªèšŒãšèªèšŒãæäŸãããã£ã¬ã¯ããªå¯Ÿå¿ã¢ããªã±ãŒã·ã§ã³ïŒMicrosoftãªã©ïŒäº€æïŒã
æè¿ã§ã¯ãADã®äœ¿çšãšç®¡çã«å€ãã®å€æŽãå ããããŠããŸããããã«ã¯ãäœæ¥çµç¹ã®æ¹åã«é¢ããMicrosoftããã®æšå¥šäºé
ããã·ã¹ãã ã®äŒæ¥ç®¡çã¹ã¿ã€ã«ãå«ãŸããŸãã ADã®éçºã«åœ±é¿ãäžããå€ãã®èŠå¶èŠä»¶ãäœæãããŸããã ææ°ã®ç¶æ
ã«ä¿ã€ããã«ãçµç¹ã¯Active Directoryãžã®ã¢ãããŒããåæ€èšãããããè¿ä»£åããå¿
èŠããããŸãã ããã«ããã管çã容æã«ãªããã·ã¹ãã ã®ããã©ãŒãã³ã¹ãåäžããŸãã
ADãæ¹åããããšã®äŸ¡å€ãšãææ°ã®ã€ã³ãã©ã¹ãã©ã¯ãã£ãäœæããããã«éç¹ã眮ãã¹ãé åãèŠãŠã¿ãŸãããã
ADã®å€æŽActive Directoryã®æåã®ãªãªãŒã¹ä»¥éããã¯ãããžãŒãšããžãã¹ã®äž¡æ¹ã®äžçãå€ãããŸããã ã»ãšãã©ãã¹ãŠã®çµç¹ãããµãŒãã¹ã®ãã®ãããªå€æŽã®åœ±é¿ãåããŸããã
- ADã®äœæ¥æ§æã«é¢ãããã€ã¯ããœããã®æšå¥šäºé
ã
- åãŠãŒã¶ãŒã®ç¬èªã®æšæºã
- çµç¹ã«ãããADã®åœ¹å²ã®å¢å ã
- æ©å¯ããŒã¿ã®ã»ãã¥ãªãã£ããã³ã¢ã¯ã»ã¹å¶åŸ¡ã«é¢ããèŠå¶èŠä»¶ã®åŒ·åã
ãããã®åå€æŽã¯ãActive Directoryãã¢ããã°ã¬ãŒãããå¿
èŠæ§ã«ãããŠåå¥ã®åœ¹å²ãæãããŸãã
Microsoftã®æšå¥šäºé
ãšæ°ããã·ã¹ãã æ©èœãå€æŽããADèªäœãšåæ§ã«ãã·ã¹ãã ã®ç®¡çã«é¢ãããã€ã¯ããœããã®æšå¥šäºé
ã¯å€§å¹
ã«å€æŽãããŸããã 䜿çšãããªããªã£ãããã·ã¹ãã ã®ä»¥åã®ããŒãžã§ã³ã«ç¹åŸŽçãª2ã€ã®ååãèŠãŠã¿ãŸãããã
空ã®ãã©ã¬ã¹ãã«ãŒããã¡ã€ã³
æåã«ãMicrosoftã¯æåã®ãã©ã¬ã¹ããã¡ã€ã³ãç¹ã«éèŠã§ãããåžžã«ç©ºã®ãŸãŸã§ãããšèããããŠãããããçµç¹ã空ã®ADã«ãŒããã¡ã€ã³ãäœæããããšãæšå¥šããŸããïŒå³1ïŒã ãã€ã¯ããœããã¯é·ãéãã®ã¢ããã€ã¹ãæåŠããŠãããã·ã¹ãã ãè€éã«ãããè¿œå ã®ã»ãã¥ãªãã£èŠä»¶ã§éè² è·ã«ãªããªãããã«ãå¿
èŠãªãã¡ã€ã³ã®ã¿ãäœæããããšãæšå¥šããŠããŸãã ãã ããå€ãã®å Žåã2ã€ä»¥äžã®ãã¡ã€ã³ãšæªäœ¿çšã®ã«ãŒããã£ã¬ã¯ããªã§ADãã©ã¬ã¹ããäœæãããŸãã
å³ 1.空ã®ã«ãŒããã¡ã€ã³ã䜿çšããã»ãã¥ãªãã£å¢çãšããŠã®ãã¡ã€ã³
ãã€ã¯ããœããã¯ãã»ãã¥ãªãã£ãšç®¡çã®èŠ³ç¹ãããã©ã¬ã¹ããçžäºã«çµ±åããã®ãé£ããããããã©ã¬ã¹ãã®æ°ã®å¢å ãé¿ããããšãæšå¥šããŸããã ããã«ãActive Directoryãã¡ã€ã³ã¯ã»ãã¥ãªãã£ã®ããã³ãã£ã¢ãšèŠãªãããŠããŸããã ããã«ããã2ã€ã®ãã¡ã€ã³ã®ãã©ã¬ã¹ãã§ããã¡ã€ã³Aãšãã¡ã€ã³Bã®ãŠãŒã¶ãŒãšãªãœãŒã¹ãç°¡åã«åé¢ã§ããŸããã
次ã«ããããã¡ã€ã³ã®ç®¡çè
ãåããã©ã¬ã¹ãå
ã®å¥ã®ãã¡ã€ã³ã®ãªãœãŒã¹ãå¶åŸ¡ããããšãããã«ç°¡åãã瀺ãäžé£ã®èšäºãåºãããŸããããã®åŸããã€ã¯ããœããã¯æšå¥šäºé
ãå€æŽãããã¡ã€ã³ã§ã¯ãªããã©ã¬ã¹ããã»ãã¥ãªãã£å¢çãšèŠãªãããã«ä¿ããŸããã ç¹å®ã®ãã¡ã€ã³ã®ãŠãŒã¶ãŒãŸãã¯ãªãœãŒã¹ãåé¢ããå Žåã¯ãå¥ã®ãã©ã¬ã¹ããæ§ç¯ããå¿
èŠããããŸãã ãã®ãããçŸåšãçµç¹ã«ã¯éåžžãå€ãã®ãã©ã¬ã¹ãããããŸããããšãã°ãéçºãã©ã¬ã¹ããéçšãã©ã¬ã¹ãããåé¢ããããç¹å¥ãªã€ã³ã¿ãŒãããæåã®ãã©ã¬ã¹ãããåé¢ãããããŸãã ãã®åé¢ã®çµæãäŒæ¥ã¯è€æ°ã®ãã©ã¬ã¹ãã管çããéã«å°é£ã«çŽé¢ããŸããã
ADèªäœã®éçºã«ãããä»ã®æšå¥šäºé
ãå€æŽãããŸããã ã·ã¹ãã ã®æ¹åã«ã¯ãã¢ã¯ã»ã¹æš©ã®å§ä»»ãã¬ããŒããæ¡åŒµæ§ïŒWindows 2000ã§ã¯ã°ã«ãŒãã¡ã³ããŒ5000人ã«å¶éããããŸããïŒãå埩æ§ïŒã¹ãããã·ã§ããæ©èœãšãã¿ç®±ïŒãèªååïŒMicrosoft PowerShellã§ã®AD管çïŒãå«ãŸããŸããã æ°ããã¢ãããŒãã«ãããActive Directoryã®ä¿è·ã管çãããã³å埩ã倧å¹
ã«æ¹åãããŸããã
管çã¢ãã«ã®å€æŽ
å€æŽãçºçããå¥ã®é åã¯ã管çæ¹æ³ã§ãã 以åã¯ã管çè
ã®å°ããªã°ã«ãŒãããã€ã³ãã©ã¹ãã©ã¯ãã£ããæçµçã«ãã£ã¬ã¯ããªã«è³ãã³ã³ãã³ããŸã§ãã·ã¹ãã ã«é¢é£ãããã¹ãŠã®åŽé¢ãæ
åœããŠããŸããã ITã€ã³ãã©ã¹ãã©ã¯ãã£ã«å¯ŸããADã®éèŠæ§ãé«ãŸãã«ã€ããŠããã®ç®¡çã¢ãã«ã¯ããè€éã«ãªããŸããã çŸåšãçµç¹ã§ã¯ãå€ãã®äººã
ãADã®æäœã«é¢äžããŠããŸãã1人ã¯ãŠãŒã¶ãŒããŠãŒã¶ãŒã°ã«ãŒããšãã®ããããã£ã®ç®¡çããã1人ã¯ã¢ããªã±ãŒã·ã§ã³ã«é¢é£ããããŒã¿ã3人ç®ã¯ã»ãã¥ãªãã£ãªã©ã®ç®¡çãæ
åœããŠããŸãã ããã«ã¯ãããŒã«ããŒã¹ã®ã¢ãããŒããã«ã¿ãã°ç®¡çã«é©çšããæ§é ãã€ãŸãçµç¹åäœã®é
åžãšä¿è·ã確èªããããšã«ãããADã®ä¿è·ãšããŒã¿å
±æãæ¹åããå¿
èŠããããŸãã æåã®ADèšèšã¯ãã¯ãé¢é£æ§ããªããã¯ãªãŒãã³ã°ãšåæ§ç¯ãå¿
èŠã«ãªãå ŽåããããŸãã
ADããŒã«ãå€æŽãã
以åã¯ãã»ãšãã©ã®çµç¹ã«ãããActive Directoryã®åœ¹å²ã¯éåžžã«æ§ããã§ããã Eeã¯ãWindows PCãŠãŒã¶ãŒã«éäžãã°ã€ã³ãšã»ãã¥ãªãã£ãæäŸããããããŸãã¯ä»£æ¿ãšããŠããŸãã¯ã·ã¹ãã ãWindows NT 4ã»ãã¥ãªãã£ã¢ã«ãŠã³ããããŒãžã£ïŒSAMïŒãŸãã¯Novell NetWareã«çœ®ãæããããã«äœ¿çšãããŸããã æéãçµã€ã«ã€ããŠãADã¯ITçµç¹ã§è¡ãããã»ãšãã©ã®ã€ãã³ãã®çŠç¹ã«ãªãïŒå³2ïŒããã®ãããªæ©èœãæäŸããŸãã
- Windows以å€ã®ã·ã¹ãã ïŒLinuxãµãŒããŒãMacãã¹ã¯ããããã©ããããããªã©ïŒã®èªèšŒãšæ¿èªã
- Microsoft SharePoint Webãµã€ããJavaã¢ããªã±ãŒã·ã§ã³ãµãŒããŒãNASïŒNASïŒãHP Integrated Lights-OutïŒiLOïŒãIntegrated Dell Remote Access ControllerïŒiDRACïŒãªã©ã®ç®¡çããŒã«ãªã©ãè€æ°ã®ãã©ãããã©ãŒã ã«ãããèªèšŒãšæ¿èªïŒ;
- ADã»ãã¥ãªãã£ã°ã«ãŒããä»ãã倧éã®äŒæ¥ããŒã¿ïŒæ©å¯ããŒã¿ãå«ãïŒãžã®ã¢ã¯ã»ã¹ã®æ¿èªã
- äŒæ¥ã«ã¿ãã°ããã³çµç¹å³ã®ãã¯ã€ãããŒãžã
- ãµãŒãã¹ãšããŠã®ãœãããŠã§ã¢ïŒSaaSïŒã¢ãã«ã䜿çšããŠãã¯ã©ãŠãã«ããã¢ããªã±ãŒã·ã§ã³ã®èªèšŒã ADã®äœ¿çšã«ããããã®æ¯èŒçæ°ããæ¹åæ§ã«ãããã»ãã¥ãªãã£ãäœäžããå€ãã®ITéšéã§ADã䜿çšããéã«ä»¥åã«äœ¿çšãããŠãããã»ããã¢ããããŠå¿ãããã¢ãããŒããããã€ã³ãã©ã¹ãã©ã¯ãã£ã«ããå€ãã®æ³šæãå¿
èŠã§ãã
å³ 2.å€ãã®ITãªãœãŒã¹ã®äžå¿ã«ããActive Directoryå€ãã®çµç¹ã§ãADã¯ã€ã³ãã©ã¹ãã©ã¯ãã£ã®æéèŠèŠçŽ ã«ãªã£ãŠããŸã;ãã®ã»ãã¥ãªãã£ãšç®¡çã¯ãæãéèŠãªããžãã¹ãã©ãããã©ãŒã ãšåãããã泚ç®ãããŠããŸãã ç¹ã«ãçµç¹ã¯ITãµãŒãã¹ã®æäŸã«å¯Ÿãããã€ããªããã¢ãããŒããéçºããŠãããã¢ããªã±ãŒã·ã§ã³ã®äžéšã¯äŒæ¥ã®ããŒã¿ã»ã³ã¿ãŒã«é
眮ãããããäžæ¹ã¯å€éšãããã€ããŒäŒæ¥ã®ãã¯ã©ãŠãäžãã«ä¿åãããŸãã ã»ãšãã©ã®å Žåãããã2ã€ã®ç°å¢ã¯ãèªèšŒã«ãã£ãŠçµ±åãããADãä»ããçµ±åãéããŠã¢ã¯ã»ã¹ãæäŸããŸãã é©åã«ä¿è·ãããé©åã«ç®¡çãããADããªããã°ããã€ããªããã¢ãããŒãã¯ãããã圹ã«ç«ããªããšããç¹ã§ããžãã¹äžã®æ¹æ³ã«ãªããŸãã
æ®å¿µãªãããADã¯ITã¹ã¿ããããååãªæ³šæãæãããªãå ŽåããããŸãã ããã«ã¯ãADã®å€æŽç®¡çãžã®äžååãªæ³šæãããããã¹ãŠããã®ããã«æ©èœãããããè² æ
ããããããªãããšããä»®å®ã«è³ããŸã§ãå€ãã®å
åããããŸãã ãã®ã¢ãããŒãã¯ITéšéã«å©çããããããŸãããäžè¬çãªçµ±åãšã¯ã©ãŠããœãªã¥ãŒã·ã§ã³ãšã®çµ±åãéåžžã«éèŠãªåœ¹å²ãæããããã§ãã
ç«æ³äžã®å€æŽ
Active Directoryã®æåã®ãªãªãŒã¹ä»¥æ¥ãçŸåšã®æ³åŸã«åŸã£ãŠITãåäœããããšãä¿èšŒããããšã«é¢é£ãã課é¡ãå¢ããŠããŸããã çŸåšãçµç¹ã¯å€ãã®è€éãªèŠå¶æ³ã«åãçµãã§ãããå€ãã®å Žåãããããæ±ãããã®äž»èŠãªããŒã«ãšããŠæ©èœããã®ã¯ADã§ãã
Active Directoryã®äœ¿çšã«é¢ããç£èŠãšã¬ããŒãã®å¿
èŠæ§ã倧å¹
ã«å¢å ããŠããŸãã èŠå¶æ³ã®éµå®ãšé©åãªã¬ãã«ã§ã®ã¡ã³ããã³ã¹ã«ã¯ãADã®ç®¡çãšé¢é£ããã¢ã¯ãã£ããã£ã®æ€èšŒã®ããã®ããè€éãªããã»ã¹ã®äœ¿çšãå¿
èŠã§ãã çŸåšããã£ã¬ã¯ããªã·ã¹ãã ã«èª°ãã©ã®ãããªå€æŽãå ããã®ããç¥ããªãããšã¯ãåã«åãå
¥ããããŸããã ADé¢é£ã®ã¢ã¯ãã£ããã£ãç¡èŠãããšãäŒæ¥ããŒã¿ã®æŽåæ§ãæãªãããå¯èœæ§ããããŸãã èªèšŒããã³èªå¯ã®åé¡ã«ããããã®ã·ã¹ãã ã®éèŠæ§ãèæ
®ããæãæ©å¯æ§ã®é«ãããŒã¿ã®é©åãªä¿è·ã確ä¿ããããã«ãå€æŽãå¶åŸ¡äžèœã«ããªãã§ãã ããã ADã管çããããã®æèœã§çŸä»£çãªã¢ãããŒãã¯ãèŠå¶ãšã»ãã¥ãªãã£ã®ã³ã³ãã©ã€ã¢ã³ã¹ã確ä¿ããããã«å¿
èŠã§ãã
ADã®ã¢ããã°ã¬ãŒãã®éèŠãªæé å€ãã®çµç¹ã¯é·å¹Žã«ããã£ãŠActive Directoryãå€æŽããã«äœ¿çšããŠãããããçŸåšã§ã¯Active Directoryãæäœããæ§é ãšå®è·µãæŽæ°ããå¿
èŠããããŸãã è¿ä»£åã®äž»ãªçšéã¯æ¬¡ã®ãšããã§ãã
- ADã®åæ§ç¯ã
- 管çããã³ç®¡çã®æé©åã
- ADãšãã®ããŒã¿ã®ä¿è·ã
- ã·ã¹ãã ã®æè»æ§ãæäŸããã³ç¶æããŸãã
- ADã®å¯çšæ§ãšå埩å¯èœæ§ã確ä¿ããŸãã
- ADã¬ã€ãã©ã€ã³ã®å®è£
ã
ADã®åæ§ç¯
ADã®åæ§ç¯ã¯ããäžè¬çã«ãªã£ãŠããŠãããçµç¹ã®çŸåšããã³å°æ¥ã®ããŒãºã«åãããŠãã£ã¬ã¯ããªãäœãçŽãã®ã«æé©ãªæ¹æ³ã§ãã çµç¹åäœãå€æŽããã ãã§ãADã®ç®¡çãšä¿è·ã«å€§ããªåœ±é¿ãäžããå¯èœæ§ããããŸãã ãã®ãããçµç¹åäœã®æ§é ã¯ãäŒæ¥ã®éšéãå°ççãªå Žæãªã©ãããžãã¹ã®æ§é ã«çŠç¹ãåãããŠããŸããã ãã®ã¢ãããŒãã¯ãã«ã¿ãã°ã®æ®ãã®ããŒãºã«åžžã«é©åãããšã¯éããŸããã§ããã ããšãã°ãã°ã«ãŒãããªã·ãŒã®å©çã®ããã«ãå³ã«ç€ºãããã«ã䜿çšããOSããŒãžã§ã³ã®çš®é¡ã«ãã£ãŠãŠãŒã¶ãŒPCãçµç¹åäœã«åå²ã§ããŸãã 3ããããããã¹ãŠã®PCãåãITã°ã«ãŒãã®äžéšã§ããå Žåããã®ãœãªã¥ãŒã·ã§ã³ã¯ã°ã«ãŒãã®æš©éã®å§ä»»ãšç®¡çãè€éã«ããŸãã
å³ 3.å§ä»»ã§ã¯ãªãã°ã«ãŒãããªã·ãŒã«æé©åãããçµç¹åäœæ§é ææ°ã®ã«ã¿ãã°ã·ã¹ãã ã®èšèšã¯ã劥åç¹ãç®æããŠããŸãã ãã®ãããªADæ§é ãäœæããã«ã¯ãçµç¹ã®ããŸããŸãªããŒãºãèæ
®ããããšãéèŠã§ãã
ADèªäœã®åæ§ç¯ã«ã¯ããã€ãã®åœ¢æ
ããããŸãã ããŒã¿ç®¡çãšä¿è·ãæ¹åããããã«ããã¡ã€ã³ãšãã©ã¬ã¹ãã®æ°ãæžããå¿
èŠãããå ŽåããããŸãã ä»ã®ç¶æ³ã§ã¯ãã»ãã¥ãªãã£äžã®çç±ãããäžéšã®ãªãœãŒã¹ãåå¥ã®ãã©ã¬ã¹ãã«åå²ããå¿
èŠãããå ŽåããããŸãïŒã¯ã©ã€ã¢ã³ããå©çšã§ãããªãœãŒã¹ã«ã€ããŠèª¬æããŠããŸãïŒã å Žåã«ãã£ãŠã¯ãæåããããçŽããŠçŸããADæ§é ãæ§ç¯ããäžèŠãªèŠçŽ ããã¹ãŠåé€ãããå ŽåããããŸãã ãã®ã¢ãããŒãã¯ããŠãŒã¶ãŒãšãªãœãŒã¹ãå€ãADç°å¢ããæ°ããADç°å¢ã«ç§»è¡ããããã«è¿œå ã®æéãå¿
èŠãšãããããéåžžã«å¹çãæªãå ŽåããããŸãã
ã©ã®ãããªåæ§ç¯ã«ãããŠããADã¯ããŸããŸãªéçºè
ã®ããŒã«ã«æ³šæãæãã®ã«åœ¹ç«ã¡ã移åããçã¿ã®ãªãããã®ã«ããŸãã ææžåã®äžååãªã·ã¹ãã ããããæ§é åãããã·ã¹ãã ã«ããŒã¿ã転éããå Žåãããã¯ç¹ã«éèŠã§ãã転éã®é²è¡ãåžžã«äºæž¬ã§ãããšã¯éããªãããã§ãã
管çããã³ç®¡çã®æé©åADãæ¹åãããã1ã€ã®åéã¯ããã£ã¬ã¯ããªã®ç®¡çã§ãã éåžžãæåã«åæžããã®ã¯ãADå
šäœã§ç¡å¶éã«å
¥å Žã§ãã管çè
ã®æ°ã§ãã éèŠãªã®ã¯ã管çè
ãã¢ã¯ã»ã¹æš©ãæã£ãŠããæš©éã®å°ãªã管çã¢ãã«ãäœæãã管çè
ãæ
åœããã·ã¹ãã ã®éšåã®ã¿ã«å€æŽãå ããããšã§ãã ãããã®ãµã€ãã¯æ¬¡ã®ãšããã§ãã
- ADã®å€éšã®ã€ã³ãã©ã¹ãã©ã¯ãã£ïŒãã¡ã€ã³ã³ã³ãããŒã©ããã¡ã€ã³ããŒã ã·ã¹ãã ïŒDNSïŒããã£ã¬ã¯ããªã·ã¹ãã ã¹ããŒããªã©ãããããµããŒããããµãŒããŒãšãµãŒãã¹ã
- ADå
ã®ããŒã¿ïŒãŠãŒã¶ãŒã¢ã«ãŠã³ãã®ããããã£ãããŠãŒã¶ãŒãå±ããããŒã°ã«ãŒããŸã§ã®ä»»æã®ããŒã¿ã
ãããã®é åã«ã¯ãæš©å©ã®å§ä»»ã®ç°ãªãã¢ãã«ããããŸãã ãŸããã·ã¹ãã ã®ã€ã³ãã©ã¹ãã©ã¯ãã£èŠçŽ ã誰ã管çããããããã»ã©éèŠã§ãªãå Žåã¯ããã®å
éšã®ããŒã¿ã»ãã¥ãªãã£ã¢ãã«ãæããã«æãéèŠã§ãã ãããã£ãŠãADãµãŒããŒãšãã®é¢é£ã€ã³ãã©ã¹ãã©ã¯ãã£ã®ç®¡çãããã³ADèªäœã®ããŒã¿ã®äœæãèªã¿åããæŽæ°ãåé€ãå¶åŸ¡ããå¿
èŠããããŸãã
ADã°ã«ãŒãã®ã¡ã³ããŒã·ããã¯ããµãŒããŒç®¡çè
æš©éãã財åããŒã¿ã«è³ããŸã§ãã¹ãŠã«ã¢ã¯ã»ã¹ã§ããŸãã ãããã£ãŠããããã®ã°ã«ãŒããžã®ã¢ã¯ã»ã¹ã泚ææ·±ãç£èŠããã¢ã¯ã»ã¹æš©ã®èªèšŒãå®æçã«å®æœããå¿
èŠããããŸãã
Active Directoryãšãã®ããŒã¿ã®ä¿è·
è¿ä»£åã«é¢ããŠã¯ãå§ä»»ãæ€èšãã䟡å€ããããŸããADãªããžã§ã¯ããšãã®ããããã£ãå€æŽã§ãããŠãŒã¶ãŒãå¶åŸ¡ããŸãã ãã®ãããã¯ã¯ãèš±å¯ããããŠãŒã¶ãŒã®ã¿ããã®äžã®ãªããžã§ã¯ããå€æŽããããã«ããããšãšå¯æ¥ã«é¢é£ããŠããŸãã å€ãã®å Žåãçµç¹ã¯å·®ãè¿«ã£ãåé¡ã解決ããããã®ã¢ã¯ã»ã¹ãæäŸããäžèŠã«ãªã£ããšãã«ãã£ã³ã»ã«ããªãã§ãã ããã
Active Directoryã§å§ä»»ã管çããã«ã¯ã圹å²ããŒã¹ã®ãã¬ãŒã ã¯ãŒã¯ãäœæããŠããã®ãªããžã§ã¯ããšãã®å±æ§ãžã®ã¢ã¯ã»ã¹ãæäŸããå¿
èŠããããŸãã ADã¯çŸåšãããšãã°ç¹æš©ã°ã«ãŒãã®ã¡ã³ããŒã·ãããå€æŽãããããŠãŒã¶ãŒå±æ§ãå€æŽãããããããã«ç®¡çè
ãå®è¡ããå¿
èŠã®ããåã¿ã¹ã¯ïŒãŸãã¯å°ãªããšãããã·ã§ã³ã¯ãªãã£ã«ã«ãªåã¿ã¹ã¯ïŒã«ããŒã«ããŒã¹ã®ãã³ãã¬ãŒããäœæããŠããŸãã
ã³ã³ãã©ã€ã¢ã³ã¹ãã¡ã³ããã³ã¹ã確èªã®éæ
Active Directoryã®åä¿¡ããŒã¿ãå¶åŸ¡ããå Žåããã®ããŒã¿ã«å¯ŸããŠå®è¡ãããã¢ã¯ã·ã§ã³ãåžžã«ç¢ºèªããå¿
èŠããããŸãã ãã®ãããªæ€æ»ã¯ãå
éšïŒITéšéåãïŒããã³å€éšïŒç£æ»çµç¹åãïŒã®äž¡æ¹ã®èŠä»¶ãæºããå¿
èŠããããŸãã Microsoft Windows Serverããã³Active Directoryã«ã¯ãæåã«çºçããã€ãã³ããç£æ»ããæ©èœããããŸããããããŒããããç°å¢ã«ã¯å€§éã®ããŒã¿ãå«ãŸããŠãããããã«ãªãŒããŒãããŒãããããå®è³ªçã«æå³ããããŸããã
æ確ãªç£æ»ã¢ã°ãªã²ãŒã¿ãŒãšãäžèŠãªå€æŽãADããã³äŒæ¥ãªãœãŒã¹ã®äžæ£äœ¿çšãç¹å®ããåæãããã³ãã¹ãŠã®ITã·ã¹ãã ã«ããããŠãŒã¶ãŒã¢ã¯ãã£ããã£ã®è¿œè·¡æ©èœãå¿
èŠã§ãã ã·ã¹ãã ã®ç£æ»ã¯ãã·ã¹ãã ã«é¢é£ä»ããããã·ã¹ãã å
ã§è¡ãããå€æŽã®å±¥æŽãæäŸããŸããããšãã°ããŠãŒã¶ãŒããããã¯ãŒã¯ãæãé »ç¹ã«èµ·åãããã¢ããªã±ãŒã·ã§ã³ã«ã¢ã¯ã»ã¹ããã®ã«ãããæéã§ãã
ITç°å¢å
šäœã®å€æŽã®å¶åŸ¡ã確ç«ããåŸããã£ã¬ã¯ããªã®æŽåæ§ã«åœ±é¿ãäžããå¯èœæ§ã®ããã€ã³ãã©ã¹ãã©ã¯ãã£ãšããŒã¿ã®å€æŽãå«ããADã«é¢é£ããéèŠãªã¿ã¹ã¯ã«çŽ°å¿ã®æ³šæãæãããšãéèŠã§ãã
å€æŽç®¡çãšç£æ»ããã£ãŒãããã¯ããŒã«ãšããŠäœ¿çšããŠãæ¿èªæžã¿ããã³æªæ¿èªã®å€æŽã远跡ãããšãADã§çºçããå€æŽã®å
šäœåãææ¡ã§ããŸãã ææ°ããŒãžã§ã³ã§ã¯ããã®ãããªã¬ãã¥ãŒã®å¯èœæ§ãå®è£
ãããŠããŸããããã«ããã誰ãäœã«ã¢ã¯ã»ã¹ã§ããããåžžã«è¡šç€ºãããŸãã
ADã®å¯çšæ§ãšå埩ã®ç¢ºä¿é«å¯çšæ§ã¯ãActive Directoryã®çŸä»£çãªäœ¿çšã®ãã1ã€ã®åŽé¢ã§ãã 幞ããªããšã«ãä»ã®ãã¹ãŠã®ã³ã³ããŒãã³ãã®äœæ¥ã確ç«ãããŠããå ŽåãADã¯ITã€ã³ãã©ã¹ãã©ã¯ãã£ã®ä¿¡é Œæ§ã®é«ãæè»ãªéšåã«ãªããŸãã
- ADãµãŒããŒã®ã¬ããªã±ãŒã·ã§ã³ãšã¬ããªã±ãŒã·ã§ã³ããããž
- ãã¡ã€ã³ããŒã ã·ã¹ãã ïŒDNSïŒ;
- Microsoftãã¡ã€ã«è€è£œãµãŒãã¹
- ä»®æ³ãã·ã³ããã³ããŒããŠã§ã¢ãªãœãŒã¹ã
ãã¹ãŠã§ã¯ãããŸãããããããã®ããŒã«ã®ã»ãšãã©ã¯ãæšæºãŸãã¯ADåºæã®ç£èŠããŒã«ã䜿çšããŠç£èŠã§ããŸãã çµç¹ã«ãããADã®åœ¹å²ã®å¢å ã«äŒŽãããã®ããã©ãŒãã³ã¹ãå®æçã«ç£èŠããããšããŸããŸãéèŠã«ãªã£ãŠããŸãã ããã«ã¯ãèªèšŒãæ€çŽ¢ãªã©ã®äžè¬çãªADæäœã®åæãã©ã³ã¶ã¯ã·ã§ã³ã®äœæãå«ãŸããå ŽåããããŸããããã«ãããADãµãŒããŒãpingã«å¿çããããã§å®è¡ãããããã»ã¹ãæ£åžžã«é²è¡ããããšã確èªã§ããŸãã
å¯çšæ§ã®ç£èŠã«å ããŠãé©åãªããã¯ã¢ãããšçœå®³åŸ©æ§èšç»ãç«ãŠãããšãéèŠã§ãã çŸåšãæœèšã¬ãã«ãªã©ãããã¯ã¢ãããšãªã«ããªã®ããã®å€ãã®ããŒã«ãããããã£ã¬ã¯ããªã·ã¹ãã ã®å°ããªå€æŽããé倧ãªé害ãŸã§ãã¹ãŠã埩å
ã§ããŸãã ADã«é¢é£ããå埩ã«ã¯3ã€ã®ã¿ã€ãããããŸãã
è¡š1. ADå埩ã®ã¿ã€ãããå€ãã®çµç¹ãä»®æ³åæè¡ã䜿çšããŠADã€ã³ãã©ã¹ãã©ã¯ãã£ãéå§ããã«ã€ããŠãé害ããã®å埩ããŸããŸãäžè¬çã«ãªãããã©ã¬ã¹ããŸãã¯ãµãŒããŒå
šäœã®åŽ©å£ã¯ããŸãäžè¬çã§ã¯ãªããªããŸããã ããã§ããæãæãŸãããªãç¶æ³ã§ã®è¡åèšç»ãšãæçæéã§ã®æ€æã®ããã®é©åãªããŒã«ãæã€ããšãéèŠã§ãã
ADãªãŒããŒã·ããã®å®è£
ADã€ã³ãã©ã¹ãã©ã¯ãã£ãã¢ããã°ã¬ãŒãããåŸãåæ»ãªéçšã®ããã«ä¿¡é Œã§ãã管çã確ä¿ããããšãéèŠã§ãã ã·ã¹ãã ã®äœ¿çšãæ¡åŒµã管çã«é¢ããæ確ãªã«ãŒã«ã確ç«ããå¿
èŠããããŸãã ADã®åäœã«åœ±é¿ãããã¹ãŠã®äž»èŠãªã³ã³ããŒãã³ãã®èª¬æãäœæããå¿
èŠããããŸãã
ã¬ã€ãã³ã¹ã«ã¯æ¬¡ã®èŠçŽ ãå«ããå¿
èŠããããŸãã
- ã·ã¹ãã ã«ãããã¹ãŠã®ã¿ã€ãã®ããŒã¿ã®æ瀺ã
- ADã¹ããŒããæ¡åŒµããããã®æšå¥šäºé
ïŒãã€ãã©ã®ããã«æ¡åŒµããå¿
èŠããããããŸããæ¢åã®å±æ§ã䜿çšããŠã¢ããªã±ãŒã·ã§ã³é¢é£ããŒã¿ãä¿åã§ããå Žåãšäœ¿çšããå¿
èŠãããå Žåã
- ADã®æš©å©ãå§ä»»ããããã®æšå¥šäºé
ã
- ã»ãã¥ãªãã£ã°ã«ãŒãã®äœ¿çšã«é¢ããæšå¥šäºé
ã
- ADã§äœ¿çšãããæšæºããŒã«ãã¢ããªã±ãŒã·ã§ã³ããã°ã©ãã³ã°ã€ã³ã¿ãŒãã§ã€ã¹ïŒAPIïŒãããã³ããŒãã
- ADã¯ãšãªåœä»€ã
ãã®æšå¥šäºé
ã®ãªã¹ãã¯ãæ°·å±±ã®äžè§ã«ãããŸããã Active Directoryã€ã³ãã©ã¹ãã©ã¯ãã£ç®¡çã«ã¯ãããŸããŸãªç¶æ³ã§ååã«ææžåãããè¡ååºæºãå¿
èŠã§ãã
ãããã«æéãçµã€ã«ã€ããŠãActive Directoryã®åœ¹å²ã¯åçã«æé·ããå€ãã®çµç¹ã«ãšã£ãŠéèŠã«ãªããŸããã ã·ã¹ãã ãWindows PCãLinuxãµãŒããŒããŸãã¯Javaã¢ããªã±ãŒã·ã§ã³ã®èªèšŒãšæ¿èªã«äœ¿çšããããã©ããã«é¢ä¿ãªããã·ã¹ãã ãæ£ããåäœãããã«ã¯ãé«ã¬ãã«ã®å¶åŸ¡ãå¯çšæ§ãšå¹çãä¿è·ãšç£æ»ãç¶æããå¿
èŠããããŸãã
ADãã¢ããã°ã¬ãŒããããšãWindows Serverã®ææ°ããŒãžã§ã³ãšä»ã®éçºè
ã®ãœãããŠã§ã¢ã®äž¡æ¹ã䜿çšããŠãããããã¹ãŠã®åºæºãéæã§ããŸãã ãããã«ããŠããActive Directoryãåæ»ã«éçšããã«ã¯ãé©åãªç®¡çãšä¿è·ãéèŠã§ãã