Introduction
Welcome to this interactive skills validation experience. Completing this module helps you prepare for the Administer Active Directory Domain Services assessment.
This module covers the major steps of deploying, configuring, and maintaining a domain controller. It provides an opportunity to promote a domain controller in a virtualized environment using a Windows 10 or Windows 11 machine.
Scenario
Imagine you are a system administrator for a mid-sized company that is expanding its network infrastructure. You have been tasked with setting up a new domain controller to manage user access and security. However, due to budget constraints, you need to use existing hardware running Windows 10 or Windows 11. This scenario will guide you through the process of configuring a virtualized environment on your machine to run two Windows Server 2022 Evaluation Edition virtual machines.
Learning objectives
In this module, you'll practice how to:
- Configure Domain Controller Operations.
- Configure User Management Operations.
- Manage Password Policies.
- Configure Security Settings.
By the end of this module, you gain hands-on experience in configuring an Active Directory Domain Services domain controller.
Note
This is a guided project module where you complete an end-to-end project by following step-by-step instructions.
Skilling area | Skilling task |
---|---|
Deploy and manage AD DS domain controllers | Deploy domain controllers. Transfer a FSMO role. |
Configure Active Directory topology | Create a new site and map it to a subnet. Move domain controllers between sites. |
Create and manage AD DS objects | Create and manage organizational units. Create a user account. Create groups. Add users to groups, including privileged groups and Protected Users group. Perform bulk management tasks for user accounts. Manage disabled users. Reset user passwords. Recover items from the AD DS recycle bin. |
Create and configure Group Policy Objects in AD DS | Create and link a GPO. Configure Group Policy settings. Configure Group Policy scope and processing order. |
Manage security in AD DS | Delegate permissions in AD DS. Configure the domain password policy. Configure and apply a Fined Grained Password Policy. Configure auditing, including advanced audit policy. Configure user rights assignment by using group policy. |