Designing Security — Server Role
To design security by server role, you must identify the roles—or services—that servers perform on the MCSE Exams network, establish the best security configuration for the role, and provide a means to configure and maintain the server’s security. Because the process focuses on the server’s role and because many servers do the same thing, a single secu?rity design can be used repeatedly. The process for designing security by server role is as follows:
1.Identify server roles.
2.Define the security for the server role.
3.Design implementation of server roles based on using security templates by:
a.Identifying locations for server security settings, including security templates,GPOs, or any other custom settings
b.Creating security templates and installation procedures for custom settings
c.Deciding how to apply security templates to servers
d.Designing an implementation strategy based on free Network+ study guides Active Directory design
e.Using a baseline security template and incremental templates
f.Designing an OU infrastructure to support Active Directory implementation
g.Designing security for servers that are not members in an Active Directory
domain
4.Test security templates and other security settings to ensure that the settings provide the expected protection and that the services offered by the server remain functional.
This lesson teaches what you need to know to begin this process by identifying server roles, defining security templates, deciding how to implement them, and designing the OU structure that can be used to do so. Lessons 2 and 3 continue teaching this process by showing you how to define a baseline security template and how to design an incremental security template that specifies security based on server role, respectively.