Autoplay
Autocomplete
HTML5
Flash
Player
Speed
Previous Lecture
Complete and continue
Active Directory Concepts and Troubleshooting
INTRODUCTION
About this course (0:58)
RECAP: AD DS OVERVIEW
Workgroup vs. domain (1:52)
AD DS overview (2:29)
Demo: Explore the default installation of AD DS (6:31)
Module 1 : Active Directory Replication
Active Directory replication (4:35)
Replication status (2:42)
Demo: Force AD replication (2:08)
AD sites (4:44)
Demo: Create 3 AD sites (1:38)
Intra-site vs. Inter-site replication (2:59)
Site links (3:36)
Demo: Configure site links and subnet objects (4:44)
Review site configurations (3:46)
Demo: Force KCC to run (1:07)
Demo: Configure 2 AD sites (1:24)
Demo: Test AD replication (2:04)
Demo: Review a client (2:39)
Tombstone lifetime (2:57)
Domain and forest functional level (DFL/FFL) (1:41)
Recommendations (1:12)
Module 2 : SYSVOL Replication
SYSVOL Concepts (1:41)
Demo: Verify SYSVOL and NETLOGON shares (1:36)
Demo: Verify SYSVOL replication status (3:20)
Demo: Verify DFSR service and backlogs (1:19)
FRS SYSVOL vs. DFSR SYSVOL (1:37)
Authoritative vs. non-authoritative restore for SYSVOL (3:45)
Demo: Fix SYSVOL replication (Apply to this demo only) (4:24)
Demo: Test SYSVOL share high availability (1:49)
SYSVOL Ready registry (0:54)
Upgrade to DFSR SYSVOL (1:28)
Demo: Perform the non-authoritative restore for DFSR SYSVOL (like D2 for FRS) (3:10)
Demo: Perform the authoritative restore for DFSR SYSVOL (like D4 for FRS) (4:26)
Module 3 : Group Policy
Group Policy Object (GPO) (3:33)
Demo: Harden Windows Server 2019 with a GPO from MSCT (7:15)
Demo: Run Group Policy Results Wizard (1:26)
Demo: Force Group Policy Update from GPMC (0:24)
GPO order, scope, filtering, and application (3:05)
GPO processing (3:14)
Troubleshoot the clients (2:38)
Demo: Backup and restore GPOs by using GPMC (1:09)
Demo: Most used GPO settings (add local admins, map drives, and set proxy) (7:04)
Module 4 : DNS Integration
DC's DNS records (2:29)
Demo: Check DC's DNS record registrations (1:47)
Basic DNS name resolution (1:50)
Internet name resolution (3:51)
Authoritative vs. non-authoritative DNS servers (1:59)
DNS forwarders (0:48)
Demo: Configure DNS forwarders (1:29)
DNS and client logons (2:53)
DNS search order, dynamic updates, and DNS zone transfer (1:59)
Demo: Configure DNS search orders (3:06)
Aging and scavenging (2:55)
Demo: Walkthrough dynamic updates, DNS zone transfer, and aging/scavenging (4:09)
Module 5: Domain Controller (DC) Health
Directory partitions (1:04)
Global Catalog (GC) server (2:27)
Universal groups & GC (2:44)
FSMO roles (4:59)
Schema Master and Domain Naming Master roles (1:42)
PDCE, RID Master, and Infrastructure Master roles (3:23)
DCDIAG (1:31)
Demo: Run DCDIAG (0:43)
Demo: Verify and transfer FSMO roles (1:35)
Demo: DCDIAG /q /e (2:00)
Time synchronization (3:18)
Demo: Configure Windows time synchronization to sync with external time sources (4:40)
Multi-homed DCs (0:51)
DC performance (2:00)
MaxPageSize (1:44)
Demo: Check your MaxPageSize's current values (0:53)
MaxConcurrentAPI (2:56)
Recommendations (0:51)
Module 6 : Operational Excellences
Disaster recovery (3:23)
Demo: Enable AD Recycle Bin & Test to restore deleted objects (2:02)
Demo: Perform a full server backup with Windows Server Backup (1:59)
Critical security updates (3:07)
Demo: Find if domain admin accounts are used to start services on any computers (1:27)
Demo: Find if there are any users who can set their password to be "blank" (1:59)
Computer accounts (5:27)
Demo: Find possible stale computer accounts (1:58)
User accounts (2:19)
Demo: Find possible stale user accounts (1:55)
Demo: Find administrative accounts with Password Never Expires enabled (1:12)
Demo: Configure Account Lockout Policy (3:39)
Useful commands and recommendations (2:25)
Demo: Delegate AD administrative tasks with Delegwiz.inf (1:45)
Demo: Revert DC VM on the virtualization host that support VM Generation ID (6:45)
Module 7 : Upgrading to Windows Server 2019 AD DS
Application behaviors (5:48)
Upgrade options (1:05)
Option 1 - New DC name and IP (1:40)
Option 2 - Demote and Promote (1:11)
Option 3 - Swap DC name and IP (1:01)
A sample upgrade plan (2:03)
Demo: Verify AD and SYSVOL replication before upgrade (2:22)
Demo: Demote DC2 (2:14)
Demo: Promote the 1st Windows Server 2019 DC with the same name & IP (DC2) (4:27)
Demo: Promote the 2nd Windows Server 2019 DC (new DC1) (3:45)
Demo: Swap DC name & IP (DC1 -> DC1-OLD) (3:25)
Demo: Swap DC name & IP (New DC1 -> DC1) (3:09)
Demo: Demote the last old DC (DC1-OLD) (1:50)
Demo: Post-upgrade tasks - Configure Time synchronization (1:13)
Demo: Post-upgrade tasks - Raise DFL and FFL (1:29)
BONUS: FASTCHECK AD HEALTH
Demo: Check AD replication status (0:14)
Demo: Check SYSVOL replication status (0:36)
Demo; Verify DC's DNS record registrations (1:29)
Demo: Run DCDIAG (Do not clear logs as this demo) (1:33)
Demo: Run DCDIAG to FSMO role owner (0:22)
Demo: Verify Time diff & synchronization (0:18)
Demo; Check DC performance (2:54)
Demo: Find missing security updates (1:18)
Demo: Check if Antivirus exclusions are configured (0:39)
END OF THE COURSE
RECAP
Thank you very much!
Udemy code for free
Schema Master and Domain Naming Master roles
Lecture content locked
If you're already enrolled,
you'll need to login
.
Enroll in Course to Unlock