Log In
Or create an account ->
Imperial Library
Home
About
News
Upload
Forum
Help
Login/SignUp
Index
Cover
Title Page
Copyright Page
Contents at a glance
Contents
Introduction
Organization of this book
Microsoft certifications
Acknowledgments
Free ebooks from Microsoft Press
Microsoft Virtual Academy
Quick access to online references
Errata, updates, & book support
We want to hear from you
Stay in touch
Important: How to use this book to study for the exam
Chapter 1. Install and configure Active Directory Domain Services
Skill 1.1: Install and configure domain controllers
AD DS fundamentals
Install a new forest
Add or remove a domain controller
Install AD DS on a Server Core installation
Install a domain controller using Install from Media
Install and configure a read-only domain controller
Configure a global catalog server
Configure domain controller cloning
Upgrade domain controllers
Transfer and seize operations master roles
Resolve DNS SRV record registration issues
Skill 1.2: Create and manage Active Directory users and computers
Create, copy, configure, and delete users and computers
Implement offline domain join
Configure user rights
Perform bulk Active Directory operations
Skill 1.3: Create and manage Active Directory groups and organizational units
Create and manage groups
Create and manage OUs
Delegate management of Active Directory with groups and OUs
Chapter summary
Thought experiment
Thought experiment answer
Chapter 2. Manage and maintain AD DS
Skill 2.1: Configure service authentication and account policies
Create and configure MSAs and gMSAs
Manage SPNs
Configure Kerberos Constrained Delegation
Configure virtual accounts
Configure account policies
Configure and apply Password Settings Objects
Delegate password settings management
Skill 2.2: Maintain Active Directory
Manage Active Directory offline
Active Directory backup and recovery
Manage Read Only Domain Controllers
Managing AD DS replication
Skill 2.3: Configure Active Directory in a complex enterprise environment
Configure a multi-domain and multi-forest AD DS infrastructure
Deploy Windows Server 2016 domain controllers within a preexisting AD DS environment
Upgrade existing domains and forests
Configure domain and forest functional levels
Configure multiple user principal name suffixes
Configure trusts
Configure AD DS sites and subnets
Chapter summary
Thought experiment
Thought experiment answers
Chapter 3. Create and manage Group Policy
Skill 3.1: Create and manage Group Policy Objects
Configure multiple local Group Policies
Overview of domain-based GPOs
Manage starter GPOs
Configure GPO links
Back up, restore, import, and copy GPOs
Create and configure a migration table
Reset default GPOs
Delegate Group Policy management
Detect health issues using the Group Policy Infrastructure Status dashboard
Skill 3.2: Configure Group Policy processing
Configure processing order and precedence
Configuring inheritance
Configure security filtering and WMI filtering
Configure loopback processing
Configure and manage slow-link processing and Group Policy caching
Configure client-side extension behavior
Force a Group Policy update
Skill 3.3: Configure Group Policy settings
Configure software installation
Configure scripts
Import security templates
Configure folder redirection
Configure administrative templates
Skill 3.4: Configure Group Policy preferences
Configuring Group Policy preferences
Configure item-level targeting
Chapter summary
Thought experiment
Thought experiment answers
Chapter 4. Implement Active Directory Certificate Services
Skill 4.1: Install and configure AD CS
Choosing between a standalone and an enterprise CA
Install standalone CAs
Install an AD DS integrated enterprise CA
Install offline root and subordinate CAs
Install and configure an Online Responder
Implement administrative role separation
Configure CA backup and recovery
Skill 4.2: Manage certificates
Manage certificate templates
Implement and manage certificate deployment, validation, and revocation
Configure and manage key archival and recovery
Chapter summary
Thought experiment
Thought experiment answers
Chapter 5. Implement identity federation and access solutions
Skill 5.1: Install and configure AD FS
Examine AD FS requirements
Install the AD FS server role
Configure the AD FS server role
Implement claims-based authentication, including relying party trusts
Configure authentication policies
Implement and configure device registration
Configure for use with Microsoft Azure and Microsoft Office 365
Configure AD FS to enable authentication of users stored in LDAP directories
Upgrade and migrate previous AD FS workloads to Windows Server 2016
Skill 5.2: Implement Web Application Proxy
Install and configure Web Application Proxy
Integrate Web Application Proxy with AD FS
Implement Web Application Proxy in pass-through mode
Publish Remote Desktop Gateway applications
Skill 5.3: Install and configure AD RMS
An AD RMS overview
Deploying an AD RMS server
Manage rights policy templates
Configure exclusion policies
Backup and restore AD RMS
Chapter summary
Thought experiment
Thought experiment answers
Index
About the author
Free ebooks
Hear about it first
Visit us today
Survey
Code Snippets
← Prev
Back
Next →
← Prev
Back
Next →