Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Active Directory: Domain Controllers, Operations Masters, GC
Rating: 4.5 out of 5(349 ratings)
9,271 students

Active Directory: Domain Controllers, Operations Masters, GC

AD DS components: domain controllers, global catalog, cloning domain controllers, operations masters (FSMO), and more...
Created byVitalii Shumylo
Last updated 7/2026
English
English [Auto],

What you'll learn

  • What is a domain controller?
  • What is a global catalog?
  • What are operations masters?
  • Transferring and seizing FSMO roles
  • Deploying a domain controller
  • Cloning domain controllers
  • Managing domain controllers with Powershell
  • Powershell Key Concepts

Course content

4 sections25 lectures2h 48m total length
  • Introduction3:55

    Understand how domain controllers authenticate users and computers, the global catalog, DNS and service records, and how read-only domain controllers and operations masters shape deployment.

  • What is a domain controller?4:49

    Domain controllers store the Active Directory Services database and NTDS.dit, plus the SYSVOL folder, using multi-master replication to synchronize changes and support Kerberos authentication, the KDC, and ROTC.

  • Knowledge Check: What is a domain controller?8:54

    Host and manage the Active Directory database (NTDS.dit) and authentication on domain controllers, using Kerberos and KDC, while supporting multi-master replication and SYSVOL-based Group Policy.

  • What is a global catalog?4:12

    Store a partial, read-only copy of all objects in the forest as a global catalog, containing a subset of attributes for cross-domain searches across domain controllers.

  • Knowledge Check: What is a global catalog?9:38

    Explore how the global catalog provides a partial, read-only copy of forest objects to speed cross-domain searches, while the partial attribute set in the schema controls replication.

  • Overview of domain controller SRV records3:08

    Clients query DNS SRV records, like _ldap._tcp.adatum.com, to locate the nearest domain controller. Netlogon registers domain controller records in DNS at startup and re-registers them on restart.

  • Knowledge Check: Overview of domain controller SRV records9:20

    Explore how srv records guide Active Directory domain services to locate domain controllers, optimize sign-in through site-aware dns lookups, and manage dns registration with Netlogon.

  • AD DS sign-in process4:47

    Examine the ad ds sign-in process: dns lookups locate a domain controller, authentication via lsa, and access tokens with sids and group memberships, plus tgt and service tickets for logon.

  • Knowledge Check: AD DS sign-in process9:20

    Learn how Active Directory uses DNS SRV records to locate domain controllers, how site definitions prioritize nearby controllers, and how Netlogon and ipconfig register DNS to support sign-in.

  • What are operations masters?8:08

    Learn how operations masters manage key domain controller roles, including schema master, domain naming master, read master, infrastructure master, and PDC emulator master, and how role moves prevent replication conflicts.

  • Knowledge Check: What are operations masters?8:11

    Test your understanding of FSMO operation master roles in Active Directory, including RID, infrastructure, schema, domain naming, and PDC emulator, plus time, forest, and inter-domain references.

  • Transferring and seizing roles3:16

    Transfer FSMO roles between domain controllers in Active Directory to balance workloads, letting the target receive current data; seize roles only during failures when the original domain controller is unavailable.

  • Knowledge Check: Transferring and seizing roles6:46

    Transferring FSMO roles is planned; seizing is a last resort. Use schema master via schema snap-in and infrastructure, RID, and PDC emulator via AD snap-ins; PowerShell uses force to seize.

Requirements

  • Familiarity with general Windows and Microsoft server administration and technologies

Description

This course is aimed to IT Pros and is supposed to give the viewer the information they need to know to get started with Active Directory (AD DS) and its key concepts. The goal is to provide coverage of AD DS main concepts like AD DS components: domain controllers, global catalog, cloning domain controllers, operations masters (FSMO), and more...

The course is targeted to help learning Active Directory and do your job more efficiently. 

After completing this course, you will be able to describe:

What is a domain controller?

What is a global catalog?

Give an overview of domain controller SRV records

AD DS sign-in process

What are operations masters?

Transfer and seize FSMO roles

Deploy a domain controller

Install a domain controller from Server Manager

Install a domain controller on a Server Core installation of Windows Server

Install a domain controller by installing from media

Clone domain controllers

Add Another domain controllers

Powershell Key Concepts

Install a domain controller and manage FSMO roles with Powershell

Who this course is for:

  • IT Specialists
  • System Administrators
  • Active Directory Administrators
  • Power Users
  • Automation Specialists