Thank you for sending your enquiry! One of our team members will contact you shortly.
Thank you for sending your booking! One of our team members will contact you shortly.
Course Outline
1. Introduction
- Introduction to Active Directory Domain Services (AD DS)
- Course objectives and expected learning outcomes
- The role of Active Directory in enterprise settings
- Overview of the training lab setup
- Key concepts and terminology in Active Directory
2. Features and Architecture of Active Directory
- Active Directory architecture
- Differences between logical and physical structures
- Understanding Domains, Trees, and Forests
- Organizational Units (OUs)
- Domain Controllers and Global Catalog
- Flexible Single Master Operations (FSMO) roles
- Sites and Subnets
- DNS integration with Active Directory
- Active Directory partitions and database layout
3. Identity Management Solutions and Concepts Overview
- Fundamentals of Identity and Access Management (IAM)
- Differences between Authentication and Authorization
- Kerberos authentication mechanisms
- NTLM authentication protocols
- Single Sign-On (SSO)
- Role-Based Access Control (RBAC)
- Identity lifecycle management
- Hybrid identity models
4. Active Directory Setup
- Planning an Active Directory deployment
- Installing Active Directory Domain Services
- Promoting a server to a Domain Controller role
- Creating new forests and domains
- Installation and configuration of DNS
- Verification of installation
- Deployment best practices
5. Implementation of Active Directory Domain Services
- Creation of Organizational Units
- Administration of users, groups, and computers
- User account administration
- Group scopes and types
- Delegation of administrative control
- Management of service accounts
- Joining computers to the domain
6. Configuration and Management of Replication
- Concepts of Active Directory replication
- Multi-master replication mechanisms
- Replication topology design
- Knowledge Consistency Checker (KCC)
- Sites and replication scheduling
- Troubleshooting replication issues
- Monitoring replication health
7. Group Policy Implementation and Management
- Group Policy architecture
- Creation of Group Policy Objects (GPOs)
- GPO linking procedures
- Group Policy inheritance rules
- Loopback processing techniques
- Administrative Templates
- Software deployment via GPO
- Folder Redirection configuration
- Security policy settings
- Password and account lockout policies
- Troubleshooting Group Policy issues
8. Certification Authority (CA) Hierarchy Implementation
- Introduction to Public Key Infrastructure (PKI)
- Certificate Services architecture
- Root and Subordinate Certification Authorities
- Installing Active Directory Certificate Services
- Designing CA hierarchies
- Certificate templates configuration
- Auto-enrollment processes
9. Certificate Management
- Certificate lifecycle administration
- Certificate issuance procedures
- Certificate renewal processes
- Certificate revocation steps
- Certificate Revocation Lists (CRLs)
- Online Certificate Status Protocol (OCSP)
- Management of certificate templates
- Troubleshooting certificate problems
10. Active Directory Federation Services (AD FS) Implementation and Administration
- Introduction to federation services
- AD FS architecture overview
- Claims-based authentication mechanisms
- Installing AD FS
- Configuring trust relationships
- Implementing Single Sign-On
- Integration of external applications
- Monitoring and troubleshooting AD FS
11. Enabling Data Access
- Access control principles
- NTFS permissions
- Shared folder permissions
- Calculating effective permissions
- Access-Based Enumeration
- Dynamic Access Control
- File Classification Infrastructure
- Auditing file access activities
12. Securing Active Directory Domain Services
- Best practices for AD security
- Administrative security models
- Tiered administration concepts
- Privileged Access Management (PAM)
- Securing Domain Controllers
- Password policies
- Fine-Grained Password Policies
- Account lockout policies
- Auditing and monitoring strategies
- Backup and recovery considerations
13. Rights Management Services (RMS) Implementation and Management
- Introduction to Active Directory Rights Management Services
- RMS architecture overview
- Installing AD RMS
- Protecting sensitive documents
- Information protection policies
- Integration with Microsoft Office
- Managing user access rights
14. Microsoft Entra ID (formerly Azure Active Directory) Implementation
- Introduction to Microsoft Entra ID
- Cloud identity concepts
- Hybrid identity architecture
- Microsoft Entra Connect
- Password Hash Synchronization
- Pass-through Authentication
- Federation with AD FS
- Conditional Access overview
- Identity synchronization procedures
- Managing cloud identities
15. Active Directory Integration with OpenLDAP
- Fundamentals of LDAP
- Active Directory LDAP support
- Overview of OpenLDAP
- Identity synchronization methods
- Authentication integration
- Common interoperability scenarios
- Security considerations
- Troubleshooting LDAP connectivity
16. Active Directory Monitoring
- Monitoring tools overview
- Event Viewer usage
- Performance Monitor application
- Active Directory Administrative Center
- PowerShell for monitoring tasks
- Replication monitoring
- Health check procedures
- Auditing changes
- Performance optimization techniques
17. Troubleshooting
- User logon issues
- DNS-related problems
- Replication failures
- Group Policy troubleshooting
- Authentication issues
- Certificate-related problems
- Domain Controller health checks
- Diagnostic tools (dcdiag, repadmin, nltest, gpresult)
- Backup and recovery procedures
- Disaster recovery scenarios
18. Summary and Conclusion
- Review of key concepts
- Best practices for Active Directory administration
- Security recommendations
- Operational maintenance checklist
- Additional Microsoft resources and documentation
- Questions and answers session
- Final hands-on review and lab wrap-up
Requirements
- Experience in system administration
- Familiarity with Windows Server
Target Audience
- System administrators
21 Hours
Testimonials (2)
Defenitely the 90% HandsOn-Training and the Revisions of the Activities i had to do during the Training. The Traing was intense, due to i was the only member. But i learned a lot and Chris answered every single question i had. I would defenitly recommend this course.
Sebastian - Artweger GmbH und Co KG
Course - Active Directory for Admins
I learned a lot and gained knowledge can use at my work!