Skip to main content

Posts

Showing posts from September, 2017

Server Administration 2012 Lab-45 Configuring Additional Domain Controller using IFM

1. Log in as Administrator to the Domain Controller (SYS1). 2. Create a Shared folder (Ex: ifm) in C drive. 3. Go to Start, type cmd in Search Apps, and select Command Prompt 4. Type Ntdsutil 5. Type Activate instance ntds. 6. Type ifm. 7. Type create sysvol full C:\ifm 8. Verify for the snapshot generated successfully. Verification 1. Log in as Administrator to the Workgroup Computer(SYS2), Assign IP Address and Preferred DNS Server Address. 2. Access the shared folder (Ex: ifm) on Domain Controller and copy it to local hard disk drive (Ex: C drive). 3. Go to Server Manager Dashboard, Click Add roles and features. 4. In Before you begin page, click Next. 5. In Select installation type, select Role-based or feature-based installation, click Next. 6. In Select destination server, from Server Pool select SYS2, click Next. 7. In Roles, check the box Active Directory Domain Services. 8. Click Add Features, to install the required features for Active Directory Domain Servi

Server Administration 2012 Lab-44 Configuring Read-Only Domain Controller

1. Log in as Administrator to the Workgroup Computer(SYS2) 2. Assign IP Address and Preferred DNS Server Address. 3. Click Server Manager 4. In Server Manager Dashboard, Click Add roles and features. 5. In Before you begin page, click Next, In Select installation type, select Role-based or feature-based installation, click Next. 6. In Select destination server, from Server Pool select SYS2,click Next. 7. In Roles, check the box Active Directory Domain Services. 8. Click Add Features, to install the required features for Active Directory Domain Services.Click Next. 9. In Select features wizard, click Next. 10. In Active Directory Domain Services wizard, click Next. 11. Check the box Restart the destination server automatically if required. Click Install. 12. Click Promote this server to a domain controller. 13. In Deployment Configuration wizard, select Add a domain controller to an existing domain, enter the Domain (Ex: Microsoft.com) 14. Click Change, enter User Name: us

Server Administration 2012 Lab-43 Creating aPre-Create Read Only Domain Controller Account

1. Log in as Administrator to the Domain Controller (SYS1). 2. Verify Domain and Forest FunctionalLevels to Windows Server 2003 or later. 3. Go to Active Directory Users and Computers. 4. Create Users (Ex: User1, User2, User3, User4, User5). 5. Right click Domain Controllers, Select Pre-create Read-only Domain Controller account. 6. In Welcome Screen,click Next. 7. Select My current logged on credentials (MICROSOFT\Administrator) and clickNext. 8. Enter the Computer Name(SYS2) of Read Only Domain Controller. 9. Select the Site (GRW) for the Read-only Domain Controllers and click Next. 10. Verify the DNS,Global Catalog and Read-only Domain Controller (RODC) check boxes and click Next. 11. ClickSet. 12. Enter the User name (User1) and click OK and click Next. 13. Review the Summary, and click Next. 14. Click Finish. 15. Account of Read-only Domain Controller will be created in Domain Controllers. 16. To cache the user account password on RODC, Select the Users(User1, User

Server Administration 2012 Lab-42 Creating Active Directory Site-Links

1. Log on to DC as Administrator 2. Go to ActiveDirectorySitesandServicesExpand SitesExpand Inter-SiteTransportsRight clickIPselect New Site Link. 3. Enter the name (LHR-GRW Link), select LHR and GRW sites and click Addclick OK. 4. Right click LHR-GRW Link,select Properties. 5. ClickChangeSchedule. 6. Select the Interval of Time for ReplicationAvailable, clickOKOK.

Server Administration 2012 Lab-41 Creating Active Directory Sites

1. Logon to DC as Administrator, go to Start, Active Directory Sites and Services. 2. Right click SitesNew Site. 3. Enter the site name (LHR) and select DEFAULTIPSITELINKand click OK. 4. Site LHR will be created, click OK. 5. Similarly create another site (GRW) 6. Expand Default-First-Site-Name Expand ServersRight click Server (SYS1)Move 7. Select the Site (LHR) and click OK. 8. Server is now moved under LHR site.

Server Administration 2012 Lab-40 Configuring Global Catalog Server

GLOBAL CATALOG, SITES, and READ ONLY DOMAIN CONTROLLER Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server. Domain:MICROSOFT.COM SYS1 Domain Controller IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 Alternate DNS ---------- SYS2 Read Only Domain controller IP Address 10.0.0.2  Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.2 Alternate DNS 10.0.0.1 1. Go to Active Directory Sites and Services. 2. Expand the Sites Default-First-Site-NameServersServer Names NTDS Settings. 3. Right click NTDS Setting and Properties, If the checkbox Global Catalog is checked, then it is a Global Catalog Server.

Server Administration 2012 Lab-39 Creating Forest Trust

TRUST RELATIONSHIP Pre-requisites: Before working on this lab, you must have 1. A computer running Windows Server 2012Domain Controller for MICROSOFT.COM. 2. A computer running Windows Server 2012 Domain Controller for IBM.COM. Domain:MICROSOFT.COM Domain:IBM.COM SYS1 Domain Controller-MICROSOFT.COM IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 Alternate DNS 10.0.0.2 SYS2 Domain Controller-IBM.COM IP Address 10.0.0.2 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.2 Alternate DNS 10.0.0.1 1. Go to Active Directory Domains and Trusts, 2. Right click the Domain name and select Properties. 3. Verify Domain and Forest functional level to be Windows Server 2012. 4. Select Trusts tab,Click New Trust. 5. On Welcome wizard, click Next. 6. In Trust Name,enter name of other ForestIBM.COM and click Next. 7. Select Forest trust and click Next 8. Select Two-way and click Next. 9. Select Both this domain and the specified domain and click Next. 10. Ent

Server Administration 2012 Lab-38 Applying Folder Redirection

1. Go to DC, create a Shared Folder (Folder Redirection) with everyone Co-Owner. 2. Press Windows Key to go to Start, select Group Policy Management. 3. Right click OU (Sales)Select Create a GPO... 4. Enter name (Ex: Folder Redirection) and click OK. 5. Right Click created GPO, select Edit. 6. Expand User configuration PoliciesWindows SettingsFolder Redirection  Select Desktop Right click Desktop Select Properties 7. Select Basic Redirection, select Create a folder for each user under the root path, click Browseselect the shared folder from Network,\\SYS1\Folder Redirection, click Apply and OK. Verification: 1. Login as user (S1) in client system. 2. Create a folder on desktop, Right Clickon the folder properties and check the path, it should show Network path (\\SYS1\FolderRedirection\S1\Desktop).

Server Administration 2012 Lab-37 Applying Scripts using Group Policy

1. Log on to D.C, create a Shared Folder UserScripts with Everyone as co-owner. 2. Go to Start, type Notepad in Search Apps, and select Notepad. 3. Enter the text wscript.echo “Welcome to Microsoft” 4. Save the file in the Shared folder UserScripts as Logon.vbe 5. Go to Group Policy Management Right click OU (Sales1) Create a GPO in this domain and Link it here and enter the name Script, click OK, Select the GPO Right Click and select Edit. 6. Expand User ConfigurationExpand PoliciesWindows SettingsScripts Logon Properties. 7. Click Add. 8. Enter the UNC path for the Script in the shared folder \\SYS1\Userscripts\logon.vbe and click OKApply and OK. Verification: 1. Go to Member Server and login as USER1 and verify for the Message.

Server Administration 2012 Lab-36 Applying Software Deployment Policy

1. Logon to DC as Administrator, Create a Shared folder with (.msi) applications in it 2. Go to Group Policy Management. 3. Right click OU (Sales1) Create a GPO in this domain and Link it here  Enter the name (Software Deployment) click OK, Right click the policy and click Edit. 4. User Configuration  Expand Policies Expand Software settings  Right click Software Installation  Select NewPackage 5. From the left pane, select Network, OpenSYS1 (Servercontaining shared folder). 6. Select the MSI Softwares Shared Folder click Open. 7. Select the Application Folder (PowerPointViewer)  click Open. 8. Select the Application (PPVIEWER) click Open. 9. Select the Method to Deploy Application (Published)and click OK. Verification: 1. Go to Member Server and login as user1. 2. Go to Control Panel, clickPrograms and Features. 3. Click Install a Program from the Network, Select the Application and Install

Server Administration 2012 Lab-35 Applying Group Policy Modeling

1. Go to Group Policy Management  Right ClickGroup Policy Modelingand Select Group Policy Modeling Wizard. 2. Click Next. 3. Select the domain name and click Next. 4. Select User and click Browse  enter the Username (S1)click OK and Next. 5. Select the site (Default-First-site-Name) and check skip to final page, click Next. 6. Click Next Finish. Verification: 1. Click Details on the summary page and verify the policies applied on the User.

Server Administration 2012 Lab-34 Applying Group Policy on Site Level

1. Go to Start, Group Policy Management Right click Group Policy Objects Select New. 2. Enter New GPO Link name Ex: Remove Recycle Bin and click OK. 3. Select the Created GPO  Right Click Created GPO  Select Edit. 4. Select User Configuration  Policies  Administrative Templates  Desktop,select Remove RecycleBin icon from desktop. 5. Right click Remove Recycle Bin icon from desktop Properties,select Enabled  OK  Close. 6. Right click Sitesselect Show Sitescheck Default-First-Site-Nameclick OKRight Click Default-First-Site-Nameselect Link an Existing GPO…. 7. Select an existing GPO, (Remove Recycle Bin) click OK. Verification: 1. Login as a user to Client or MemberServer, and Verify for the changes.

Server Administration 2012 Lab-33 Applying Group Policy on Domain Level

1. Press Windows Key to go to Start, select Group Policy Management. 2. Right click Domain name (MICROSOFT.COM) and select Create a GPO in this domain and Link it here. 3. Enter New GPO Link name Ex: Remove Network Icon and click OK. 4. Select the Created GPO  Right Click Created GPO  Select Edit. 5. In the Group Policy Management editor window, Go to User ConfigurationPoliciesAdministrative Templates Desktop 6. Select a policy (Hide Network Icon on desktop) right side of the screen, Right Click and select Properties. 7. Select Enabled option and click Apply and OK Verification: 1. Login as User (S1) to Client or Member Server and Verify for the changes.

Server Administration 2012 Lab-32 Applying Group Policy on Organizational Unit Level

GROUP POLICIES Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server or Windows 7. Domain: MICROSOFT.COM SYS1  Domain Controller IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 SYS2 Member Server / Client IP Address 10.0.0.2 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 1. Press Windows Key to go to Start, select Group Policy Management. 2. Right click OU (Sales) Create a GPO in this domain and Link it here. 3. Enter any name to GPO Link (Ex: Remove Computer Icon) and click OK. 4. Right Click created GPO Link  Edit 5. In Group Policy Management Editor Window, Go to User Configuration  Policies Administrative Templates Desktop. 6. Select a policy (Remove Computer icon on the Desktop) on right side of the screen, Right Click and select Properties. 7. Select Enabled option and click Apply and OK. Verification: 1. Logon to client system

Server Administration 2012 Lab-31 Seizing of Roles

1. Log on to Additional Domain Controller as Administrator 2. Shutdown the Domain Controller 3. Go to Start, type cmd in Search Apps, and select Command Prompt 4. TypeNet accounts and Verify for BACKUP in Computer role. 5. Type Ntdsutiland Press Enter. 6. Type Roles and Press Enter. 7. Type Connections and Press Enter. 8. Type Connect to server SYS1 (ADC System name) and Press Enter. 9. Type: Quit 10. Type Help(or)? To view the available syntax. 11. Type Seize infrastructure master and Press Enter. 12. Click YES. 13. Type Seize naming master and Press Enter. 14. Click YES 15. Type Seize PDC and Press Enter. 16. Click Yes 17. Type Seize RID Master and Press Enter. 18. Click YES 19. Type Seize Schema Master and Press Enter. 20. Click YES 21. Type Quit and press Enter 22. Type Quit and Press Enter. Verification: 1. Type Net accounts and Press Enter 2. Computer role of Additional Domain Controller will be converted to Primary.

Server Administration 2012 Lab-30 Transfer of Roles

ROLES OF ACTIVE DIRECTORY Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server Additional Domain controller. Primary Domain:MICROSOFT.COM SYS1 Domain Controller IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 Alternate DNS ----------- SYS2 Additional Domain Controller IP Address 10.0.0.2 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.2 Alternate DNS 10.0.0.1 1. Log on to Domain Controller as Administrator 2. Go to Start,type cmd in Search Apps, and select Command Prompt 3. TypeNet accounts and Verify for Primary in Computer role. 4. Type Ntdsutil and Press Enter. 5. Type Roles and Press Enter. 6. Type Connections and Press Enter. 7. Type Connect to server SYS2 (ADC System name)and Press Enter. 8. Type: Quit 9. Type Help(or)? , to see the available syntax. 10. Type Transfer infrastructure master and Press Enter. 11. Click YES. 12

Server Administration 2012 Lab-29 Configuring New Domain Tree in Existing Forest ( Tree Domain )

CONFIGURING NEW DOMAIN TREE IN EXISTING FOREST Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server. Primary Domain:MICROSOFT.COM Child Domain:MCTS.COM SYS1 Domain Controller IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 Alternate DNS ----------- SYS4 New Domain Tree IP Address 10.0.0.4 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.4 Alternate DNS 10.0.0.1 1. Log in as Administrator to the Workgroup Computer. 2. Assign IP Address and preferred DNS Server Address 3. Click Server Manager 4. In Server Manager Dashboard, Click Add roles and features. 5. In before you begin page, click Next, In Select installation type, select Role-based or feature-based installation, and click Next. 6. In Select destination server, from Server Pool select SYS4,click Next. 7. In Roles, check the box Active Directory Domain Services. 8. Click Add Features

Server Administration 2012 Lab-28 Configuring Child Domain

CONFIGURING CHILD DOMAIN Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server. Primary\Root Domain: MICROSOFT.COM Child Domain:MCITP.MICROSOFT.COM SYS1 Domain Controller IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 Alternate DNS ---------- SYS3 Child Domain controller IP Address 10.0.0.3 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.3 Alternate DNS 10.0.0.1 1. Log in as Administrator to the Workgroup Computer. 2. Assign IP Address and preferred DNS Server Address 3. Click Server Manager 4. In Server Manager Dashboard, Click Add roles and features. 5. In Before you begin page, click Next, In Select installation type, select Role-based or feature-based installation, and click Next. 6. In Select destination server, from Server Pool select SYS2,click Next. 7. In Roles, check the box Active Directory Domain Services. 8. Click Add Featu

Server Administration 2012 Lab-27 Configuring Additional Domain Controller

LOGICAL STRUCTURE OF ACTIVE DIRECTORY CONFIGURING ADDITIONAL DOMAIN CONTROLLER Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server. Domain: MICROSOFT.COM SYS1   Domain Controller IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 Alternate DNS ---------- SYS2  Additional Domain controller IP Address 10.0.0.2 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.2 Alternate DNS 10.0.0.1 1. Log in as Administrator to the Workgroup Computer. 2. Assign IP Address and preferred DNS Server Address 3. Click Server Manager 4. In Server Manager Dashboard, Click Add roles and features. 5. In Before you begin page, click Next, In Select installation type, select Role-based or feature-based installation, click Next. 6. In Select destination server, from Server Pool select SYS2,click Next. 7. In Roles, check the box Active Directory Domain Services. 8. Click

Server Administration 2012 Lab-26 Configuring New Folder In Namespace

1. In SYS1 (DC) open any Drive which is formatted with NTFS 2. Createa shared folder (Sales1) and give permission (Ex:Co-OwnerforEveryone). 3. Similarly create a shared folder (Sales2) on SYS2 and assign permission. 4. In SYS2 (Member Server) go to DFSManagement and Expand Namespaces 5. Right click on namespace name and Select New Folder 6. Enter the Name (Ex: Sales 1)and click Add. 7. Enter the path for folder target (\\Systemname\Sharefoldername)&click OK. 8. Similarly add another DFS Folder (Ex: Sales2) and folder target \\SYS2\Sales2. 9. Go to DFS Management, Expand Namespaces, and select \\Microsoft.com\Sales. VERIFICATION: 1. In SYS2 (Member Server),Go to Start, type Run in Search Apps, and select Run, type\\Domainname\Namespace Name (Ex: \\Microsoft.com\Sales) 2. It will display the contents (Folder) of Namespace.

Server Administration 2012 Lab-25 Configuring Namespace In DFS

1. In SYS2 (MemberServer) Go to Start,select DFS Management. 2. Right click Namespaces and Select New Namespace 3. Enter the Server Name in which DFS Installed and Select Next. 4. Enter Name for the Namespace (Sales)and click Edit Settings. 5. Select the Permissions Administrators have full access, other users have read and write permissions, and click Next. 6. Select Domain Based Namespaceclick Next 7. Click Create 8. Select Close

Server Administration 2012 Lab-24 Installing Distributed File System (DFS)

1. In SYS2 (Member Server), Go toServer Manager. Click Add roles and features. 2. In Before you begin page, click Next 3. Select Role-based or feature-based installation. 4. In Select destination server, from Server Pool select SYS2.Microsoft.com, click Next. 5. Expand File and Storage Services, Expand File and iSCSI Services, check box DFSNamespaces. 6. Click Add Features, to install the required features for DFS Namespaces, Click Next. 7. In Select features wizard, click Next. 8. Check the box Restart the destination server automatically if required. Click Install. 9. Click Close.

Server Administration 2012 Lab-23 Active Directory Recycle Bin

1. Log in as Administrator to the Domain Controller (SYS1). 2. Verify for the Forest and Domain Functional Level to Windows Server 2012. 3. Go to Start, select Active Directory Administrative Center. 4. In Active Directory Administrative Center, select Microsoft (Local), click Enable Recycle Bin 5. Click OK to confirm the Enable Recycle Bin feature. 6. Click OK, and Refresh Active Directory Administrative Center now. 7. Go to Start, select Active Directory Users and Computers. 8. Right click User (User1) and select Delete, click Yesto confirm the deletion. 9. Go to Active Directory Administrative Center, select Microsoft (local), Deleted Objects c 10. Select the User account (User 1) to be restored, right click and select Restore. Verification 1. Go to Start, Select Active Directory Users and Computers, and verify for the restored user account.

Server Administration 2012 Lab-21 Creating an Organizational Unit (OU)

DISTRIBUTED FILE SYSTEM  Pre-requisites: Before working on this lab, you must have 3. A computer running windows 2012 server Domain Controller. 4. A computer running windows 2012 server or windows 7. Domain:MICROSOFT.COM SYS1 Domain Controller Member Server Client IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 SYS2 IP Address 10.0.0.2 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 1. Press Windows Key to go to Start, select Active Directory User and Computers. 2. Right click Domain NameNewOrganizational Unit. 3. Enter the name for OU (Ex: Sales1) and click OK. 4. Create Users in the Sales 1 OU (Ex: S1, S2, S3)

Server Administration 2012 Lab-20 Configuring Storage Reports Management using FSRM

1. Go to Start, File Server Resource Manager, right click Storage Reports Management and select Generate Reports Now. 2. In settings page, check box File Screening Audit. 3. Select Scope, click ADDand select the home folder (Ex: D:\Home). 4. Select Wait for reports to be generated and then display them, click OK. 5. It Generates the Storage Reports 6. Select the File Screening Audit Report and Open the report. 7. Verify the Report for Blocked image file creation by the users.

Server Administration 2012 Lab-19 Configuring File Screening Using FSRM

1. Go to Start, File Server Resource Manager, Right click on File Server Resource Manager and select Configure Options. 2. Check the box Record file screening activity in auditing database, click OK. 3. Expand File Screening Management, right click File Screens and select Create File Screen. 4. Click Browse to select the File screen path, select option Block Image Files, and click Create. 5. Right click on the created file screen, select Edit File Screen Properties. 6. Select the Screening type Active screening, click OK. Verification 1. Log in as User (User1) on Client or Member Server (SYS2), 2. Open Computer, Network drive Z: (Home Folder) and try to create a New Bitmap Image file. 3. Verify for Access Denied Page.

Server Administration 2012 Lab-18 Configuring Quota Management using FSRM

1. Go to Start, select File Server Resource Manager. 2. Expand Quota Management, right click Quotas, and select Create Quota. 3. Click Browse and Select the Quota path (Ex: D:\Home) 4. Select Auto apply template and create quotas on existing and new sub folders. Select the limit and click Create. Verification 1. Log in as User (User1) on Client or Member Server (SYS2), Open Computer. 2. Verify the Size of the Network drive Z: (Home Folder). 3. Login as other users and verify the size of the Home Folder.

Server Administration 2012 Lab-17 Installing FSRM Role Service

1. In Server Manager Dashboard, click Add roles and features. 2. In Before you begin page, click Next. 3. In Select installation type, select Role-based or feature-based installation, click Next. 4. In Select destination server, from Server Pool select SYS1, click Next. 5. In Roles, expand File and Storage Services, expand File and iSCSI Services, check the box File Server Resource Manager, click Next. 6. Click Add Features, to install the required features for Active Directory Domain Services. Click Next. 7. In Select features wizard, click Next. 8. Check the box Restart the destination server automatically if required. Click Install. 9. Click Close, to complete the installation

Server Administration 2012 Lab-16 Configuring Home Folder

1. Log on to DC as Administrator, Open Computer  Go to a drive and create a shared folder home with Everyone Read/Write permission. 2. Go to Active Directory Users and Computers select Users and right click User user1 and click Properties. 3. Select the Profile tabUnder the Home folder, select Connect and Select a drive letter Z: and in To: enter\\ServerName\ShareName\UserName. Example: \\SYS1\home\user1. 4. Click Apply and OK. Verification: 1. Login as user (user1) on Client or Member Server. 2. Open Computer, Locate Home folder under network drives.

Server Administration 2012 Lab-15 Configuring Roaming Profiles

1. Log on to DC as Administrator, Open Computer  Go to a drive and create a shared folder roam with Everyone Read/Write permission. 2. Go to Active Directory Users and ComputersExpand the Domain Name (MICROSOFT.COM)click UsersRight click the User(user1) and select Properties and select the Profile tab. 3. Under User profile enter profile path as Syntax: \\Servername\Shared FolderName\User Name Example: \\SYS1\roam\user1. 4. Click Apply and OK. Verification: 1. Login as user user 1 on Client or Member Server and create some files on the Desktop. 2. In Control Panel search bar, type user profile, select Configure advanced user profile properties. 3. Verify for User Profile Type and Status to be Roaming. 4. Logoff this user (user 1)and login on another computer with the same user (user 1), we can see the files which we have created on first computer.

Server Administration 2012 Lab-14 Configuring Local Profiles

PROFILES&FILE SERVER RESOURCE MANAGER Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server or windows 7. SYS1 Domain Controller Member Server IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 SYS2  Client IP Address 10.0.0.2 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 1. Log on to Domain Controller as Administrator. 2. Go to Active Directory Users and Computers and create Users (Ex: user1, user2). Verification: 1. Login as User (user 1) on Client or Member Server. 2. Press Windows key to go Start, 3. Type Control Panel in Search Apps, and select Control Panel. 4. In Control Panel search bar, type user profile, select Configure advanced user profile properties. 5. Verify for User Profile Type and Status to be Local. 6. Create some files on desktop and go to C: drive Open Users  Open the user profile(user 1) folder  open desktop fol

Server Administration 2012 Lab-12 & 13 Security & Share Level Permissions

Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server or windows 7. Domain: MICROSOFT.COM SYS1 Domain Controller Member Server IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 SYS2 Client IP Address 10.0.0.2 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 Lab – 1: Security Level Permissions 1. Open Computer Go to any NTFS partition and create a folder (DATA), along with some files in it. 2. Right click the folder (DATA) and select propertiesand click Security tabclick Advanced tabclick Editclick Disable inheritance. 3. ClickRemoveApplyOKOK 4. Click Edit 5. Add Administratoror Administratorsand allowFull controlpermission. 6. Then Add the Users (User1) and Allow Read permission. 7. ClickApplyOKOK Verification: 1. Login as User(User1) on the same computer, and Open Computer icon, and verify the respective permissions by accessing t

Server Administration 2012 Lab-11 Changing Allow Logon Locally Policy

1. Log in as Administratorto theDomain Controller, click Press Windows Key to go to Start, select Group Policy Management. 2. Expand ForestExpand DomainsExpand Microsoft.comExpand Domain ControllersRight click Default Domain Controller Policy and select Edit. 3. Expand Computer ConfigurationExpand PoliciesExpand Windows SettingsExpand Security SettingsExpand Local PoliciesSelect User Rights Assignment Double click Allow logon locally. 4. Click Add User or GroupClick BrowseEnter the UsernameClick OK. 5. Click OKOKApply and OK. 6. Go to Start, type Run Type Control Panel in Search Apps, and select Run, type GPUPDATE and it refreshes the policy changes. Verification: 1. Log on to Domain Controller as Domain User (User 1)

Server Administration 2012 Lab-10 Enabling Account Lockout policy

1. Log on to D.C as Administrator, click Press Windows Key to go to Start, select Group Policy Management. 2. Expand ForestExpand DomainsExpand Microsoft.comright click Default Domain policy and select Edit. 3. Expand Computer ConfigurationExpand PoliciesExpand WindowsSettings Expand Security SettingsExpand Account PoliciesOpen Account Lockout Policy. 4. Double click, Account lockout threshold. 5. Enter the Value for Number of invalid logon attempts(Ex: 2) 6. Set the Account lockout duration and clickOK. 7. Close the Group Policy Management Window. Verification: 1. Enter the password for user (User1) wrongly for 2 times while logging in and the user account will be locked. Unlocking the locked User accountManually 1. Log on to D.C as Administrator, click Start  Programs Administrative Tools Active Directory Users and Computers. 2. Right click the User (User1) and select Properties. 3. Check the box Unlock account click Apply and OK. Verification: 1. Log in a

Server Administration 2012 Lab-9 Changing Default Password Policy

1. Log in as Administratorto theDomain Controller. 2. Press Windows Key to go to Start, select Group Policy Management. 3. Expand ForestExpand DomainsExpand Microsoft.comright click Default Domain policy and select Edit. 4. Expand Computer ConfigurationExpand PoliciesExpandWindowsSettingsExpand Security SettingsExpand Account PoliciesOpenPassword Policy. 5. Double click Minimum Password Length. 6. Change the length value from (7 to 0) and click Apply and OK. 7. Double click Password must meet complexity Requirements. 8. Select Disabled and Apply and OK. 9. Go to Start, typeRun in Search Apps, and select Run 10. Type GPUPDATE and It refreshes the policy changes. Verification: 1. Go to Active Directory Users and Computers and Create a User with any Password or without any Password.

Server Administration 2012 Lab-8 Creating Domain User Accounts

1. Log in as Administrator to the Domain Controller . 2. Press Windows Key to go to Start, select Active Directory User and Computers. 3. In the console tree, expand your domain MICROSOFT.COM , and then right click Users Container, select New User. 4. Specify the First name and User Logon name and then click Next . 5. Enter the Password and Confirm Password for the User account, click Next . 6. Review the configuration settings for the User Account and then click Finish. Verification: 1. Login as User ( User1@Microsoft.com ) in Member Server or Client.

Server Administration 2012 Lab-7 Member Server

Configuring Member server 1. Log in as Administrator to Workgroup Computer . 2. Click Server Manager. 3. In Server Manager Dashboard, Click Configure this local server . 4. In Local Server, select WORKGROUP . 5. In the System properties dialog box click Change. 6. Select Member of DOMAIN and enter the Domain Name . (Ex: Microsoft.com ) 7. Enter the user name Administrator and Password. Click OK . 8. Welcome Message appears indicating that the computer was successful in joining the Domain, click OK. 9. Click OK  click OK, and click Close to close the System Properties dialog box. It will ask for restart, click Yes. 10. After restarting the computer it will become Member Server. Verification: 1. Go to Server Manager, select Local Server. 2. Verify for the Domain MICROSOFT.COM.

Server Administration 2012 Lab-7 Configuring Client(Windows 7)

  Pre-requisites: Before working on this lab, you must have 1. A computer running windows 2012 server Domain Controller. 2. A computer running windows 2012 server or windows 7.  MICROSOFT.COM Domain Controller Member Server / Client SYS1 IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 SYS2 IP Address 10.0.0.2 Subnet Mask 255.0.0.0  Preferred DNS 10.0.0.1 Lab – 1: Configuring Client(Windows 7) 1. Log in as Administrator to Workgroup Computer . 2. Right click Computer Icon and click Properties and click Change settings. 3. In the System properties dialog box click Change .   4. Select the Member of Domain and enter the Domain Name(Ex: Microsoft.com ). 5. Enter the user name Administrator and Password, click OK. 6. Welcome Message appears indicating that the computer was successful in joining the Domain, click OK and OK , It will ask for restart, click Restart Now. 7. After restarting the computer, it will become Client. Veri

Server Administration 2012 Lab-5 & 6 ACTIVE DIRECTORY

Before working on this lab, you must have 1. A Computer with Windows Server 2012 Operating System and connected in the network. MICROSOFT.COM SYS1 Domain Controller IP Address 10.0.0.1 Subnet Mask 255.0.0.0 Preferred DNS 10.0.0.1 SYS1 Lab – 1: Assigning IP Address 1. ClickServer Manager. 2. In Server Manager Dashboard, Click Configure this local server. 3. In Local Server, select Ethernet IPv4 address assigned by DHCP. 4. Right click Ethernet, select Properties. 5. Select Internet Protocol Version 6 (TCP/IPv6) and uncheck the box. 6. Select Internet Protocol Version 4 (TCP/IPv4) and clickProperties. 7. Select Use the following IP addressand enter the IP address and click Subnet mask, it will be entered automatically and select Use the DNS Server addresses and enter the Preferred DNS Server address 8. ClickOK, and OK. Lab – 2: Installing Active Directory 1. Log in as Administrator to the Workgroup Computer. 2. Assign IP Address and preferred DNS Server Address. 3. Cli

Server Administration 2012 Lab-4 Converting Windows Server 2012 Core to GUI

1. Login to Computer as Administrator 2. In Command Prompt, type PowerShell. 3. In PowerShell type the following command to convert Core to GUI. Install-WindowsFeature Server-GUI-Mgmt-Infra, Server-GUI-Shell -Restart 4. It installs the required GUI features and restarts 5. Login as Administrator and finally Core is now converted to GUI.

Server Administration 2012 Lab-2 Creating Local User Accounts

1. Login as theAdministratorto theComputer. 2. Press WindowsKey to go to Start, type Computer Management in Search Apps, and select Computer Management. 3. ExpandComputer ManagementExpand System Tools Expand Local Users and Groupsright click Users and then click New User. 4. Enter User Nameand set Password, Confirm Password and clickCreate. 5. ClickClose, and thenClose Computer Management. Verification: 1. Press Ctrl + Alt + Del Click SwitchUser or Logoff Administrator. 2. Login as User (User1) on same computer.

Server Administration 2012 Lab-1 (Client)

Before working on this lab, you must have A Computer and Windows 7 Operating System DVD. InstallingWindows 7 Operating System 1. Restart the System and go to BIOS. 2. Set the First Boot Device as DVD ROM. 3. Save the settings by Pressing F10 and clickYES. 4. Insert Windows 7DVD and Restart the system. 5. Press any key to boot from the CD or DVD. 6. System copies the files from DVD. 7. Select the language to install English and click Next. 8. ClickInstall now. 9. Check the box I accept the license terms 10. Select Custom Installation. 11. ClickDrive options. 12. Select Unallocated Space and clickNew. 13. Enter the size for the partition, and clickApply. 14. Select the Partition and clickNext. 15. Windows Installation will start. 16. System Restarts. 17. Completes the Installation, and system will be restarted. 18. Enter the User Name and Computer Name, clickNext. 19. Set a password for the account, and clickNext. 20. Configure Automatic Updates Ask me later. 21.

Server Administration 2012 Lab-1

A Computer and Windows Server 2012 Operating System DVD. Lab – 1: Installing Windows Server 2012 Operating System 1. Restart the System and go to BIOS. 2. Set the First Boot Device as DVD ROM. 3. Save the settings by Pressing F10 and clickYES. 4. Insert Windows Server 2012DVD and Restart the system. 5. Press any key to boot from the CD or DVD. 6. System copies the files from DVD. 7. Select the language to install English. 8. ClickInstall now. 9. Select the edition Windows Server 2012Standard (Server with a GUI), click Next. 10. Check the box I accept the license termsand click Next. 11. Select Custom Installation. 12. ClickDrive options. 13. Select Unallocated Space and clickNew. 14. Enter the size for the partition, and clickApply. 15. Select the Partition and clickNext. 16. Windows Installation will start. 17. System Restarts. 18. Completes the Installation, and system will be restarted. 19. Enter Password and Re-enter Password for Administrator account, click F