
Explore configuring advanced Windows Server 2012 services, overview of course expectations and basics, and differences from Windows Server 2008 R2 to prepare for certification.
Meet the instructor, a Microsoft certified trainer with decades of experience in Windows server, networking, and security, highlighting his certifications and focus areas.
Explore core topics for configuring Windows Server 2012, including Active Directory, domains, forests, DNS, and replication, plus data storage, backups, disaster recovery, high availability, and identity management and PKI.
Prepare for the Windows Server 2012 exam by mastering Active Directory domain concepts, group policy, security, remote access, and Hyper-V, while understanding DHCP, DNS, IPv4/IPv6, and certificate authority.
Learn the basics of the 70-412 certification, its focus on configuring advanced services in Windows Server 2012, and the audience level for this exam within the MCSA path.
Explore advanced Windows Server 2012 topics, including network and file services, dynamic access control, and disaster recovery. Build skills in Active Directory, Certificate Services, Federation Services, and Rights Management Services.
Explore chapter two of windows server 2012 with a lab setup using hyper-v, windows 8, and windows server 2012 to reinforce concepts through demos, previews, and varied presentation styles.
Discover how to build a Hyper-V lab with Windows Server 2008 R2 and 2012, including domain controllers and a basic DNS structure in a sandbox environment using Microsoft trial copies.
Explore a lab layout that isolates servers behind firewalls, demonstrates DMZ architecture, and connects domain controllers and clients across Florida, Georgia, and Alabama.
Blend hands-on demonstrations with varied presentation styles to teach Windows Server 2012 features, including Hyper-V replica and dynamic access control, supported by labs and server manager practice.
Explore Active Directory and Directory Domain Services in Windows Server 2012, compare single and multiple domains, and cover functional levels, upgrade options, and a domain controller installation demo.
Explore the concept of domains and domain trees in Active Directory, including domain controllers, forest structure, and how logical groupings simplify security and administration.
Explore how a forest contains multiple trees and domains in Active Directory, and how this structure impacts resource sharing, management, and security; including single versus multiple domains.
Explore why a single domain simplifies management, reduces cross-domain trusts, and leverages a global catalog, while recognizing when multiple domains or forests may be needed; see a domain controller demo.
Discover how to manage large Active Directory deployments by splitting into multiple domains for decentralized administration across regions, while maintaining security, name spaces, and delegated responsibilities.
Understand domain and forest functional levels across Windows server versions and how raising levels unlocks features such as read-only domain controllers, fine-grained passwords, and Kerberos armoring.
Learn upgrade versus migrate for Windows Server 2012, upgrading domain controllers from 2008 or 2008 R2 to 2012, demoting old servers, and migrating with SID history and a guided wizard.
Explore configuring a domain controller using server manager, adding a server, and provisioning roles and features to centralize administration across grouped machines.
Use the AD DS wizard to install a domain controller on the designated server, review Active Directory roles and tools, and note DNS and IPv6 considerations for deployment.
Install and configure a domain controller using the roles and features wizard, explore remote server administration tools, and automate setup with PowerShell scripts and XML configuration exports.
Walks through deploying a new child domain Atlanta in an existing forest by adding a domain controller on server 1, configuring DNS, global catalog, and 2012 functional level.
Install and configure a domain controller in a child domain using a PowerShell ADSI deployment script, with prerequisite checks, DNS updates, and server manager role provisioning.
Explore complex Active Directory scenarios, including upgrading and migrating domain controllers, managing forests, multiple domains and domain trees, and configuring trusts and functional levels.
Explore Active Directory domains and forests, mastering trust relationships, authentication filtering, and name suffix routing, with a hands-on demo of creating a child domain and trust.
Explore how domain trusts enable resource sharing across Windows Server forests and domains, including one-way, two-way, transitive, child and tree root trusts, automatic and manual configurations.
Understand external trusts that connect your domain to an external partner, typically one-way, sometimes two-way, to grant access to resources during mergers or migrations.
Explain forest trusts as transitive or non-transitive relationships between forests, not domains. Cover one-way and two-way configurations with complete or selective options; trusts don't automatically extend to a third forest.
Explore realm based trusts that provide authentication across domains, with transitive or non-transitive paths and one-way or two-way directions, integrating Active Directory and Kerberos.
Explore shortcut trusts as faster authentication within an enterprise, comparing two-way transitive and intransitive trusts, and applying them within a forest.
Explore selective authentication, restricting access to specific objects like a file server, and domain-wide authentication, granting access to authorized and authenticated users based on permissions.
Master sid filtering to bolster resource access controls by inspecting attributes in authentication requests, such as security IDs and domain origin, and using this information to filter trust.
Configure and troubleshoot name suffix routing in Active Directory forests, explaining default unique naming across domains and how to turn off routing to control trust traffic.
Create a child domain between Tallahassee and North Florida domain controllers. Set up a forest trust and DNS delegation with A and IPv6 records, then install active directory domain services.
Promote a server to a domain controller to create a child domain named NFL in North Florida within an existing forest, with DNS delegation and an outgoing trust configured.
Create a child domain and build a trust while configuring dns on the master dns server, adding a forward lookup zone and a stub zone.
Validate the forest trust between Tallahassee and Georgia domain controllers, fix communication, and use the new trust wizard to configure a one-way forest trust.
Learn to configure selective authentication for an outgoing trust, validate trusts, and apply domain security settings using Active Directory Users and Computers to test access across trusted domains.
Set up advanced sharing and full-control permissions for a folder, verify access through a trust test, and ensure firewall authentication when logging in as Alice.
Demonstrates configuring a trust between child domains and forests, and setting up users and folders with access permissions across the trusted environments.
Explore domain trusts and authentication in Active Directory, from child and parent domains to transitive, one-way, and two-way trusts, plus external and forest trusts.
Explore how to design and implement Active Directory sites in Windows Server 2012, including site types, replication concepts, and setting up a site with domain controllers and SRV records.
Explore how Active Directory uses sites to represent physical locations, manage intra-site and site-to-site replication, and optimize bandwidth with compression and scheduled automatic replication.
Place domain controllers by site to optimize authentication and access, reducing administration. Schedule replication and services—Exchange and DFS branch cache—based on site size and network speed.
Explore SRV records in DNS, also known as locator records, mapping services like Kerberos and Global Catalog to domain controllers, with _tcp and _sites structures and protocol details for TCP/UDP.
Learn how branch-office clients locate and authenticate with the nearest local domain controller using DHCP-subnet, DNS SRV records, and site-aware routing to optimize logon.
Learn how the knowledge consistency checker selects bridgehead servers to coordinate site-to-site replication of the Active Directory database, and see a demo of adding an alternate domain controller and site.
Install and promote a domain controller, configure Active Directory sites, and verify DNS and global catalog settings to enable AD replication.
Rename the default site to HQ, create Tallahassee and practice sites, assign /24 subnets to each, and prepare replication between sites in Active Directory Sites and Services.
Understand active directory sites, designate a site with a domain controller, and control replication while local domain controllers serve local machines.
Explore active directory domain services replication across sites, including partitions and site links. Understand site link bridges, group membership caching, troubleshooting, conflicts, and setting up sites with a monitoring demo.
Explore the Active Directory partitions, including schema, config, domain, and application partitions, and understand how they store objects, define attributes, and support replication across sites.
Examine multi-master replication where domain controllers can generate and share changes, avoiding a single point of failure, using pull replication, polling, notifications, and store-and-forward across sites.
Explore how attribute replication sends only changed attributes to replicas, reduces data transfer, and how partitioned data stores, replication partners, and two‑way replication manage collisions and topology.
Explore how multi-master configurations allow simultaneous changes to a user account and how conflict resolution uses versioning, time stamps, and server priority to determine precedence.
Learn site topology and site links in a multi-location Active Directory, managing intra-site replication between domain controllers, configuring site link costs, and applying bridging in hub-and-spoke networks.
Explore site topology and site links in Active Directory, analyzing costs and bridging for cross-site replication, with redundancy and multiple domain controllers for high availability.
Learn how to use group membership caching and branch cache to reduce replication traffic, speed logins, and provide instant access at sites with slow links.
Explore tools for diagnosing and managing replication, including DC diag for events and rep admin for metadata and forced replication, then see how to configure, link, and monitor site replication.
Set up site links and replication schedules in Active Directory Sites and Services, linking headquarters to Tallahassee, and tune replication windows for performance and reliability.
Explore troubleshooting of Active Directory replication in site links and bridgeheads, using dcdiag to verify Tallahassee to DC1 replication and monitor delays.
Explore how Active Directory Domain Services stores data and replicates it across domain controllers. Learn about site topology, site links, multi-master replication, and conflict resolution with automated algorithms.
Explore dns management in Windows Server 2012 advanced services, including dhcp and dns, name zone and dns security, with demonstrations you can implement.
Explore DNS administration techniques, including creating and managing records, using forwarders, and implementing aging and scavenging to keep DNS clean and reliable for IPv6.
Explore management tasks by reviewing logging, using the Event Viewer for DNS, and enabling debug logging to diagnose DNS activity in large environments.
Explain how dns queries flow from clients to authoritative dns servers, including forwarders, recursive lookups, conditional forwarders, stub zones, and subnet-based ordering to resolve ip addresses.
Explore the global name zone as a forward lookup, forest-wide for unique single-labeled names across domains, enabling cross-domain interoperability and flexible, non-dynamic name resolution during mergers.
Explore DNS security with socket pool and cache locking, using randomized ports and TTL-based cache protection, plus DNSSEC features like DNSKEY DS SIG and NSEC.
Configure DNSSEC in Windows Server by signing the zone with a zone signing key and a key signing key, enabling trust anchors, and distributing DNSSEC records to all DNS servers.
Configure advanced DNS settings via group policy, enforce DNSSEC validation, adjust the socket pool, and create a global name zone (surfersrus.net) with global names enabled across the forest.
Explore DNS management with a focus on logging and debug logging to monitor changes, especially in large organizations. Go beyond the Event Viewer to debug DNS activity.
Treat DNS as a simple task by securing, monitoring, and locking it down with advanced services that simplify control; the chapter previews the DHC discussion in the next section.
Delve into DHCP in Windows Server 2012 advanced services, uncover new gotchas, learn about name protection, DNS interaction, and how to set up scopes and DHCP components.
Configure a DHCP scope as a range within a subnet, set DNS options and exclusions, and manage the server via MMC or Server Manager while noting the DHCP database location.
Set up a dhcp server to assign addresses based on the network, use a dhcp relay agent for subnets, and manage lease renewal.
Learn how DNS and DHCP collaborate to register and update host records using dynamic updates and resource records, with option 81 controlling permissions and automatic deletion at lease expiry.
Learn how scopes define address ranges, including super scopes and multi-netting, to manage multiple subnets, DHCP allocation, and multicast scopes for Windows deployment.
Explore IPv6 DHCP concepts, including stateless and stateful address provisioning, prefixes, lifetimes, and how DHCP interacts with IPv6 options, exclusions, and name scope.
Learn how name protection in dhc on Windows server 2012 prevents overriding Microsoft client names or IP addresses, resolves conflicts between static and dynamic addressing, and prevents name squatting.
Explore DHCP failover in Server 2012, enabling two DHCP servers to deliver the same IP addresses with load sharing while coordinating hot standby, timeouts, firewall rules, and secret-based authentication.
Configure IPv4 DHCP scopes for site one and site two on the domain controller, including gateway, DNS, and 24-bit subnet, then manage scope activation and build a super scope.
Configure dhcp failover across two servers by creating scopes, authorizing the servers, enabling name protection, and setting up stateful failover with load balancing and a shared secret.
Configure and verify DHCP advanced settings by setting a scope and address pool, restarting the DHCP service, and renewing client IPs to confirm failover.
Master DHP configuration with scopes, DNS interoperability, and the request flow, then explore IPv6, DHP failover, and name pre-text in Windows Server 2012 as the DHP and networking chapter concludes.
Explore IP address management with IPAM in Windows Server 2012, covering basics, administration levels, monitoring, planning, and future planning, followed by a practical demonstration.
Explore IP address management (IPAM) as a built-in Microsoft solution that automates DNS and DHCP for complex networks, enabling centralized discovery, planning, monitoring, and compliant address management across Windows environments.
Uncover how IPAM provides a point of management for 150 dhcp servers and 500 dns servers, helping organizations plan and track ipv4 and ipv6 addressing, leases, and dns records.
Explore the four IPAM modules—EPM discovery, address space management, multi-server management, and operational auditing—and how they centralize DNS, DHCP, and domain controller data for monitoring and reporting.
Set up a single-role member server on Windows Server 2012 with 80 GB disk and 4 GB RAM (8 GB recommended). Poll DNS, DHCP, and domain controllers and enable logging.
Map your current network to an IP address management (IPAM) setup with security groups from view-only to full IPAM admin, enabling address space management and tracking.
Manage ip address blocks, ranges, addresses, inventory, and range groups with ipam, providing a centralized view across dhcp and dns and supporting centralized, distributed, or hybrid deployments.
Install the ipam feature, provision ipam with group policy provisioning, and create security groups and folders; then run server discovery to manage dhcp, ip, dns, and domain controller.
Configure IPAM installation by selecting AD, domain controllers, and DNS servers, run data collection, then provision and link GPOs via PowerShell to enable domain controller manageability.
Refresh the domain controller to apply updates, verify the status shifts from red to green, and gather information to configure dhcp and dns scopes and MSM tasks.
Configure ipam to manage dhcp and dns by creating a test scope from 10.0.0.1 to 10.0.0.150 with a 255.255.255.0 subnet and enabling dynamic updates.
Learn IPAM installation and configuration on Windows Server 2012, including basic IP setup, DHCP reservations, DNS records, and managing servers in the inventory and IP address space.
Discover Windows server 2012 IPAM, its built-in features, and how to deploy a standalone IPAM server with delegated administration for streamlined IP management.
Explore data handling on Windows Server 2012, covering storage, files, and advanced file services like FSRM; learn basics, file classification, data manipulation, with a short demo.
Explore file storage basics, data growth, and how local and backend storage, fast connections, branch cache, and storage spaces meet needs for media-rich data with cheaper storage and solid-state options.
Use file server resource manager to classify data, apply policies, and enforce quotas and file screening management on a corporate file server, then monitor disk usage with reports.
Automate file classification to identify sensitive documents, group them by type, and enforce access controls via centralized rules in Active Directory domain services.
Explore new options in Windows Server 2012: features on demand to save space, improved file access ordering for auditing, and data deduplication to remove duplicates, plus the NFL data store.
Configure a file classification system on Florida server 1, create a local property called supersecret doc, and set up a folder classifier rule to auto classify and report.
Learn to create and manage file classification properties and rules, configure expiration handling, set up file management tasks for expired documents, and generate reports with email or event log notifications.
Configure file classification to move older documents to an expired directory. Review see and story reports in event viewer and understand the latest version remains accessible for daily changes.
Configure and enable data deduplication on Windows Server by installing the data deduplication feature, selecting the E drive, and setting schedules, exclusions, and daily optimization.
Explore file classification and the basics of file and storage. Learn how FSRM supports screening and filtering through classification, and preview the next chapter on data and DAQ.
This course is specifically for participants to gain the knowledge and skills for making the appropriate job role decisions around configuring advanced Windows Server 2012 R2 services.
This course is designed for Information Technology (IT) professionals, who have Windows Server 2012 operating system knowledge and experience and want to validate the skills and knowledge necessary to configure advanced services in a Windows Server 2012 infrastructure. This course is part three of a series of courses which validate the advanced configuring tasks necessary to deploy, manage and maintain a Windows Server 2012 infrastructure, such as fault tolerance, certificate services, and identity federation. This course, along with the others in this series, will validate the skills and knowledge necessary for implementing, managing, maintaining and provisioning services and infrastructure in a Windows Server 2012 environment.
This training course on installing and configuring advanced Windows Server 2012 services prepares participants for the Microsoft Exam 70-412.
This course will provide all the skills and knowledge for the following areas: