Active Directory Domain Services
Active Directory Domain Services
Introduction
What are the logical components?
Partition || Schema || Domain || Domain tree || Forest || OU || Container
What are the physical components?
Domain controller || Data store || Global catalog server || Read-only domain controller (RODC) || Site || Subnet
What are managed service accounts?
What are group managed service accounts?
What are delegated managed service accounts?
What are group objects?
Group types
Security || Distribution
Group scopes
Local || Domain-local || Global || Universal
What are computer objects?
Computers container
What is an AD DS forest?
The following objects exist in the forest root domain:
The schema master role.
The domain naming master role.
The Enterprise Admins group.
The Schema Admins group.
The following objects exist in each domain (including the forest root):
The RID master role.
The Infrastructure master role.
The PDC emulator master role.
The Domain Admins group.
What is an AD DS domain?
User accounts || Computer accounts || Groups
An AD DS domain provides: Authentication, Authorization
What are trust relationships?
Parent and child || Tree-root || External || Realm || Forest || Shortcut
Why create OUs?
What are the generic containers?
Use a hierarchical design
Active Directory Administrative Center
Windows Admin Center
Remote Server Administration Tools
Other AD DS management tools
Module assessment
Summary
2️⃣ Manage AD DS domain controllers and FSMO roles
Introduction
Deploy AD DS domain controllers
Restoring deleted AD DS objects by using Recycle Bin
AD DS backup and restore
Nonauthoritative restore
Authoritative restore
Manage the AD DS Global Catalog role
Manage AD DS operations masters
What are AD DS operations masters?
Schema master
Domain-naming master
Infrastructure master
RID master
PDC emulator master
Manage AD DS schema
Module assessment
Summary
3️⃣ Implement Group Policy Objects
Introduction
What is Group Policy?
What are GPOs?
What are starter GPOs?
Group Policy follows the following hierarchical processing order:
Local GPOs.
Site-linked GPOs.
Domain-linked GPOs.
OU-linked GPOs.
Child OU-linked GPOs.
Define domain-based GPOs
Create and configure a domain-based GPO
What are Group Policy containers and templates?
The Group Policy container
The Group Policy template
Define administrative templates
Module assessment
Summary
4️⃣ Manage advanced features of AD DS
Introduction
Create trust relationships
Implement ESAE forests
Repadmin.exe
Dcdiag.exe
Windows PowerShell AD DS replication cmdlets
Create custom AD DS partitions
Module assessment
Summary
5️⃣ Implement and manage Active Directory Certificate Services
Introduction
Explore the fundamentals of PKI and AD CS
Design and implement AD CS
Manage certificate enrollment
Manage certificate revocation
Manage certificate trusts
Module assessment
Summary