Case for Multi-Domain/Forest Model Advantages and Disadvantages
Why have multiple domains or forests • Isolation of data and service – Data and services must be protected • Autonomy of operation – Domains require different levels of security & services – Specialized operations • “Acquired” resources
NT CED NT Learning lab (academic) NT Admin (employee) NT Student Life (academic) NT Ft. Lupton (academic Admin) NT Student NT CIS (academic) NT Com/Hum/Bus (academic) NT Loveland (academic Admin)
One Way Trust On e. W Admin ay T ru st Academic AD integrated App AD authentication and security for Nursing Dept. video capture system. Creative Learning Ft Lupton Creative Learning Greeley
Admin Academic
Admin Problems to deal with. . Disadvantages Academic • Integrations of DNS operations to assure that cross-domain access resources • The increased complexity of the security configurations. More access control lists to deal with but easier access. • More complex monitoring of the security.
Admin Ways around the Disadvantages Academic • Some solutions: Utilize server virtualization to reduce hardware and operating costs. • Centralized printing. • Delegated Active Directory operations. . Knowledge transfer of A. D. operations to junior staff and to students • • The Future Projects for Active Directory Print Management… RFP in progress Microsoft Exchange… Secure Wireless Access to Admin … using AD integrated PKI Desktop Encryption … using AD integrated PKI