
Engage with the course orientation for administering Windows Server 2012 (70-411) and access offline resources, discussion boards, and tools like crossword puzzles, flashcards, and PDFs to support your learning.
Explore image-based deployment with Windows Deployment Services (WDS) to deploy Windows Server 2012 efficiently in large networks, and implement updates, software installation, and ongoing monitoring for peak reliability.
Learn how image deployment speeds up OS installation with Windows Deployment Services, covering PXE boot, light touch, zero touch, multicast, and storing images on a network share.
Install and configure Windows deployment services to enable image-based deployments, configure images and boot images, and automate deployment tasks with powershell.
Configure Windows Deployment Services to add boot and install images, set PXE boot policies, and use answer files with Windows System Image Manager for automated deployments.
Learn to administer Windows Deployment Services, configure DHCP scopes, and manage image deployment with tools such as Windows SIM, DISM, USMT, Sysprep, DiskPart, and the BCD store.
Add boot and install images to Windows Deployment Services by browsing the wim files in sources. Create an image group, select standard edition, and customize with dism.
Leverage Windows Deployment Services to deploy operating systems across enterprise networks, using customized or standard configurations, and install the WDS role to image Windows Server 2012 and clients.
Explore how Windows Server Update Services enables centralized patch management for Windows Server 2012, detailing WSUS installation, configuration, and options to deploy updates and defend against vulnerabilities.
Centralized patch management keeps Windows clients and servers up-to-date by applying patches, hotfixes, rollups, cumulative updates, and service packs to address vulnerabilities and maintain security and stability.
Configure WSUS as an update server that downloads updates from Microsoft Update, distributes them to local clients, and follows the four phases—assessment, identify, evaluate and plan, deployment—for testing and approval.
Install and configure a single wsus server to manage updates for the local network, using groups, languages, products, and classifications to optimize synchronization and bandwidth.
Install and configure Windows Server Update Services (WSUS) via Server Manager, set up components and storage, then handle post-install tasks like Windows Internal Database, automatic approval, and computer groups.
Configure the automatic updates client via group policy to point to the intranet wsus server and set frequency and install method; use wsus console for approvals, computer groups, and testing.
Leverage Windows Server Update Services (WSUS) to download updates to a local server and distribute them across your environment. Enable automatic approvals, testing, and reports to ensure consistent security patches.
Explore performance monitoring for Windows Server 2012, learning its purpose and benefits, and compare tools like performance monitor, event viewer, resource monitor, and task manager with third-party enterprise-level monitoring solutions.
Explore proactive performance monitoring for Windows Server 2012, using baselines and capacity planning to identify bottlenecks, meet SLAs, and interpret CPU time, processor queue length, memory, disk, and network counters.
Explore Windows Server 2012 performance monitoring tools—five tools including Task Manager, Resource Monitor, Event Viewer, Performance Monitor, and Windows Network Monitor—with optional SCOM for enterprise monitoring.
Gain hands-on with Windows Server 2012 performance monitor to track objects, instances, and counters in real time, log data, and build baselines using data collector sets and alerts.
Demonstrate using performance monitor in Windows Server 2012, adding counters such as percent processor time, memory, disk, page fault per second, and configuring data collector sets and alerts.
Learn to use Windows Server 2012 Event Viewer to monitor performance, analyze logs, and diagnose issues across local and remote servers through custom views and event subscriptions.
Explore how to use the Event Viewer in Windows Server 2012 to troubleshoot with logs, categories, and custom views, and automate responses with tasks and subscriptions.
Explore resource monitor and task manager for real-time, filterable performance data in Windows Server 2012, with performance monitor and event viewer covering cpu, memory, disk, network, and reliability history.
Learn performance monitoring in Windows Server 2012 using performance monitor, data collector sets, baselines, event viewer, resource monitor, and task manager to sustain stability and productivity.
Explore the distributed file system (DFS) in Windows Server 2012, covering installation, configuration, replication, and reporting to manage secure access, track usage, and storage growth.
Learn how Windows Server 2012 DFS creates a single logical namespace across multiple servers, uses replication to keep replicas in sync, enables fault tolerance, and supports data deduplication.
Install the DFS role service on Windows Server 2012, create a DFS namespace with folder targets, and configure replication and referrals to enable fault-tolerant, scalable file access.
Install and configure DFS, create a DFS namespace, publish Chicago and New York shared folders, and map targets across servers for fault tolerance and load balancing.
Configure DFS replication by creating replication groups, choosing topology and schedule, designating a primary member for initial synchronization, and monitoring health with DFS management tools.
Configure replication in the distributed file system using the DFS management console, adding folder targets, creating a replication group, and selecting a full-mesh topology with continuous replication and bandwidth controls.
Explore how the distributed file system in Windows Server 2012 enables a logical folder hierarchy and fault-tolerant access, using namespaces and replication to synchronize data across servers.
Discover the file server resource manager in Windows Server 2012, including capacity management, disk quotas, file screens, and on-demand reporting to optimize storage and plan future needs.
Explore how File Server Resource Manager in Windows Server 2012 boosts capacity management with quotas, file screening, automatic classification, and management tasks, plus comprehensive reports.
Install and configure file server resource manager (fsrm) to manage quotas, file screening, storage reports, email notifications, classification management, and access denied assistance on Windows Server 2012.
Learn how file server resource manager configures storage quotas at volume or folder levels with hard and soft quotas, threshold-based alerts, and reusable templates for consistent limits.
Configure disk quotas with the file server resource manager to control storage across folders and monitor quota usage. Edit quota templates, set thresholds, and configure alerts to notify administrators.
Configure file screens in the File Server Resource Manager to enforce allowed file types in a folder, using file groups and templates, with exceptions and optional email notifications.
Configure file screens with file server resource manager by creating file groups and templates to block or monitor files, set up email alerts, and use PowerShell to simulate file creation.
Configure and generate storage reports to monitor current utilization and plan future capacity with SRM and FSRM, and schedule on-demand or automated reports in dynamic HTML, XML, CSV, or TXT.
Explore advanced file services in Windows Server 2012 with the File Server Resource Manager role to address capacity management, growth planning, quotas, file screening, and SRM reporting.
Explore Windows Server 2012 security features by implementing Encrypting File System (EFS) and BitLocker Drive Encryption to protect local storage and individual files and folders, and entire volumes.
Explore the fundamentals of encryption concepts, symmetric and asymmetric keys, and digital certificates, then compare Encrypting File System and BitLocker for protecting NTFS data and system volumes.
Discover how the Encrypting File System on NTFS uses certificates and a file encryption key to protect data, with self-signed or online certificate authority options and sharing implications.
Explore BitLocker drive encryption on Windows Server 2012, including TPM-based full volume protection, startup key options, recovery key management, and group policy driven deployment and AD integration.
Explore configuring file and disk encryption in Windows Server 2012, including symmetric and asymmetric methods, the NTFS encryption file system, and BitLocker full volume encryption to protect server data.
Explore configuring security auditing in Windows Server 2012, plan an auditing strategy, and implement basic and advanced audit policies for granular, well-managed logs.
Plan your auditing strategy by selecting key events such as file access and administrator actions. Assign responsibilities for log review and archiving, and use Event Viewer to monitor security logs.
Configure group policy objects to monitor computer accounts and enable nine audit events, including account logon, account management, object access, directory service access, privilege use, and policy changes.
Configure advanced audit policies in Windows Server 2012 to enable granular sub-categories and global access auditing for filesystem and registry objects through group policy management.
Plan and implement security auditing in Windows Server 2012 by defining what to audit, which systems to monitor, and who maintains log files, then enable advanced auditing for granular insights.
Explore configuring DNS and managing zones and resource records to support Active Directory in Windows Server 2012, and set up VPNs, NAT, and Direct Access as network access services.
Explore the domain name system (DNS) architecture, including hierarchical namespaces, zones, SRV records, recursion, and caching, and how DNS enables Active Directory service location and domain controllers.
Install and configure DNS on Windows Server 2012 using server manager or PowerShell. Configure root hints, forwarders, and conditional forwarders to enable name resolution.
Demonstrates installing the DNS server role on Windows Server 2012, then configuring the DNS manager with forwarders, root hints, and a conditional forwarder for a partner domain.
Explore the role of DNS zones as the foundational area the server manages, and learn how to create and configure different zone types and options on Windows Server 2012.
Discover how DNS zones define authoritative portions of the namespace and resolve queries. Compare forward and reverse lookup zones, stand-alone versus Active Directory integrated zones, and caching-only configurations.
Learn how to configure DNS zones, including primary, secondary, stub, and Active Directory integrated zones, and use dynamic updates, zone transfers, and conditional forwarders to optimize replication and availability.
Demonstrates how to create and manage DNS zones in Windows Server 2012, including forward lookup, primary, secondary, and stub zone, dynamic updates, zone transfers, and start-of-authority records.
Learn to configure DNS zones in Windows Server 2012, including zone transfers, SOA serials, refresh and retry intervals, secure dynamic updates, and delegation with primary, secondary, and stub zones.
Configure dns zones, including primary Active Directory integrated zones and secondary or stub zones, enable controlled zone transfers, and use notify and refresh settings between master and secondary servers.
Learn how DNS resource records, including A, AAAA, PTR, CNAME, MX, SRV, NS, and SOA, configure and locate services in Windows Server 2012, with dynamic and manual updates.
Administrators configure DNS on Windows Server 2012 and maintain the DNS database to ensure efficient name resolution, while exploring DNS maintenance options and troubleshooting methods for servers and clients.
Learn to manage DNS records and caches by configuring TTLs, aging, and scavenging, and using ipconfig, DNS CMD, and PowerShell to view and clear client and server caches.
Learn to manage DNS records with DNS Manager, configuring aging and scavenging, refresh intervals, TTL, and clearing server and client caches via Windows PowerShell and DNS CMD.
Explore advanced Windows Server 2012 DNS options, including bind secondaries for integrating with existing bind DNS, round-robin load balancing, disable recursion, DNSSEC, and netmask ordering for fault-tolerant, location-aware responses.
Learn to troubleshoot DNS servers using DNS event logs, debug logging, and monitoring from the DNS management console to diagnose name resolution problems.
Learn to troubleshoot DNS servers with the DNS Manager, enabling debug logging and targeted queries. Explore lookups, zone transfers, and record enumeration to diagnose resolution issues.
Configure and manage the DNS role in Windows Server 2012, exploring DNS zones, resource records, and troubleshooting name resolution to support Active Directory environments and the Internet.
Explore configuring virtual private networks, network address translation, and routing in Windows Server 2012, and gain an overview of the concepts and terms used in remote access.
Learn how remote access connects home users to corporate resources via VPN or dial-up, with DHCP, Active Directory Domain Services, and Network Policy Server handling authentication and authorization.
Install and configure the remote access role on a windows server 2012 to deploy a vpn server and direct access options.
Install and configure a Windows Server 2012 machine to function as a vpn server, install the remote access server role, perform initial modifications, and manage vpn connections and protocols.
Discover how Windows Server 2012 enables remote access and site-to-site vpn over the public internet using tunneling and encryption, with pptp, l2tp/ipsec, sstp, and ikev2.
Configure a Windows Server 2012 VPN by installing the remote access role, selecting public and private interfaces, DHCP relay, and local or RADIUS authentication.
Configure a vpn server via the remote access management console in server manager, assign ip ranges, enable routing and remote access, and support pptp, l2tp, and sstp with certificate binding.
Learn to configure and automate VPN connections for remote access in Windows Server 2012, using manual setup or CMAK profiles, and enforce security with encryption, authentication, and network policies.
Demonstrates creating and configuring a VPN connection on Windows Server 2012, including using Active Directory Users and Computers, NPS policy, and validating connectivity from a Windows 8 client.
Configure the Windows Server 2012 remote access role to implement NAT, letting private internal IPs access the Internet via a public address while conserving IPv4.
Configure a Windows Server 2012 machine as a software router with multiple interfaces to connect network segments, forward packets, and implement static or dynamic routing with input and output filters.
Configure remote access and VPN on Windows Server 2012, covering authentication, authorization, prerequisites, and options like NAT and router setup for small networks.
Explore DirectAccess in Windows Server 2012, compare it to VPN and dial-up, and review server and client requirements to decide if DirectAccess fits your organization.
DirectAccess provides automatic, seamless connections to corporate resources as an alternative to vpn, using ipv6 and ipsec, with dns, nrpt, gpo, nap, and optional PKI for centralized management.
Configure direct access on Windows Server 2012 by meeting prerequisites, configuring AD DS and DNS, choosing edge vs NAT deployments, and enabling PKI and GPO setup.
Walk through configuring direct access in Windows Server 2012, a VPN substitute with bidirectional client access, covering prerequisites, edge deployment, Active Directory groups, GPO, DNS, and client settings.
Configure client computers via group policies and direct access. Include the name resolution policy table and connection security rules, IP version 6, and a certificate from a trusted certificate authority.
Explore how DirectAccess in Windows Server 2012 replaces traditional VPNs with seamless bi-directional connectivity. See how IPv6 and IPsec enable DirectAccess and review the server, client requirements, and configuration.
Explore configuring network policy server infrastructure in Windows Server 2012, including the Network Policy and Access Services role, radius authentication for remote access, network policies, and Network Access Protection.
Install and configure the Windows Server 2012 network policy server to centralize radius-based authentication, authorization, and accounting, and learn to deploy a RADIUS proxy and NAP enforcement.
Demonstrates installing the network policy server role on Windows Server 2012, enabling a centralized radius-based authentication, authorization, and health policy infrastructure via the network policy and access services console.
Radius centralizes authentication, authorization, and accounting for network access points via a Windows Server 2012 with the NPS role, validating against Active Directory and storing accounting locally or in SQL.
Explore how a network policy server functions as a radius server or a radius proxy to authenticate, authorize, and route access requests from network access points to Active Directory–integrated servers.
Configure the network policy server to use radius by adding radius clients with a shared secret and ports 1812/1813, then set up a connection request policy or proxy for authentication.
Demonstrates configuring Windows Server 2012 network policy server as a RADIUS server and the VPN server as a RADIUS client, including RADIUS clients, shared secrets, and connection request policies.
Discover how the network policy server in Windows Server 2012 authenticates and authorizes connections from a RADIUS client, using password-based and certificate-based methods for stronger security.
Explore password based authentication, where users identify with username and password, compare pap, chap, ms-chap, and eap, and consider certificate based authentication and md5 hashing for stronger security.
Configure certificate-based authentication in Windows Server 2012 by deploying a PKI with AD CS, creating certificate templates, and enabling auto-enrollment via Group Policy to support EAP-TLS and PEAP.
Demonstrates configuring cert-based authentication by installing Active Directory Certificate Services, setting up certificate templates and auto enrolment, and using group policy to auto-enroll computer certificates.
Explore the network policy server role in Windows Server 2012, including radius server, network access protection, and centralization of authentication, authorization, and accounting for logon requests across network access points.
Introduce configuring network policies and network policy server templates to control which clients and connections can access servers, and explain authorization versus authentication.
Explore how remote access authorization works in Windows Server 2012, including user dialing permissions, network policy permissions, and centralized RADIUS-based authorization for multiple network access servers.
Configure and apply granular network policies on Windows Server 2012 (70-411) using conditions, constraints, and settings to control VPN and dial-in access, including group and time-based restrictions.
Configure and manage network policies in the network policy server to control access and authorization with conditions like user groups, daytime restrictions, and time-based rules.
Explore how network policy server templates duplicate configurations for RADIUS clients, shared secrets, remote servers, health policies, and packet filters, with import/export to reduce administrative overhead in larger organizations.
Learn to create and reuse network policy server templates for shared secrets, radius clients, health policies, and filters, and export or import these templates across servers to reduce administration.
Define and apply network policies for remote access authorization, using dial and network policy permissions with multiple conditions to control each connection request via radius.
Discover how network access protection in Windows Server 2012 controls client connectivity based on compliance, and configure the system health validator, health policies, and enforcement clients like DHCP and VPN.
Enforce health requirements for client computers and manage access via nap health policy server, enforcement points, remediation, and a restricted network for non-compliant devices.
Learn how network access protection enforces client health with enforcement points and health policies. Explore methods like ipsec, dhcp, vpn, direct access, and 802.1x for compliant network access.
Configure network access protection and system health validators to enforce client compliance by evaluating statements of health against health policies, covering firewall status, anti-malware, and automatic updates.
Configure health policies for network access protection to determine compliance, then apply them as conditions in network policies to grant or block access.
Enable nap client settings via group policy and dhcp for domain computers. Use nps and security center to enforce compliance and restrict noncompliant clients.
Configure network access protection on Windows Server 2012 to enforce client compliance by requiring firewall, antivirus, and updates. Deploy NAP clients via local settings or GPO and define health policies.
Discover how to configure and manage Active Directory Domain Services in Windows Server 2012, including creating users and groups, domain controllers, disaster recovery, account policies, and group managed service accounts.
Learn to manage Active Directory domain services by creating and organizing user and computer objects in domains and organizational units, enabling authentication and policy enforcement.
Manage users, groups, and computers in Windows Server 2012 with Active Directory tools, especially the Administrative Center, PowerShell, and features like the Active Directory Recycle Bin and dynamic access control.
Explore Windows PowerShell for Active Directory administration, creating and managing objects in bulk, using verbs like get, set, and add, and leveraging tab completion for efficient Server Core workflows.
Configure Windows Server 2012 service accounts for applications running on servers and clients to access server data and network files, using the grouped managed service account to reduce administrative overhead.
Explore configuring application services with standard user or managed service accounts, and explain why managed service accounts address password, SPN, and administration challenges of domain accounts under a least-privilege approach.
Administer Windows Server 2012 by configuring accounts for service logons, including local system, domain users, and managed service accounts, while handling passwords and service principal names.
Discover how managed service accounts simplify application authentication and automatic password management, enable SPN management, and support group managed service accounts across multiple servers in Windows Server 2012 environments.
Initialize ad kds root key, then create and associate a group managed service account with the host server using PowerShell, install the service, and configure the application to use it.
Learn to configure and use managed service accounts in Windows Server 2012 with PowerShell, register SPNs in DNS, and simplify password management by delegating access, installing the Active Directory module.
Learn how to manage Active Directory objects, understand the object concept and security principals in the domain database, create various object types, and use managed service accounts.
Install and manage domain controllers in Active Directory, covering domain controller roles, single operation masters, and Windows Server 2012 virtualization features; explore read-only domain controllers and global catalogs.
Understand how domain controllers host a writeable Active Directory database, enable centralized administration, and support multimaster replication across domains, trees, forests, and organizational units.
Explore FSMO roles in Active Directory, including schema master, domain naming master, read master, infrastructure master, and the PDC emulator. Learn safe transfer and seize methods using ADUC and TDSUTIL.
Learn to configure and transfer the single FSMO roles such as the PDC emulator, infrastructure master, domain naming master, and schema master using GUI tools or NTDSUTIL, with caution.
Explore safe cloning and safe restore of virtual domain controllers in Windows Server 2012. Use VM generation IDs and XML guidance to preserve Active Directory replication.
Implement read-only domain controllers (ROTC) to provide local authentication in branch offices with cached passwords and optional read-only DNS and global catalog, deployed via the AD DS wizard.
Demonstrates staging and deploying a read-only domain controller (RODC) using Active Directory Users and Computers, configuring DNS and global catalog options, password replication policies, and an unattended promotion workflow.
Learn how global catalog servers store all domain partitions, support upn logon and universal group caching, and guide placement and promotion decisions for single and multi-domain environments.
Promotes a PC to a global catalog server using server manager and Active Directory sites and services, configures a branch office site, and enables universal group membership caching.
Explore implementing and configuring Active Directory with three domain controllers, including single operation masters roles, safe cloning, safer store, read-only domain controllers, and configuring global catalog servers on domain controllers.
Learn to maintain Active Directory database, including partitions, physical database, and programs involved in maintenance, and plan and implement disaster recovery for Active Directory objects in Windows Server 2012.
Explore how the Active Directory database uses the extensible storage engine with in-memory changes and transaction logs for recoverable updates across domain controllers and partitions: domain, configuration, schema, and application.
Learn to perform Active Directory Domain Services maintenance on Windows Server 2012 with NTDSUTIL, without rebooting, including offline defragmentation, database snapshots, and moving database and log files.
Demonstrates AD DS maintenance operations, including stopping the Active Directory service, performing offline defragmentation, running integrity checks, copying the compacted database, and restarting services.
Plan disaster recovery for Active Directory by using backups, domain controllers, and snapshots; then restore deleted objects via tombstones or the Active Directory recycle bin.
Learn Active Directory disaster recovery techniques, including using the recycle bin to recover deleted objects and mounting a database snapshot with PowerShell to recover tombstones.
Study the Active Directory database structure, including physical files and logical partitions, and understand maintenance tasks like defragmentation, moving databases and log files, and recovery of directory objects and backups.
Configure Active Directory account policies to enforce password requirements and security settings with Group Policy. Apply fine-grained password policies to individual users or groups on Windows Server 2008 and later.
Explore how account policies in Active Directory control password complexity, length, history, and aging, and configure lockout settings for local and domain accounts to strengthen authentication.
Configure domain account policies with group policies in the proper active directory location, using fine-grained password policies to override the default domain policy for individual users or groups.
Configure fine-grained password policies in Windows Server 2012 by creating password settings objects (PSL) and applying them to users or groups via ADAC or PowerShell, with precedence rules.
Explore configuring fine-grained password policies using password settings objects in Server 2012, setting precedence, minimum length, complexity, age, and lockout for the IT admins group.
Explore how account policies configure password related settings to enforce higher security in Active Directory using group policy and the fine grain password policy object (PSL).
Explore how group policy provides configuration management for desktops and applications in Windows Server 2012, using Active Directory to implement processing. Understand the infrastructure and management framework for group policy.
Learn how group policy enables centralized configuration management across Windows Server 2012 Active Directory, applying user and computer settings via GPOs linked to domains and OUs, enforced by client-side extensions.
Explore how Group Policy settings control users and computers, using Administrative Templates to write registry changes, enforce centralized policies, and employ a central ADMX template store for consistent management.
Explore how group policy controls desktops in Active Directory environments by configuring domain computers, ensuring software availability and data access, and using scripts to streamline management.
Explore deploying software with Group Policy in Windows Server 2012, including distribution shares, GPOs, MSI/transform file deployments, and managing upgrades, removals, and reporting.
Redirect user folders to a network share via group policy, providing roaming-like access without roaming profiles. Configure basic or advanced redirection for documents, app data, and desktop with offline files.
Configure folder redirection via a group policy object, using the group policy management console to redirect documents and other folders to a shared path with basic and advanced options.
Deploy user and computer scripts with group policy, including startup, logon, logoff, and startup/shutdown options; compare with group policy preferences and PowerShell script support, and learn deployment steps.
Deploy log on, log off, startup, and shutdown scripts using group policy objects and preferences in Active Directory to automate user and computer tasks.
Learn to configure Group Policy Preferences in Windows Server 2012 to automate drive mappings, registry entries, and startup settings with item-level targeting, a non-mandatory, persistent approach.
Explore implementing configuration management in a Windows Server 2012 environment using Group Policy, including Group Policy components, infrastructure, settings, and practical applications like folder redirection and software deployment.
Learn how group policy is applied and processed for users and computers across the enterprise, detailing the services and steps that enable an efficient GPO infrastructure on Windows Server 2012.
Understand how group policy objects link to domains, OUs, and sites, how startup and logon processing determine policy application, conflicts, and inheritance.
Explore how to control group policy application using organizational units, blocking inheritance, enforcement, security filtering, and WMI filters in a Windows Server environment.
Learn to control group policy application using organizational units, blocking inheritance, enforcement, security filtering, and WMI filters to target appropriate users and computers.
Explore how group policy processing works, including the order of policy application, administrative templates, client-side extensions, slow-link detection, and loopback processing to define computer-based environments.
Explore how group policy processing works in a domain, detailing GPO structure, client-side extensions, slow link detection, and loopback processing for computers and users.
Configure group policy processing with the Group Policy Management Console, applying defaults at domain, organizational unit, or site, and manage loopback and slow link settings.
Explore how group policy applies to users and computers within Active Directory, including inheritance, blocking inheritance, enforcing policies, and security group filtering for reliable configuration management.
Learn to manage group policy objects, delegate control, and perform GPO actions using the Group Policy Management Console, while covering disaster recovery and backup options.
Plan delegation of control across group policy in active directory. Grant read, edit, and linking rights to administrators while following best security practices for large environments.
Delegate administrative control in group policy across containers, GPOs, and WMI filters with the Group Policy Management Console, and grant permissions to read, edit, link, and manage inheritance.
Leverage the group policy framework by using the GPMC and Windows PowerShell to manage GPOs, copy policies across domain boundaries in multi-domain environments, and extend settings with custom Administrative Templates.
Use the Group Policy Management Console and Windows PowerShell to manage and automate Group Policy Objects, including backup, restore, import, and cross-domain migration with a migration table and scheduled tasks.
Explore managing group policy with the GPMC and Windows PowerShell, including backing up, restoring, copying GPOs, and using a migration table for cross-domain security translations.
Use the Group Policy Management Console to copy or import GPO settings across domains or forests, translating security principals with migration tables when needed.
Create a central store from the policy definitions folder and import custom administrative templates (atm x and html files) into the domain, enabling gpmc to retrieve them for all gpos.
Create a central store for custom administrative templates and copy policy definitions to the domain controller. This ensures templates load from the central store in GPOs.
Back up group policy objects with the group policy management console or PowerShell, store backups on a separate drive, and restore or import GPOs while safeguarding default domain policies.
Distribute administrative control through management group policy objects to ensure secure, logical administration across a distributed Active Directory. Review administrative tools, custom templates, and backup options for GPOs.
Discover updates to Windows Server 2012 R2 virtualization, including safe domain controller virtualization, remote access enhancements with VPN and application proxy, DFS improvements, and VM templates for deployment and savings.
Ensure safe virtualization of domain controllers by preventing replication issues when restoring snapshots, using vm generation identifier support and invalidating the local RID pool to refresh identity.
Clone domain controllers via the Cloneable Domain Controllers group to rapidly deploy Active Directory Domain Services, recover in cloud environments, using PowerShell to create dccloneconfig.xml and import the virtual machine.
Learn to clone domain controllers by adding the DC to the clone group and generating an XML clone config with PowerShell to quickly deploy a new domain controller.
Discover VPN enhancements in Windows Server 2012 R2, including a multi-tenant site-to-site gateway and a remote access VPN gateway for Windows Azure cloud-based services, offloading VPN while preserving corporate access.
Demonstrates configuring virtual networking in Azure, building a site-to-site VPN between an on-premises network and a cloud gateway using Windows Server 2012 R2.
Web application proxy is a Windows Server 2012 R2 remote access role that publishes web apps to the internet from a DMZ, supporting ADFS preauthentication or pass-through authentication and SSO.
Explore the web application proxy configuration and ADFS integration, including certificate setup, DNS validation, and PowerShell steps. Learn to publish apps via relying party trusts and SAML with MFA options.
Explore how the distributed file system in Windows Server 2012 R2 replicates folders across locations. Discover features like multiple targets, local copies, and enhanced access control for reliable shared storage.
Explore how DFS provides high availability by creating a namespace and replicating a shared folder across London and Toronto servers, with read/write and read-only permissions.
Explore updates to Windows Server 2012 R2 for the 70-411 exam, including virtualizing domain controllers, remote access enhancements with VPN and Web Application Proxy, and improved distributed file system scalability.
Welcome to Administering Windows Server 2012 (70-411) from LearnSmart.
This course provides foundational knowledge of the principles, techniques, and tools needed to successfully prepare for the Microsoft Exam 70-411 that is key to earning your MCSA Solutions Associate or MCSE Solutions Expert Certifications. Once in our course review our course map to see just how we align and partner with Microsoft in providing this training.
This is the 2nd Course in our 5 Course Windows Sever 2012 Series including:
Course Overview:
This course is designed to prepare the student for the Microsoft Windows Server 2012 Exam 70-411. Students will like a look at how to administer, deploy, configure, & monitor network servers as well as various advanced files. Learn the main exam objectives by learning these key concepts we cover:
Our lectures are paired with a variety of demonstrations and quizzes giving visual example and real world look of the concepts that will be talked about.
Our sections listed below are can be taken in any order, as a review of a particular concept or exam domain. However, if you are just becoming familiar with the sever operating systems and basic networking, it is recommended that you view the courses sequentially.
Course Breakdown:
Section 1: Learn how to deploy, maintain and monitor Windows Server 2012. Utilize the deployment services, windows server update services and how the main monitoring solutions in Server 2012
Section 2: Know how to appropriately assign access rights to users, securely track access to resources, and how to provide up to date and efficient access to those resources.
Section 3: Look at the configuration of network access and services in Windows Server 2012 by become familiar with the components of DNS, how to configure and maintain DNS, and how to use remote access.
Section 4: Gain a thorough understanding of the network policy server infrastructure and how to properly configure one to benefit an organization.
Section 5: Review the enhancements and features of the Active Directory Domain Services and walk through the process of hosting a domain database and providing security-related services throughout an enterprise.
Section 6: Learn the skills needed to work within the Group Policy Management Console, how to configure and control Group Policy settings, and about the resourcefulness of Group Policy templates.
Section 7: Cover virtualization of Windows Server 2012 R2 domain controllers, updates to remote access in Windows Server 2012 R2, and updates to distributed file system in Windows Server 2012 R2.
Recommendations:
Learn from others! Here are some reviews from participants (Click on reviews to see full list of reviews)