Skip to main content

On premise setup

WIP

Active Directory (AD)

Key Points...

The AD contains user accounts, user groups, computer groups and group policy objects (GPOs)

Group policy objects are windows settings which can be applied to different groups of users and computers

AD servers are split across what is known as "sites" (locations like Europe, UK etc.)

There are 2 types of sites: primary domain controller (PDC) site and secondary domain controller (SDC) site

A domain is what contains the AD and links all the computers together #. there can only be one PDC, whereas the SDCs can be numerous

The AD automatically replicates across the network (between PDC and SDCs) every 15 mins

Manual

WIP

Initial installation...

  1. Install windows server

  2. Install drivers (if necessary temporarily disable driver signing to install unsupported LAN and other drivers)

  3. Configure initial settings to preferred defaults

  4. Install all required roles. Typical roles include:

    • Hyper-V

    • Remote desktop virtualization host, broker, web access

    • IIS Server with FTP

    • VPN server

    • Network Policy Server (for controlling VPN access)

  5. Install Windows updates

  6. Configure installed roles

Active Directory installation...

  1. Set IP address manually, pointing the first DNS lookup address at the machine itself and the second at the router

  2. Install Active Directory and DNS roles

  3. Promote computer to domain controller

  4. Install DHCP role

  5. Configure DHCP address pool

Active Directory setup...

  1. Name of domain must be set to "X" (or does it????????)