Active Directory basics. Explaining Active Directory to IT professionals
|
|
|
- June McKinney
- 10 years ago
- Views:
Transcription
1 1
2 Contents Introduction Active Directory and its components Domain Controllers Grouping of Domain Controllers Inside the Active Directory database Objects Containers and objects Attributes Replication and High Availability Intrasite and intersite replication Global Catalog servers Flexible single-master operations Functional levels Active Directory and its networking services DNS DNS Domain Names DNS Zones DNS Records DNS Servers DHCP DHCP Authorization DHCP and Dynamic DNS Active Directory in the networking infrastructure Device-independent productivity Single Sign-On Centralized systems management Consistent user experience Distributed File System for optimized access to files Best practices when deploying Active Directory Thank You So Much
3 Introduction Microsoft s Active Directory offers a central way for IT systems administrators to manage user accounts and devices within an IT infrastructure network. Changes in Active Directory can be made by these administrators centrally for consistency across the environment. Through Active Directory, people enjoy benefits such as being able to log onto devices and into applications with the same combination of username and password (and optionally other methods of authentication) and use their settings and files across all devices that are members of Active Directory. Optionally, when a device is lost, defective or stolen, people can remain productive on another Active Directory-managed device. 3
4 Active Directory and its Components Domain Controllers On Microsoft Servers, a domain controller (DC) is a server that responds to security authentication requests (logging in, checking permissions, etc.) within the Windows Server domain. These are Windows Server installations equipped with the Active Directory Domain Services (AD DS) Server Role. Domain Controllers can be physical hosts and virtual machines. The two most important elements of Domain Controllers are: 1. The Active Directory Database The Active Directory database (ntds.dit) and its supporting files contain the definition of objects and the configuration of objects. Examples of objects are Containers, Organizational Units, user accounts and computer accounts. The screenshot below shows you the Active Directory database (ntds.dit) and its supporting files on the file system of a Domain Controller: 4
5 2. The Active Directory System Volume The Active Directory System Volume (SYSVOL) is an SMB-based network share, used to share files with Active Directory members. There are two different types of domain controllers: 1. Read/write Domain Controllers These Domain Controllers allow changes to their Active Directory databases and System Volumes from Active Directory members and can be used to bring changes to other Domain Controllers. 2. Read-only Domain Controllers Read-only Domain Controllers are Domain Controllers that only allow read-access to their Active Directory databases and System Volumes. Changes are brought in by Read/write Domain Controllers. Grouping of Domain Controllers Domain Controllers are grouped into sites, domains and forests. An Active Directory site, typically, represents a geographical site of high-speed connectivity. You may think of an Active Directory site as a building. Active Directory sites govern replication between Domain Controllers configured in Active Directory sites. By default, authentication traffic from within an Active Directory site is directed to a Domain Controller in that site. A Domain Controller can only be part of one Active Directory site at a time. Active Directory domains are containers of replication. By default, all Domain Controllers in a domain can receive changes and replicate those changes to all other Domain Controllers in it. Each domain in Active Directory is identified by a Domain Name System (DNS) domain name. An Active Directory forest is a collection of one or more Active Directory domains that share a common Active Directory schema. Most Active Directory environments exist with one Active Directory domain in its own Active Directory forest. Inside the Active Directory database The Active Directory database consists of two types of data: The Active Directory schema Objects are defined in the schema. This way, their behavior and relationships are shaped. For instance, the fact that a user account object can have a last name where a computer object cannot, is defined in the Active Directory schema. The Active Directory configuration The objects themselves and the information in their properties (called attributes) are stored in the configuration part of the Active Directory database. 5
6 Objects Each object within the Active Directory configuration is identified with a security identifier, the SID.The security identifier consists of two parts: The domain identification part and the relative identifier, relative to the domain. In the screenshot below you can see the properties for the Ronnie user object (after the Advanced Features were enabled in the View menu of the Active Directory Users and Computers management tool). The Security Identifier for the user object used by Ronnie is S Its relative identifier is Containers and objects Although, strictly speaking, every object is a container in the world of Active Directory, only true container objects have objects under them. Organizational Units (OUs) and Containers (CNs) in the configuration part of the Active Directory database are represented in the Active Directory management tools as folders. The differences between OUs and CNs is that the first can be used to deploy settings (through Group Policy Objects).The special thing about CNs is that you cannot delete them using standard tooling. Containers that are available in a default Active Directory environment are Builtin, Users and Computers. 6
7 In the screenshot of Active Directory Users and Computers below, you can see the Organizational Units and Containers for an Active Directory domain based on Windows Server 2012 R2 Domain Controllers: The Exchange Users, New Users, Security and Distribution Grroups and Domain Controllers Organizational Units (OUs) are clearly distinguishable from the containers by their icons. Attributes Objects have properties based on the Active Directory schema. These properties are called attributes. Some attributes contain a single value such as the password last set attribute for a user object. Other attributes may contain multiple values such as the members attribute of a group object. Replication and High Availability Active Directory High Availability is not based on Failover Clustering (like Hyper-V) or Log shipping (like Exchange and SQL Server).Instead, Domain Controllers all offer the Active Directory database and System Volume (SYSVOL) to whoever needs the information in it. 7
8 When you deploy at least two Domain Controllers for an Active Directory domain, you ll gain redundancy and High Availability for that Active Directory domain. This requires a mechanism to keep the contents of this database in sync between Domain Controllers. Active Directory uses replication between Domain Controllers to keep things in sync. Replication synchronizes changes that are made on one Domain Controller with all other Domain Controllers in scope of replication. Data integrity is maintained by tracking changes on each Domain Controller and updating other Domain Controllers systematically. Active Directory replication uses a connection topology that is created automatically by the Knowledge Consistency Checker (KCC) to reduce administrative effort, but can alternatively be modified manually. Intrasite and intersite replication Referring back to the previously mentioned Active Directory sites, two types of replication exist: Intrasite replication Within an Active Directory site, replication is based on pull replication. After being notified of changes, a Domain Controller will ask the Domain Controller with the change what changes it has seen. To reduce network chatter, intrasite replication is setup by default as a two-way ring topology. This avoids Domain Controllers within a site to communicate to each of the other Domain Controllers. Instead, the ring topology allows it to communicate to two of its site siblings. Intersite replication Between Active Directory sites, replication is schedule-based and between bridgehead servers. After the default schedule time-out (15 minutes by default), the bridgehead Domain Controller for a site asks the bridgehead Domain Controller in the other site for the changes it has seen. Bridgehead Domain Controllers then replicate the changes to the Domain Controllers in its site using intrasite replication. Replication is also where the schema and configuration parts of the Active Directory database come into play. The schema is replicated and used throughout an Active Directory forest, where larger parts of the configuration is only replicated among Domain Controllers of a domain. Global Catalog servers The Active Directory databases of Domain Controllers configured as Global Catalog servers maintain all objects within a forest. These types of Domain Controllers store all attributes for all objects for the domain it is a Domain Controller for, but only the most important attributes for objects in the other domains in the forest. This allows for authorization within the Active Directory forest. For instance: The ability to add a group from another domain in a forest to the access control list of a file share in your domain. 8
9 Flexible single-master operations When it comes to replication, a couple of bottlenecks can be identified. Since all Domain Controllers are able to commit to the database simultaneously, replication collisions may occur. Therefore, Active Directory replication works with five Flexible Single Master Operations (FSMO) roles: The Primary Domain Controller emulator The Domain Controller in the domain with the Primary Domain Controller emulator (PDCe) Flexible Single Master Operations (FSMO) role, is authoritative for the replication of password changes, group policy changes and Distributed File Services (DFS) changes. A Domain Controller will replicate these changes to the PDCe first, which in turn will replicate it to the other Domain Controllers. This way, when a colleague changes the password for a user object in a site across the globe, and I use the new password in my site, the PDCe will be able to tell me that the new password is correct even though the Domain Controller in my site has not received the change yet. The Domain Controller with the PDCe FSMO role also serves as the default time server for all other Domain Controllers in the domain. The RID pool master SIDs, and thus RIDs, are used to create new objects. The Domain Controller with the RID pool Flexible Single Master Operations (FSMO) role is responsible for avoiding RID-based object creation collisions. To this purpose, it hands out 500-object RID pools to Domain Controllers within the Active Directory domain. When a Domain Controller depletes its 500-object RID pool, all it has to do is ask for a new pool. The infrastructure master The Domain Controller with the Infrastructure Master Flexible Single Master Operations (FSMO) role is responsible for updating references from objects in its domain to objects in other domains. The infrastructure master compares its data with that of the previously mentioned Global Catalog servers. Domain Controllers configured as Global Catalog servers receive regular updates for objects in all domains through replication, so the Global Catalog data will always be up to date. If the infrastructure master finds data that is out of date, it requests the updated data from a global catalog. The infrastructure master then replicates that updated data to the other Domain Controllers in the domain. The schema master The Domain Controller with the Schema Master Flexible Single Master Operations (FSMO) role is responsible for the integrity of the Active Directory schema. Since schema changes impact all objects on all Domain Controllers within an Active Directory forest, changes to the Active Directory schema occur on the Domain Controller with the Schema Master Flexible Single Master Operations (FSMO) role and replicated from there. 9
10 The domain naming master The second forest-wide Flexible Single Master Operations (FSMO) role is the Domain Naming Master role. The Domain Controller holding this role is authoritative for the Active Directory domains within an Active Directory forest. When you add or remove a domain to a forest, the change originates from the Domain Controller holding the Schema Master Flexible Single Master Operations (FSMO) and replicates from there. Using the netdom query fsmo command, you can quickly find out the Domain Controllers holding the Flexible Single Master Operations (FSMO) roles in an Active Directory environment: Functional levels Active Directory domains and forests are configured with a functional level. These levels govern the minimum Windows Server Operating System (OS) version for Domain Controllers. Raising these levels unlock new functionality. When you raise the Active Directory Domain Functional Level (DFL), you remove the ability to run and promote Windows Servers below that version in the Active Directory domain. You can only upgrade when all Domain Controllers with earlier Windows Server versions are removed from the domain or upgraded. After all Active Directory domains in an Active Directory forest have their Domain Functional Level (DFL) raised to a certain version, you can raise the Active Directory Forest Functional Level (FFL) for the forest. Active Directory and its networking services DNS Active Directory relies heavily on the Domain Naming System (DNS).First of all, each Active Directory domain is represented by a DNS domain name. Within an Active Directory forest, multiple domains may share a common 10
11 DNS name tree or have separate DNS domain names. Secondly, Active Directory-joined devices use DNS to locate Active Directory services like Domain Controllers. You might already know a lot about DNS since it is commonly used on the internet. It is used to find the IPv4 and IPv6 addresses to websites you want to visit. In relation to Active Directory, there s a little more to it: DNS Domain Names The Domain Naming System (DNS) is a hierarchical naming system. Its highest level is the root. Beneath the root you ll find top level domains (TLDs), like.com,.net and.org. Then, there s the domain name portion, which can be registered: EnterpriseDaddy.com is a registered domain name for the company named Enterprise Daddy. When an Active Directory domain is created, a DNS domain name must be specified. Microsoft s best practice is to register a domain name on the internet and use that, or an internal sub-domain beneath it, as the Active Directory DNS domain name. This provides the best interoperability and connectivity to the outside world. DNS Zones For each of the hierarchical layers in the Domain Naming System (DNS), two corresponding DNS zone types exist: Forward Lookup Zones DNS Forward Lookup Zones contain information on DNS records that allow you to convert a DNS name to IPv4 and IPv6 addresses. Reverse Lookup Zones DNS Reverse Lookup Zones perform the reverse job of Forward Lookup Zones. It allows for DNS clients to get a DNS name for a specific IPv4 or IPv6 address. DNS Records DNS Zones contain DNS Records. In DNS Forward Lookup Zones, A and AAAA records contain information on the IPv4 and IPv6 addresses associated to certain hostnames, like Forward Lookup Zones used by Active Directory typically contain a lot of SRV records to point to IPv4 and IPv6 addresses for Active Directory functionality like Domain Controllers configured as Global Catalog servers. In DNS Reverse Lookup Zones, PTR records contain DNS names for certain IPv4 and IPv6 addresses. DNS Servers The Domain Naming System (DNS) is offered through DNS Servers. These are the servers that are queried by domain-joined devices. While you can use stand-alone DNS Servers, Active Directory offers Active Directory integration for DNS. This way, Domain Controllers double as DNS Servers and the information in the DNS zones 11
12 are replicated between them in the same way the Active Directory configuration is replicated. This offers some benefits: On traditional DNS Servers, changes can only be made on Primary DNS Servers. Changes are then transferred to Secondary DNS Servers. Information in Active Directory-integrated DNS Zones can be modified on each of the Domain Controllers acting as DNS Servers. On traditional DNS Servers, changes in DNS Zones are transferred by transferring the entire DNS Zones. Information in Active Directory-integrated DNS Zones is replicated on a per-record basis, vastly reducing the amount of network traffic and time required for DNS updates. DHCP Although the Dynamic Host Configuration Protocol (DCHP) is not a requirement for Active Directory, it is commonly used in Active Directory environments for its flexibility. Through the Dynamic Host Configuration Protocol (DHCP), devices on a network can automatically configure their IPv4 and IPv6 addressing information by negotiating this information with DHCP Servers. DHCP is used extensively in environments with and without Active Directory. Your Internet Service Provider (ISP) uses it to configure your router without Active Directory. However, using DHCP within an environment with Active Directory offers several benefits: DHCP Authorization In an Active Directory environment, domain-joined devices acting as DHCP servers need to be authorized in Active Directory. Without this authorization, DHCP will not offer addressing information. This is helpful to protect against devices that offer addressing information that point devices to other routers and DNS Servers than your DHCP Servers. DHCP and Dynamic DNS Authorized DHCP Servers offer automatic registration and updating of DNS records within Active Directoryintegrated DNS Zones, both Forward Lookup Zones and Reverse Lookup Zones. This way, information in DNS is kept up to date without administrative effort. 12
13 Active Directory in the networking infrastructure Device-independent productivity Every colleague with a user account in Active Directory is able to sign into every domain-joined device with the credentials and authentication methods associated with that user account. Of course, servers are not considered standard devices and administrators can further limit the scope of devices for colleagues. When a device is lost, defective or stolen, people can simply sign into another Active Directory-managed device and be productive on it. Single Sign-On Once signed into a domain-joined device with an Active Directory user account, colleagues benefit from Single Sign-On (SSO) into Active Directory-integrated applications, files and services. When a colleague signs into a device, their credentials are sent to the Local Security Authority Subsystem Service (lsass.exe).this service is responsible for providing the Single Sign-On experience for the colleague. LSASS hosts a number of plug-ins representing the protocols that Windows supports including NTLM authentication, Digest authentication and Kerberos. Credentials are presented to each of these plugins, producing one-way hashes and tickets in the memory space of LSASS, which would remain there for the duration of the user session. During this session, the colleague benefits of Single Sign-On to all Active Directoryintegrated applications, files and services. Centralized systems management Using Group Policy Objects (GPOs), administrators can govern settings on domain-joined devices. Administrators can centrally configure settings for applications and services, and also settings that govern how Windows looks and feels. In addition to the functionality offered by Group Policy Objects (GPOs), Group Policy Preferences (GPPs) can be used to replace legacy startup, shutdown, logon and logoff scripts. Consistent user experience User profiles, Home folders and Folder redirection can be used to synchronize files and settings between devices and file servers. This way, all these settings are backed up automatically on the file server and thus 13
14 protected against data loss on the device level. Also, on any new domain-joined device a colleague logs on, these files and settings are automatically synced back from the file server, offering a consistent user experience. Distributed File System for optimized access to files The Distributed File System (DFS) File Server Role Service can be used in conjunction with Active Directory sites to synchronize files and folders between file servers located in different Active Directory sites and pointing domain-joined devices to the file server located in their Active Directory site. The System Volume (SYSVOL) file share on Domain Controllers is the most prominent example of the Distributed File System (DFS) model, exposing the data in it to domain-joined devices efficiently, based on Active Directory sites. Best practices when deploying Active Directory With Active Directory entrenched in every major aspect of networking infrastructures, there s an urgency to deploy Active Directory and Domain Controllers correctly. Below is my list of pointers to achieve this: Intend to create at least two (equal) Domain Controllers per domain. Intend to implement Role Separation. By all means do not misuse a Domain Controller as an Exchange Server or SQL Server, unless it s a Windows Small Business Server. Properly dimension the server in terms of hardware and software. Use RAID and separate spindles for storage of Active Directory-related data when possible. Use the Infrastructure Planning and Design (IPD) Guide for Active Directory to this purpose. Use hardware and software still covered by the producers (extended) guarantee, support, and/or life cycle policy for the period in which you need to rely on the Domain Controller. Additionally, I strongly recommend Windows Server 2012 as the Operating System for newly deployed Domain Controllers. When the server is a virtual machine, have the correct procedures in place. Always run sysprep.exe when working with Windows Server templates. Before you install Windows Server, run the Memory Diagnostics from the Windows Server DVD. Possible memory corruption issues show early this way and this will minimize issues further on in the lifetime of the server. Document the passwords for the DSRM accounts on each of your Domain Controllers on the password list for your organization. You will need these passwords in disaster recovery scenarios. 14
15 Implement Information Security measures (anti-malware and UPS client software) according to the best practices of the manufacturer for Domain Controllers. Make exclusions for the Active Directory database and supporting files. To promote Domain Controllers, use answer files. Write them, get them checked, signed off and then use them. Include them in your documentation after you ve used them since the passwords will be stripped by the server after usage. After promotion, check dcpromo.log, dcpromoui.log and event viewer for issues. Run Windows Update after promotion. You will only be offered Active Directory-specific updates after promoting a Windows Server installation to a Domain Controller. Configure system state backups to run periodically. Don t forget to configure regular separate backups of GPOs and Starter GPOs through the Group Policy Management Console since these won t be as easy to recover granularly. Run the Active Directory Best Practices Analyzer regularly. 15
16 Thank You So Much! I hope you ve enjoyed this ebook as much as I loved writing it for you. I can t thank you enough for your continued support of Enterprise Daddy Blog and everything I do. I appreciate each and every one of you for taking time out of your day or evening to read this, and if you have an extra second, I would love to hear what you think about it. Please leave a comment at or if you d rather reach me in private, don t hesitate to shoot me an . I read each and every single comment and , so don t be afraid to say hi! Lastly, if you haven t already, you can follow me on Twitter (@adilarif001), and join in on the conversations going on right now on my Facebook Fan Page Cheers, Adil Arif [email protected] 16
Planning Domain Controller Capacity
C H A P T E R 4 Planning Domain Controller Capacity Planning domain controller capacity helps you determine the appropriate number of domain controllers to place in each domain that is represented in a
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Course Number: 6425B Course Length: 5 Days Course Overview This five-day course provides to teach Active Directory Technology
Forests, trees, and domains
Active Directory is a directory service used to store information about the network resources across a. An Active Directory (AD) structure is a hierarchical framework of objects. The objects fall into
9. Which is the command used to remove active directory from a domain controller? Answer: Dcpromo /forceremoval
1. What is Active Directory schema? Answer: The schema is the Active Directory component that defines all the objects and attributes that the directory service uses to store data. 2. What is global catalog
MOC 20413C: Designing and Implementing a Server Infrastructure
MOC 20413C: Designing and Implementing a Server Infrastructure Course Overview This course provides students with the knowledge and skills to provide an enterprise solution that supports manual and automated
Introduction to Active Directory Services
Introduction to Active Directory Services Tom Brett A DIRECTORY SERVICE A directory service allow businesses to define manage, access and secure network resources including files, printers, people and
Planning and Implementing Windows Server 2008
Planning and Implementing Windows Server 2008 Course Number: 6433A Course Length: 5 Days Course Overview This five day course is intended for IT Professionals who are interested in the knowledge and skills
Lesson Plans LabSim for Microsoft s Implementing a Server 2003 Active Directory Infrastructure
Lesson Plans LabSim for Microsoft s Implementing a Server 2003 Active Directory Infrastructure (Exam 70-294) Table of Contents Course Overview... 2 Section 1.1: Introduction to Active Directory... 3 Section
70-640 R4: Configuring Windows Server 2008 Active Directory
70-640 R4: Configuring Windows Server 2008 Active Directory Course Introduction Course Introduction Chapter 01 - Installing the Active Directory Role Lesson: What is IDA? What is Active Directory Identity
IT ACADEMY LESSON PLAN. Microsoft Windows Server Active Directory
2008 IT ACADEMY LESSON PLAN Microsoft Windows Server Active Directory Microsoft Windows Server 2008 Active Directory: Lesson Plans Introduction Preparing to teach a course on Microsoft Windows Server 2008
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Course Number: 6425C Course Length: 5 Days Course Overview This five-day course provides in-depth training on implementing,
AV-006: Installing, Administering and Configuring Windows Server 2012
AV-006: Installing, Administering and Configuring Windows Server 2012 Career Details Duration 105 hours Prerequisites This course requires that student meet the following prerequisites, including that
70-413: Designing and Implementing a Server Infrastructure
70-413: Designing and Implementing a Server Infrastructure Course Overview This course covers everything you need to know about designing and implementing a server infrastructure. Students will learn about
6425C - Windows Server 2008 R2 Active Directory Domain Services
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Introduction This five-day instructor-led course provides in-depth training on configuring Active Directory Domain Services
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Course 6425B: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Length: 5 Days Language(s): English Audience(s): IT Professionals Level: 200 Technology: Windows Server
Course 6425B: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Course 6425B: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services About this Course This five-day instructor-led course provides to teach Active Directory Technology Specialists
Microsoft. Jump Start. M11: Implementing Active Directory Domain Services
Microsoft Jump Start M11: Implementing Active Directory Domain Services Rick Claus Technical Evangelist Microsoft Ed Liberman Technical Trainer Train Signal Jump Start Target Agenda Day One Day 1 Day 2
LearnKey's Windows Server 2003 Active Directory Infrastructure with Dale Brice-Nash
LearnKey's Windows Server 2003 Active Directory Infrastructure with Dale Brice-Nash Syllabus Course Description 5 Sessions - 15 Hours of Interactive Training The Windows Server 2003 Active Directory Infrastructure
Windows Server 2003 Active Directory MST 887. Course Outline
Content and/or textbook subject to change without notice. Pennsylvania College of Technology Workforce Development & Continuing Education Windows Server 2003 Active Directory MST 887 Course Outline Course
What s in Installing and Configuring Windows Server 2012 (70-410):
Brewster New York 10509 What s in Installing and Configuring Windows Server 2012 (70-410): The course provides skills and knowledge necessary to implement a core Windows Server 2012 infrastructure in an
Windows Server 2008 Active Directory Resource Kit
Windows Server 2008 Active Directory Resource Kit Stan Reimer, Conan Kezema, Mike Mulcare, and Byron Wright with the Microsoft Active Directory Team To learn more about this book, visit Microsoft Learning
Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Length: 5 Days Published: June 02, 2011 Language(s): English Audience(s): IT Professionals Level: 200
ITCertMaster. http://www.itcertmaster.com. Safe, simple and fast. 100% Pass guarantee! IT Certification Guaranteed, The Easy Way!
ITCertMaster Safe, simple and fast. 100% Pass guarantee! http://www.itcertmaster.com IT Certification Guaranteed, The Easy Way! Exam : 070-640 Title : Windows Server 2008 Active Directory. Configuring
Chapter 3: Building Your Active Directory Structure Objectives
Chapter 3: Building Your Active Directory Structure Page 1 of 46 Chapter 3: Building Your Active Directory Structure Objectives Now that you have had an introduction to the concepts of Active Directory
Active Directory Restoration
Active Directory Restoration This document outlines the steps required to recover an Active Directory Infrastructure, running on Windows 2003 R2 Server Standard. The scope of this document covers the scenario
MS-6425C - Configuring Windows Server 2008 Active Directory Domain Services
MS-6425C - Configuring Windows Server 2008 Active Directory Domain Services Table of Contents Introduction Audience At Clinic Completion Prerequisites Microsoft Certified Professional Exams Student Materials
Course: Configuring and Troubleshooting Windows Server 2008 Active Direct-ory Domain Services
Page 1 of 7 Course: Configuring and Troubleshooting Windows Server 2008 Active Direct-ory Domain Services Course 6425A Duration: 5 Days About this Course This five-day instructor-led course provides to
Outline SSS6425 - Configuring and Troubleshooting Windows Server 2008 Active Directory
Outline SSS6425 - Configuring and Troubleshooting Windows Server 2008 Active Directory Duration: Four consecutive Saturdays About this Course This instructor-led course provides the knowledge and skills
Configuring and Troubleshooting Windows 2008 Active Directory Domain Services
About this Course Configuring and Troubleshooting Windows This five-day instructor-led course provides in-depth training on implementing, configuring, managing and troubleshooting Active Directory Domain
Course Outline. Course 6419 : Configuring, Managing and Maintaining Windows Server 2008-based Servers. Duration: 5 Days
Course 6419 : Configuring, Managing and Maintaining Windows Server 2008-based Servers Duration: 5 Days What you will learn This five-day instructor-led course provides students with the knowledge and skills
MS 6419 Configuring, Managing and Maintaining Windows Server 2008-based Servers
MS 6419 Configuring, Managing and Maintaining Windows Server 2008-based Servers Description: Days: 5 Prerequisites: This five-day instructor-led course provides students with the knowledge and skills that
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Active Directory About this Course This five-day instructor-led course provides in-depth training on implementing, configuring, managing and troubleshooting (AD DS) in and R2 environments. It covers core
COMPLETE COMPUTING, INC.
6425: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Five days; Instructor-Led Introduction This five-day instructor-led course provides to teach Active Directory
Microsoft. Official Course. Introduction to Active Directory Domain Services. Module 2
Microsoft Official Course Module 2 Introduction to Active Directory Domain Services Module Overview Overview of AD DS Overview of Domain Controllers Installing a Domain Controller Lesson 1: Overview of
Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
www.etidaho.com (208) 327-0768 Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services 5 Days About this Course This five-day instructor-led course provides in-depth
Active Directory Objectives
Exam Objectives Active Directory Objectives Exam 70 640: TS: Windows Server 2008 Active Directory, Configuring This certification exam measures your ability to manage Windows Server 2008 Active Directory
Planning for Windows Server 2008 Servers
Planning for Windows Server 2008 Servers Course Number: 6430B Course Length: 3 Days Course Overview This 3-day course is intended for IT pros who are interested in the knowledge and skills necessary to
Table Of Contents. - Microsoft Windows - WINDOWS XP - IMPLEMENTING & SUPPORTING MICROSOFT WINDOWS XP PROFESSIONAL...10
Table Of Contents - - WINDOWS SERVER 2003 MAINTAINING AND MANAGING ENVIRONMENT...1 WINDOWS SERVER 2003 IMPLEMENTING, MANAGING & MAINTAINING...6 WINDOWS XP - IMPLEMENTING & SUPPORTING MICROSOFT WINDOWS
Configuring, Managing, and Maintaining Server 2008 R2
Configuring, Managing, and Maintaining Server 2008 R2 Eğitim Tipi ve Süresi: 5 Days VILT 5 Day VILT Configuring, Managing, and Maintaining Server 2008 R2 (M6419) Perform exclusive, hands-on lab exercises
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Course Details Course Outline Module 1: Introducing Active Directory Domain Services This module provides
Windows Server 2012 / Windows 8 Audit Fundamentals
Windows Server 2012 / Windows 8 Audit Fundamentals Jacksonville ISACA Chapter May 17, Speaker Introduction: Timothy P. McAliley 13+ years in IT Currently work for Microsoft Premier Field Engineer SQL Server,
6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Course Details Course Code: Duration: Notes: 6425C 5 days This course syllabus should be used to determine whether
Contents Introduction... 3 Introduction to Active Directory Services... 4 Installing and Configuring Active Directory Services...
Contents 1. Introduction... 3 1.1. Setup... 3 2. Introduction to Active Directory Services... 4 3. Installing and Configuring Active Directory Services... 5 3.1. Joining to Domain... 5 3.2. Promoting Member
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Course Code: M6425 Vendor: Microsoft Course Overview Duration: 5 RRP: 2,025 Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Overview This five-day instructor-led course
Step-By-Step Guide to Deploying Lync Server 2010 Enterprise Edition
Step-By-Step Guide to Deploying Lync Server 2010 Enterprise Edition The installation of Lync Server 2010 is a fairly task-intensive process. In this article, I will walk you through each of the tasks,
Module 2. Configuring and Troubleshooting DNS. Contents:
Configuring and Troubleshooting DNS 2-1 Module 2 Configuring and Troubleshooting DNS Contents: Lesson 1: Installing the DNS Server Role 2-3 Lesson 2: Configuring the DNS Server Role 2-9 Lesson 3: Configuring
70-413: Version: Designing and Implementing. a Server Infrastructure. Demo
70-413: Version: Designing and Implementing a Server Infrastructure Demo 1. - (Topic 1) After the planned upgrade to Windows Server 2012, you restore a user account from the Active Directory Recycle Bin.
M6425a Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
M6425a Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Course 6425A: Five days; Instructor-Led Introduction This five-day instructor-led course provides to teach Active
Lesson Plans LabSim for Microsoft s Configuring Windows Server 2008 Active Directory
Lesson Plans LabSim for Microsoft s Configuring Windows Server 2008 Active Directory (Exam 70-640) Table of Contents Course Overview... 3 Section 0.1: Active Directory Organization... 5 Section 0.2: Active
70-417: Upgrading Your Skills to MCSA Windows Server 2012
70-417: Upgrading Your Skills to MCSA Windows Server 2012 Course Overview This course prepares students to demonstrate your real-world knowledge of Windows Server 2012 core infrastructure services. Exam
20410: Installing and Configuring Windows Server 2012
20410: Installing and Configuring Windows Server 2012 Microsoft - Servidores Nível: Intermédio Duração: 30h Sobre o curso After completing this course, students will be able to: Install and configure Windows
Installing and Configuring Windows Server 2012 MOC 20410
Installing and Configuring Windows Server 2012 MOC 20410 Course Outline Module 1: Deploying and Managing Windows Server 2012 This module introduces the new Windows Server 2012 administrative interface.
MS 20410 Installing and Configuring Windows Server 2012
P a g e 1 of 10 MS 20410 Installing and Configuring Windows Server 2012 About this Course This course is part one of a three-part series that provides the skills and knowledge necessary to implement a
Creating the Conceptual Design by Gathering and Analyzing Business and Technical Requirements
Creating the Conceptual Design by Gathering and Analyzing Business and Technical Requirements Analyze the impact of Active Directory on the existing technical environment. Analyze hardware and software
Configuring, Managing and Maintaining Windows Server 2008-based Servers
Course 6419B: Configuring, Managing and Maintaining Windows Server 2008-based Servers OVERVIEW About this Course This five-day instructor-led course provides students with the knowledge and skills that
ILTA 2013 - HAND 6B. Upgrading and Deploying. Windows Server 2012. In the Legal Environment
ILTA 2013 - HAND 6B Upgrading and Deploying Windows Server 2012 In the Legal Environment Table of Contents Purpose of This Lab... 3 Lab Environment... 3 Presenter... 3 Exercise 1 Add Roles and Features...
Course 6419B: Configuring, Managing and Maintaining Windows Server 2008-based Servers
Course 6419B: Configuring, Managing and Maintaining Windows Server 2008-based Servers Length: Delivery Method: 5 Days Instructor-led (classroom) About this Course This five-day instructor-led course provides
Managing and Maintaining a Windows Server 2003 Network Environment
Managing and maintaining a Windows Server 2003 Network Environment. AIM This course provides students with knowledge and skills needed to Manage and Maintain a Windows Server 2003 Network Environment.
Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Five Days, Instructor-Led About this course This five-day instructor-led course provides in-depth training
NE-6425C Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
NE-6425C Configuring and Troubleshooting Windows Server 2008 Active Domain Services Summary Duration Vendor Audience 5 Days Microsoft IT Professionals Published Level Technology 02 June 2011 200 Windows
How the Active Directory Installation Wizard Works
How the Active Directory Installation Wizard Works - Directory Services: Windows Serv... Page 1 of 18 How the Active Directory Installation Wizard Works In this section Active Directory Installation Wizard
Active Directory Infrastructure Design Document
Active Directory Infrastructure Design Document Written By Sainath KEV Microsoft MVP Directory Services Microsoft Author TechNet Magazine, Microsoft Operations Framework Microsoft Speaker - Singapore Document
Active Directory Restructuring Recommendations
Active Directory Restructuring Recommendations Version 2.0 - Final September 7, 2004 Authored By: Jenn Goth Microsoft Services [email protected] Contributors: Brian Redmond Microsoft Services [email protected]
Configuring Windows Server 2008 Active Directory
Configuring Windows Server 2008 Active Directory Course Number: 70-640 Certification Exam This course is preparation for the Microsoft Technical Specialist (TS) exam, Exam 70-640: TS: Windows Server 2008
Managing an Active Directory Infrastructure
3 CHAPTER 3 Managing an Active Directory Infrastructure Objectives This chapter covers the following Microsoft-specified objectives for the Planning and Implementing an Active Directory Infrastructure
1. Name of Course: Windows Server 2008 Active Directory, Configuring
ITMC 2076 Course Syllabus 1. Name of Course: Windows Server 2008 Active Directory, Configuring 2. Number of Clock Hours: 48 3. Course Description: This course focuses on Active Directory in Windows Server
Outline SSS6422 - Microsoft Windows Server 2008 Hyper-V Virtualization
Outline SSS6422 - Microsoft Windows Server 2008 Hyper-V Virtualization Duration: Three consecutive Saturdays About this Course This instructor led course teaches students how to implement and manage Windows
Creating a Domain Tree
156 Chapter 4 Installing and Managing Trees and Forests Using the Active Directory Installation Wizard, you can quickly and easily create new domains by promoting a Windows Server 2008 stand-alone server
MCSA Instructor-led Live Online Training Program. Course Outline MCSA 70-410. Deploying and Managing Windows Server 2012
Course Outline MCSA 70-410 Deploying and Managing Windows Server 2012 Windows Server 2012 Overview Overview of Windows Server 2012 Management Installing Windows Server 2012 Post-Installation Configuration
WINDOWS 2000 Training Division, NIC
WINDOWS 2000 Active TE Directory Services WINDOWS 2000 Training Division, NIC Active Directory Stores information about objects on the network and makes this information easy for administrators and users
TestOut Course Outline for: Windows Server 2008 Active Directory
TestOut Course Outline for: Windows Server 2008 Active Directory CONTENTS: Videos: 61 (5:06) Demonstrations: 72 (6:38) Simulations: 61 Fact Sheets: 105 Exams: 47 0.0 Active Directory Overview 0.1 Active
Understanding. Active Directory Replication
PH010-Simmons14 2/17/00 6:56 AM Page 171 F O U R T E E N Understanding Active Directory Replication In previous chapters, you have been introduced to Active Directory replication. Replication is the process
Active Directory. By: Kishor Datar 10/25/2007
Active Directory By: Kishor Datar 10/25/2007 What is a directory service? Directory Collection of related objects Files, Printers, Fax servers etc. Directory Service Information needed to use and manage
How To Configure An Active Directory Domain Services
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services MOC6425 About this Course This five-day instructor-led course provides to teach Active Directory Technology Specialists
ITKwebcollege.ADMIN-Basics Fundamentals of Microsoft Windows Server
ITKwebcollege.ADMIN-Basics Fundamentals of Microsoft Windows Server Inhalte Teil 01 Network Architecture Standards Network Components and Terminology Network Architecture Network Media Access Control Methods
Dell Compellent Storage Center
Dell Compellent Storage Center Active Directory Integration Best Practices Guide Dell Compellent Technical Solutions Group January, 2013 THIS BEST PRACTICES GUIDE IS FOR INFORMATIONAL PURPOSES ONLY, AND
Course 6425C: Five days
CÔNG TY CỔ PHẦN TRƯỜNG CNTT TÂN ĐỨC TAN DUC INFORMATION TECHNOLOGY SCHOOL JSC LEARN MORE WITH LESS! Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Course 6425C: Five
Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services Course OutlineModule 1: Introducing Active Directory Domain Services This module provides an overview
MCSE: server infrastructure Syllabus
MCSE: server infrastructure Syllabus General Information Description The Microsoft Certified Solutions Expert (MCSE): Server Infrastructure course trains you to acquire the skills needed to run a highly
Windows.NET Beta 3 Active Directory New Features
Windows.NET Beta 3 Active Directory New Features Wolfgang Werner Compaq Decus Bonn 2002 Agenda Install Replica from Media Domain Controller Rename Domain Rename Universal Group Membership Caching Linked
Implementing Domain Name Service (DNS)
Implementing Domain Name Service (DNS) H C A 1 P T E R ITINERARY Objective 1.01 Objective 1.02 Objective 1.03 Install and Configure DNS for Active Directory Integrate Active Directory DNS Zones with Existing
Configuring Advanced Windows Server 2012 Services
Course 20412D: Configuring Advanced Windows Server 2012 Services Course Details Course Outline Module 1: Implementing Advanced Network Services In this module students will be able to configure advanced
Windows Server 2003 Active Directory: Perspective
Mary I. Hubley, MaryAnn Richardson Technology Overview 25 September 2003 Windows Server 2003 Active Directory: Perspective Summary The Windows Server 2003 Active Directory lies at the core of the Windows
Installing and Configuring Windows Server 2012
Course Code: M20410 Vendor: Microsoft Course Overview Duration: 5 RRP: 2,025 Installing and Configuring Windows Server 2012 Overview Get hands-on instruction and practice installing and configuring Windows
Windows Server. Introduction to Windows Server 2008 and Windows Server 2008 R2
Copyright 2006-2013 MilliByte SS Windows Server DƏRS Introduction to Windows Server 2008 and Windows Server 2008 R2 Functionality of Windows Server 2008 Windows Server 2008 Editions 1 Microsoft Hyper-V
SKV PROPOSAL TO CLT FOR ACTIVE DIRECTORY AND DNS IMPLEMENTATION
SKV PROPOSAL TO CLT FOR ACTIVE DIRECTORY AND DNS IMPLEMENTATION Date: April 22,2013 Prepared by: Sainath K.E.V Microsoft Most Valuable Professional Introduction: SKV Consulting is a Premier Consulting
Course Outline: Course 20410- Installing and Configuring Windows Server 2012
Course Outline: Course 20410- Installing and Configuring Windows Server 2012 Learning Method: Instructor-led Classroom Learning Duration: 5.00 Day(s)/ 40 hrs Overview: The course is part one of a series
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain MOC 6425
Configuring and Troubleshooting Windows Server 2008 Active Directory Domain MOC 6425 Course Outline Module 1: Introducing Active Directory Domain Services This module provides an overview of Active Directory
Installing Active Directory
Installing Active Directory 119 Installing Active Directory Installing Active Directory is an easy and straightforward process as long as you planned adequately and made the necessary decisions beforehand.
Microsoft 70-413 Exam
Volume: 90 Questions Topic 1, Contoso, Ltd Overview Contoso, Ltd., is a healthcare company in Europe that has 2,000 users. The company is migrating to Windows Server 2012. The company has two main offices
Course Outline. Course 20412B: Configuring Advanced Windows Server 2012 Services. Duration: 5 Days
Course 20412B: Configuring Advanced Windows Server 2012 Services Duration: 5 Days About This Course This version of this course is built on the final release version of Windows Server 2012. Learn how to
Configuring, Managing and Maintaining Windows Server 2008 Servers
Configuring, Managing and Maintaining Windows Server 2008 Servers Elements of this syllabus are subject to change Course Details Course Code: 6419 Duration: Notes: 5 day(s) This course syllabus should
Configuring Sponsor Authentication
CHAPTER 4 Sponsors are the people who use Cisco NAC Guest Server to create guest accounts. Sponsor authentication authenticates sponsor users to the Sponsor interface of the Guest Server. There are five
Course 20412A: Configuring Advanced Windows Server 2012 Services
Course 20412A: Configuring Advanced Windows Server 2012 Services Course Length: 5 Days Overview Course 20412A is part three of a three-course series that includes courses 20410A and 20411A. The series
MOC 6436A: Designing Active Directory Infrastructure and Services in Windows Server 2008
MOC 6436A: Designing Active Directory Infrastructure and Services in Windows Server 2008 Course Number: 6436A Course Length: 5 Days Course Overview At the end of this five-day course, students will learn
