AZ-1008: Administer Active Directory Domain Services
Duration: 1 Day
This learning path helps prepare you for the APL-1008 Administer Active Directory Domain Services modern credential. You'll learn how to create, deploy, and maintain an Active Directory Domain Services environment.
Prerequisites
Knowledge of and experience working with:
- Windows Server.
- Core networking technologies.
Deploy and manage Active Directory Domain Services domain controllers
This module introduces you to the topology of domain controllers within an Active Directory environment. It also starts you down the path of deploying, managing, and migrating a domain controller between servers.
- Define Active Directory Domain Services
- Define Active Directory Domain Services forests and domains
- Deploy Active Directory Domain Services domain controllers
- Migrate a domain controller to a new site
- Manage Active Directory Domain Services operations masters
Create and manage Active Directory objects
This module focuses on the tasks associated with creating and managing Active Directory objects and AD domain services domain controllers.
- Define users, groups, and computers
- Define organizational units
- Manage objects and their properties in Active Directory
- Create objects in Active Directory
- Configure objects in Active Directory
- Perform bulk management tasks for user accounts
- Maintain Active Directory Domain Services domain controllers
Create and configure Group Policy Objects in Active Directory
This module focuses on Group Policy objects, including using them to enforce a domain wide as well as fine-grained password policy.
- Define Group Policy Objects
- Implement Group Policy Object scope and inheritance
- Define domain-based Group Policy Objects
- Create and configure a domain-based Group Policy Object
- Configure a domain password policy
- Configure and apply a fine-grained password policy
Manage security in Active Directory
This module focuses on maintaining security in an Active Directory environment. It covers things from permissions management to authentication methods to identifying problematic accounts.
- Configure user account rights
- Configure user account rights to restrict access
- Delegate permissions in Active Directory
- Protect User Accounts with the Protected Users group
- Describe Windows Defender Credential Guard
- Block Windows NTLM authentication
- Locate problematic accounts
Guided project - Administer Active Directory Domain Services
This guided project helps prepare you to manage Active Directory Domain services, including:
- Creating and deploying domains.
- Configuring group policy objects.
- Establishing and enforcing passwords.
- Maintaining security of Active Directory.
- Prepare
- Exercise - Configure domain controller operations
- Exercise - Configure user management operations
- Exercise - Manage password policies
- Exercise - Configure security settings