Micrsft Windws Server 2003 Envirnment fr an MCSE n Windws 2000 Curse N. MS2297 5 Days COURSE OVERVIEW This five-day, instructr-led curse prvides students with the knwledge and new skills that they need t plan and maintain a Micrsft Windws Server 2003 netwrked envirnment. This curse cnsists f lecture cntent and labs that prvide experience fcused exclusively n the skills and bjectives that align with MCP Exams 70-292 and 70-296. AUDIENCE This curse is intended fr Windws 2000 systems engineers with experience planning, implementing, and supprting a Windws 2000-based Micrsft Active Directry directry service netwrk, and wh need t learn hw t leverage thse skills in a Windws Server 2003 envirnment. OBJECTIVES Upn successful cmpletin f this curse, students will be Identify the systems administratin tasks in Windws Server 2003 that are new r different frm the tasks perfrmed in Windws 2000. Manage user, cmputer, and grup accunts in a Windws Server 2003 Active Directry-based envirnment. Use the Grup Plicy Management Cnsle (GPMC) t manage Grup Plicy. Manage resurces and security. Cnfigure and manage DNS. Manage servers in remte lcatins. Manage Terminal Services. Manage IIS 6.0 Web Services. Maintain cmputers that run Windws perating systems by implementing and managing Sftware Update Services. Prepare fr and implement disaster recvery slutins. Plan a Dmain Name System (DNS) strategy fr an enterprise rganizatin. Plan fr an implementatin f Active Directry and fr Active Directry replicatin. Implement Active Directry and DNS. Trublesht Transmissin Cntrl Prtcl/Internet Prtcl (TCP/IP), name reslutin, and Grup Plicy. Plan and implement crss-frest trusts and new security ptins. Use Grup Plicy in Windws Server 2003 t deply and restrict sftware. Use Grup Plicy in Windws Server 2003 t set advanced security settings. Plan and implement secure Ruting and Remte Access. PREREQUISITES Befre attending this curse, students must have: An MCSE n Windws 2000 certificatin, r equivalent knwledge and skills. COURSE OUTLINE MODULE 1: INTRODUCTION TO SYSTEMS ADMINISTRATION IN WINDOWS SERVER 2003 This mdule explains hw t perfrm systems administratin tasks in a Windws Server 2003 envirnment, as well as intrducing the scenaris and tls that will be used thrughut the wrkshp. Identify the prducts in the Windws Server 2003 family. 105 West Brad Street h Falls Church h Virginia h 22046 h 703-532-1000 www.knwlgy.cm Fax 703-532-1001
Micrsft Windws Server 2003 Envirnment fr an MCSE n Windws 2000 Curse N. MS2297 5 Days Describe the tls and resurces available t perfrm tasks thrughut the wrkshp. MODULE 2: MANAGING USERS, COMPUTERS, AND GROUPS This mdule explains hw t manage users, cmputers, and grups in an Active Directry directry service envirnment, taking advantage f the new capabilities available in Windws Server 2003. Create user accunts by using CSVDE. Create user accunts by using the dsadd cmmand. Mdify the prperties f multiple accunts. Create cmputer accunts by using the dsadd cmmand. Create grups by using the dsadd cmmand. Add members t a grup by using the dsmd cmmand. Cpy the prperties frm an existing accunt when creating a new accunt. Find Active Directry bjects. Mve an Active Directry bject by using the drag and drp technique f management in Active Directry Users and Cmputers. Reset cmputer accunts. Describe the effect f resetting passwrds in Windws Server 2003. Determine the effective permissins n an Active Directry bject. MODULE 3: USING THE GPMC TO MANAGE GROUP POLICY This mdule gives a hands-n, fast-paced pprtunity t experienced users t rient themselves t Windws Server 2003 and learn hw t use the Grup Plicy Management Cnsle (GPMC) t manage Grup Plicy. Implement Grup Plicy by using the GPMC. Manage GPOs by using the GPMC, which includes: Backing up a GPO. Cpying a GPO. Imprting a GPO. Use Grup Plicy Results t trublesht Grup Plicy-related issues. Use Grup Plicy Mdeling t experiment with pssible Grup Plicy cnfiguratins. MODULE 4: MANAGING RESOURCES AND SECURITY This mdule explains hw t use enhancements t the tls available in Windws Server 2003 t manage resurces and security by using Windws Explrer, Grup Plicy management tls, and the Security Cnfiguratin and Analysis tl. Determine the effective NTFS permissins fr files and flders. Change the wner fr an existing file r flder. Create custm security templates. Apply security templates by using Grup Plicy. Cnfigure NTFS permissins by using security templates. 105 West Brad Street h Falls Church h Virginia h 22046 h 703-532-1000 www.knwlgy.cm Fax 703-532-1001
Micrsft Windws Server 2003 Envirnment fr an MCSE n Windws 2000 Curse N. MS2297 5 Days Audit security settings by using Security Cnfiguratin and Analysis. MODULE 5: MANAGING DNS This mdule gives a hands-n, fast-paced pprtunity t experienced users t rient themselves t Windws Server 2003 and learn hw t cnfigure and manage DNS. Install DNS by using the Manage Yur Server tl. Create frward lkup znes. Create reverse lkup znes. Cnfigure DNS cnditinal frwarding. Cnfigure DNS znes, which includes: Create DNS stub znes. Cnfiguring zne ptins. Cnfiguring znes fr secure dynamic update. Cnfiguring Active Directry integrated znes. MODULE 6: MANAGING SERVERS This mdule explains hw t manage servers remtely using secure best practices. Create desktp shrtcuts that run the Run as cmmand. Cnnect t a remte server by using MMC snap-in tls. Cnnect t a remte server by using the Remte Desktp Cnnectin utility. Determine the best tl t use fr remte administratin in specific situatin. Cnfigure client cnnectin speed fr the Remte Desktp Cnnectin utility. Cnfigure aut recnnect fr the Remte Desktp Cnnectin utility. MODULE 7: MANAGING TERMINAL SERVICES This mdule explains hw t cnfigure and manage Terminal Services and take advantage f the new capabilities available with that service. Install Terminal Services. Install a Terminal Services Licensing server. Cnfigure Terminal Services, which includes: Setting the level f encryptin fr terminal server user sessins. Cntrlling terminal server user cnnectin access. Cnfiguring time-ut settings frm remte cnnectins. Mnitring remte desktp cnnectin sessins. Manage user sessins by using Terminal Services Manager. Diagnse and reslve issues related t Terminal Services security. 105 West Brad Street h Falls Church h Virginia h 22046 h 703-532-1000 www.knwlgy.cm Fax 703-532-1001
Micrsft Windws Server 2003 Envirnment fr an MCSE n Windws 2000 Curse N. MS2297 5 Days MODULE 8: MANAGING IIS 6.0 WEB SERVICES This mdule explres the new skills needed t manage and maintain the Internet Infrmatin Services (IIS) service n Windws Server 2003. This mdule will prvide students with hands-n experience cnfiguring and managing the IIS service and highlights the default state f the service when Windws Server 2003 is installed. Install IIS 6.0 Cnfigure authenticatin Install ASP.NET Allw ASP.NET in Web service extensins Manage ASP.NET cnfiguratin files Implement Web applicatins Implement applicatin pling Manage the IIS 6.0 metabase Manage an IIS server in a remte lcatin Mnitr and ptimize IIS 6.0 MODULE 9: MAINTAINING SOFTWARE BY USING SOFTWARE UPDATE SERVICES This mdule explains hw t us Sftware Update Services (SUS) t perfrm patch management fr a netwrked envirnment. Install and cnfigure SUS n a server. Cnfigure autmatic updates. Use Grup Plicy t cnfigure SUS clients. Manage a sftware update infrastructure. Back up and restre an SUS cnfiguratin. Test an SUS implementatin. MODULE 10: MANAGING DISASTER RECOVERY This mdule explains hw t use the new capabilities available with Windws Server 2003 t restre a system t a previus state. The students will practice trubleshting and repairing a system by using features such as ASR and driver rllback in a lab envirnment t restre a system t a predefined state. Use Autmatic System Recvery (ASR) t back up and restre a server. Restre data frm shadw cpies. Rll back t a previus versin f a device driver. Cnfigure security fr backup peratins. Trublesht prblems assciated with restring data. 105 West Brad Street h Falls Church h Virginia h 22046 h 703-532-1000 www.knwlgy.cm Fax 703-532-1001
Micrsft Windws Server 2003 Envirnment fr an MCSE n Windws 2000 Curse N. MS2297 5 Days MODULE 11: INTRODUCTION TO PERFORMING SYSTEMS ENGINEER SKILLS IN WINDOWS SERVER 2003 This mdule explains the systems engineer tasks that are new r different frm thse perfrmed in Windws 2000 and intrduces the scenaris and tls that will be used thrughut the curse. Describe, at a high level, the new features in Windws Server 2003 that pertain t the systems engineer jb rle. Use the lab envirnment and lcate key resurces that are used t cmplete the labs. MODULE 12: PLANNING A DNS NAMESPACE DESIGN This mdule shws students the new features f DNS in Windws Server 2003, fcusing n planning issues regarding imprving fault tlerance in DNS, ensuring DNS reslutin acrss frests, planning fr _MSDCS zne availability and security t DNS servers in a frest, and creating DNS znes securely and with the least administrative effrt. Evaluate existing DNS infrastructure and determine where new Windws Server 2003 features can imprve name reslutin. Determine when t use stub znes versus cnditinal frwarding. Ensure availability f the _MSDCS zne. Plan Active Directry partitins t replicate zne data when needed. Evaluate DNS zne security. MODULE 13: PLANNING ACTIVE DIRECTORY DEPLOYMENT This mdule shws students new features f Active Directry in Windws Server 2003, fcusing n planning issues. Evaluate the placement f glbal catalg servers. Plan ptimal replicatin by expliting the fllwing replicatin enhancements: Linked value replicatin (LVR) Partial attribute set (PAS) replicatin Inter-Site Tplgy Generatr (ISTG) imprvements Evaluate frest and dmain functinality (versining) levels. MODULE 14: IMPLEMENTING DNS WITH ACTIVE DIRECTORY This mdule gives students a hands-n pprtunity t experience new features f Windws Server 2003 and learn hw t use them t implement Active Directry and DNS. 105 West Brad Street h Falls Church h Virginia h 22046 h 703-532-1000 www.knwlgy.cm Fax 703-532-1001
Micrsft Windws Server 2003 Envirnment fr an MCSE n Windws 2000 Curse N. MS2297 5 Days Install Active Directry by using the advanced features f the Active Directry Installatin Wizard. Install and cnfigure DNS. Implement a cnditinal frwarder. Create stub znes. Ensure high availability n the _MSDCS subdmain. Create a DNS frward lkup zne. Raise dmain and frest functinality. Create a new applicatin directry partitin. Set the replicatin scpe f a new applicatin directry partitin. MODULE 15: TROUBLESHOOTING TCP/IP, NAME RESOLUTION, AND GROUP POLICY This mdule gives students a hands-n pprtunity t experience new features f Windws Server 2003 and learn hw t use them t trublesht TCP/IP, name reslutin, and Grup Plicy. Diagnse and reslve issues related t DNS services. Trublesht Grup Plicy. Diagnse and reslve issues related t client cmputer cnfiguratin. Trublesht netwrk cnnectivity issues. MODULE 16: PLANNING AND IMPLEMENTING MULTIPLE FORESTS IN ACTIVE DIRECTORY This mdule asks students t plan and implement multiple frests in Active Directry by using the mdel f adding a new rganizatin t an existing cmpany. Students will implement crss-frest trust, manage user authenticatin, identify pssible security cncerns, and cme t understand hw t reslve naming cnflicts between tw frests. Evaluate the need fr security identifier (SID) filtering, selective authenticatin, reslving naming cnflicts, and ruting name suffixes in a multi-frest envirnment. Establish frest trusts. MODULE 17: USING GROUP POLICY IN WINDOWS SERVER 2003 TO DEPLOY AND RESTRICT SOFTWARE This mdule gives students a hands-n pprtunity t experience new features f Windws Server 2003 pertaining t Grup Plicy and t learn hw they can use it t deply and restrict sftware. List reasns fr cntrlling a cmputer user s envirnment. Create a sftware restrictin plicy. Deply sftware s that an applicatin is cmpletely installed at user lgn. 105 West Brad Street h Falls Church h Virginia h 22046 h 703-532-1000 www.knwlgy.cm Fax 703-532-1001
Micrsft Windws Server 2003 Envirnment fr an MCSE n Windws 2000 Curse N. MS2297 5 Days Use Windws Management Instrumentatin (WMI) filters t restrict the applicatin f Grup Plicy bjects (GPOs). MODULE 18: USING GROUP POLICY IN WINDOWS SERVER 2003 TO SET ADVANCED SECURITY SETTINGS This mdule gives students a hands-n pprtunity t experience new features f Windws Server 2003 and t learn hw t use Grup Plicy t implement advanced security settings. Cnfigure wireless netwrk settings. Cnfigure a user envirnment. Apply Encrypting File System (EFS) enhancements. MODULE 19: PLANNING AND IMPLEMENTING SECURE ROUTING AND REMOTE ACCESS This mdule gives students a hands-n pprtunity t experience new features f Windws Server 2003 and t learn hw t use them in implementing Ruting and Remte Access. Plan, implement, and maintain Ruting and Remte Access. Create and implement an Internet Prtcl Security (IPSec) plicy. Cnfigure IPSec by using Netsh. Set up IPSec plicy mnitring. 105 West Brad Street h Falls Church h Virginia h 22046 h 703-532-1000 www.knwlgy.cm Fax 703-532-1001