Network System Management. Creating an Active Directory Domain

Similar documents
How to Install the Active Directory Domain Services (AD DS) Role in Windows Server 2008 R2 and Promote a Server to a Domain Controller

Creating a Domain Tree

How to. Install Active Directory. Server 2003

Searching for accepting?

How do I install Active Directory on my Windows Server 2003 server?

Introduction to Active Directory Services

Installing Active Directory

Creating a New Domain Tree in the Forest

Installation of MicroSoft Active Directory

Setting Up a Backup Domain Controller

Setting up Active Directory Domain Services

How to install Small Business Server 2003 in an existing Active

In the Active Directory Domain Services Window, click Active Directory Domain Services.

Active Directory Infrastructure Design Document

SETTING UP ACTIVE DIRECTORY (AD) ON WINDOWS 2008 FOR EROOM

Faculty Details. : Assistant Professor ( OG. ),Assistant Professor (OG) Course Details. : B. Tech. Batch : : Information Technology

Installing Active Directory on Windows Server 2008 by Daniel Petri - January 8, 2009 Printer Friendly Version

Active Directory integration with CloudByte ElastiStor

Introduction. Versions Used Windows Server 2003

AD RMS Step-by-Step Guide

The Windows Server 2003 Environment. Introduction. Computer Roles. Introduction to Administering Accounts and Resources. Lab 2

9. Which is the command used to remove active directory from a domain controller? Answer: Dcpromo /forceremoval

Creating the Conceptual Design by Gathering and Analyzing Business and Technical Requirements

Windows 2003 Server Installation Guide

Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

istorage Server: High-Availability iscsi SAN for Windows Server 2008 & Hyper-V Clustering

Contents Introduction... 3 Introduction to Active Directory Services... 4 Installing and Configuring Active Directory Services...

How To Install And Configure Windows Server 2003 On A Student Computer

Appendix B Lab Setup Guide

Active Directory Installation on Windows Server 2012

Client Server Networks

Deploying Windows Streaming Media Servers NLB Cluster and metasan

Step By Step Guide: Demonstrate DirectAccess in a Test Lab

Course: WIN310. Student Lab Setup Guide. Summer Microsoft Windows Server 2003 Network Infrastructure (70-291)

How to Configure Active Directory based User Authentication

Configuring and Troubleshooting Windows 2008 Active Directory Domain Services

Step-By-Step Guide to Deploying Lync Server 2010 Enterprise Edition

Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Installing Windows Rights Management Services with Service Pack 2 Step-by- Step Guide

SharePoint Server for Business Intelligence

Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Configuring Windows Server 2008 Network Infrastructure

SRT210 Lab 01 Active Directory

Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Internetworking Microsoft TCP/IP on Microsoft Windows NT 4.0

NETASQ SSO Agent Installation and deployment

6425C - Windows Server 2008 R2 Active Directory Domain Services

Network Configuration Settings

Configuring and Troubleshooting Windows Server 2008 Active Directory Domain MOC 6425

MS-6425C - Configuring Windows Server 2008 Active Directory Domain Services

Step-by-Step Guide for Creating and Testing Connection Manager Profiles in a Test Lab

6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Step-by-Step Guide for Setting Up VPN-based Remote Access in a Test Lab

Install MS SQL Server 2012 Express Edition

Use 802.1x EAP-TLS or PEAP-MS-CHAP v2 with Microsoft Windows Server 2003 to Make a Secure Network

istorage Server: High Availability iscsi SAN for Windows Server 2012 Cluster

How To - Configure Virtual Host using FQDN How To Configure Virtual Host using FQDN

Course 6425C: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Designing and Implementing a Server Infrastructure

ILTA HAND 6B. Upgrading and Deploying. Windows Server In the Legal Environment

Click Studios. Passwordstate. Installation Instructions

VMware and VSS: Application Backup and Recovery

Implementing Microsoft Windows Server Failover Clustering (WSFC) and SQL Server 2012 AlwaysOn Availability Groups in the AWS Cloud

Designing and Implementing a Server Infrastructure

NE-6425C Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services

Designing and Implementing a Server Infrastructure

COURSE 20413C: DESIGNING AND IMPLEMENTING A SERVER INFRASTRUCTURE

Designing and Implementing a Server Infrastructure

How To - Implement Clientless Single Sign On Authentication in Single Active Directory Domain Controller Environment

MCSE Core exams (Networking) One Client OS Exam. Core Exams (6 Exams Required)

Designing and Implementing a Server Infrastructure 20413C; 5 days, Instructor-led

Designing and Implementing a Server Infrastructure

Course 20413: Designing and Implementing a Server Infrastructure

GlobalSCAPE DMZ Gateway, v1. User Guide

Designing and Implementing a Server Infrastructure

Designing and Implementing a Server Infrastructure

Course 6425C: Five days

Desingning and Implementing a Server Infrastructure

Module 2: Implementing an Active Directory Forest and Domain Structure

Lab 3-3 Installing Active Directory

Fundamentals of Windows Server 2008 Network and Applications Infrastructure

Implementing and Supporting Microsoft Windows XP Professional

Where can I install GFI EventsManager on my network?

Windows Server 2008 R2 Initial Configuration Tasks

MS 20413A: Designing and Implementing a Server Infrastructure

Planning for Windows Server 2008 Servers

PineApp Surf-SeCure Quick

This article describes a detailed configuration example that demonstrates how to configure Cyberoam to provide the access of internal resources.

MOC 6436A: Designing Active Directory Infrastructure and Services in Windows Server 2008

Migrating MSDE to Microsoft SQL 2008 R2 Express

Transcription:

Network System Management Creating an Active Directory Domain

Objectives Identify the procedures involved in the promotion of a stand-alone Windows Server to an active directory services (ADS) domain controller (DC) Planning Environment Preliminary steps Best practices Classroom Page 2

Planning Is this the first domain controller? What is the existing network environment? Is this an Intranet, Extranet, or part of your DMZ? Intranet = Internet based technologies used within your LAN. Ex: A web server only available within your offices Extranet = Private, restricted web page only available to your business partners DMZ = demilitarized zone (see next slide) Page 3

DMZ = demilitarized zone Planning Standard Configuration all inbound ports on firewall are closed protecting the LAN Page 4

DMZ = demilitarized zone Planning Ports on firewall open to DMZ systems: Web server port 80, etc. Page 5

Planning DMZ = demilitarized zone Best practice: outside firewall with open ports to DMZ systems, inside firewall with closed ports Page 6

Preliminary Steps Install the operating system Install the necessary service packs and updates - Not required in the classroom Install and connect all hardware devices and peripherals Page 7

Preliminary Steps (cont.) Connect to your network and configure the TCP/IP protocol Dynamic or Static IP? - In the classroom: disable IP v6 as it is not part of our network configuration Page 8

Active Directory Concepts What is an AD DS Domain Logically structured organization of objects - Network environment - Share common directory services database Has unique name Organized in levels Administered as a unit with common rules and procedures Provides administrative benefits Page 9

Active Directory Concepts (cont.) AD Domain Trees and Forests Page 10

Active Directory Concepts (cont.) AD Domain Trees and Forests Tree - Hierarchical collection of domains - Share contiguous DNS namespace Forest - Collection of trees - Do not share contiguous DNS naming structure Page 11

Active Directory Concepts (cont.) AD Domain Trees and Forests Reasons for creating complex trees and forests: - Geographic separation - Different password policies. - Large number of objects - Replication performance Forest root domain First domain defined when you promote your first Windows server to a domain controller (DC) - This is what we are doing in the classroom Page 12

Adding a Role Add a Role Page 13

Adding a Role Before You Begin Page 14

Adding a Role Select Server Roles Page 15

Adding a Role Active Directory Domain Services Role Page 16

Things to Note Adding a Role Page 17

Adding a Role Confirm Installation Selections Page 18

Adding a Role Installation Progress Page 19

Adding a Role Installation Results Click on Close this wizard and launch the Active Directory Services Installation Wizard (dcpromo.exe) Page 20

DCPROMO ADDS Installation Wizard Which mode should we run? Page 21

DCPROMO Advance Mode Installation Page 22

DCPROMO Operating System Compatibility Legacy systems Page 23

DCPROMO Choose a Deployment Configuration In the classroom, create a new domain in a new forest the root domain Page 24

DCPROMO Name the Forest Root Domain What is an Internet FQDN? Page 25

DCPROMO Prior to 2007 Microsoft said: We recommend using the extension.local for the full DNS name for your internal domain. Because.local is not registered for use on the Internet, your internal domain and your public Internet domain (such as.com or.net) remain separate. This is more secure and avoids name resolution issues. Quoted from the Microsoft Windows Small Business Server 2003, R2, server promotion wizard. Page 26

DCPROMO As of 2007 Microsoft recommends: Use your company s Internet FQDN and add a level to it. Ex: internal.widgetworks.com Page 27

DCPROMO Checking the Network for name conflicts Page 28

DCPROMO NetBIOS domain name Name that is used by legacy clients What you see in network neighborhood Limited to 15 characters Accept the default Page 29

DCPROMO Set Forest Functional level In the classroom accept the default Page 30

DCPROMO Set Domain Functional level In the classroom accept the default Page 31

DCPROMO Additional Domain Controller Options DNS is tightly integrated into Active Directory What is the parent zone? Page 32

DCPROMO Location for Database, Log Files, and Sysvol The location where the directory services database files are stored For performance and reliability And backup In the classroom accept the default Page 33

DCPROMO Restore mode password Used when demoting or when restoring ADS Best practice different from administrator In the classroom know what it is Required when Demoting a DC Page 34

DCPROMO Summary Next Page 35

DCPROMO Configuring active directory domain services Patience Page 36

DCPROMO Complete Page 37

DCPROMO Test your server configuration after rebooting Especially your DNS server configuration DNS is tightly integrated into ADS IPCONFIG /ALL As a result of the DCPROMO wizard installing DNS Your DNS IP should be 127.0.0.1 - Which indicates the loopback IP, or localhost Page 38

DCPROMO Test your server configuration after rebooting Page 39