04.06.2013 Views

UCS 2.4 - Univention

UCS 2.4 - Univention

UCS 2.4 - Univention

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

2 Domain concept<br />

Contents<br />

2.1 Introduction . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 15<br />

2.2 <strong>UCS</strong> system roles . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16<br />

2.2.1 Domain controller master . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16<br />

2.2.2 Domain controller backup . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 16<br />

2.2.3 Domain controller slave . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 17<br />

2.<strong>2.4</strong> Member server . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 17<br />

2.2.5 Base system . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 17<br />

2.2.6 Managed client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 17<br />

2.2.7 Mobile client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 18<br />

2.2.8 Thin Client . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 18<br />

2.3 System roles in Windows domains . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 18<br />

2.3.1 How are these roles integrated in the <strong>UCS</strong> concept? . . . . . . . . . . . . . . . . . . 18<br />

<strong>2.4</strong> Joining domains . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 19<br />

2.1 Introduction<br />

<strong>2.4</strong>.1 How <strong>UCS</strong> systems join domains . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 19<br />

<strong>2.4</strong>.2 How to join domains with Windows clients . . . . . . . . . . . . . . . . . . . . . . . . 21<br />

<strong>2.4</strong>.3 Rotation of machine account passwords . . . . . . . . . . . . . . . . . . . . . . . . . 23<br />

<strong>Univention</strong> Corporate Server offers a cross platform domain concept with a common trust context between<br />

Linux and/or Windows systems. Within this domain a user is known to all systems via his username and<br />

password stored in the <strong>Univention</strong> Management System and can use all services which are authorised for<br />

him.<br />

Replication of the directory data within a <strong>UCS</strong> domain occurs via the <strong>Univention</strong> Directory Listener/Notifier<br />

mechanism: On the master domain controller the notifier service monitors changes in the LDAP directory<br />

and makes the selected changes available transaction-based to the listener services on the other domain<br />

systems with a copy of the LDAP. Alongside replication of the LDAP contents, the dissemination of the<br />

domain-wide file changes also includes transfer of the changes to LDAP contents in configuration files of<br />

non-LDAP-compatible services (e.g., NFS). The following diagram offers an overview; for more detailed<br />

documentation of the technical processes and the possibilities of the error analysis, please refer to the [2]<br />

technical document.<br />

15

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!