Chapter 2 - Active Directory
Chapter 2 - Active Directory
Chapter 2-
Active directory, configuring domain
controller and domain clients
1
Microsoft Windows Server 2012
Outline:-
Logical Topologies
ADDS
Creating Users
Installing Active Directory
Promoting Active Directory as DC
Adding Client to Active Directory Domain
2
Logical Topologies
3
Workgroup Model vs Domain Model
4
Logical Topologies
5
What is an Active Directory / ADDS ???
6
Active Directory Domain Services (ADDS)
Active Directory (AD) is a proprietary directory service developed by Microsoft
to manage the authentication and authorization of users and machines on a
Windows domain network. Active Directory was first released in 2000 and runs
on Windows Server.
The Active Directory structure includes three main tiers: 1) domains, 2) trees,
and 3) forests. Several objects (users or devices) that all use the
same database may be grouped into a single domain. Multiple domains can be
combined into a single group called a tree. Multiple trees may be grouped into a
collection called a forest. Each one of these levels can be assigned specific
access rights and communication privileges.
8
Active Directory Domain Services (AD DS)
Active Directory provides several different services, which fall under the umbrella of
"Active Directory Domain Services," or AD DS. These services include:
9
Structures of Active Directory
Domain
• Is a logical grouping of users, computers and group
objects for the purpose of management and security
• Domain should have at least one Domain Controller.
Tree
• Is made of one or more domains with contiguous name
space.
Forest
• Is made of one or more trees. A forest differs from a
tree because it uses disjointed namespaces between
the trees.
For example, in a forest, you could have microsoft.com
as the root for one tree. Say that Microsoft then
purchases another company called Acme (acme.com),
and acme.com then becomes the root of another tree.
Both trees could be combined into a forest, yet each
tree’s identity could be kept separate.
10
Domain Controller
What is a Domain Controller?
11
Domain Controller
12
AD DS Installation
13
Installation Prerequisites
This step by step tutorial will guide you to set up active directory on your
Windows Server 2012 R2 machine. The article has been divided into
following two parts:
Prerequisites
15
AD DS Installation
16
AD DS Installation
Installation Type
17
AD DS Installation
Server Selection
18
AD DS Installation
Add Features
20
AD DS Installation
21
AD DS Installation
22
AD DS Installation
Results
23
AD DS Installation
Task Notification
Verifying the installation results
is still a best practice. If you
close the Results dialog before
installation completes, you can
check the results using the
Server Manager notification
flag. Server Manager also
shows a warning message for
any servers that have installed
the AD DS role but not been
further configured as domain
controllers.
24
How to Promote a Server to a
Domain Controller
25
DC Promotion
26
DC Promotion
27
DC Promotion
28
DC Promotion
In additional options window, verify NetBIOS name of domain and click Next
31
DC Promotion
Note down the Database, Log files and SYSVOL folder paths and click Next
32
DC Promotion
35
STEP-BY-STEP: ADD CLIENT TO ACTIVE
DIRECTORY DOMAIN
• Connect Client To Domain
Open Network and Sharing Center. Click Change adapter settings on the
left.
Right-click on Local Area Connection, select Properties. In the Local Area
Connection Properties window,
Select Internet Protocol Version 4 (TCP/IPv4) and click Properties.
Under General tab, make sure that Obtain an IP address automatically is
checked.
Check Use the following DNS server addresses and key in the server’s IP
address. Click OK when done.
Con…….
• Right-click My Computer, select Properties.
• Under Computer name, domain, and workgroup settings,
click Change settings and System Properties window will pop up.
• Under Computer Name tab, click Change and Computer
Name/Domain Changes window will pop up. Give a recognizable
name for the PC.
Con…….
• Check Domain and key in the domain created earlier and click OK.
• User will be prompt to key in a username and password to join the
domain. Key in the user account that is registered to the active
directory domain.
• After successfully joining the domain, user will be prompt to restart
the PC.
Conclusion
• Congratulations on setting up an active directory on your Windows
Server 2012 R2 machine. Before you join your client machine to this
new domain, you should be able to ping the domain from server
command prompt.
Any Question
LAB