New Horizons Computer Learning Center 410-597-9722
6425B: Configuring and Troubleshooting Windows Server 2008 Active Directory Domain Services
Course Length: 5 Days
Overview:
This five-day instructor-led course provides to teach Active Directory Technology Specialists with the knowledge and skills to configure Active Directory Domain Services in a distributed environment, implement Group Policies, perform backup and restore, and monitor and troubleshoot Active Directory related issues.
Prerequisites:
A+ Certification
Network+ Certification
Course 6424: Fundamentals of Windows Server 2008 Active Directory
Backup and Recovery
Course Objectives:
Upon successful completion of this course, students will be able to:
- Implement and configure Active Directory domain services in their enterprise environment
Course Content
Lesson 1: Introducing Active Directory Domain Services (AD DS)
- Introducing Active Directory, Identity, and access
- Active Directory Components and Concepts
- Install Active Directory Domain Services
- Extend IDA with Active Directory Services
- Lab : Install an AD DS DC to Create a Single Domain Forest
- Exercise 1: Perform Post-Installation Configuration Tasks
- Exercise 2: Install a New Windows Server 2008 Forest with the Windows Interface
Lesson 2: Secure and Efficient Administration of Active Directory
- Work with Active Directory Snap-ins
- Custom Consoles and Least Privilege
- Find Objects in Active Directory
- Use DS Commands to Administer Active Directory
- Lab : Create and Run a Custom Administrative Console
- Exercise 1: Perform Basic Administrative Tasks Using the Active Directory Users and Computers Snap-in
- Exercise 2: Create a Custom Active Directory Administrative Console
- Exercise 3: Perform Administrative Tasks with Least Privilege, Run as Administrator and User Account Control
- Exercise 4: (Advanced Optional) Advanced MMC Customization and Remote Administration
- Lab : Find Objects in Active Directory
- Exercise 1: Finding Objects in Active Directory
- Exercise 2: Using Saved Queries
- Exercise 3: (Advanced Optional) Explore Saved Queries
- Lab : Use DS Commands to Administer Active Directory
Lesson 3: Manage Users
- Create and Administer User Accounts
- Configure User Object Attributes
- Automate User Account Creation
- Lab : Create and Administer User Accounts
- Exercise 1: Create User Accounts
- Exercise 2: Administer User Accounts
- Exercise 3: (Advanced Optional) Explore User Account Name Attributes
- Lab : Configure User Object Attributes
- Exercise 1: Examine User Object Attirbutes
- Exercise 2: Manage User Object Attributes
- Exercise 3: Create Users from a Template
- Exercise 4: (Advanced Optional) Create Users with a Batch File
- Lab : Automate User Account Creation
- Exercise 1: Export and Import Users with CSVDE
Lesson 4: Manage Groups
- Manage an Enterprise with Groups
- Administer Groups
- Best Practices for Group Management
- Lab : Administer Groups
- Exercise 1: Implement Role-Based Management Using Groups
- Exercise 2: Manage Group Membership from the Command Line
- Exercise 3: (Advanced Optional) Explore Group Membership Reporting Tools
- Exercise 4: (Advanced Optional) Understand “Account Unknown” Permissions
- Lab : Best Practices for Group Management
- Exercise 1: Implement Best Practices for Group Management
Lesson 5: Support Computer Accounts
- Create Computers and Join the Domain
- Administer Computer Objects and Accounts
- Lab : Create Computers and Join the Domain
- Exercise 1: Join a Computer to the Domain with the Windows Interface
- Exercise 2: Securing Computer Joins
- Exercise 3: Managing Computer Account Creation with Best Practices
- Lab : Administer Computer Objects and Accounts
- Exercise 1: Administer Computer Objects through their Lifecycle
- Exercise 2: Administer and Troubleshoot Computer Accounts
Lesson 6: Implement a Group Policy Infrastructure
- Understand Group Policy
- Implement a Group Policy
- Explore Group Policy Settings and Features
- Manage Group Policy Scope
- Group Policy Processing
- Troubleshoot Policy Application
- Lab : Implement Group Policy
- Create, Edit and Link GPOs
- Lab : Explore Group Policy Settings and Features
- Exercise 1: Use Filtering and Commenting
- Exercise 2: Mange Administrative Templates
- Lab : Manage Group Policy Scope
- Exercise 1: Configure GPO Scope with Links
- Exercise 2: Configure GPO Scope with Filtering
- Exercise 3: Configure Loopback Processing
- Lab : Troubleshoot Policy Application
- Exercise 1: Perform RSoP Analysis
- Exercise 2: using the Group Policy Results Wizard
- Exercise 3: View Policy Events
Lesson 7: Manage Enterprise Security and Configuration with Group Policy Settings
- Delegate the Support of Computers
- Manage Security Settings
- Manage software with GPSI
- Auditing
- Lab : Delegate the Support of Computers
- Exercise 1: Configure the Membership of Administrators Using Restricted Groups Policies
- Lab : Manage Security Settings
- Exercise 1: Manage Local Security Settings
- Exercise 2: Create a Security Template
- Exercise 3: Use Security Configuration and Analysis
- Exercise 4: Use the Security Configuration Wizard
- Lab : Manage Software with GPSI
- Exercise 1: Deploy Software with GPSI
- Exercise 2: Upgrade Applications with GPSI
- Lab : Audit File System Access
- Exercise 1: Configure Permissions and Audit Settings
- Exercise 2: Configure Audit Policy
- Exercise 3: Examine Audit Events
Lesson 8: Secure Administration
- Delegate Administrative Permissions
- Audit Active Directory Change
- Lab : Delegate Administration
- Exercise 1: Delegate Permission to create and support User Accounts
- Exercise 2: View Delegated Permissions
- Exercise 3: Remove and Reset Permissions
- Lab : Audit Active Directory Changes
- Exercise 1: Audit Changes to Active Directory using Default Audit Policy
- Exercise 2: Audit Changes to Active Directory using Directory Service Changes auditing
Lesson 9: Improve the Security of Authentication in an Active Directory Domain Services (AD DS) Domain
- Configure Password and Lockout Policies
- Audit Authentication
- Configure Read-Only Domain Controllers
- Lab : Configure Password and Account Lockout Policies
- Exercise 1: Configure the Domain’s Password and Lockout Policies.
- Exercise 2: Configure Fine-Grained Password Policy
- Lab : Audit Authentication
- Exercise 1: Audit Authentication
- Lab : Configure Read-Only Domain Controllers
- Exercise 1: Install RODC
- Exercise 2: Configure Password Replication Policy
- Exercise 3: Manage Credential Caching
Lesson 10: Configure Domain Name System (DNS)
- Review DNS Concepts, Components, and Processes
- Install and Configure DNS Server in an AD DS Domain
- AD DS,DNS, and Windows
- Advanced DNS Configuration and Administration
- Lab : Installing the DNS Service
- Exercise 1: Add the DNS Server Role
- Exercise 2: Configure Forward Lookup Zones and Resource Records
- Lab : Advanced Configuration of DNS
- Exercise 1: Enable Scavenging of DNS Zones
- Exercise 2: Create Reverse Lookup Zones
- Exercise 3: Explore Domain Controller Location
- Exercise 4: Configure Name Resolution for External Domain
Lesson 11: Administer Active Directory Domain Services (AD DS) Domain Controllers
- Domain Controller Installation Options
- Install a Server Core DC
- Manage Operations Masters
- Configure DFS Replication of SYSVOL Lab : Install Domain Controllers
- Exercise 1: Create an Additional DC with the Active Directory Domain Services Installation Wizard.
- Exercise 2: Add ad Domain Controller from the Command Line
- Exercise 3: Remove a Domain Controller
- Exercise 4: Create a Domain Controller from Installation Media
- Lab : Install a Server Core DC
- Exercise 1: Perform Post-Installation Configuration on Server Core
- Exercise 2: Create a Domain Controller with Server Core
- Lab : Transfer Operations Master Roles
- Exercise 1: Identify Operations Masters.
- Exercise 2: Transfer Operations Master Roles
- Lab : Configure DFS-R Replication of SYSVOL
- Exercise 1: Observe the Replication of SYSVOL
- Exercise 2: Prepare to Migrate to DFS-R
- Exercise 3: Migrate SYSVOL Replication to DFS-R
- Exercise 4: Verify DFS-R Replicaton of SYSVOL
Lesson 12: Manage Sites and Active Directory Replication
- Configure Sites and Subnets
- Configure the Global Catalog and Application Partitions
- Configure Replication
- Lab : Configure Sites and Subnets
- Exercise 1: Configure the Default Site
- Exercise 2: Create Additional Sites
- Lab : Configure the Global Catalog and Application Partitions
- Exercise 1: Configure a Global Catalog
- Exercise 2: Configure Universal Group Membership
- Exercise 3: Examine DNS and Application Directory Partitions
- Lab : Configure Replication
- Exercise 1: Create a Connection Object
- Exercise 2: Create Site Links
- Exercise 3: Move Domain Controllers into Sites
- Exercise 4: Designate a Preferred Bridgehead Server
- Exercise 5: Configure Intersite Replication
Lesson 13: Directory Service Continuity
- Monitor Active Directory
- Manage the Active Directory Database
- Back Up and Restore AD DS and Domain Controllers
- Lab : Monitor Active Directory
- Exercise 1: Monitor Real-Time Performance Using Task Manager and Resource Monitor
- Exercise 2: Use Reliability Monitor and Event Viewer to Identify Performance-Related Events
- Exercise 3: Monitor Events on Remote Computers with Event Subscriptions
- Exercise 4: Attach Tasks to Event Logs and Events
- Exercise 5: Monitor AD DS with Performance Monitor
- Exercise 6: Work with Data Collector Sets
- Lab : Manage the Active Directory Database
- Exercise 1: Perform Database Maintenance
- Exercise 2: Work with Snapshots and Recovering a Deleted User
- Lab : Backup and Restore Active Directory
- Exercise 1: Back up Active Directory
- Exercise 2: Restore Active Directory and a Deleted OU
Lesson 14: Manage Multiple Domains and Forests
- Configure Domain and Forest Functional Levels
- Manage Multiple Domains and Trust Relationships
- Lab : Raise Domain and Forest Functional Levels
- Exercise 1: Raise the Domain Functional Level to Windows Server 2003.
- Exercise 2: Raise the Forest Functional Level to Windows Server 2003
- Exercise 3: Raise the Domain Functional Level to Windows Server 2008
- Lab : Administer a Trust Relationships
- Exercise 1: Configure DNS
- Exercise 2: Create a Trust Relationship
- Exercise 3: Validate a Trust Relationship
- Exercise 4: Assign Permission to Trusted Identities
- Exercise 5: Implement Selective Authentication
6940 Tudsbury Road, Baltimore, MD 21244
P: 410-597-9722
www.nhbaltimore.com |