LearnKey's Windows Server 2003 Active Directory Infrastructure with Dale Brice-Nash Syllabus Course Description 5 Sessions - 15 Hours of Interactive Training The Windows Server 2003 Active Directory Infrastructure course from LearnKey prepares you with the knowledge and skills needed to plan, implement and maintain a Windows Server 2003 Active Directory infrastructure. Expert instructor Dale Brice-Nash demonstrates how to set up and maintain Active Directory structure and topology, and how to plan and implement user, computer, and group security. LearnKey certification courses meet or exceed exam objectives. At the conclusion of the course, you will understand the skills required to manage and maintain an Active Directory infrastructure within a Windows Server 2003 environment, and be prepared to pass MCP exam #70-294. Expert Dale Brice-Nash has been teaching about information security principles for more than six years. His consulting clients include Fortune 500 companies and others with enterprise networks of more than 10,000 supported users. Brice-Nash's areas of expertise include vulnerability assessment, intrusion detection and incident response handling. Among the many IT certifications he holds are Security+, Certified Ethical Hacker, MCSE, MCT, CCNA, Citrix Certified Enterprise Administrator, and Citrix Certified Instructor. Exams Offered Through the Curriculum Labs: Each Lab demonstrates the procedures learned in the Training Session and allows you to perform the tasks yourself. If you make an incorrect move, the challenge banner appears, giving you the option to try again. Testing Session: A Pre-Test and Post-Test are available to help you determine your goals and map your progress. These Testing Sessions determine your proficiency with the software application being taught. Testing formats include Simulations, True and False, Fill-in-the-Blank, Multiple Choice, and Keyboard Shortcuts. After each Testing Session, you can generate a performance-based progress report. You'll have immediate feedback to pinpoint your specific strengths and weaknesses. Assignments Each course session will have specific assignments to help supplement your training. These assignments include readings, interactive Tests, and discussions that will guide you through your study. As you complete the assignments and training, you will gain a broader perspective in your learning and the experience needed to pass your certification exam. Supporting Text MCSE Windows Server 2003 Active Directory Infrastructure Study Guide (Exam 70-294) Author: Dennis Suhanovs Publisher: Osborne / McGraw Hill ISBN: 0072223197
Curriculum Session 1 Section A: AD Introduction Objectives Continued Section B: AD Foundations & CIA Model Foundations Active Directory Directory Service in AD Directory Service Char. AD Interoperability CIA Model CIA Responsibility Section C: Logical & Physical Components AD Definitions Logical Components More Logical Components Logical Structure Physical Components Physical Structure Section D: FSMO Roles of AD Master Roles Understanding Schema Schema Master Schema Master Seizure Viewing Schema Schema User Class New User Attributes Role Transition Section E: Additional FSMO Roles of AD Domain Naming Master Domain Naming Seizure Domain Specific Masters Domain Naming Controls Domain Specific Controls Infrastructure Roles Section F: Uniqueness Rules & Global Catalog Uniqueness Rules Global Catalog Distinguished Name Relative Name Domain & Forest Summary Section G: Administrative Tools Create New User Object New User Password Change New User Object Windows Support Tools ADSI Edit NetBIOS Commands Session 2 Section A: DNS Concepts Installation AD Authentication DNS Components DNS & AD DNS Structure DNS Namespace DNS Types DNS Queries Section B: DNS Zone Types Zone Types Primary & Secondary Zone Transfers Stub Zone vs. Secondary Delegation & Integration Excumination & Identification Zone Identification Create & Integrate Section C: Installation Requirements Domains & Forests Checklist Preparation Operating Systems Information Required Section D: Installation Process Installation of AD Installation Upgrade ADPREP Forest ADPREP Domain Installation Specifics Installation Decisions Section E: AD Replica Add a Replica IFM IFM Rules Adding a Replica Section F: Validate Installation Validate Process Validate Tools Validate Steps Validation SYSVOL & SRV Records Section G: Post Installation Process Post Checklist Zone Integration New Group Policy SMB Signing Policy Session 3 Section A: Forest & Domain Levels Forest Functional Levels Domain Functional Levels Enhancements Raising Section B: Trust & Decommissioning a DC Trust Relationships Relationship Types Create a Trust Trust Direction Trust Password Complete Trust Decommissioning Steps Section C: Organizational Unit Structure OU OU's Role in AD OU Phases OU Hierarchy Organizational Factors Guidelines Creating OU's Using DS add Section D: OU Delegation Delegation of Control Security & Permissions Section E: Implementing Users & Groups Implementing Concepts SID, RID, & GUID SIDHistory SIDHistory Tool Exploring SID & RID Section F: User Acct & Group Types Account Types Group Types & Scopes Group Scopes Universal Groups Enterprise Model Single Domain Forest Creating & Managing User Admin Tools
Session 4 Section A: UPN & Password Policies UPN Suffixes Alternate UPN Password Strategies Securing Auth Password & Auth Section B: Group Policy Objects in AD GPO Settings GPO Concepts GPO Application GPO Planning Section C: Create, Configure, & Manage GPOs Exploring GPO's User Settings Section D: Tools & Delegating GPO GPO Tools Using GPO Tools Delegate Control Validate & Test Section E: Software Deployment with GPOs Windows Installer Software Life Cycle Deployment Process Assignment vs. Publishing Deployment Section F: Software Mgmt & Removal with GPOs Mgmt Mgmt Options Removing Software Section G: Replication in AD Sites & Replication Replication Notification Update Notification Replication Process Replication Conflicts Session 5 Section A: Security Settings GPO Editor Smart Card Auth User Certificates IP Security Policies Local Group Policy Section B: Highly Available DNS DNS Role DNS in AD Global Catalog Servers Enable Global Catalog Universal Group Caching DC Best Capacity Planning Section C: FSMO Rules Schema & Domain Naming PDC Emulator & RID Infrastructure Master Transfer Roles Seizing Roles ntdsutil Section D: Backup, Analysis, & Monitor NTBackup Backing up AD Restoring AD Restore Process Replication Tools Performance Analysis Replication Monitor Section E: Directory Serv Models & Bus Req Directory Serv Models Project Life Cycle AD Project Documents Resources Section H: Intrasite & Intersite in AD Sites in AD Intrasite Intersite Intersite Replication Create Site Intrasite Replication
Objectives Planning and Implementing an Active Directory Infrastructure Managing and Maintaining an Active Directory Infrastructure Planning and Implementing User, Computer, and Group Strategies Plan a strategy for placing global catalog servers. Manage an Active Directory forest and domain structure. Plan a security group strategy. Evaluate network traffic considerations when placing global catalog servers. Evaluate the need to enable universal group caching. Plan flexible operations master role placement. Plan for business continuity of operations master roles. Identify operations master role dependencies. Implement an Active Directory directory service forest and domain structure. Create the forest root domain. Create a child domain. Create and configure Application Data Partitions. Install and configure an Active Directory domain controller. Set an Active Directory forest and domain functional level based on requirements. Establish trust relationships. Types of trust relationships might include external trusts, shortcut trusts, and cross-forest trusts. Manage trust relationships. Manage schema modifications. Add or remove a UPN suffix. Manage an Active Directory site. Configure replication schedules. Configure site link costs. Configure site boundaries. Monitor Active Directory replication failures. Tools might include Replication Monitor, Event Viewer, and support tools. Monitor Active Directory replication. Monitor File Replication service (FRS) replication. Restore Active Directory directory services. Perform an authoritative restore operation. Perform a nonauthoritative restore operation. Plan a user authentication strategy. Plan a smart card authentication strategy. Create a password policy for domain users. Plan an OU structure. Analyze the administrative requirements for an OU. Analyze the Group Policy requirements for an OU structure. Implement an OU structure. Create an OU. Delegate permissions for an OU to a user or to a security group. Move objects within an OU hierarchy. Implement an Active Directory site topology. Configure site links. Configure preferred bridgehead servers. Plan an administrative delegation strategy. Troubleshoot Active Directory. related to Active Directory replication. related to operations master role failure. related to the Active Directory database. Plan an organizational unit (OU) structure based on delegation requirements. Plan a security group hierarchy based on delegation requirements.
Planning and Implementing Group Policy Plan Group Policy strategy. Plan a Group Policy strategy by using Resultant Set of Policy (RSoP) Planning mode. Plan a strategy for configuring the user environment by using Group Plan a strategy for configuring the computer environment by using Group Managing and Maintaining Group Policy Troubleshoot issues related to Group Policy application. deployment. Tools might include RSoP and the gpresult command. Maintain installed software by using Group Distribute updates to software distributed by Group Configure automatic updates for network clients by using Group Configure the user environment by using Group Distribute software by using Group Automatically enroll user certificates by using Group Redirect folders by using Group Configure user security settings by using Group Troubleshoot the application of Group Policy security settings. Tools might include RSoP and the gpresult command. Deploy a computer environment by using Group Distribute software by using Group Automatically enroll computer certificates by using Group Configure computer security settings by using Group LearnKey, Inc.