
Explore the fundamentals of Windows Server 2012 administration, outlining course expectations, new 2012 management features, real-world server management, and certification guidance for passing the Microsoft Server 2012 exam.
An experienced Microsoft trainer and engineer shares decades of certifications, security insights, and vendor-neutral perspectives, emphasizing lifelong learning to stay ahead in enterprise IT and add value.
Explore core Windows Server administration topics from setting up domain controllers to managing Active Directory user accounts. Learn group policies and data security basics like encryption and auditing.
Discover Microsoft exam information for 70-411, including exam structure and chapter content, and apply Windows Server 2012 R2 administration concepts to real-world day-to-day management.
Explore Microsoft exam information for 70-411 and learn about deploying, managing, and maintaining Windows Server 2012 R2, including DNS, file services, Active Directory, and group policy.
Review prerequisites and core concepts for administering Windows Server 2012 R2, including Active Directory, group policy, DNS, IPv6, remote access, and image deployment.
Prepare for Microsoft's exam 70-411: administrating Windows Server 2012, the second of three exams in the track, guiding you to MCSA with enterprise deployment basics.
Advance your Windows Server 2012 R2 administration by mastering core infrastructure, monitoring, and day-to-day management, with focus on user group management, network access, and data security.
Outline the Windows Server 2012 course components, lab setup, and how to engage with demos and a hands-on demonstration environment across Windows Server 2012, Windows 8, and Hyper-V.
Identify your learning style and maximize this course by grasping Active Directory domain services, deploying a domain controller with DNS and DHCP, and preparing for the exam.
Create a six-server Hyper-V lab with Windows Server 2008 R2 and Windows Server 2012, including a domain controller and Windows 8 clients, all named Florida.
Build your own environment with free trial copies of Windows Server 2012 R2, downloading VHD or ISO to run in a Hyper-V sandbox for learning and testing.
Engage with videos, PowerPoint slides, charts, and hands-on demos in an Active Server 2012 environment to learn step by step using the Server Manager and Active Directory Administrative Center.
Review chapter 2 with a hands-on lab, learn how the lab is built, and preview teaching tools you'll rely on as we move into domain content in chapter 3.
Explore Active Directory domain services and domain controllers, outlining their responsibilities to build and secure a Windows Server 2012 network, including virtual and read-only domain controllers with a brief demo.
Explore how a domain controller, as the authentication server for Active Directory domain services, grants access to resources and manages authentication and authorization across a network.
Discover how Windows Server 2012 enables virtualization of domain controllers with Active Directory Domain Services, supporting mixed physical and virtual controllers while avoiding duplicate names and IDs during cloning.
Promote a cloned, sysprep-prepped virtual machine to a domain controller, while leveraging automated sysprep, delta-based replication, backups, and PowerShell tooling to manage domain controller scalability.
Deploy a cloned domain controller on Windows Server 2012 and ensure FSMO roles, including the PDC emulator and schema and domain naming masters, reside on a 2012 DC.
Learn to deploy and configure a cloned domain controller in Windows Server 2012 R2 Hyper-V by creating a DC clone config XML, verifying PDC availability, and using offline options.
Explore how a read-only domain controller secures branch offices by caching credentials, authenticating locally without writes, and syncing with the main domain controller under password replication policies.
install a read-only domain controller and set initial password replication policy, verify domain functional level, and use the AD DS installation wizard to create the RODC with proper naming.
Explore deploying a read only domain controller with DNS read only and a global catalog, and delegate installation and administration to the IT group.
Install the read-only domain controller (RODC) with Active Directory Domain Services via Server Manager, then promote it to a domain controller, configure DNS, and replicate with existing controllers using PowerShell.
Explore how to configure a read-only domain controller, manage password replication policies, and verify stored passwords through Active Directory Users and Computers in Windows Server 2012 R2.
Explore how domain controllers authenticate users, replicate accounts, and share domain information across locations while leveraging virtual domain controllers, cloning, backups, and read-only domain controllers for branch security.
Explore active directory domain services and database management in Windows Server 2012 R2, using graphical tools (MMC snap-in, Administrative Center) and PowerShell, plus the new recycle bin.
Explore Active Directory management with ADUC for user, group, and computer administration, plus Sites and Services, domains and trusts, and the Active Directory schema to support scalable structures.
Explore the DS administrative center, a centralized graphical interface that unifies Active Directory management with PowerShell integration and supports user and group changes, password policies, and the recycle bin history.
Master PowerShell to manage Active Directory, domain controllers, and objects; use Get-Help, pipes, and switches to create computers, manage service accounts, and handle site replication and password policy.
Understand the Active Directory database core, its partitions, domain configuration, and schema, plus the NTDS.dit file and its EDV logs and checks, and authoritative vs non-authoritative replication, backup, and restore.
Explore domain controller states and use a management tool to perform on-the-fly Active Directory backup, restore, and replication with ADSI and AD DS.
Log into the domain controller, create a snapshot with ntdsutil, and open Active Directory Users and Computers to verify changes. Delete a user account and review snapshots with ntdsutil.
Use NTDSUtil part 2 to configure a domain controller on port 50000. Verify a unique snapshot and validate it using Active Directory Users and Computers.
Demonstrate using ntdsutil to create and mount an Active Directory snapshot, verify that the manager entry predates deletion, then unmount and return to the original directory.
Leverage PowerShell and the command line to use the recycle bin in Windows Server 2012 R2, preserving attributes and links while restoring deleted objects.
Learn how to enable and use the Active Directory recycle bin via the Active Directory Administrative Center or PowerShell, and understand replication prerequisites across the forest.
Enable the Active Directory recycle bin, delete and restore users like Mary and Sam, and verify deletions appear under deleted objects before reintegrating them into their marketing and management roles.
Review active directory management through gui tools such as the MMC snap-ins, the Administrative Center, and PowerShell; explore database management, SRM, and using the Recycle Bin to recover deleted objects.
Learn manual and automatic Active Directory account creation on Windows Server 2012 R2, including managed service accounts, and automate large volumes with command line tools and PowerShell.
Manage user and device accounts in Windows Server with Active Directory, assigning groups, permissions, and home folders to share resources, using templates and automation to create and copy accounts.
Use a separate admin account for server tasks, avoid using your regular account for administration, and automate creation of a strong backup admin account via CSV.
Authenticate on the domain controller and use csvde in the command prompt to export Active Directory users to a csv file for verification and account creation.
Import user accounts with csvde on the domain controller, verify them in Active Directory Users and Computers, then enable the accounts and reset passwords for Albert and Stephen.
Explore CSVDE account creation for bulk provisioning, turning an Excel roster into a CSV and using a simple tool to auto-create many accounts.
Join a live demo exploring a lightweight format and observe how the specific tool works in applying that format.
Open the domain controller, import new users with ldifde from an ldif file, and learn how blocks of lines enable batch account creation and password changes.
Explore PowerShell as a command line scripting environment and learn how it enables automated account creation. See a demo across Windows 7, Windows 8, and Windows Server 2012.
Import user accounts with Windows PowerShell, create an organizational unit in Active Directory, import users via a configurable script, and set the RemoteSigned execution policy.
Explore the command-line PowerShell tool through a powerful demo on creating accounts, showcasing ease of use, advanced capabilities, history rollback, and saving scripts for reuse.
Wrap up the chapter on managing domain services by comparing manual and bulk account creation. Explore command-line tools for bulk account creation, including PowerShell, and learn about managed service accounts.
Explore managing user and service accounts in windows server 2012, including password and lockout policies, standard service accounts, and managed service accounts, with practical demonstrations.
Learn how to enforce domain-level security with password and account policies in group policy management, using fine-grained controls across the domain and local machines.
Explore password policy fundamentals: enforce longer length, stronger complexity, password history, and age, with examples and guidance for rolling out changes with executive buy-in.
Explore account lockout settings by configuring lockout duration, threshold, and reset options (manual or automatic), balancing security with user accessibility and helpdesk response times.
Perform a live demo of password policy and account lockout settings. See what your servers reveal about password policy and lockout statistics.
Configure domain password and account lockout policies through group policy management, editing the default domain policy to set history, age, length, complexity, and lockout duration.
Configure a fine-grained password policy for the managers group in the Active Directory Administrative Center, with global scope, minimum length 14, history 12, and 3 failed logon attempts.
Explore password policy basics and account lockout concepts, highlighting how flexible password changes, both locally and via group policy, enhance security, with more details coming in future chapters.
Learn how managed service accounts in Active Directory automate password management, restrict usage to specific servers or applications, and group MSAs for multi-server deployments, reducing abuse.
Demonstrates creating and associating a managed service account (MSA) in Active Directory using Windows PowerShell, with domain controller access and the AD module.
Configure a managed service account (MSA) for the web service in the application pool, restart the pool, and ensure the pool uses the MSA credential set up on domain controller.
Review key concepts of user account password settings and password policies, including lockout settings, and how to use managed service accounts within a group, demonstrated on the demo machine.
Explore group policy management in Windows Server 2012 R2 by creating a GPO. Understand types, domain deployment, and best practices to centralize desktop and user experience control.
Define and manage group policy objects to configure user and computer settings across Active Directory containers, with hierarchical processing and scoped reach from sites to OUs.
Explore practical gpo application to centrally manage security settings, software deployment, logon scripts, folder redirection, and centralized administration, with standardized configurations and controlled internet, firewall, and password policies.
Explore GPO types and how you apply computer and user settings at logon and refresh every 90–120 minutes, with processing order from local to site to domain to OU.
Identify the two main domain GPO types and keep the default policy lightweight. Note how GPC and GPT store data with language files, enabling replication and backup.
Create and edit a new GPO in group policy management, configure user configuration administrative templates to block a Windows app, and document changes for easy reference.
Implement group policy to control power and personalization, configuring screensaver timeout, enabling password protection, and restricting apps, then link the GPO to the domain and verify on clients.
Implement and manage group policy using Active Directory Users and Computers to create a GPO for the geeks group, control screensaver settings, and understand precedence and inheritance.
Configure the scope of another gpo by adjusting security filtering to apply only to the targeted user group, such as geeks, and set an application override on the gpo.
Configure group policy loopback processing and merge user policy settings for kiosks and test rooms by linking GPOs, setting screensaver timeout, and applying authenticated user scope.
Run gpupdate /force to apply group policy on clients, then generate and review group policy results using the wizard to verify computer and user settings.
Apply and verify group policy settings using gpresult and rsop. Back up, restore, and manage GPO scope from the group policy management console on a domain controller.
Get a high-level overview of group policy objects (GPOs): their history, components, types, and how computer and user configurations combine to apply on Windows Server 2012 R2.
Discover how group policy across your infrastructure controls the desktop experience with administrative templates, central store, folder redirection, group policy preferences, and software deployments.
Master administrative templates, also called registry templates, to predefine desktop, network, control panel, system, start menu, and printer settings in the user or computer environment before someone logs in.
Explore adm files and their evolution into Adium X Files in the X M-L format, and learn how Microsoft merges language-specific and language-neutral structures for GPO policy and the registry.
Install a centralized store as a centralized repository for policy definitions, provisioning it so the group policy management console can read a GPO from local or central locations.
Redirect folders to a network share to centralize data backups and streamline roaming profiles, ensuring access to desktop, documents, favorites, app data, gaming info, and search data across machines.
Learn how windows server 2012 r2 scripts map drives, clean up temp files, and set variables via logon, logoff, startup, and shutdown scripts, including folder redirection and basic gpo management.
Manage the user desktop with a script and folder redirection through a branch office group policy, configuring a shared folder and a logon script on the domain controller.
Create a desktop shortcut to Notepad via group policy management editor, apply level targeting to the IT group, and verify with gpupdate /force on a client machine.
Demonstrates configuring folder redirection via group policy, creating a shared redirect folder, and forcing updates to ensure users' documents redirect to a branch office path.
Configure folder redirection and scripts, test logon and logoff, and demonstrate GPO management to finalize a Windows Server 2012 R2 administration lesson.
Review creation and linking; explore folder redirection and scripts. Understand administrative templates and their language and setting files, stored locally or in a centralized repository, for chapter 9 on GPOs.
Explore how group policy objects install software on Windows Server 2012, covering requirements, deployment with MSI installers, assigning, publishing, upgrading, and a brief demo.
Learn how group policy, Active Directory, and Windows Installer enable standard software deployment, including preparation, deployment, maintenance, and removal across machines and users.
Master Windows Installer basics for deploying software with Group Policy, including MSI packaging, vendor-provided MSI, and repackaging options; automate installs with built-in permissions and support for install, repair, and removal.
Learn to deploy with GPO by assigning apps to computer or user and publishing via Start menu or control panel, with Visio licensing controlled by group membership.
Explore how upgrades differ from patches, including minor, major, and full upgrades, removal, and preserving settings, using group policy and MSP patches to manage deployment.
Manage software with group policy by creating and linking a GPO to deploy MSI/MSP packages from a distribution point, using publish or assign options and file extension triggers.
Create and deploy software with a GPO by packaging an application, choosing published or assigned deployment, handling upgrades, auto install, customizing the package, and linking the GPO with security settings.
Explore GPO software deployment using Windows Installer, whether MSR or MSP for a patch, and examine assign, publish, configure, and upgrade options, then review policy processing.
Explore Windows Server 2012 GPO processing, focusing on policy order and precedents, inheritance, WMI filters, and handling slow or no links through a practical demo.
Understand how a basic process uses client side extensions to pull, cache, and evaluate group policy objects from Active Directory, with periodic refreshes and an emphasis on policy order.
Understand the group policy processing order from local GPO to site GPO to domain and OU GPOs, processed one by one, with the last policy wins.
Explore how inheritance and blocked inheritance shape GPO application across domains and OUs, and how enforced policies apply across the board to standardize password and desktop policies.
Use WMI filters to query PCs by operating system, service pack 3, and at least two gigabytes of RAM, then deploy software to Windows XP machines.
Learn how slow and no link scenarios affect group policy processing, boot time, and security, and how to defer nonessential policies using loopback processing during disconnections.
Create and link group policy objects on a domain controller, then configure user policies to remove or disable the run command using the start menu and taskbar administrative templates.
Explore how GPOs are processed from local to domain, understand domain and OU precedence, and enable, disable, or delete links, and remove the help menu from the start menu.
Configure group policy security filtering and create a WMI filter for Windows XP, then attach the XP filter to a GPO to target authenticated users.
Review GPO processing in Windows Server 2012 R2, focusing on troubleshooting failures and excluding users to prevent disruption from filters and WMI. Explain applying GPOs with inheritance and linking.
This course is specifically for participants to gain the knowledge and skills for making the appropriate job role decisions around administering Windows Server 2012 - R2.
This course is designed for Information Technology (IT) professionals, who have Windows Server 2012 operating system knowledge and experience and want to validate the skills and knowledge necessary to administer a Windows Server 2012 infrastructure. This course is part two of a series of courses which validate the skills and knowledge necessary to implement a core Windows Server 2012 Infrastructure into an existing enterprise environment. This exam will validate the administration tasks necessary to maintain a Windows Server 2012 infrastructure, such as user and group management, network access and data security.
This training course on installing and administering Windows Server 2012 prepares participants for the Microsoft Exam 70-411.
This course will provide all the skills and knowledge for the following areas: