⬆️ ⬇️

Good Practice on setting up a small local network based on Active Directory

In my work, I often had to deal with seemingly working grids, but in which any minor incident could result in hours of idleness on level ground. Cd's dead? Do not worry, we have a second. How do balls not open? Why the gateway does not ping? And, on that CD was the only DHCP server and now everyone has disappeared.



In this article I will try to describe the correct, from my point of view, solutions for creating the infrastructure of a small enterprise network. And of course, this article reflects the personal good practice of the author and may differ from the ideals of the reader.



So. We have in an asset up to 100 customers. Everything is standard, users go to the Internet, send mail, use file storages, work in 1s, want a cooler computer and try to catch viruses. And yes, the clouds, we do not know how.



A pair of pillars of almost any infrastructure


and then we'll go over the obvious and not so nuances. By the way, I repeat, we have a small-medium business, do not aggravate.

')

Data integrity "In the server I got a bomb."


If to you in the server I got a mine, then most likely the safety of the data will interest you last. It is much more likely that on December 31 the pipe burst from the top, which caused a fire there and the floor fell through.

- Data is our everything. One of the backup servers must be located outside the server. This is a lifeline. Even if it contains only the most important, for a day or two you can again buy and rent a server and deploy a working infrastructure. You will never be able to restore the irretrievably lost base 1c. By the way, the old man a la P4-2400 / 1024 with properly organized backups usually copes.



Monitoring “01/01/2013 02:24 | From: Zabbix | Subject: Nuclear launch detected! ”


You have a great time celebrating the New Year with friends. By the way, not only you, the caretaker of the building where you rent premises, too, do not waste time in vain. Thus, a burnt-out room flooded with water will be a pleasant bonus in the morning to your aching head in the Happy New Year.

- If something goes wrong, you just have to find out about it first. The same SMS alerts about critical events is the norm. By the way, if the monitoring server did not unsubscribe from the morning after 5 minutes after the start of the alarm clock, it is time to sound the alarm. After all, the server that monitors the monitoring server also did not write anything. In general, do not worry, you have a backup server outside the server, which still wrote to you that he lost all, but in the ranks.



Recovery plan “Calmly, Kazladoev, let's sit mustache!”


This is the worst New Year in your practice. Yes, after receiving the SMS and assessing the situation, the firefighters were called immediately, and they arrived almost 5 minutes later, and put out quickly. But all the same, one part of the server was burned, the second was covered with foam, and the third failed as a result under the floor.

- Lies, of course. This is not the most pleasant, but not the worst New Year. Yes, you will have a busy week, but thanks to a clear plan you know where to start and what to do. I recommend in terms of disaster recovery to paint everything thoroughly in detail, including console commands. If you need to restore any MySQL server that was configured three years ago, do you think you will remember some insignificant nuance that you have to spend half a day on. By the way, things will go somewhat differently than you planned, perhaps even completely wrong, be ready for this.



Now to the basics of networking on AD.


I'm not going to paint the benefits of clustering and other LiveMigration. We have a small business and there is no money for vMotion. However, it is not necessary, most services are perfectly reserved "out of the box." Below will not be how to configure, but I will try to give the right direction for self-study.





For a start, perhaps, that's enough. If it was interesting, I am ready to continue, having detailed and added to each of the points. Write healthy criticism, thank you all.

Source: https://habr.com/ru/post/158973/



All Articles