Active Directory With Windows Server 2016 The Total

Identity, Access, and Authentication with Microsoft AD and Identity with Windows Server 2016

Last updated 2022-01-10 | 4.5

- How Active Directory simplifies requirements to meet security policies
- interconnection management
- and use of Conditional Access
- How Active Directory uses authorization and authentication for external system interactions in your day-to-day operations
- How to configure a system that is secure
- well-fortified
- and easy to maintain

What you'll learn

How Active Directory simplifies requirements to meet security policies
interconnection management
and use of Conditional Access
How Active Directory uses authorization and authentication for external system interactions in your day-to-day operations
How to configure a system that is secure
well-fortified
and easy to maintain
How to apply policies and organizational units for quick response to resource or security issues
How to set up and use Certificate Services
Federation Services
and other advanced security management in AD FS
How to manage Active Directory with the Users and Computers console
as well as with PowerShell commands

* Requirements

* There are no requirements for this course
* however it is suggested that Candidates are expected to have some hands-on experience with Windows Server
* Windows-based networking
* Active Directory
* account management
* and system recovery tools and concepts.
* Although you can gain a wealth of information just by watching this course
* it is recommended that you have some sort of hands-on environment to work in. These topics are best learned by following along in either a virtual or real instance of Windows Server 2016 with Active Directory.

Description

Total Seminars, your source for best-selling IT network and cybersecurity courses, brings you this informative course on Active Directory with Barbara Andrews, MCT, MCSE, MCITP, MCSA, MCDBA, and MCP.

Barbara has 20+ years of experience and is proficient with almost all of Microsoft’s products, including Windows Server, SQL Server, System Center, Azure, and Hyper-V. She is also an HPE Certified Trainer (Master HPE ASE) and SalesForce Admin.

WHY SHOULD I TAKE THIS COURSE?

If you're a newly-minted Network or Security Admin (or are aspiring to be one), this course is a great option to learn all about managing identities in Active Directory.

Did you know Network Administrators make, on average, $88,400 per year?*

If you're just looking to learn some in-depth knowledge about Active Directory, you’re in the right place.


WHAT'S COVERED?

 

1.0 Install and Configure Active Directory Domain Services  

  • 1.1 Install and configure domain controllers

  • 1.2 Create and manage Active Directory users and computers

  • 1.3 Create and manage Active Directory groups and organizational units (OUs)

2.0 Manage and Maintain AD DS  

  • 2.1 Configure service authentication and account policies

  • 2.2 Maintain Active Directory

  • 2.3 Configure Active Directory in a complex enterprise environment

3.0 Create and Manage Group Policy  

  • 3.1 Create and manage Group Policy Objects (GPOs)

  • 3.2 Configure Group Policy processing

  • 3.3 Configure Group Policy settings

  • 3.4 Configure Group Policy preferences

4.0 Implement Active Directory Certificate services 

  • 4.1 Install and configure AD CS

  • 4.2 Manage certificates

5.0 Implement Identity Federation and Access Solutions  

  • 5.1 Install and configure Active Directory Federation Services (AD FS)

  • 5.2 Implement Web Application Proxy (WAP)

  • 5.3 Install and configure Active Directory Rights Management Services (AD RMS)

 


 

 

 

*US Bureau of Labor Statistics

Who this course is for:

  • Anyone looking to learn more about Active Directory
  • Windows Network Administrators
  • Security Specialists
  • Anyone managing resources on domains, forests, or interconnections

Course content

5 sections • 60 lectures

Introduction To Active Directory Preview 02:12

Introduction to AD DS Part 1 Preview 14:20

The beginning of this series starts off by reviewing the various components that you will be managing with Active Directory. In this episode, we discuss AD partitions, schema, domains, and other logical and physical components that interact within the AD environment.  

Introduction to AD DS Part 2 Preview 07:54

We continue looking into the robust interaction of the various components, exploring the global catalog, RODC, and how to work with OUs.   

Installing AD files for a New Forest Preview 08:50

As you step through Server Manager, learn how to set up a new domain controller using various tools and options.  

Configure New Forest Root Domain Preview 10:53

In this episode, you’ll learn how to use the configuration wizard to define settings and options to create a new forest. 

Adding Domain Controller to an Existing Forest Preview 07:32

The next step is to add a DC into a forest, so you’ll review and consider options that will affect how the domain interacts with existing AD security systems. 

DC Installation Options Preview 09:03

Now it’s time to explore the various methods of installation. You’ll get to see the graphical version, called the configuration wizard, as well as the PowerShell option. You’ll also learn about upgrade options and the effect of each. 

DC Cloning Preview 02:42

In this episode, you’ll walk through the cloning operation for DCs, looking at the various clone tools that can be used and the benefits of using clones. 

RODCs Preview 06:09

Understand the benefits of using RODCs in working environments, and see how to work with off-site management of users, groups, and objects. Learn what security policies can be written and implemented for sites that do not have local management. 

DC Configuration Options Preview 13:24

In this episode, you’ll explore DC locations, global catalog servers, SRV records, and the DNS manager. Explore the FSMO roles and learn more about role operations and management. 

Managing User Accounts Preview 10:49

User account management is easy when built with a purpose and a plan. In this segment, explore how to set up accounts through Server Manager. 

Introduction to Groups Preview 07:22

Walk through the processes to set up users in groups, and learn about the logical and physical considerations you’ll want to consider. Then you’ll work with groups for security management considerations and maintenance. 

Managing Groups Preview 10:53

This episode teaches you how to manage group creation and maintenance using Active Directory Users and Computers, and the alternative PowerShell commands. You’ll then tour the settings to manage users within a group.

Managing Computer Accounts Preview 08:30

Examine the placement of computer accounts in the OU structure, and the considerations and steps needed to place these assets within your structure, using both the GUI and PowerShell options.

Managing Organizational Units (OUs) Preview 06:51

Organization is key to a good OU layout. In this episode, explore the creation and management of OUs as well as various strategies used when laying out the structure.

Using PowerShell Preview 05:34

Learn where PowerShell excels as a tool for the operation and maintenance of various AD users, groups, and objects.  

Chapter 1 Quiz

Configuring Account Security Preview 12:18

Using Server Manager, walk through the built-in security tools that can create a strong security program. Learn about Password Settings Objects (PSOs) and how they are applied, along with how Kerberos is used by AD domain controllers.

Configuring PSOs Preview 06:04

Learn how to work with PSOs to deploy general and security policies using PowerShell commands.

Configuring Authentication Policies and Silos Preview 06:59

In this episode, learn how to authenticate users, services, and computers using the Directory Admin Center, and how to work with authentication and silo policies.  

Configuring MSA Service Accounts Preview 05:24

In this video, learn best practices when it comes to setting up service accounts, explore service account management, and see how to configure and maintain MSA accounts. 

Group MSAs Preview 03:24

Learn the benefit of using group MSAs and how to configure objects to associate with MSA groups using PowerShell. Work in PowerShell to create a KDS (Key Distribution Services) root key. 

AD DS Recovery Preview 11:08

In this critical episode, examine the built-in MS utilities, Ntdsutil and Administrative Center, for recovery of the AD databases. Then walk through the restore options using a snapshot, the recycle bin, and an authoritative restore. 

SYSVOL Replication Preview 03:20

Explore SYSVOL and how it’s handled in AD domains and forests. Learn about protocol options for replication and follow along as PowerShell commands are used for FRS to DFS migration.  

AD Advanced Deployments Preview 06:59

In this episode, you’ll first examine some of the design considerations and boundaries for setting up AD domains, forests, and OUs. Then you’ll learn about the issues involved with implementing changes or new domains.

AD Functional Levels Preview 02:46

Understand the various functional levels and how they affect design and implementation, and learn how to raise functional levels on DCs and forests.

Deploying New AD Domains Preview 04:39

Walk through the deployment phase of adding a domain using the configuration wizard, and examine the considerations and processes involved.

AD Migration Preview 08:14

In this episode, learn how to use the AD Migration Tool (ADMT) to move users, groups, resources, and assets to different domains and forests, including implementing pre-migration steps and final options.

AD Trusts Preview 10:34

This episode tackles the concepts and implementation of trusts. Work through the inheritance properties and transitive trust, including the overall trust flows and implications.

Advanced Trust Settings Preview 04:47

Review the AD security settings for trusts and understand the usage of SID filtering and name suffix routing as a defense-in-depth security policy. 

AD Sites Preview 06:00

Learn about the best practices for usage of sites, the implications of replications and site design, Barbara discusses the various types of segregation by site and why these might be considerations 

AD Site Links Preview 03:26

In this episode, learn about the important considerations when creating site links, how to use site links to increase performance, and how to assign site link prioritization.

Chapter 2 Quiz

Group Policies Preview 08:30

Security controls and security boundaries are increasingly becoming more stringent. Fortunately, group policy tools are not only efficient but also easy to maintain. It’s through these policies that forests, domains, users, and groups access shared resources.  

Domain DC and Local Policies Preview 05:27

The Group Policy Management Console (GPMC) can be used to apply rights management and is implemented through policies. In this episode, both default domain and configured domains are reviewed.

Managing GPOs Preview 11:16

In this episode, learn how to manipulate and manage GPOs using templates, shown both at the console and in PowerShell.

GPO Linking Preview 04:49

Learn about implementing GPOs at forest, domain, user, and resource levels. Understand the hierarchy of GPO implementation and the processing order.

GPO Filtering Preview 04:47

Learn how to use ACLs in group policy. Explore how to apply group management for access and rights implementation.

GPO Processing Options Preview 08:15

Learn the use of group processes, including various implementations of advanced group policy, such as slow-link detection.

Working with Admin Templates Preview 05:18

In this episode, you’ll learn admin template management, and walk through the configuration options for the Central Store.

GPO Client Setting Preview 06:11

In this episode, discover implementing GPO client settings, and learn how to use GPO settings for redirecting paths, software deployment, and executing security scripts.

Preferences and Item-Level Targeting Preview 06:05

Explore group policy preferences to personalize a user account based on the OS permissions set, and learn about item-level targeting as an implementation based on presets.

Chapter 3 Quiz

Certificates with Mike Preview 06:32

A visit from Mike Meyers provides an overview of certificates, certificate authorities, and PKI (Public Key Infrastructure). This segment from Mike’s Security+ series will help fill in any knowledge gaps you might have before moving into AD Certificate Services & CAs. 

AD CS Planning Preview 11:32

Learn about the Active Directory Certificate Services role, explore the various CA types, and analyze considerations when it comes to installing the CS role.

Installing Root CAs Preview 10:37

In this episode, learn how to install Certificate Services using Server Manager and understand the various options presented through the installation process.

Preparing an Offline Root CA Preview 06:16

Learn how to prepare for and ensure services are maintained through subordinate CAs when the root CA is offline.

Installing a Subordinate CA Preview 06:12

In this episode, walk through the installation and configurations needed to add a subordinate CA.  

Administering CAs Preview 05:17

Explore the Certificate Management console to manage CAs and learn how to apply permissions and security roles to CAs.

Enrollment, Renewal, and Revocation Preview 06:02

Work through the various deployment methods for CAs and learn the process of revoking a CA.

Chapter 4 Quiz

Introduction to AD FS Preview 11:24

In this episode, dive into the concepts and usage of AD Federation Services. Learn about the expanded trust relationships, authentication roles, and the claims process.

Understanding AD FS Preview 04:46

Explore the various configurations in AD FS. You’ll learn about process steps and trust paths to enable Single Sign-On (SSO) in a variety of use cases.

Preparing AD FS Installation Preview 02:59

Walk through the steps to install Active Directory Federation Services, including the list of preinstallation requirements and planning needed to accomplish this installation.

FS Account and Resource Partners Preview 02:57

Learn about the components of AD Federation Services, including the partners involved and the various trust options that can be configured based on incoming claims.

Primary and Multi-Factor Authentication Preview 03:08

In this episode, explore the methods of allowing authentication and access with SSO. Learn about the access control policy templates and multifactor authentication with FS.

Introduction to Web App Proxy Preview 03:36

Understand the benefits, usage, and purpose of Web App Proxy (WAP) with Federation Services and learn about the requirements to implement and authenticate.

Preparing to Install Web Proxy Preview 03:10

In this episode, examine the requirements and planning needed to install the Web Application Proxy (WAP). Understand the interaction with DNS, load balancing, and the configurations needed for implementation of WAP. 

Introduction to RMS Preview 04:54

Right Management Services (RMS) is a cross-application file security management solution that can be executed with AD. RMS implements security on information regardless of location.

Chapter 5 Quiz