Installing Active Directory



Similar documents
Creating a Domain Tree

Installation of MicroSoft Active Directory

Creating a New Domain Tree in the Forest

How To Install And Configure Windows Server 2003 On A Student Computer

How to install Small Business Server 2003 in an existing Active

In the Active Directory Domain Services Window, click Active Directory Domain Services.

Chapter 3: Building Your Active Directory Structure Objectives

Course: WIN310. Student Lab Setup Guide. Summer Microsoft Windows Server 2003 Network Infrastructure (70-291)

Moving the TRITON Reporting Databases

Searching for accepting?

Setting up Active Directory Domain Services

Network System Management. Creating an Active Directory Domain

How to. Install Active Directory. Server 2003

How do I install Active Directory on my Windows Server 2003 server?

How to Install the Active Directory Domain Services (AD DS) Role in Windows Server 2008 R2 and Promote a Server to a Domain Controller

SETTING UP ACTIVE DIRECTORY (AD) ON WINDOWS 2008 FOR EROOM

Active Directory Restoration

Configuring a Windows 2003 Server for IAS

Deploying Remote Desktop Connection Broker with High Availability Step-by-Step Guide

Setting Up a Backup Domain Controller

Appendix B Lab Setup Guide

AD RMS Step-by-Step Guide

SharePoint Server for Business Intelligence

2. Using Notepad, create a file called c:\demote.txt containing the following information:

Installing Active Directory on Windows Server 2008 by Daniel Petri - January 8, 2009 Printer Friendly Version

HOW TO CONFIGURE SQL SERVER REPORTING SERVICES IN ORDER TO DEPLOY REPORTING SERVICES REPORTS FOR DYNAMICS GP

Moving the Web Security Log Database

Installing Windows Rights Management Services with Service Pack 2 Step-by- Step Guide

Team Foundation Server 2010, Visual Studio Ultimate 2010, Team Build 2010, & Lab Management Beta 2 Installation Guide

Features - Microsoft Data Protection Manager

Introduction. Versions Used Windows Server 2003

How To Create An Easybelle History Database On A Microsoft Powerbook (Windows)

Active Directory Infrastructure Design Document

Using Group Policies to Install AutoCAD. CMMU 5405 Nate Bartley 9/22/2005

Faculty Details. : Assistant Professor ( OG. ),Assistant Professor (OG) Course Details. : B. Tech. Batch : : Information Technology

System Area Management Software Tool Tip: Integrating into NetIQ AppManager

Insight Video Net. LLC. CMS 2.0. Quick Installation Guide

Use 802.1x EAP-TLS or PEAP-MS-CHAP v2 with Microsoft Windows Server 2003 to Make a Secure Network

PrivateWire Gateway Load Balancing and High Availability using Microsoft SQL Server Replication

TIGERPAW EXCHANGE INTEGRATOR SETUP GUIDE V3.6.0 August 26, 2015

Team Foundation Server 2012 Installation Guide

Server Manager Performance Monitor. Server Manager Diagnostics Page. . Information. . Audit Success. . Audit Failure

Deploying Windows Streaming Media Servers NLB Cluster and metasan

UNIT 5 ADDITIONAL PROJECTS BEFORE YOU BEGIN. Installing a Replica Domain Controller. You want to improve fault tolerance and performance on

SRT210 Lab 01 Active Directory

HOUR 3. Installing Windows Server 2003

Core Active Directory Administration

Releasing blocked in Data Security

Changing Passwords in Cisco Unity 8.x

Diamond II v2.3 Service Pack 4 Installation Manual

DC Agent Troubleshooting

4cast Client Specification and Installation

STATISTICA VERSION 9 STATISTICA ENTERPRISE INSTALLATION INSTRUCTIONS FOR USE WITH TERMINAL SERVER

SQL Server Setup for Assistant/Pro applications Compliance Information Systems

Application Note 116: Gauntlet System High Availability Using Replication

Getting Started With Delegated Administration

Parallels Plesk Panel

StarWind Virtual SAN Installing & Configuring a SQL Server 2012 Failover Cluster

Step-By-Step Guide to Deploying Lync Server 2010 Enterprise Edition

NetIQ. How to guides: AppManager v7.04 Initial Setup for a trial. Haf Saba Attachmate NetIQ. Prepared by. Haf Saba. Senior Technical Consultant

Active Directory integration with CloudByte ElastiStor

Step-by-step installation guide for monitoring untrusted servers using Operations Manager ( Part 3 of 3)

SQL EXPRESS INSTALLATION...

Portions of this product were created using LEADTOOLS LEAD Technologies, Inc. ALL RIGHTS RESERVED.

Advanced Event Viewer Manual

Install SQL Server 2014 Express Edition

Deploying Microsoft Clusters in Parallels Virtuozzo-Based Systems

File and Printer Sharing with Microsoft Windows

Module 2: Implementing an Active Directory Forest and Domain Structure

How to Back Up and Restore an ACT! Database Answer ID 19211

Deploying System Center 2012 R2 Configuration Manager

Windows Domain Network Configuration Guide

2. Unzip the file using a program that supports long filenames, such as WinZip. Do not use DOS.

Operating System Installation Guide

TSM for Windows Installation Instructions: Download the latest TSM Client Using the following link:

Installation Instruction STATISTICA Enterprise Small Business

How to Test Out Backup & Replication 6.5 for Hyper-V

ILTA HAND 6B. Upgrading and Deploying. Windows Server In the Legal Environment

Install MS SQL Server 2012 Express Edition

Migrating MSDE to Microsoft SQL 2008 R2 Express

Integrating LANGuardian with Active Directory

Installing and Configuring a. SQL Server 2012 Failover Cluster

Hands-On Microsoft Windows Server 2008

Changing Your Cameleon Server IP

EVault for Data Protection Manager. Course 301 Server Protection with DPM File and System State

istorage Server: High-Availability iscsi SAN for Windows Server 2008 & Hyper-V Clustering

STATISTICA VERSION 12 STATISTICA ENTERPRISE SMALL BUSINESS INSTALLATION INSTRUCTIONS

Secure Perfect RAID Recovery Instructions

Reporting works by connecting reporting tools directly to the database and retrieving stored information from the database.

Print Audit 6 - SQL Server 2005 Express Edition

COMPLETE COMPUTING, INC.

How To Configure An Active Directory Domain Services

Microsoft Corporation. Project Server 2010 Installation Guide

Step-by-Step Guide to Securing Windows XP Professional with Service Pack 2 in Small and Medium Businesses

Contents Introduction... 3 Introduction to Active Directory Services... 4 Installing and Configuring Active Directory Services...

Troubleshooting File and Printer Sharing in Microsoft Windows XP

Transcription:

Installing Active Directory 119 Installing Active Directory Installing Active Directory is an easy and straightforward process as long as you planned adequately and made the necessary decisions beforehand. In this section, you ll look at the actual steps required to install the first domain controller in a given environment. With early versions of the Windows NT operating system, you had to determine during installation the role of your server as it related to the domain controller or member server. Choices included making the machine a primary domain controller (PDC), a backup domain controller (BDC), or a member server. This was an extremely important decision because, even though you could promote a BDC to a PDC, you had to completely reinstall the operating system to make any changes to the server s role between a domain controller and a member server. Instead of forcing you to choose during setup whether or not the machine will participate as a domain controller, Windows Server 2008 allows you to promote servers after you install Active Directory. Therefore, at the end of the setup process, all Windows Server 2008 computers are configured as either member servers (if they are joined to a domain) or stand-alone servers (if they are part of a workgroup). The process of converting a member server to a domain controller is known as promotion. Through the use of a simple and intuitive wizard, systems administrators can quickly configure servers to be domain controllers after installation. Later in this section, you ll follow the steps you need to take to install Active Directory by promoting the first domain controller in the domain. These steps are performed using the Active Directory Installation Wizard (DCPROMO). This tool is designed to be used after a server has been installed in the environment. As part of the promotion process, the server creates or receives information related to Active Directory configuration. The first step in installing Active Directory is promoting a Windows Server 2008 computer to a domain controller. The first domain controller in an environment serves as the starting point for the forest, trees, domains, and the Operations Master roles. Exercise 3.2 shows the steps you need to follow to promote an existing Windows Server 2008 to a domain controller. In order to complete the steps in this exercise, you must have already installed and configured a Windows Server 2003 or 2008 computer. You also need a DNS server that supports SRV records. If you do not have a DNS server available, the Active Directory Installation Wizard automatically configures one for you. Promoting a Domain Controller 1. Start the Active Directory Installation Wizard by clicking Start Run and typing dcpromo. 2. When the Welcome screen appears, check the box that says Use Advanced Mode Installation and then click Next

120 Chapter 3 Active Directory Planning and Installation 3. The Choose a Deployment Configuration box appears. Choose the second option, Create a new domain in a new forest. Then click Next. 4. A warning box may appear stating that the local administrator account will become the domain administrator account. If this box appears, click Yes. 5. The Name the Forest Root Domain box appears, asking you to enter the full DNS name of your domain. Enter your domain s DNS name and click Next. (Use mycompany.com if you do not have a domain name.) 6. After the DNS name gets verified, a NetBIOS name box appears with your default NetBIOS name (for example, mycompany). Leave the default and click Next.

Installing Active Directory 121 A NetBIOS name can be up to 15 characters. To make it easier to remember and type the name, you should limit yourself to the English alphabet characters and numbers. 7. The Set Forest Functional Level box appears. Use the pull down menu and choose Windows Server 2003 or Windows Server 2008 and then click Next. 8. When the Additional Domain Controller Options page appears, make sure DNS Server is checked (if you need to install DNS). Also notice the option labeled Read-Only Domain Controller (RODC). This is where you will create your RODC (RODC installation and configuration are covered in later chapters of this book). Since this is the first domain controller in your new domain, the RODC option is grayed out. Click Next.

122 Chapter 3 Active Directory Planning and Installation 9. A Static IP Assignment box may appear. If it does, choose the Yes option and configure a static IP address for your computer. If this box does not appear, go on to the next step. 10. In the Location for Database, Log Files, and Sysvol page, specify the filesystem locations for the Active Directory database and log files. Microsoft recommends that these files reside on separate physical devices in order to improve performance and to provide for recoverability. The default filesystem location is in a directory called NTDS located within the system root. However, you can choose any folder located on a FAT32 or NTFS partition (Sysvol requires NTFS). After you ve specified the filesystem locations (you can leave the defaults if you like), click Next. 11. On the Directory Services Restore Mode Administrator Password page, provide a password to be used to restore Active Directory in the event of its loss or corruption. Note that this password does not have to correspond with passwords set for any other account. For this exercise, use the following password: P@ssw0rd

Installing Active Directory 123 After confirming the password, click Next. 12. Based on the installation options you ve selected, the wizard presents a summary of your choices. It is a good idea to copy and paste this information into a text file to refer to later. Verify the options, and then click Next to begin the Active Directory installation process. A box with a book that is being written to will appear as Active Directory is installing. 13. Once Active Directory has been installed, you are prompted to reboot the system. After the reboot, you can access the administrative tools that are related to the configuration and management of Active Directory.

124 Chapter 3 Active Directory Planning and Installation Verifying Active Directory Installation Once you have installed and configured Active Directory, you ll want to verify that you have done so properly. In the following sections, you ll look at methods for doing this. Using Event Viewer The first (and perhaps most informative) way to verify the operations of Active Directory is to query information stored in the Windows Server 2008 event log. You can do this using the Windows Server 2008 Event Viewer. Exercise 3.3 walks you through this procedure. Entries seen with the Event Viewer include errors, warnings, and informational messages. In order to complete the steps in this exercise, you must have configured the local machine as a domain controller. EXERCISE 3.3 Viewing the Active Directory Event Log 1. Open the Event Viewer snap-in from the Administrative Tools program group. 2. In the left pane, under Applications and Services Logs, select Directory Service. 3. In the right pane, you can sort information by clicking column headings. For example, you can click the Source column to sort by the service or process that reported the event.

Verifying Active Directory Installation 125 EXERCISE 3.3 4. Double-click an event in the list to see the details for that item. Note that you can click the Copy button to copy the event information to the Clipboard. You can then paste the data into a document for later reference. Also, you can move between items using the up and down arrows. Click OK when you are done viewing an event. 5. Filter an event list by right-clicking the Directory Service item in the left pane, and selecting the Filter tab. Note that filtering does not remove entries from the event logs it only restricts their display. 6. To verify Active Directory installation, look for events related to the proper startup of Active Directory, such as Event ID 1000 (Active Directory Startup Complete) and 1394 (Attempts To Update The Active Directory Database Are Succeeding). Also, be sure to examine any Error or Warning messages because these could indicate problems with DNS or other necessary services. 7. When you re done viewing information in the Event Viewer, close the application. Gaining Insight through Event Viewer Despite its simple user interface and somewhat limited GUI functionality, the Event Viewer tool can be your best ally in isolating and troubleshooting problems with Windows Server 2008. The Event Viewer allows you to view information that is stored in various log files that are maintained by the operating system. This list of logs includes the following: Application Stores messages generated by programs running on your system. For example, SQL Server 2005 might report the completion of a database backup job within the Application log. Security Contains security-related information, as defined by your auditing settings. For example, you could see when users have logged onto the system or when particularly sensitive files have been accessed. System Contains operating system related information and messages. Common messages might include a service startup failure or information about when the operating system was last rebooted. Directory service Stores messages and events related to how Active Directory functions. For example, details related to replication might be found here. DNS server Contains details about the operations of the DNS service. This log is useful for troubleshooting replication or name resolution problems.