DUNS #: 07-985-4198 | Cage Code: 7F5V0 | NAICS Codes: 611310, 611420

Active Directory Services with Windows Server

5 Days

Price: $2625

Course Schedule

Overview

Get h&s-on instruction & practice administering Active Directory technologies in Windows Server 2012 & Windows Server 2012 R2 in this 5-day Microsoft Official Course. You will learn the skills you need to better manage & protect data access & information, simplify deployment & management of your identity infrastructure, & provide more secure access to data from virtually anywhere. You will learn how to configure some of the key features in Active Directory such as Active Directory Domain Services, Group Policy, Dynamic Access Control, Work Folders, Workplace Join, Certificate Services, Rights Management Services & Federation Services, as well as integrating your on premise environment with cloud based technologies such as Windows Azure Active Directory. As part of the learning experience, you will perform h&s-on exercises in a virtual lab environment. NOTE: This course is based on Windows Server 2012 & Windows Server 2012 R2. This course is designed for experienced IT professionals who support medium to large enterprises & have fundamental knowledge & experience administering Active Directory.


Objectives

After completing this course, students will be able to:

  • Underst& available solutions for identity management & be able to address scenarios with appropriate solutions.
  • Deploy & administer AD DS in Windows Server 2012.
  • Secure AD DS deployment.
  • Monitor, troubleshoot & establish business continuity for AD DS services.
  • Implement AD DS sites, configure & manage replication
  • Implement & manage GPOs.
  • Manage user settings with GPOs.
  • Secure & provision data access using technologies such as Dynamic Access Control, Work Folders & Workplace Join
  • Implement certification authority (CA) hierarchy with AD CS & how to manage CAs.
  • Implement certificates.
  • Implement & manage AD RMS.
  • Implement & administer AD FS.
  • Implement Windows Azure Active Directory.
  • Implement & administer Active Directory Lightweight Directory Services (AD LDS).

Audience

This course is intended for Information Technology (IT) professionals who have Active Directory Domain Services (AD DS) experience & are looking for a single course that will further develop knowledge & skills using Access & Information Protection technologies in Windows Server 2012 & Windows Server 2012 R2. This would typically include:

  • AD DS administrators who are looking to further develop skills in the latest Access & Information Protection technologies with Windows Server 2012 & Windows Server 2012 R2.
  • System or Infrastructure administrators with general AD DS experience & knowledge who are looking to build upon that core knowledge & cross-train into advanced Active Directory technologies in Windows Server 2012 & Windows Server 2012 R2
  • IT Professionals who have taken the 10967A: Fundamentals of a Windows Server Infrastructure course & are looking to build upon that Active Directory knowledge.

Prerequisites


Outline

Module 1: Overview of Access & Information Protection
This module explains Access & Information Protection (AIP) solutions from the business perspective & maps business problems to technical solutions.

Lessons

  • Introduction to Access & Information Protection Solutions in Business
  • Overview of AIP Solutions in Windows Server 2012
  • Overview of Forefront Identity Manager 2010 R2

Lab: Choosing an Appropriate Access & Information Protection Management Solution

  • Analyze the Lab Scenario & Identify Business Requirements
  • Propose a Solution

After completing this module, students will be able to:

  • Describe Access & Information Protection solutions in business.
  • Describe Access & Information Protection solutions in Windows Server 2012.
  • Describe Microsoft Forefront Identity Manager (FIM) 2010 R2.

Module 2: Advanced Deployment & Administration of AD DS
This module explains how to deploy AD DS remotely & describes the virtualization safeguards, cloning abilities & extending AD DS to the cloud.

Lessons

  • Deploying AD DS
  • Deploying & Cloning Virtual Domain Controllers
  • Deploying Domain Controllers in Windows Azure
  • Administering AD DS

Lab: Deploying & Administering AD DS

  • Deploying AD DS
  • Deploying Domain Controller by Performing Domain Controller Cloning
  • Administering AD DS

After completing this module, students will be able to:

  • Describe & perform various deployment techniques for AD DS.
  • Describe virtual domain controller deployment considerations.
  • Explain how new technologies in Windows Server 2012 support virtual domain controllers.
  • Describe Domain Controller cloning.
  • Implement AD DS using the tools provided in Windows Server 2012.

Module 3: Securing Active Directory Domain Services
This module describes the threats to domain controllers & what methods can be used to secure the AD DS & its domain controllers.

Lessons

  • Securing Domain Controllers
  • Implementing Password & Lockout Policies
  • Audit Authentication

Lab: Securing Active Directory Domain Services

  • Implementing Security Policies for Accounts & Passwords & Administrative Groups
  • Deploying & Configuring a RODC

After completing this module, students will be able to:

  • Underst& the importance of securing domain controllers.
  • Describe the benefit of read-only domain controllers (RODCs).
  • Explain & implement password & account lockout policies.
  • Implement audit authentication.

Module 4: Monitoring, Managing, & Recovering AD DS
This module explains how to use tools that help monitor performance in real time, & how to record performance over time to spot potential problems by observing performance trends. This module also explains how to optimize & protect your directory service & related identity & access solutions so that if a service does fail, you can restart it as quickly as possible.

Lessons

  • Monitoring AD DS
  • Managing the AD DS Database
  • AD DS Backup & Recovery Options for AD°DS & Other Identity & Access Solutions

Lab: Monitoring AD DS

  • Monitoring AD DS with Performance Monitor

Lab: Recovering Objects in AD DS

  • Backing up & Restoring AD DS
  • Recovering Objects in AD DS

After completing this module, students will be able to:

  • Monitor AD DS.
  • Manage the AD DS database.
  • Recover objects from the AD DS database.

Module 5: Implementing & Administering AD DS Sites & Replication
This module explains how AD DS replicates information between domain controllers within a single site & throughout multiple sites. This module also explains how to create multiple sites & how to monitor replication to help optimize AD DS replication & authentication traffic.

Lessons

  • Overview of AD DS Replication
  • Configuring AD DS Sites
  • Configuring & Monitoring AD DS Replication

Lab: Implementing AD DS Sites & Replication

  • Creating Subnets & Sites
  • Deploying an Additional Domain Controller
  • Configuring AD DS Replication
  • Troubleshooting AD DS Replication

After completing this module, students will be able to:

  • Describe AD DS replication.
  • Configure AD DS sites.
  • Configure & monitor AD DS replication.

Module 6: Implementing Group Policy
This module describes Group Policy, how it works, & how best to implement it in your organization.

Lessons

  • Introducing Group Policy
  • Implementing & Administering GPOs
  • Group Policy Scope & Group Policy Processing
  • Troubleshooting the Application of GPOs

Lab: Implementing & Troubleshooting a Group Policy Infrastructure

  • Creating & Configuring GPOs
  • Managing GPO Scope
  • Verifying GPO Application
  • Managing GPOs
  • Troubleshooting GPOs

After completing this module, students will be able to:

  • Describe Group Policy.
  • Implement & administer GPOs.
  • Describe Group Policy scope & Group Policy processing.
  • Troubleshoot the application of GPOs.

Module 7: Managing User Settings with Group Policy
This module describes how to how to use GPO Administrative Templates, Folder Redirection, & Group Policy features to configure users’ computer settings.

Lessons

  • Implementing Administrative Templates
  • Configuring Folder Redirection & Scripts
  • Configuring Group Policy Preferences

Lab: Managing User Desktops with Group Policy

  • Implementing Settings by Using Group Policy Preferences
  • Configuring Folder Redirection

After completing this module, students will be able to:

  • Implement Administrative Templates.
  • Configure Folder Redirection & scripts.
  • Configure Group Policy preferences.

Module 8: Implementing Secure Shared File Access
This module explains how to use Dynamic Access Control (DAC) & Work Folders & how to plan & implement these technologies.

Lessons

  • Overview of DAC
  • Implementing DAC Components
  • Implementing DAC for Access Control
  • Implementing Access Denied Assistance
  • Implementing & Managing Work Folders
  • Implementing Workplace Join

Lab: Implementing Secure File Access

  • Preparing for DAC Deployment
  • Implementing DAC
  • Validating & Remediating DAC
  • Implementing Work Folders

After completing this module, students will be able to:

  • Describe DAC.
  • Implement DAC components.
  • Implement DAC for access control.
  • Implement access-denied assistance.
  • Implement & manage Work Folders.
  • Implement Workplace Join.

Module 9: Deploying & Managing Active Directory Certificate Services
This module explain how to deploy & manage CAs.

Lessons

  • Deploying CAs
  • Administering CAs
  • Troubleshooting, Maintaining, & Monitoring CAs

Lab: Deploying & Configuring a Two-Tier CA Hierarchy

  • Deploying an Offline Root CA
  • Deploying an Enterprise Subordinate CA

After completing this module, students will be able to:

  • Deploy CAs.
  • Administer CAs.
  • Troubleshoot, maintain, & monitor CAs.

Module 10: Deploying & Managing Certificates
This module explains how to deploy & manage certificates, configure certificate templates & manage enrollment process. Also, this module describes certificate usage in business environments & about deployment & management of smart cards.

Lessons

  • Deploying & Managing Certificate Templates
  • Managing Certificates Deployment, Revocation & Recovery
  • Using Certificates in a Business Environment
  • Implementing & Managing Smart Cards

Lab: Deploying & Using Certificates

  • Configuring Certificate Templates
  • Enrolling & Using Certificates
  • Configuring & Implementing Key Recovery

After completing this module, students will be able to:

  • Deploy & manage certificate templates.
  • Manage certificates deployment, revocation & recovery.
  • Use certificates in business environments.
  • Implement & manage smart cards.

Module 11: Implementing & Administering Active Directory Rights Management Services
This module introduces Active Directory Rights Management Services (AD RMS). It also describes how to deploy AD RMS, how to configure content protection, & how to make AD RMS–protected documents available to external users.

Lessons

  • Overview of AD RMS
  • Deploying & Managing an AD RMS Infrastructure
  • Configuring AD RMS Content Protection
  • Configuring External Access to AD RMS

Lab: Implementing AD RMS Infrastructure

  • Installing & Configure AD RMS
  • Configuring  AD RMS Templates
  • Using ADRMS on Clients
  • Configuring AD RMS Monitoring & Reporting

After completing this module, students will be able to:

  • Describe AD RMS.
  • Explain how to deploy & manage an AD RMS infrastructure.
  • Explain how to configure AD RMS content protection.
  • Explain how to configure external access to AD RMS.

Module 12: Implementing & Administering AD FS
This module explains AD FS, & then provides details on how to configure AD FS in both a single organization scenario & in a partner organization scenario. This module also describes the Web Application Proxy feature in Windows Server 2012 R2 that functions as an AD FS proxy & reverse proxy for web-based applications.

Lessons

  • Overview of AD FS
  • Deploying AD FS
  • Implementing AD FS for a Single Organization
  • Deploying AD FS in a Business to Business Federation Scenario
  • Extending AD FS to External Clients

Lab: Implementing AD FS

  • Installing & Configuring AD FS
  • Configuring an Internal Application for AD FS
  • Configuring AD FS for a Federated Business Partner
  • Configuring a Web Application Proxy

After completing this module, students will be able to:

  • Describe AD FS.
  • Explain how to configure the AD FS prerequisites, & deploy AD FS
  • services.
  • Describe how to implement AD FS for a single organization.
  • Deploy AD FS in a business-to-business federation scenario.
  • Deploy the Web Application Proxy.

Module 13: Implementing Windows Azure Active Directory
This module explains how to implement Windows Azure Active Directory.

Lessons

  • Overview of Windows Azure Active Directory
  • Administering Windows Azure Active Directory

Lab: Implementing Azure AD

  • Planning to Implement Azure AD
  • Administering Azure AD

After completing this module, students will be able to:

  • Describe Windows Azure AD.
  • Administer Azure AD.

Module 14: Implementing & Administering AD LDS
This module explains how to deploy & configure AD LDS.

Lessons

  • Overview of AD LDS
  • Deploying AD LDS
  • Configuring AD LDS Instances & Partitions
  • Configuring AD LDS Replication

Lab: Implementing & Administering AD LDS

  • Configuring AD LDS Instances & Partitions
  • Configuring AD LDS Replication

After completing this module, students will be able to:

  • Describe AD LDS.
  • Explain how to deploy AD LDS.
  • Explain how to configure AD LDS instances & partitions.
  • Explain how to configure AD LDS replication.