Active Directory Domain Services forest
E831675
An Active Directory Domain Services forest is the top-level security and administrative boundary in an AD DS environment, encompassing one or more domain trees that share a common schema, configuration, and global catalog.
Statements (47)
| Predicate | Object |
|---|---|
| instanceOf |
Active Directory concept
ⓘ
administrative boundary ⓘ security boundary ⓘ |
| canBe |
part of multi-forest topology
ⓘ
single-forest environment ⓘ |
| canContain |
child domains
ⓘ
multiple domain trees ⓘ one domain tree ⓘ trust relationships between domains ⓘ |
| defines |
administrative boundary for all domains in the forest
ⓘ
security boundary for all domains in the forest ⓘ |
| enables |
centralized authentication across all domains in the forest
ⓘ
centralized authorization across all domains in the forest ⓘ single global address list via global catalog ⓘ |
| governs |
forest-wide replication topology
ⓘ
inter-domain trust relationships within the forest ⓘ |
| hasComponent |
configuration partition
ⓘ
domain ⓘ domain tree ⓘ global catalog ⓘ schema ⓘ |
| hasProperty |
logical boundary for replication of schema and configuration
ⓘ
one or more global catalog servers ⓘ separate security principals from other forests ⓘ single configuration partition per forest ⓘ single schema per forest ⓘ transitive trust between all domains by default ⓘ |
| hasRoot | forest root domain ⓘ |
| hasScope | entire AD DS environment within the forest ⓘ |
| isConfiguredDuring | initial AD DS deployment ⓘ |
| isDefinedIn | Windows Server Active Directory NERFINISHED ⓘ |
| isDocumentedIn | Microsoft Active Directory documentation NERFINISHED ⓘ |
| isManagedBy | enterprise administrators ⓘ |
| isolates |
configuration from other forests
ⓘ
global catalog from other forests ⓘ schema from other forests ⓘ |
| partOf | Active Directory Domain Services NERFINISHED ⓘ |
| requires | at least one domain ⓘ |
| shares |
common configuration across all domains
ⓘ
common global catalog across all domains ⓘ common schema across all domains ⓘ |
| supports |
forest functional levels
ⓘ
forest trusts with other forests ⓘ forest-wide policies ⓘ |
| uses |
domain naming master FSMO role
ⓘ
forest-wide operations master roles ⓘ schema master FSMO role NERFINISHED ⓘ |
Referenced by (1)
Full triples — surface form annotated when it differs from this entity's canonical label.
Active Directory Lightweight Directory Services
→
doesNotRequire
→
Active Directory Domain Services forest
ⓘ