. , , ,

,,,

Windows 2003 — ,

2002 Microsoft "Trustworthy Computing", Windows. Microsoft ( "" .NET), , , .

(Marcin Policht)

2002 Microsoft "Trustworthy Computing", Windows. Microsoft ( "" .NET), , , .

, , Windows 2003 Server.

, , , . , Windows.

NTFS ,

Windows Full Control ( ) Everyone () ( ), ( ). Windows XP Professional, .

NTFS , Everyone Read () Execute () . , Everyont , . Everyone (Access Control List) , Program Files Windows. , Read Execute, ( ) . ( , ). , System , - , -, Full Control . Creator Owner Full Control , .

Everyone Read.

, Everyone (anonymous SID), . , NTFS, Effective Permissions Advanced Security Settings . NTFS. , .

( ), , Owner Advanced Security Setting . Windows, . , (, ), , . , . , . , , , ( , NTFS - Windows NT 4.0, 2000 XP Professional - Windows 2003 Server).

, ( ) Active Directory, Windows 2003 ( Effective Permissions Owner Advanced Security Active Directory Users and Computers).

Windows

Windows :

, : , , Clipbook, Network DDE ( Network DDE DSDM), Telnet WebClient, . (, Intersite Messaging ; Routing and Remote Access Service ( ) Windows 2003 server ).

, : Local System, . , , Local System Local Service Network Service. , , . , Local Service ( ), Network Service , . ( ).

, Active Directory.

. , ( ) , (, " / ").

Active Directory , (cross-forest trust). Kerberos ( , Windows 2003, , , , Windows 2003 Server Windows 2003).

, , . , , ( UPN). , , , . , , , .

" " , , Windows 2003. , , , , . :

"Allowed to Authenticate" ( ) Active Directory, , . , , Windows 2003 - ForestA ForestB - . UserA DomainA ForestA ShareB ServerB DomainB ForestB. , :

DomainA (, GroupA) DomainA UserA . UserA ( ), , .

Active Directory Users and Computers DomainB. ServerB , ServerB.

Security DomainAGroupA . Allow "Allowed to Authenticate" "Read". - DomainAGroupA DomainBServerB.

ShareB ServerB DomainAGroupA ( DomainAGroupA DomainB ). ( , , CACLS).

(cross-forest) Internet Authentication Service ( ).

http://mdforum.dynu.com

2002 Microsoft "Trustworthy Computing", Windows. Microsoft (

 

 

 

! , , , .
. , :