This guide is currently under development, and I greatly welcome any suggestions or feedback or at reaper.gitbook@gmail.com

Forests, Domains, and Organizational Units

Forest Design

Single Forest Benefits:

  • Simplified administration and trust relationships

  • Automatic trust between all domains

  • Shared Global Catalog and schema

  • Unified security boundaries

Multiple Forest Scenarios:

  • Security Requirements: Different security policies or admin teams

  • Political Boundaries: Separate business units or acquisitions

  • Geographic Isolation: Different regulatory requirements

  • Technical Constraints: Incompatible schema requirements

Domain Design Considerations

Single Domain Model:

  • Pros: Simplified administration, no trust relationships, easier management

  • Cons: Single point of failure, potential performance issues, limited delegation

Multiple Domain Model:

  • Pros: Distributed administration, improved performance, political boundaries

  • Cons: Complex trust relationships, increased overhead, replication complexity

Domain Design Factors:

  • Administrative Autonomy: Need for separate admin teams

  • Security Isolation: Different security requirements

  • Replication Control: Network bandwidth limitations

  • Political Requirements: Organizational boundaries

Organizational Units

OU Design Models:

Geographic Model:

Company.com
β”œβ”€β”€ North-America
β”‚   β”œβ”€β”€ USA
β”‚   β”‚   β”œβ”€β”€ New-York
β”‚   β”‚   └── California
β”‚   └── Canada
β”‚       └── Toronto
└── Europe
    β”œβ”€β”€ UK
    └── Germany

Functional Model:

Company.com
β”œβ”€β”€ Sales
β”œβ”€β”€ Marketing
β”œβ”€β”€ IT
β”œβ”€β”€ HR
└── Finance

Administrative Model:

Company.com
β”œβ”€β”€ Users
β”‚   β”œβ”€β”€ Executives
β”‚   β”œβ”€β”€ Managers
β”‚   └── Employees
β”œβ”€β”€ Computers
β”‚   β”œβ”€β”€ Workstations
β”‚   β”œβ”€β”€ Servers
β”‚   └── Laptops
└── Resources
    β”œβ”€β”€ Printers
    └── Shared-Folders

Hybrid Model:

Company.com
β”œβ”€β”€ Corporate
β”‚   β”œβ”€β”€ Users
β”‚   β”œβ”€β”€ Computers
β”‚   └── Groups
└── Divisions
    β”œβ”€β”€ Sales
    β”‚   β”œβ”€β”€ Users
    β”‚   └── Computers
    └── IT
        β”œβ”€β”€ Users
        └── Computers

Last updated

Was this helpful?