10969-Active Directory Services with Windows Server (5 days)
Course Duration: 5 Days
About This Course
Audience Profile
- AD DS administrators who are looking to further develop skills inthe latest Access and Information Protection technologies with Windows Server 2012 and Windows Server 2012 R2.
- System or Infrastructure administrators with general AD DS experience and knowledge who are looking to build upon that core knowledge and cross-train into advancedActive Directory technologiesin Windows Server 2012 and Windows Server 2012 R2
- IT Professionalswho have taken the 10967A: Fundamentals of a Windows Server Infrastructure course and are looking to build upon that Active Directory knowledge.
At Course Completion
- Understandavailable solutions for identity management and be able to address scenarios with appropriate solutions.
- Deploy and administer AD DS in Windows Server 2012.
- Secure AD DS deployment.
- Monitor, troubleshoot and establish business continuity for AD DS services.
- Implement AD DS sites, configure and manage replication
- Implement and manage GPOs.
- Manage user settings with GPOs.
- Secure and provision data access usingtechnologies such as Dynamic Access Control, Work Folders and Workplace Join
- Implement certification authority (CA) hierarchy with AD CS and how to manage CAs.
- Implement certificates.
- Implement and manage AD RMS.
- Implement and administer AD FS.
- Implement Windows Azure Active Directory.
- Implement and administer Active Directory Lightweight Directory Services (AD LDS).
Course OutlineModule 1: Overview of Access and Information Protection
Lessons
- Introduction to Access and Information Protection Solutions in Business
- Overview of AIP Solutions in Windows Server2012
- Overview of Forefront Identity Manager2010R2
Lab : Choosing an Appropriate Access and Information Protection Management Solution
- Analyze the Lab Scenario and Identify Business Requirements
- Propose a Solution
- Describe Access and Information Protection solutions in business.
- Describe Access and Information Protection solutions in Windows Server2012.
- Describe Microsoft Forefront Identity Manager (FIM) 2010R2.
Module 2: Advanced Deployment and Administration of AD DS
Lessons
- Deploying AD DS
- Deploying and Cloning Virtual Domain Controllers
- Deploying Domain Controllers in Windows Azure
- Administering AD DS
Lab : Deploying and Administering AD DS
- Deploying AD DS
- Deploying Domain Controller by Performing Domain Controller Cloning
- Administering AD DS
- Describe and perform various deployment techniques for AD DS.
- Describe virtual domain controller deployment considerations.
- Explain how new technologies in Windows Server2012 support virtual domain controllers.
- Describe Domain Controller cloning.
- Implement AD DS using the tools provided in Windows Server2012.
Module 3: Securing Active Directory Domain Services
Lessons
- Securing Domain Controllers
- Implementing Password and Lockout Policies
- Audit Authentication
Lab : Securing Active Directory Domain Services
- Implementing Security Policies for Accounts and Passwords and Administrative Groups
- Deploying and Configuring a RODC
- Understand the importance of securing domain controllers.
- Describe the benefit of read-only domain controllers (RODCs).
- Explain and implement password and account lockout policies.
- Implement audit authentication.
Module 4: Monitoring, Managing, and Recovering AD DS
Lessons
- Monitoring AD DS
- Managing the AD DS Database
- AD DS Backup and Recovery Options for AD°DS and Other Identity and Access Solutions
Lab : Monitoring AD DS
- Monitoring AD DS with Performance Monitor
Lab : Recovering Objects in AD DS
- Backing up and Restoring AD DS
- Recovering Objects in AD DS
- Monitor AD DS.
- Manage the AD DS database.
- Recover objects from the AD DS database.
Module 5: Implementing and Administering AD DS Sites and Replication
Lessons
- Overview of AD DS Replication
- Configuring AD DS Sites
- Configuring and Monitoring AD DS Replication
Lab : Implementing AD DS Sites and Replication
- Creating Subnets and Sites
- Deploying an Additional Domain Controller
- Configuring AD DS Replication
- Troubleshooting AD DS Replication
- Describe AD DS replication.
- Configure AD DS sites.
- Configure and monitor ADDS replication.
Module 6: Implementing Group PolicyThis module describes Group Policy, how it works, and how best to implement it in your organization.Lessons
- Introducing Group Policy
- Implementing and Administering GPOs
- Group Policy Scope and Group Policy Processing
- Troubleshooting the Application of GPOs
Lab : Implementing and Troubleshooting a Group Policy Infrastructure
- Creating and Configuring GPOs
- Managing GPO Scope
- Verifying GPO Application
- Managing GPOs
- Troubleshooting GPOs
- Describe Group Policy.
- Implement and administer GPOs.
- Describe Group Policy scope and Group Policy processing.
- Troubleshoot the application of GPOs.
Module 7: Managing User Settings with Group Policy
Lessons
- Implementing Administrative Templates
- Configuring Folder Redirection and Scripts
- Configuring Group Policy Preferences
Lab : Managing User Desktops with Group Policy
- Implementing Settings by Using Group Policy Preferences
- Configuring Folder Redirection
- Implement Administrative Templates.
- Configure Folder Redirection and scripts.
- Configure Group Policy preferences.
Module 8: Implementing Secure Shared File AccessThis module explains how to use Dynamic Access Control (DAC) and Work Folders and how to plan and implement these technologies.Lessons
- Overview of DAC
- Implementing DAC Components
- Implementing DAC for Access Control
- Implementing Access Denied Assistance
- Implementing and Managing Work Folders
- Implementing Workplace Join
Lab : Implementing Secure File Access
- Preparing for DAC Deployment
- Implementing DAC
- Validating and Remediating DAC
- Implementing Work Folders
- Describe DAC.
- Implement DAC components.
- Implement DAC for access control.
- Implement access-denied assistance.
- Implement and manage Work Folders.
- Implement Workplace Join.
Module 9: Deploying and Managing Active Directory Certificate ServicesThis module explain how to deploy and manage CAs.Lessons
- Deploying CAs
- Administering CAs
- Troubleshooting, Maintaining, and Monitoring CAs
Lab : Deploying and Configuring a Two-Tier CA Hierarchy
- Deploying an Offline Root CA
- Deploying an Enterprise Subordinate CA
- Deploy CAs.
- Administer CAs.
- Troubleshoot, maintain, and monitor CAs.
Module 10: Deploying and Managing Certificates
Lessons
- Deploying and Managing Certificate Templates
- Managing Certificates Deployment, Revocation and Recovery
- Using Certificates in a Business Environment
- Implementing and Managing Smart Cards
Lab : Deploying and Using Certificates
- Configuring Certificate Templates
- Enrolling and Using Certificates
- Configuring and Implementing Key Recovery
- Deploy and manage certificate templates.
- Manage certificates deployment, revocation and recovery.
- Use certificates in business environments.
- Implement and manage smart cards.
Module 11: Implementing and Administering Active Directory Rights Management Services
Lessons
- Overview of ADRMS
- Deploying and Managing an ADRMS Infrastructure
- Configuring ADRMS Content Protection
- Configuring External Access to ADRMS
Lab : Implementing AD RMS Infrastructure
- Installing and Configure ADRMS
- Configuring ADRMS Templates
- Using ADRMS on Clients
- Configuring ADRMS Monitoring and Reporting
- Describe ADRMS.
- Explain how to deploy and manage an ADRMS infrastructure.
- Explain how to configure ADRMS content protection.
- Explain how to configure external access to ADRMS.
Module 12: Implementing and Administering AD FS
Lessons
- Overview of AD FS
- Deploying AD FS
- Implementing AD FS for a Single Organization
- Deploying AD FS in a Business to Business Federation Scenario
- Extending AD FS to External Clients
Lab : Implementing AD FS
- Installing and Configuring AD FS
- Configuring an Internal Application for AD FS
- Configuring AD FS for a Federated Business Partner
- Configuring a Web Application Proxy
- Describe AD FS.
-
Explain how to configure the AD FS prerequisites, and deploy AD FSservices.
- Describe how to implement AD FS for a single organization.
- Deploy AD FS in a business-to-business federation scenario.
- Deploy the Web Application Proxy.
Module 13: Implementing Windows Azure Active Directory
Lessons
- Overview of Windows Azure Active Directory
- Administering Windows Azure Active Directory
Lab : Implementing Azure AD
- Planning to Implement Azure AD
- Administering Azure AD
- Describe Windows Azure AD.
- Administer Azure AD.
Module 14: Implementing and Administering AD LDS
Lessons
- Overview of ADLDS
- Deploying ADLDS
- Configuring ADLDS Instances and Partitions
- Configuring ADLDS Replication
Lab : Implementing and Administering AD LDS
- Configuring ADLDS Instances and Partitions
- Configuring ADLDS Replication
- Describe ADLDS.
- Explain how to deploy ADLDS.
- Explain how to configure ADLDS instances and partitions.
- Explain how to configure ADLDS replication.
- Experience working with AD DS.
- Experience working in a Windows Server infrastructure enterprise environment.
- Experience working with and troubleshooting core networking infrastructure technologies such as name resolution, IP Addressing, Domain Name System (DNS) and Dynamic Host Configuration Protocol (DHCP).
- Experience with Hyper-V and Server Virtualization concepts.
- An awareness and understanding of general security best practices.
- Experience working hands on with Windows Client operating systems such as Windows Vista, Windows 7 or Windows 8.