Photo by Abbie Bernet on Unsplash
Active Directory Concepts and Troubleshooting
หลักสูตรออนไลน์ เนื้อหาครอบคลุมหลักการทำงานสำคัญที่ควรทราบของ Active Directory Domain Services หรือ AD DS วิธีตรวจสอบการทำงานของ AD DS ว่าตอนนี้ปกติดีไหม? วิธีการแก้ไขปัญหา รวมถึงคำแนะนำต่างๆ จาก Microsoft
ในหัวข้อ Active Directory replication, SYSVOL, GPO, DNS, DC health, operational excellences, และการอัพเกรด AD ไปเป็น Windows Server 2019
ผู้เรียนควรมีความรู้พื้นฐานเกี่ยวกับ Windows Server, Active Directory, และ Network หรือ เคยทำงานที่เกี่ยวข้อง หรือเก้ไขปัญหาพื้นฐานของ AD DS
เหมาะสำหรับผู้ดูแลระบบ หรือทำงานในสายงาน Windows Server เทคโนโลยี หรือผู้ที่ต้องการนำความรู้ไป ออกแบบ วิเคราะห์ แก้ไขปัญหาที่เกี่ยวข้องกับ AD DS
Udemy
สามารถเข้าเรียนได้ที่ Udemy อีกทางนึงครับ
"Learn to get your AD DS healthy!"
jkc.
Curriculum
Available in
days
days
after you enroll
Available in
days
days
after you enroll
Available in
days
days
after you enroll
- Active Directory replication (4:35)
- Replication status (2:42)
- Demo: Force AD replication (2:08)
- AD sites (4:44)
- Demo: Create 3 AD sites (1:38)
- Intra-site vs. Inter-site replication (2:59)
- Site links (3:36)
- Demo: Configure site links and subnet objects (4:44)
- Review site configurations (3:46)
- Demo: Force KCC to run (1:07)
- Demo: Configure 2 AD sites (1:24)
- Demo: Test AD replication (2:04)
- Demo: Review a client (2:39)
- Tombstone lifetime (2:57)
- Domain and forest functional level (DFL/FFL) (1:41)
- Recommendations (1:12)
Available in
days
days
after you enroll
- SYSVOL Concepts (1:41)
- Demo: Verify SYSVOL and NETLOGON shares (1:36)
- Demo: Verify SYSVOL replication status (3:20)
- Demo: Verify DFSR service and backlogs (1:19)
- FRS SYSVOL vs. DFSR SYSVOL (1:37)
- Authoritative vs. non-authoritative restore for SYSVOL (3:45)
- Demo: Fix SYSVOL replication (Apply to this demo only) (4:24)
- Demo: Test SYSVOL share high availability (1:49)
- SYSVOL Ready registry (0:54)
- Upgrade to DFSR SYSVOL (1:28)
- Demo: Perform the non-authoritative restore for DFSR SYSVOL (like D2 for FRS) (3:10)
- Demo: Perform the authoritative restore for DFSR SYSVOL (like D4 for FRS) (4:26)
Available in
days
days
after you enroll
- Group Policy Object (GPO) (3:33)
- Demo: Harden Windows Server 2019 with a GPO from MSCT (7:15)
- Demo: Run Group Policy Results Wizard (1:26)
- Demo: Force Group Policy Update from GPMC (0:24)
- GPO order, scope, filtering, and application (3:05)
- GPO processing (3:14)
- Troubleshoot the clients (2:38)
- Demo: Backup and restore GPOs by using GPMC (1:09)
- Demo: Most used GPO settings (add local admins, map drives, and set proxy) (7:04)
Available in
days
days
after you enroll
- DC's DNS records (2:29)
- Demo: Check DC's DNS record registrations (1:47)
- Basic DNS name resolution (1:50)
- Internet name resolution (3:51)
- Authoritative vs. non-authoritative DNS servers (1:59)
- DNS forwarders (0:48)
- Demo: Configure DNS forwarders (1:29)
- DNS and client logons (2:53)
- DNS search order, dynamic updates, and DNS zone transfer (1:59)
- Demo: Configure DNS search orders (3:06)
- Aging and scavenging (2:55)
- Demo: Walkthrough dynamic updates, DNS zone transfer, and aging/scavenging (4:09)
Available in
days
days
after you enroll
- Directory partitions (1:04)
- Global Catalog (GC) server (2:27)
- Universal groups & GC (2:44)
- FSMO roles (4:59)
- Schema Master and Domain Naming Master roles (1:42)
- PDCE, RID Master, and Infrastructure Master roles (3:23)
- DCDIAG (1:31)
- Demo: Run DCDIAG (0:43)
- Demo: Verify and transfer FSMO roles (1:35)
- Demo: DCDIAG /q /e (2:00)
- Time synchronization (3:18)
- Demo: Configure Windows time synchronization to sync with external time sources (4:40)
- Multi-homed DCs (0:51)
- DC performance (2:00)
- MaxPageSize (1:44)
- Demo: Check your MaxPageSize's current values (0:53)
- MaxConcurrentAPI (2:56)
- Recommendations (0:51)
Available in
days
days
after you enroll
- Disaster recovery (3:23)
- Demo: Enable AD Recycle Bin & Test to restore deleted objects (2:02)
- Demo: Perform a full server backup with Windows Server Backup (1:59)
- Critical security updates (3:07)
- Demo: Find if domain admin accounts are used to start services on any computers (1:27)
- Demo: Find if there are any users who can set their password to be "blank" (1:59)
- Computer accounts (5:27)
- Demo: Find possible stale computer accounts (1:58)
- User accounts (2:19)
- Demo: Find possible stale user accounts (1:55)
- Demo: Find administrative accounts with Password Never Expires enabled (1:12)
- Demo: Configure Account Lockout Policy (3:39)
- Useful commands and recommendations (2:25)
- Demo: Delegate AD administrative tasks with Delegwiz.inf (1:45)
- Demo: Revert DC VM on the virtualization host that support VM Generation ID (6:45)
Available in
days
days
after you enroll
- Application behaviors (5:48)
- Upgrade options (1:05)
- Option 1 - New DC name and IP (1:40)
- Option 2 - Demote and Promote (1:11)
- Option 3 - Swap DC name and IP (1:01)
- A sample upgrade plan (2:03)
- Demo: Verify AD and SYSVOL replication before upgrade (2:22)
- Demo: Demote DC2 (2:14)
- Demo: Promote the 1st Windows Server 2019 DC with the same name & IP (DC2) (4:27)
- Demo: Promote the 2nd Windows Server 2019 DC (new DC1) (3:45)
- Demo: Swap DC name & IP (DC1 -> DC1-OLD) (3:25)
- Demo: Swap DC name & IP (New DC1 -> DC1) (3:09)
- Demo: Demote the last old DC (DC1-OLD) (1:50)
- Demo: Post-upgrade tasks - Configure Time synchronization (1:13)
- Demo: Post-upgrade tasks - Raise DFL and FFL (1:29)
Available in
days
days
after you enroll
- Demo: Check AD replication status (0:14)
- Demo: Check SYSVOL replication status (0:36)
- Demo; Verify DC's DNS record registrations (1:29)
- Demo: Run DCDIAG (Do not clear logs as this demo) (1:33)
- Demo: Run DCDIAG to FSMO role owner (0:22)
- Demo: Verify Time diff & synchronization (0:18)
- Demo; Check DC performance (2:54)
- Demo: Find missing security updates (1:18)
- Demo: Check if Antivirus exclusions are configured (0:39)
Available in
days
days
after you enroll