Infrastructure Project Notes

Documents for publication awaiting management review

First draft of SLA

Rationale Documents

Implications of multiple forests on campus
Justification of need for Windows Infrastructure Project

Full charter document

Feedback documents

People who have contacted Brian about tree

Loosely organized spreadsheet of all interested contacts

Infrastructure documents

          Schema Changes

            Schema changes for visibility rules

Root Domain Build

Domain services
Kerberos interoperability setup
 OU structure build
Create keytabs for Stanford Registry Harvester
Add suPersonAux class

Import Certificate for SSL LDAP
 Install Generator G-1
Schedule Backups

Create GPOs

Child Domain Build

Domain services

OU structure build

Schedule Backups

Create GPOs

Registry Harvester

Description of the Harvester Phases
Status of Harvester
Replication of User Attributes by Harvester Phases
Mapping what the suvisib attributes protect

         Other

Backup and Recovery of AD servers
Domain tree drawing (Early proposal)
Who Admins What (needs update)
Windows Administrator Contact List (needs update)
Authorization in WIN domain (under construction)

Reference documents

Extended rights defined in Windows 2000 Default Schema
Extended rights defined in Windows 2000 + Exchange 2000 Schema
Properties of the "User" object
Attributes required for Windows 2000 logon 
Values for UserAccountControl
AD Replication notes

Exchange 2003

What's new in Exchange 2003 (schema)
Consideration for upgrade
Security Settings Changes and updates in Exchange Server 2003

Exchange 2000

E2K Internals: Permissions Guide

Public Folders Lose ACEs

Tips from Windows Magazine

 

AD attributes that E2K uses

Attributes Required to Route Messages Through the Categorizer

Brad's case for a definitive answer: SRX020107604705 Unpublished as of 2/12/02

Unofficial content from previous link 

Our guess based on attribute names

 

RUS articles

Summary of the Exchange 2000 Recipient Update Service 

Tasks Performed by the Recipient Update Service

User with Exchange Administrator Role Cannot Create a New Recipient Update Service on the Domain Level 

Multiple Recipient Update Services in a Single Domain 

Requirements for Disabling the Recipient Update Service

How to Check the Progress of the Recipient Update Service

Troubleshooting the Recipient Update Service 

How to Start RUS programmatically

How the Recipient Update Service Applies System Policies

How Exchange Hides Group Membership in the Active Directory

How the Recipient Update Service Populates Address Lists

Windows 2000 Built-in Security Groups Become Mail-Enabled When They Are Propagated to Exchange Server 5.5

Errors Logged When RUS Not Able to Update Certain User Objects in the Directory 

 

External Links

Online AD Schema reference

Automating creation of Computer accounts in Windows 2000
Location of ADM files in Windows 2000
Public Key Crypto Standards (PKCS)
IPSEC for Kerberos Traffic
IPSEC for DC <-> DC Traffic
Intra-site DC replication frequency
Replication collision in a multi-master model


Return to Windows 2000
Return to Windows home page
Last modified 11/11/03 by Ross Wilper
©2003 Trustees of the Leland Stanford Junior University