{"id":5907,"date":"2020-02-07T11:42:00","date_gmt":"2020-02-07T08:42:00","guid":{"rendered":"https:\/\/www.bilisimonline.net\/?p=5907"},"modified":"2020-02-07T12:54:42","modified_gmt":"2020-02-07T09:54:42","slug":"open-source-yonetim-yapilandirma-yazilimlari-ve-windows-active-directory","status":"publish","type":"post","link":"http:\/\/www.bilisimonline.net\/index.php\/2020\/02\/07\/open-source-yonetim-yapilandirma-yazilimlari-ve-windows-active-directory\/","title":{"rendered":"Open Source Y\u00f6netim \/ Yap\u0131land\u0131rma Yaz\u0131l\u0131mlar\u0131 ve Windows Active Directory"},"content":{"rendered":"\n<p>Baz\u0131 \u00f6nemli sistemlerde kullan\u0131lan Active Directory Y\u00f6netim, \u00d6l\u00e7eklendirme, geni\u015fletme, Kimlik Do\u011frulama, yetkilendirme, Domain Controller, Nesneleri ada g\u00f6re s\u0131n\u0131fland\u0131r\u0131r. A\u00e7\u0131k kaynak kodlu yaz\u0131l\u0131mlar\u0131, Active Directory yaz\u0131l\u0131m\u0131n\u0131n yapt\u0131\u011f\u0131 \u00e7o\u011fu i\u015flemlerinin yan\u0131s\u0131ra spesifik olarak yapt\u0131\u011f\u0131 \u00f6zelliklerine g\u00f6re \u00e7e\u015fitlendirirsek e\u011fer:<\/p>\n\n\n\n<p><strong>1. Ansible<\/strong><\/p>\n\n\n\n<p>Hem Unix sistemlerde hem de Microsoftta yap\u0131land\u0131rma yap\u0131labilen a\u00e7\u0131k kaynak kodlu y\u00f6netimleri yap\u0131land\u0131rma, uygulama da\u011f\u0131t\u0131m\u0131, servis y\u00f6netim yaz\u0131l\u0131m\u0131d\u0131r. Tek bir kontrol cihaz\u0131na ba\u011fl\u0131 de\u011fildir ve birden fazla kaynaklardan, farkl\u0131 formatlarda veri \u00e7eker. Merkezi bir yap\u0131da olmamas\u0131 sebebi ile olas\u0131 bir sald\u0131r\u0131ya kar\u015f\u0131 sistemi kurtarmak i\u00e7in ideal bir yap\u0131dad\u0131r. Ansible Vault \u00f6zelli\u011fi kullan\u0131ld\u0131\u011f\u0131 takdirde hassas verileri \u015fifrelenmi\u015f bir \u015fekilde saklar. Chef, Puppet, ChefEngine&#8217;nin aksine ajans\u0131zd\u0131r. Yeni ba\u015flayanlar i\u00e7in \u00f6\u011frenimi kolay oldu\u011fu gibi kullan\u0131m\u0131da basittir. YAML ve Jinja framework&#8217;e dayanan kolay bir dil kullan\u0131r. Ansible kendine has bir compiler&#8217;\u0131 bulunmas\u0131 sebebi ile playbook ad\u0131 verilen konfigrasyon da\u011f\u0131t\u0131m\u0131 ve d\u00fczenleme yap\u0131lmas\u0131na olanak sa\u011flar. Uzaktan eri\u015fim sa\u011flayarak istenilen sistemde bir i\u015flem veya s\u00fcreci tan\u0131mlayabilir. Ansible Tower ad\u0131nda bir aray\u00fcz\u00fc olmas\u0131 sebebi ile kontrol paneli, eri\u015fim kontrol\u00fc, i\u015f planlamas\u0131, bildirimler ve grafiksel aray\u00fcz y\u00f6netimi ile merkezile\u015ftirme kontrol edilir. Ansible ayn\u0131 zamanda cloud teknolojisine ve sanal sistemlere entegre olarak Bare Machine bir \u015fekilde da\u011f\u0131t\u0131m yapar. Fazladan bir yaz\u0131l\u0131m y\u00fcklenmesi gerek olmad\u0131\u011f\u0131ndan, sunuculardakii uygulamalara daha fazla yer a\u00e7ar.<\/p>\n\n\n\n<p><strong>2. Puppet<\/strong><\/p>\n\n\n\n<p>Sunucuya entegre etme, yap\u0131land\u0131rma gibi \u00e7ok s\u0131k tekrar edilen i\u015fleri komut dosyalar\u0131n\u0131 otomatik hale \u00e7al\u0131\u015ft\u0131rabilir. G\u00fcvenli bir yap\u0131ya sahiptir. Bilgi g\u00fcvenli\u011fini sa\u011flamak i\u00e7in g\u00fcvenlik a\u00e7\u0131kl\u0131klar\u0131n\u0131 yakalama ara\u00e7lar\u0131 ile birlikte \u00e7al\u0131\u015f\u0131r. G\u00fcvenlik risklerine kar\u015f\u0131n g\u00fcvenlik a\u00e7\u0131klar\u0131n\u0131 g\u00f6rmek i\u00e7in bir dashboard&#8217;a sahiptir. Raporlama sunar ve kullan\u0131lan altyap\u0131 ve uygulamalar\u0131n nas\u0131l yap\u0131land\u0131r\u0131ld\u0131\u011f\u0131n\u0131 ve ba\u011flant\u0131lar\u0131n\u0131 g\u00f6r\u00fcnt\u00fcler. Bir de\u011fi\u015fim olmas\u0131 durumunda sebep-sonu\u00e7 ili\u015fkisi kurarakta raporlama sunabilme \u00f6zelli\u011fine sahiptir. Geli\u015fmi\u015f toplulu\u011funun yan\u0131 s\u0131ra geli\u015fmi\u015f e\u011fitim i\u00e7erikleri de vard\u0131r. Bulut ve yerel altyap\u0131s\u0131 olan sistemlere uygundur. Model odakl\u0131 mimariye sahip oldu\u011fu i\u00e7in \u00e7ok fazla programlama bilgisine sahip olmak gerekmez. \u00d6zel olarak AWS&#8217;nin sahip oludu\u011fu AWS Opsworks hizmetine sahiptir.<\/p>\n\n\n\n<p><strong>3. Chef<\/strong><\/p>\n\n\n\n<p>Ruby ve Erlag programlama dilleri kullan\u0131larak yaz\u0131lm\u0131\u015ft\u0131r. Konfig\u00fcrasyonlar\u0131 sa\u011flamak i\u00e7in Recipe(tarif) ad\u0131n\u0131 verdikleri kendine \u00f6zg\u00fc bir dili vard\u0131r. Bulut tabanl\u0131 \u00e7o\u011fu platformla entegre ve uyumlu bir \u015fekilde \u00e7al\u0131\u015f\u0131r. Bir\u00e7ok eski ya da g\u00fcncel olmayan uygulamar kullanan yap\u0131larda modernle\u015fme sa\u011flar. Puppet&#8217;te de var olan AWS Opsworks, Chef i\u00e7inde uygulanabilir olup yap\u0131land\u0131rma, da\u011f\u0131t\u0131m ve y\u00f6netim i\u015flemlerini \u00e7ok k\u0131sa bir \u015fekilde yapabilir. Linux&#8217;un yan\u0131 s\u0131ra Microsoft Windows sistemlerede deste\u011fi bulunmaktad\u0131r.<\/p>\n\n\n\n<p><strong>4. Univention Corporate Server<\/strong><\/p>\n\n\n\n<p>Sunucular\u0131n, servislerin, kullan\u0131c\u0131lar\u0131n y\u00f6netimi i\u00e7in engetre \u015fekilde \u00e7al\u0131\u015fan Debian GNU \/ Linux tabanl\u0131 bir y\u00f6netim platformudur. UCS ortamlara kolayca entegre olabilen Microsoft Windows sistemlere de entegrasyon ve de\u011fi\u015fiklik yap\u0131lmas\u0131n\u0131 m\u00fcmk\u00fcn k\u0131lar. Kullan\u0131m\u0131 kolay web aray\u00fcz\u00fcne sahip olmas\u0131 itibari ile farkl\u0131 konum ve platformlardan y\u00f6netimi sa\u011flan\u0131r. Bir\u00e7ok bulut tabanl\u0131 ortamlarda \u00e7al\u0131\u015fabildi\u011fi gibi, Windows, MAC OSX veya Linux sistemlerde de \u00e7al\u0131\u015f\u0131r. Samba, Kerberos, KVM, Nagios, Bacula gibi uygulamara da sahiptir. Veriyi kaydetmek, sistem ve kimlik y\u00f6netimlerini i\u00e7in OpenLDAP servisini kullan\u0131r. UCS, Sanal Makine Y\u00f6neticisi (UVMM) sayesinde y\u00f6netim ara\u00e7lar\u0131, sanalla\u015ft\u0131r\u0131lm\u0131\u015f sunucular\u0131n ve istemcilerin, sabit s\u00fcr\u00fcc\u00fclerin, CDROM ve DVD g\u00f6r\u00fcnt\u00fclerinin ve \u00e7al\u0131\u015ft\u0131r\u0131ld\u0131klar\u0131 fiziksel sistemlerin merkezi y\u00f6netimine de olanak sa\u011flar.<\/p>\n\n\n\n<p><strong>5. FreeIPA<\/strong><\/p>\n\n\n\n<p>Merkezi olarak y\u00f6netim sa\u011flayan Identity(kimlik), Policy(\u00f6nlem), Audit(denetim) ilkelerini benimsemi\u015f y\u00f6netim sistemidir. FreeIPA, Linux (Fedora), 389 Directory Server, MIT Kerberos, NTP, DNS, Dogtag ile bir arada hizmet sunan entegre g\u00fcvenlik sa\u011flayan y\u00f6netim \u00e7\u00f6z\u00fcm\u00fcd\u00fcr. Bir web aray\u00fcz\u00fc ve komut sat\u0131r\u0131 y\u00f6netimi ara\u00e7lar\u0131ndan olu\u015fur. FreeIPA, bir a\u011f\u0131n g\u00fcvenli bir \u015fekilde sa\u011flamak i\u00e7in kullan\u0131c\u0131, gruplar, ana makineler ve di\u011fer cihazlar\u0131n verilerine depolama yaparak hesap bilgilerini g\u00fcvende tutmaya \u00e7al\u0131\u015farak yetkilendirme yapar.<\/p>\n\n\n\n<p>6. Salt<\/p>\n\n\n\n<p>Saltstack ad\u0131 ile de bilinir. Salt farkl\u0131 di\u011fer yaz\u0131l\u0131mlara g\u00f6re gayet h\u0131zl\u0131 \u00e7al\u0131\u015f\u0131. \u00c7ok i\u015f par\u00e7ac\u0131kl\u0131 tasar\u0131m\u0131 y\u00fczlerce hatta binlerce e\u015fzamanl\u0131 g\u00f6revin y\u00fcr\u00fct\u00fclmesini sa\u011flar. H\u0131zl\u0131 veri toplamas\u0131n\u0131n yan\u0131 s\u0131ra dikkat \u00e7eken performans\u0131 ve etkili d\u00fczenlenmesi sayesinde fark yarat\u0131r. Y\u00fcksek h\u0131zl\u0131 veri ba\u011flant\u0131s\u0131n\u0131 kolayla\u015ft\u0131rmak i\u00e7in g\u00fc\u00e7l\u00fc ZeroMQ mesajla\u015fma k\u00fct\u00fcphanesini kullan\u0131r. Salt&#8217;un \u00f6nemli \u00f6zellikleri aras\u0131nda sahip oldu\u011fu anahtar depolar\u0131d\u0131r. Bu anahtar depolar\u0131, hassas verileri SQL&#8217;de saklamanmas\u0131na veya farkl\u0131 kaynaklardan \u015fifreler \u00e7ekilmesine izin verir.<\/p>\n\n\n\n<p><strong>7. Terraform<\/strong><\/p>\n\n\n\n<p>Terraform, altyap\u0131y\u0131 g\u00fcvenli ve verimli bir \u015fekilde in\u015fa etmek, de\u011fi\u015ftirmek ve versiyonlamak i\u00e7in bir ara\u00e7t\u0131r. Terraform, mevcut ve pop\u00fcler servis sa\u011flay\u0131c\u0131lar\u0131n\u0131 ve ayr\u0131ca \u015firket i\u00e7i \u00f6zel \u00e7\u00f6z\u00fcmleri y\u00f6netebilir. Kullan\u0131c\u0131lar\u0131n, Hashicorp Konfig\u00fcrasyon Dili (HCL) veya iste\u011fe ba\u011fl\u0131 olarak JSON olarak bilinen \u00fcst d\u00fczey bir konfig\u00fcrasyon dili kullanarak veri merkezi altyap\u0131s\u0131 tan\u0131mlamas\u0131n\u0131 ve sunmas\u0131n\u0131 sa\u011flar. Terraform&#8217;un y\u00f6netebilece\u011fi altyap\u0131, hesaplama \u00f6rnekleri, depolama ve a\u011f gibi d\u00fc\u015f\u00fck d\u00fczeyli bile\u015fenlerin yan\u0131 s\u0131ra DNS giri\u015fleri, SaaS \u00f6zellikleri vb. Gibi \u00fcst d\u00fczey bile\u015fenleri de i\u00e7erir.<\/p>\n\n\n\n<p><strong>8. Kubernetes<\/strong><\/p>\n\n\n\n<p>Konteyner teknolojisini kullanan uygulamalar\u0131n \u00f6l\u00e7eklendirip y\u00f6netilmesini sa\u011flayan yaz\u0131l\u0131md\u0131r. Konteyn\u0131rlama, yaz\u0131l\u0131mlar\u0131n bu ama\u00e7lara hizmet etmesine yard\u0131mc\u0131 olarak uygulamalar\u0131n aksama s\u00fcresi olmadan kolay ve h\u0131zl\u0131 bir \u015fekilde yay\u0131nlanmas\u0131n\u0131 ve g\u00fcncellenmesini sa\u011flar. Kubernet&#8217;ler, konteynerli uygulamalar\u0131n istedi\u011finiz yerde ve zamanda \u00e7al\u0131\u015ft\u0131\u011f\u0131ndan emin olman\u0131za yard\u0131mc\u0131 olur ve \u00e7al\u0131\u015fmas\u0131 gereken kaynaklar\u0131 ve ara\u00e7lar\u0131 bulmalar\u0131na yard\u0131mc\u0131 olur. Kubernetes, Google\u2019\u0131n topluluktan gelen en iyi fikir fikirleriyle birlikte konteyner d\u00fczenleme konusunda edindi\u011fi deneyim ile tasarlanan \u00fcretime haz\u0131r, a\u00e7\u0131k kaynakl\u0131 bir platformdur.<\/p>\n\n\n\n<p><strong>9. OpenLDAP<\/strong><\/p>\n\n\n\n<p>On-Prem yap\u0131larda Windows Server kullan\u0131lan yap\u0131larda Active Directory faydal\u0131 olacakt\u0131r. Fakat Linux odakl\u0131 yap\u0131larda OpenLDAP daha iyi bir \u00e7\u00f6z\u00fcm olabilir. Bu 2000 y\u0131l\u0131nda norm olmas\u0131na ra\u011fmen, BT d\u00fcnyas\u0131 o zamandan beri \u00e7ok de\u011fi\u015fti. G\u00fcn\u00fcm\u00fczde neredeyse t\u00fcm \u015firketler bir t\u00fcr web uygulamas\u0131, platformlar aras\u0131 sistemler, LDAP, di\u011fer protokoller ve geni\u015f bir yelpazede di\u011fer BT kaynaklar\u0131na sahiptir.<\/p>\n\n\n\n<p>Bu, bir\u00e7ok y\u00f6neticiyi, bu \u00e7e\u015fitli BT kaynaklar\u0131n\u0131 y\u00f6netmek i\u00e7in en iyi \u00e7\u00f6z\u00fcm\u00fcn ne oldu\u011funu merak ederek b\u0131rak\u0131r. Belirgin olan bir \u015fey: ne Active Directory ne de OpenLDAP en iyi se\u00e7enek de\u011fildir. Bu \u00e7\u00f6z\u00fcmler \u00e7ok eskidir ve g\u00fcn\u00fcm\u00fcz ortam\u0131nda bile i\u015flevsel hale getirmek i\u00e7in karma\u015f\u0131kl\u0131k ve ge\u00e7ici \u00e7\u00f6z\u00fcmler gerektirir. Sonu\u00e7 olarak, y\u00f6neticiler yeni bir yakla\u015f\u0131m izliyorlar. \u0130htiya\u00e7lar\u0131n\u0131n ne oldu\u011funu de\u011ferlendirmeye ba\u015fl\u0131yorlar ve daha sonra kimlik y\u00f6netimine modern bir yakla\u015f\u0131mla buluta ge\u00e7i\u015f yapman\u0131n en iyi yolunu bulmaya \u00e7al\u0131\u015f\u0131yorlar.<\/p>\n\n\n\n<p><strong>10. JXplorer<\/strong><\/p>\n\n\n\n<p>JXplorer bir \u00e7apraz platform LDAP taray\u0131c\u0131s\u0131 ve edit\u00f6r\u00fcd\u00fcr. Herhangi bir standart LDAP dizini veya bir LDAP veya DSML arabirimine sahip herhangi bir dizini aramak, okumak ve d\u00fczenlemek i\u00e7in kullan\u0131labilen standartlara uygun bir LDAP istemcisidir.<\/p>\n\n\n\n<p>\u00c7ok esnektir ve \u00e7e\u015fitli \u015fekillerde geni\u015fletilebilir ve \u00f6zelle\u015ftirilebilir. JXplorer, java dilinde yaz\u0131lm\u0131\u015ft\u0131r ve kaynak kodu ve Ant derleme sistemi, svn arac\u0131l\u0131\u011f\u0131yla veya program\u0131 denemek veya daha fazla geli\u015ftirmek isteyen kullan\u0131c\u0131lar i\u00e7in paketlenmi\u015f bir derleme olarak kullan\u0131labilir.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Baz\u0131 \u00f6nemli sistemlerde kullan\u0131lan Active Directory Y\u00f6netim, \u00d6l\u00e7eklendirme, geni\u015fletme, Kimlik Do\u011frulama, yetkilendirme, Domain Controller, Nesneleri ada g\u00f6re s\u0131n\u0131fland\u0131r\u0131r. A\u00e7\u0131k kaynak kodlu yaz\u0131l\u0131mlar\u0131, Active Directory yaz\u0131l\u0131m\u0131n\u0131n yapt\u0131\u011f\u0131 \u00e7o\u011fu i\u015flemlerinin yan\u0131s\u0131ra spesifik olarak yapt\u0131\u011f\u0131 \u00f6zelliklerine g\u00f6re \u00e7e\u015fitlendirirsek e\u011fer: 1. Ansible Hem Unix sistemlerde hem de Microsoftta yap\u0131land\u0131rma yap\u0131labilen a\u00e7\u0131k kaynak kodlu y\u00f6netimleri yap\u0131land\u0131rma, uygulama da\u011f\u0131t\u0131m\u0131, servis y\u00f6netim &#8230;<\/p>\n","protected":false},"author":1,"featured_media":1402,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[8,9,10,11,72,73,288],"tags":[],"class_list":["post-5907","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-os","category-linux","category-unix","category-windows","category-windows-server2008","category-windows-server2012","category-windows-server-2016"],"jetpack_publicize_connections":[],"aioseo_notices":[],"views":1340,"jetpack_featured_media_url":"https:\/\/i0.wp.com\/www.bilisimonline.net\/wp-content\/uploads\/2017\/07\/open-source-software.jpg?fit=610%2C298","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p7k56R-1xh","jetpack-related-posts":[],"_links":{"self":[{"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/posts\/5907"}],"collection":[{"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/comments?post=5907"}],"version-history":[{"count":1,"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/posts\/5907\/revisions"}],"predecessor-version":[{"id":5908,"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/posts\/5907\/revisions\/5908"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/media\/1402"}],"wp:attachment":[{"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/media?parent=5907"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/categories?post=5907"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.bilisimonline.net\/index.php\/wp-json\/wp\/v2\/tags?post=5907"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}