Differences between Active Directory Lightweight Directory Services and Active Directory Domain Services (AD LDS and AD DS)

Firstly, take a look at ——> https://techdirectarchive.com/2019/12/18/active-directory-lightweight-directory-services-ad-lds/

Active Directory Lightweight Directory Services (AD LDS) is designed more to run software rather than to run domains so it not a replacement for Active Directory Domain Services (AD DS). It can run on a computer that is in a workgroup, does not require DNS and also can run on client operating systems like Windows workstations. For this reason, it is a good choice for application support and for testing.

Simply put LDAP (Lightweight Directory Access Protocol) is an application protocol for querying and modifying items in directory service providers like Active Directory that provides authentication, group policy, and other services in a Windows environment while LDAP (Lightweight Directory Access Protocol) is an application protocol for querying and modifying items in directory service.

For example, a developer can have their own AD LDS running on their client operating system and thus be able to make whatever changes they want. This is not possible using a production domain. AD LDS supports multiple instances as well, so the administrator is free to create as many local copies as they wish.

AD LDS does not support domain features like group policy, global catalog support and the ability to manage workstations. For this reason, it cannot be used as a replacement for Domain Controllers. Even though these domain features are not available, AD LDS does support sites and replication.

This means AD LDS installation can replicate data between each other and also with Domain Controllers, however, the support of trusts is not supported so this limits an AD LDS instance to working with only the one domain.

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Google photo

You are commenting using your Google account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s