• No results found

MOC 6436A: Designing Active Directory Infrastructure and Services in Windows Server 2008

N/A
N/A
Protected

Academic year: 2021

Share "MOC 6436A: Designing Active Directory Infrastructure and Services in Windows Server 2008"

Copied!
16
0
0

Loading.... (view fulltext now)

Full text

(1)

MOC 6436A: Designing Active Directory Infrastructure and Services in Windows Server

2008

• Course Number: 6436A

• Course Length: 5 Days

Course Overview

At the end of this five-day course, students will learn how to design an Active Directory

Infrastructure in Windows Server 2008. They will also learn how to design Active Directory

forests, domain infrastructure, sites and replication, administrative structures, group policies, and

Public Key Infrastructures, design for security, high availability, disaster recovery, and

migrations.

Prerequisites

Before attending this course, students must have:

Completion of Microsoft Certified Technology Specialist (MCTS) Windows Server 2008

curriculum or equivalent knowledge and skills.

Knowledge of Windows Vista Terminal Services or Deployment Terminal Services

Audience

This course is intended for Windows Server 2008 IT professionals who want to become

Windows Server 2008 enterprise administrators and move into the role of designing Active

Directory Domain Services (AD DS) environments.

Course Outline

Course Introduction 8m

Module 1 - Designing an AD Forest Infrastructure

Designing an Active Directory Forest Infrastructure in Windows Server 2008

1h7m

Overview of AD DS Forest Design Requirements Design Requirements – AD DS Forest

Business Requirements for an AD DS Forest Design AD Forest Design

Administrative and Security Requirements

Technical Requirements for an AD DS Forest Design Types of AD DS Forests

Benefits of a Single Forest Model Disadvantages of Single Forest Model Reasons for Implementing Multiple Forests

(2)

Benefits of Implementing Forest Root Domains Types of Forest Functional Levels

Forest Functional Levels

Windows Server 2003 Forest Functional Level Guidelines for Designing an AD DS Forest Types of Trusts

What Is UPN Suffix Routing?

Guidelines for Designing Forest Trusts

Demo: Implementing an AD Forest Trust Design Modifications to AD DS Schema

Guidelines for AD DS Schema Modifications Demo: Schema Changes

How Does Windows Time Service Work?

Considerations for Configuring Windows Time Service Member Servers and Workstations

Domain Controllers Considerations Module 1 Review

Module 2 - Designing an AD Domain Infrastructure

Designing an Active Directory Domain Infrastructure in Windows Server 2008

1h11m

AD DS Domain Design Models AD DS Domain Models

Factors to Consider When Accessing Domain Models Reasons for Deploying Multiple AD DS Domains AD DS Domain Functional Levels

Supported Domain Controller Operating Systems

Considerations for Configuring and Placing the Domain Controllers Considerations for Deploying Domain Controllers in Branch Offices Read Only Domain Controller (RODC)

Guidelines for Designing AD DS Domains Choosing an AD DS Namespace Strategy

Guidelines for Integrating the Public and Private DNS Namespaces Guidelines for Integrating Multiple Internal DNS Namespaces Guidelines for Implementing DNS Servers

Demo: Configuring Forwarders and Delegation Records Windows 2008 Domain Controllers

Domain Controller on a Server Core

Deploying Domain Controllers in Windows Server 2008 Deploying Domain Controllers in Windows Server 2008 - RODC Why Deploy RODC?

Considerations When Deploying Domain Controllers Demo: Configuring an RODC Replication Policy Types of AD DS Domain Trusts

Security Considerations for Trusts Demo: Trust Design

Module 02 Review

Module 03 - Designing AD Sites and Replication

Designing Active Directory Sites and Replication in Windows Server 2008

56m

(3)

Things to Document Before the AD Site Design Network Information for an AD DS Site Design Location Data for an AD DS Site Design AD DS Site Models

Guidelines for Creating Additional AD DS Sites Demo: Implementing AD DS Site Design Locations

How Does Automatic Site Coverage Work?

Types of Replication Topologies

Considerations for Choosing a Replication Protocol Levels of Connectivity

Choosing Replication Protocols

Demo: Implementing AD DS Replication

Replication of Global Catalog, RODC, and SYSVOL Knowledge Consistency Checker

Inter Site Topology Generator

Using Site Links to Manage Replication

Considerations for Designing Site Links and Bridgehead Servers Considerations for Designing Site-Link Bridging

Considerations for Site Link Bridging Options for Configuring AD DS Replication Guidelines for Configuring AD DS Replication Guidelines for Placing Domain Controllers Guidelines for Placing RODCs

Guidelines for Placing Global Catalog Servers Guidelines for Placing Operations Master Servers Module 03 Review

Module 04 - Designing AD Domain Administrative Structures

Designing Active Directory Domain Administrative Structures in Windows Server 2008 1h20m

Types of IT Administrative Models

Guidelines for Gathering Information on the Current Administrative Structures Business Requirements for Existing Structure

Legal Requirements

Guidelines for Gathering Information on Organizational Resources Guidelines for Gathering Information on Administrative Processes Strategies for Designing Organizational Units

Strategies for Delegating Administrative Control Strategies for Designing Group Policy Structures

Considerations for Designing Organizational Unit Hierarchies Guidelines for Designing an Organizational Unit Structure Demo: Creating an AD OU Design

AD DS Groups in Windows Server 2008 Group Scope

Guidelines for Developing a Group Naming Strategy Considerations for Group Nesting

Group Nesting

Strategies for Using Groups to Access Resources Strategies for Placing Group Objects

Guidelines for Designing an AD DS Group Strategy

(4)

Guidelines for Designing a User Account Strategy Guidelines for Designing a Computer Account Strategy Naming Strategies for Computer Accounts

Guidelines for Securing User and Computer Account Management Demo: Automating User Account Management

Tools for Automating User and Computer Account Management Module 04 Review

Module 05 - Designing AD Group Policy

Designing Active Directory Group Policy in Windows Server 2008

1h21m

Gathering Organizational Information

Gathering Information on Security Requirements

Gathering Information on Desktop Management Requirements Gathering Information on Desktop Management

Gathering Information on Administrative Processes Configuring Group Policy Settings

Demo: Designing AD Group Policy Applying Group Policy Settings Demo: Implementing AD Group Policy Group Policy Storage Locations

ADMX Format for Administrative Template Guidelines for Designing Administrative Templates Slow Link Detection

Best Practices for Group Policy Model Design Guidelines for Designing Group Policy Inheritance Guidelines for Designing Group Policy Filtering Guidelines for Designing Group Policy Application GPO Backup and Recovery Strategy

GPO Migration Strategy Delegating GPO Administration GPO Administration

Module 05 Review

Module 06 - Designing AD Security

Designing Active Directory Security in Windows Server 2008

1h52m

Gathering Information for Designing Account Security Policies Key Components for Designing Account Security Policies Guidelines for Designing Account and Password Policy Guidelines for Designing Secure Account Management Fine-Grained Password Policies

What Are Fine-Grained Password Policies?

Storing Fine-Grained Password Policies Demo: Designing AD DS Security Password Setting Object Attributes How PSOs Are Processed and Applied Guidelines for Designing Fine-Grained

Key Components that Affect Domain Controller Security Why Modify the Default Domain Controller Security Policy?

Server Core Server Roles

Server Core as a Solution for Domain Controller Deployment

(5)

What is the Security Configuration Wizard?

Scenarios for Using the Security Configuration Wizard What Are Read-Only Domain Controllers?

Prerequisites for Deploying RODCs Administrator Role Separation on RODCs Demo: Domain Controller/RODC Security Policies Administrator Responsibilities

Service Administrator and Service Management Data Administrators and Data Management What Are Administrative Autonomy Delegation of Administrative Permission Attributes of a Good Delegation Model Guidelines for Creating a Delegation Model

Guidelines for Using and Securing Administrator Accounts Demo: Restricted Groups

Auditing Administrative Access Module 06 Review

Module 07 - Designing AD High Availability

Designing Active Directory High Availability in Windows Server 2008

27m

What is High Availability?

Components of an Active Directory High Availability Design Active Directory High Availability

Business Requirements for AD DS High Availability Infrastructure Requirements for AD DS High Availability High Availability Options for Network Infrastructure Process of Planning for High Availability

Guidelines for Designing Highly Available Domain Controllers Global Catalog Placement and High Availability

Demo: Designing AD DS Availability High Availability of DNS

Guidelines for Designing Highly Available Network Infrastructure Module 07 Review

Module 08 - Designing AD Disaster Recovery

Designing Active Directory Disaster Recovery in Windows Server 2008

57m

Overview of Database Maintenance NTDSUtil.exe

Benefits of Restartable AD DS in Windows Server 2008 Considerations for Using Restartable AD DS

Overview of AD DS Backup and Recovery Windows Server Backup

AD DS Backup and Recovery in Windows Server 2008 Active Directory Domain Services Backup System Components System State Data

Critical Volumes – Review Options for Restoring AD DS Considerations for Restoring AD DS

Guidelines for Designing Backup and Recovery in AD DS Why Monitor AD DS?

(6)

Tools for Monitoring AD DS Reliability and Performance Monitor Demo: Disaster Recovery and Monitoring

Guidelines for Monitoring Active Directory Domain Controllers NTDS Counters – Monitoring AD

Module 08 Review

Module 09 - Designing Public Key Infrastructure

Designing Public Key Infrastructure in Windows Server 2008

1h29m

What is a PKI?

Key Components of a PKI PKI Solution Requirements Applications That Use PKI Certification Authorities and PKI Comparison of Enterprise and Standalone Internal and Public Certification Authorities Using Both Internal and External Public CA’s

Active Directory Certificate Services in Windows Server 2008 Features in AD CS

Gathering Information for Designing Certification Authority Hierarchy Certification Authority Hierarchy Roles

Common Roles in a CA Hierarchy Demo: Designing PKI for Windows Server

Options for Designing Certification Authority Hierarchy Types of CA Hierarchies

Guidelines for Designing a Certification Authority Hierarchy What Are Certificate Templates?

Certificate Templates in Windows Server 2008 Managing Certificate Templates

Superseding Templates Feature Designing Certificate Templates

Designing Certificate Templates with Customized Add-ons Demo: Updating Templates

Guidelines for Designing Certificate Templates Certificate Distribution and Enrollment Choosing Enrollment Method

Certificate Autoenrollment

Demo: Implementing Autoenrollment What is Certificate Revocation?

Guidelines for Designing Certificate Revocation Module 09 Review

Module 10 - Designing an AD RMS Infrastructure

Designing an Active Directory RMS Infrastructure in Windows Server 2008

45m

What is AD RMS?

Key Components of AD RMS

Scalability Requirements for AD RMS Design Considerations for External Client AD RMS Access What are AD RMS Rights Policy Templates?

Options for Configuring AD RMS Clusters

(7)

Guidelines for Designing AD RMS Clusters

Options for Granting External Users Access to AD RMS Guidelines for Designing AD RMS Access

AD RMS Backup Components Options for Restoring AD RMS

Troubleshooting AD RMS Restores – Different Processes Restoring a Cluster Member

Restoring a Non-Cluster Server Demo: Exploring RMS RMS Root Server

Guidelines for Implementing an AD RMS Backup and Recovery Strategy Module 10 Review

Module 11 - Designing an AD Federation Services Implementation

Designing an Active Directory Federation Services Implementation in Windows Server 2008 54m

What is Active Directory Federation Services?

Key Components of AD FS Deployment Scenarios for AD FS AD FS Server Roles

AD FS Server Placement AD FS User Account Stores

Components of a B2B Federation Trust B2B Federation Trust

Demo: Adding the Federation Service Role Demo: Exporting Certificates

Demo: Importing Certificates

Key Components of B2B Federation Trust

Guidelines for Configuring Certificates and Applications

Guidelines for Designing the Account and Resource Partner Components Guidelines for Deploying and Securing AD FS Servers

Deploy Federation Server Proxy In Perimeter Network When…

Additional Guidelines for Deploying and Securing ADFS Servers Options for Configuring AD FS Claims

AD FS Group Claims

Guidelines for Usage of AD FS Claims Understanding AD FS Applications

Guidelines for Usage of Token-based and Claims-aware Applications Module 11 Review

Module 12 - Designing an AD LDS Implementation Designing an Active Directory LDS Implementation

1h

What is AD LDS?

AD LDS Usage

LDAP-Compliant Application Directories Definitions - LDAP Application Directories LDAP Compliant Applications - Defined Extranet Authentication Scenarios

Using AD LDS for Developing Schema Modifications Key Sizing Factors for AD LDS Servers

AD LDS Replication Scenarios

(8)

Integration of AD LDS with AD DS

Guidelines for Designing AD LDS Instances and Application Partitions Schema Changes and AD LDS

Replication of AD LDS Data

Planning AD LDS Replication Traffic across WAN Links AD LDS Sites and Site Links

Guidelines for Designing AD LDS Schema and Replication User Proxies in AD LDS

Authentication and Authorization in AD LDS

Implementing Synchronization between AD DS and AD LDS Demo: Working with AD LDS

Module 12 Review

Module 13 - Designing AD Migrations

Designing Active Directory Migrations in Windows Server 2008

59m

AD DS Migration Strategies Domain Upgrade Strategy Domain Restructure Strategy Domain Upgrade and Restructure Criteria for Choosing a Migration Strategy

Guidelines for Choosing the Domain Upgrade Strategy Guidelines for Choosing the Domain Restructure Strategy

Guidelines for Choosing the Domain Upgrade and Restructure Strategy Documenting the Current Environment

Active Directory Structure Current Network Services

Current Domain Controller Hardware and Software Cleaning Up the Current Active Directory Environment Hardware and Application Compatibility

Preparing a Domain and Forest for Upgrade Upgrade Guidelines

Domain Functional Levels in Windows Server 2008 Windows 2000 Native Functional Level

Windows Server 2003 Functional Level Windows Server 2008 Functional Mode SID History

Active Directory Migration Tool ADMT Scenarios

Preparing a Domain to Run ADMT Demo: Installing ADMT

Intraforest and Interforest Restructuring Demo: Using ADMT Trusts

Guidelines for Restructuring Domains Module 13 Review

Course Closure

(9)

Course Introduction 8m

Module 1 - Designing an AD Forest Infrastructure

Designing an Active Directory Forest Infrastructure in Windows Server 2008

1h7m

Overview of AD DS Forest Design Requirements Design Requirements – AD DS Forest

Business Requirements for an AD DS Forest Design AD Forest Design

Administrative and Security Requirements

Technical Requirements for an AD DS Forest Design Types of AD DS Forests

Benefits of a Single Forest Model Disadvantages of Single Forest Model Reasons for Implementing Multiple Forests Benefits of Implementing Forest Root Domains Types of Forest Functional Levels

Forest Functional Levels

Windows Server 2003 Forest Functional Level Guidelines for Designing an AD DS Forest Types of Trusts

What Is UPN Suffix Routing?

Guidelines for Designing Forest Trusts

Demo: Implementing an AD Forest Trust Design Modifications to AD DS Schema

Guidelines for AD DS Schema Modifications Demo: Schema Changes

How Does Windows Time Service Work?

Considerations for Configuring Windows Time Service Member Servers and Workstations

Domain Controllers Considerations Module 1 Review

Module 2 - Designing an AD Domain Infrastructure

Designing an Active Directory Domain Infrastructure in Windows Server 2008

1h11m

AD DS Domain Design Models AD DS Domain Models

Factors to Consider When Accessing Domain Models Reasons for Deploying Multiple AD DS Domains AD DS Domain Functional Levels

Supported Domain Controller Operating Systems

Considerations for Configuring and Placing the Domain Controllers Considerations for Deploying Domain Controllers in Branch Offices Read Only Domain Controller (RODC)

Guidelines for Designing AD DS Domains Choosing an AD DS Namespace Strategy

Guidelines for Integrating the Public and Private DNS Namespaces Guidelines for Integrating Multiple Internal DNS Namespaces Guidelines for Implementing DNS Servers

Demo: Configuring Forwarders and Delegation Records

(10)

Windows 2008 Domain Controllers Domain Controller on a Server Core

Deploying Domain Controllers in Windows Server 2008 Deploying Domain Controllers in Windows Server 2008 - RODC Why Deploy RODC?

Considerations When Deploying Domain Controllers Demo: Configuring an RODC Replication Policy Types of AD DS Domain Trusts

Security Considerations for Trusts Demo: Trust Design

Module 02 Review

Module 03 - Designing AD Sites and Replication

Designing Active Directory Sites and Replication in Windows Server 2008

56m

Things to Document Before the AD Site Design Network Information for an AD DS Site Design Location Data for an AD DS Site Design AD DS Site Models

Guidelines for Creating Additional AD DS Sites Demo: Implementing AD DS Site Design Locations

How Does Automatic Site Coverage Work?

Types of Replication Topologies

Considerations for Choosing a Replication Protocol Levels of Connectivity

Choosing Replication Protocols

Demo: Implementing AD DS Replication

Replication of Global Catalog, RODC, and SYSVOL Knowledge Consistency Checker

Inter Site Topology Generator

Using Site Links to Manage Replication

Considerations for Designing Site Links and Bridgehead Servers Considerations for Designing Site-Link Bridging

Considerations for Site Link Bridging Options for Configuring AD DS Replication Guidelines for Configuring AD DS Replication Guidelines for Placing Domain Controllers Guidelines for Placing RODCs

Guidelines for Placing Global Catalog Servers Guidelines for Placing Operations Master Servers Module 03 Review

Module 04 - Designing AD Domain Administrative Structures

Designing Active Directory Domain Administrative Structures in Windows Server 2008 1h20m

Types of IT Administrative Models

Guidelines for Gathering Information on the Current Administrative Structures Business Requirements for Existing Structure

Legal Requirements

Guidelines for Gathering Information on Organizational Resources Guidelines for Gathering Information on Administrative Processes

(11)

Strategies for Designing Organizational Units Strategies for Delegating Administrative Control Strategies for Designing Group Policy Structures

Considerations for Designing Organizational Unit Hierarchies Guidelines for Designing an Organizational Unit Structure Demo: Creating an AD OU Design

AD DS Groups in Windows Server 2008 Group Scope

Guidelines for Developing a Group Naming Strategy Considerations for Group Nesting

Group Nesting

Strategies for Using Groups to Access Resources Strategies for Placing Group Objects

Guidelines for Designing an AD DS Group Strategy Guidelines for Designing a User Account Strategy Guidelines for Designing a Computer Account Strategy Naming Strategies for Computer Accounts

Guidelines for Securing User and Computer Account Management Demo: Automating User Account Management

Tools for Automating User and Computer Account Management Module 04 Review

Module 05 - Designing AD Group Policy

Designing Active Directory Group Policy in Windows Server 2008

1h21m

Gathering Organizational Information

Gathering Information on Security Requirements

Gathering Information on Desktop Management Requirements Gathering Information on Desktop Management

Gathering Information on Administrative Processes Configuring Group Policy Settings

Demo: Designing AD Group Policy Applying Group Policy Settings Demo: Implementing AD Group Policy Group Policy Storage Locations

ADMX Format for Administrative Template Guidelines for Designing Administrative Templates Slow Link Detection

Best Practices for Group Policy Model Design Guidelines for Designing Group Policy Inheritance Guidelines for Designing Group Policy Filtering Guidelines for Designing Group Policy Application GPO Backup and Recovery Strategy

GPO Migration Strategy Delegating GPO Administration GPO Administration

Module 05 Review

Module 06 - Designing AD Security

Designing Active Directory Security in Windows Server 2008

1h52m

Gathering Information for Designing Account Security Policies

(12)

Key Components for Designing Account Security Policies Guidelines for Designing Account and Password Policy Guidelines for Designing Secure Account Management Fine-Grained Password Policies

What Are Fine-Grained Password Policies?

Storing Fine-Grained Password Policies Demo: Designing AD DS Security Password Setting Object Attributes How PSOs Are Processed and Applied Guidelines for Designing Fine-Grained

Key Components that Affect Domain Controller Security Why Modify the Default Domain Controller Security Policy?

Server Core Server Roles

Server Core as a Solution for Domain Controller Deployment What is the Security Configuration Wizard?

Scenarios for Using the Security Configuration Wizard What Are Read-Only Domain Controllers?

Prerequisites for Deploying RODCs Administrator Role Separation on RODCs Demo: Domain Controller/RODC Security Policies Administrator Responsibilities

Service Administrator and Service Management Data Administrators and Data Management What Are Administrative Autonomy Delegation of Administrative Permission Attributes of a Good Delegation Model Guidelines for Creating a Delegation Model

Guidelines for Using and Securing Administrator Accounts Demo: Restricted Groups

Auditing Administrative Access Module 06 Review

Module 07 - Designing AD High Availability

Designing Active Directory High Availability in Windows Server 2008

27m

What is High Availability?

Components of an Active Directory High Availability Design Active Directory High Availability

Business Requirements for AD DS High Availability Infrastructure Requirements for AD DS High Availability High Availability Options for Network Infrastructure Process of Planning for High Availability

Guidelines for Designing Highly Available Domain Controllers Global Catalog Placement and High Availability

Demo: Designing AD DS Availability High Availability of DNS

Guidelines for Designing Highly Available Network Infrastructure Module 07 Review

Module 08 - Designing AD Disaster Recovery

Designing Active Directory Disaster Recovery in Windows Server 2008

57m

(13)

Overview of Database Maintenance NTDSUtil.exe

Benefits of Restartable AD DS in Windows Server 2008 Considerations for Using Restartable AD DS

Overview of AD DS Backup and Recovery Windows Server Backup

AD DS Backup and Recovery in Windows Server 2008 Active Directory Domain Services Backup System Components System State Data

Critical Volumes – Review Options for Restoring AD DS Considerations for Restoring AD DS

Guidelines for Designing Backup and Recovery in AD DS Why Monitor AD DS?

Tools for Monitoring AD DS Reliability and Performance Monitor Demo: Disaster Recovery and Monitoring

Guidelines for Monitoring Active Directory Domain Controllers NTDS Counters – Monitoring AD

Module 08 Review

Module 09 - Designing Public Key Infrastructure

Designing Public Key Infrastructure in Windows Server 2008

1h29m

What is a PKI?

Key Components of a PKI PKI Solution Requirements Applications That Use PKI Certification Authorities and PKI Comparison of Enterprise and Standalone Internal and Public Certification Authorities Using Both Internal and External Public CA’s

Active Directory Certificate Services in Windows Server 2008 Features in AD CS

Gathering Information for Designing Certification Authority Hierarchy Certification Authority Hierarchy Roles

Common Roles in a CA Hierarchy Demo: Designing PKI for Windows Server

Options for Designing Certification Authority Hierarchy Types of CA Hierarchies

Guidelines for Designing a Certification Authority Hierarchy What Are Certificate Templates?

Certificate Templates in Windows Server 2008 Managing Certificate Templates

Superseding Templates Feature Designing Certificate Templates

Designing Certificate Templates with Customized Add-ons Demo: Updating Templates

Guidelines for Designing Certificate Templates Certificate Distribution and Enrollment Choosing Enrollment Method

(14)

Certificate Autoenrollment

Demo: Implementing Autoenrollment What is Certificate Revocation?

Guidelines for Designing Certificate Revocation Module 09 Review

Module 10 - Designing an AD RMS Infrastructure

Designing an Active Directory RMS Infrastructure in Windows Server 2008

45m

What is AD RMS?

Key Components of AD RMS

Scalability Requirements for AD RMS Design Considerations for External Client AD RMS Access What are AD RMS Rights Policy Templates?

Options for Configuring AD RMS Clusters Guidelines for Designing AD RMS Clusters

Options for Granting External Users Access to AD RMS Guidelines for Designing AD RMS Access

AD RMS Backup Components Options for Restoring AD RMS

Troubleshooting AD RMS Restores – Different Processes Restoring a Cluster Member

Restoring a Non-Cluster Server Demo: Exploring RMS RMS Root Server

Guidelines for Implementing an AD RMS Backup and Recovery Strategy Module 10 Review

Module 11 - Designing an AD Federation Services Implementation

Designing an Active Directory Federation Services Implementation in Windows Server 2008 54m

What is Active Directory Federation Services?

Key Components of AD FS Deployment Scenarios for AD FS AD FS Server Roles

AD FS Server Placement AD FS User Account Stores

Components of a B2B Federation Trust B2B Federation Trust

Demo: Adding the Federation Service Role Demo: Exporting Certificates

Demo: Importing Certificates

Key Components of B2B Federation Trust

Guidelines for Configuring Certificates and Applications

Guidelines for Designing the Account and Resource Partner Components Guidelines for Deploying and Securing AD FS Servers

Deploy Federation Server Proxy In Perimeter Network When…

Additional Guidelines for Deploying and Securing ADFS Servers Options for Configuring AD FS Claims

AD FS Group Claims

Guidelines for Usage of AD FS Claims Understanding AD FS Applications

(15)

Guidelines for Usage of Token-based and Claims-aware Applications Module 11 Review

Module 12 - Designing an AD LDS Implementation Designing an Active Directory LDS Implementation

1h

What is AD LDS?

AD LDS Usage

LDAP-Compliant Application Directories Definitions - LDAP Application Directories LDAP Compliant Applications - Defined Extranet Authentication Scenarios

Using AD LDS for Developing Schema Modifications Key Sizing Factors for AD LDS Servers

AD LDS Replication Scenarios Integration of AD LDS with AD DS

Guidelines for Designing AD LDS Instances and Application Partitions Schema Changes and AD LDS

Replication of AD LDS Data

Planning AD LDS Replication Traffic across WAN Links AD LDS Sites and Site Links

Guidelines for Designing AD LDS Schema and Replication User Proxies in AD LDS

Authentication and Authorization in AD LDS

Implementing Synchronization between AD DS and AD LDS Demo: Working with AD LDS

Module 12 Review

Module 13 - Designing AD Migrations

Designing Active Directory Migrations in Windows Server 2008

59m

AD DS Migration Strategies Domain Upgrade Strategy Domain Restructure Strategy Domain Upgrade and Restructure Criteria for Choosing a Migration Strategy

Guidelines for Choosing the Domain Upgrade Strategy Guidelines for Choosing the Domain Restructure Strategy

Guidelines for Choosing the Domain Upgrade and Restructure Strategy Documenting the Current Environment

Active Directory Structure Current Network Services

Current Domain Controller Hardware and Software Cleaning Up the Current Active Directory Environment Hardware and Application Compatibility

Preparing a Domain and Forest for Upgrade Upgrade Guidelines

(16)

Domain Functional Levels in Windows Server 2008 Windows 2000 Native Functional Level

Windows Server 2003 Functional Level Windows Server 2008 Functional Mode SID History

Active Directory Migration Tool ADMT Scenarios

Preparing a Domain to Run ADMT Demo: Installing ADMT

Intraforest and Interforest Restructuring Demo: Using ADMT Trusts

Guidelines for Restructuring Domains Module 13 Review

Course Closure

Total Duration: 13 hrs 23 min

References

Related documents

Students will learn how to design Active Directory forests, domain infrastructure, sites and replication, administrative structures, group policies, and Public Key

Students will learn how to design Active Directory forests, domain infrastructure, sites and replication, administrative structures, group policies, and Public Key

Students will learn how to design Active Directory forests, domain infrastructure, sites and replication, administrative structures, group policies, and Public Key

Students will learn how to design Active Directory forests, domain infrastructure, sites and replication, administrative structures, group policies, and Public Key

Designing and Implementing Domain Controller Security Policies Designing and Implementing Administrator Security and Delegation Discussions About Exercise 1-3 Design Decisions.

Module 7: Designing Active Directory High Availability in Windows Server 2008This module explains how to design Active Directory high availability and disaster recovery in

Module 5: Designing and Implementing an Active Directory Domain Services Forest and Domain Infrastructure This module explains how to design and implement an AD DS forest and

Module 5: Designing and Implementing an Active Directory Domain Services Forest and Domain Infrastructure This module explains how to design and implement an Active Directory