Course Outline
Installation and Environment Preparation
- Installation of Windows Server 2022 for government environments
- Management with Server Manager, PowerShell, and Windows Admin Center for efficient operations
- Best practices for on-premise environments to ensure security and compliance
Active Directory Domain Services (AD DS)
- Domain installation and configuration for robust governance
- Management of users, groups, and organizational units (OUs) for enhanced control
- Advanced Group Policy Objects (GPOs): creation, application, and troubleshooting to ensure policy compliance
- Sites, services, and replication between domain controllers for seamless operations
- Auditing and logging for accountability and security
Network Services
- DNS: zones, forwarders, and integration with Active Directory for reliable name resolution
- DHCP: scopes, reservations, options, and failover for consistent network configuration
- Network Policy and Access Services (NPAS): authentication, network policies, and access control to secure network resources
File and Print Services
- File Server: NTFS permissions, sharing, and auditing for data security
- File Server Resource Manager (FSRM): quotas, file screening, and reporting to manage storage efficiently
- Distributed File System (DFS) Namespace and Replication for distributed environments
- Print services and centralized management for streamlined operations
Virtualization and Hyper-V
- Installation and configuration of Hyper-V for government data centers
- Standard and Datacenter licensing options to meet various needs
- Creation of virtual machines (VMs), virtual switches, and checkpoints for flexible deployment
- Nested virtualization, VM backups, and best practices for secure and reliable operations
- Migration of VMs from other hypervisors (XCP-ng, XenServer) to Hyper-V for government environments
High Availability
- Failover Clustering: installation, configuration, and validation to ensure continuous service availability
- Storage Spaces Direct (S2D) for scalable and resilient storage solutions
- Internal load balancing (NLB) to distribute network traffic efficiently
Remote Access Services
- VPN, DirectAccess, and RADIUS configuration for secure remote access for government employees
- Windows Firewall with advanced rules to protect against unauthorized access
Remote Desktop Services (RDS)
- Installation and configuration of RDS (session host, gateway, web access) for remote work capabilities
- RDS licensing management (CALs) to ensure compliance
- Publishing applications and desktops via RDS for flexible access
- User group setup, redirection, and security configurations to enhance user experience and data protection
Certificate Services (AD CS)
- Installation and configuration of Certificate Authority (CA) for secure authentication and communication
- Certificate templates and auto-enrollment for streamlined certificate management
- Certificates for authentication, digital signing, and encryption to enhance security
- Integration with RDS, IIS, and VPN for comprehensive security solutions
- Revocation and Certificate Revocation List (CRL) management to maintain trust in certificates
Application and Update Services
- IIS: site/application installation and publishing for web-based services
- Integration with SSL certificates to ensure secure communication
- Distribution and update management for timely software updates
- Windows Autopatch and Microsoft Intune for automated patching and management
Backup, Recovery, and Monitoring
- Windows Server Backup: scheduling and granular restore to protect critical data
- Recovery of domain controllers, data, and settings to minimize downtime
- Monitoring with Event Viewer and Performance Monitor for proactive issue resolution
- Introduction to Windows Admin Center for centralized management of server environments
Hands-on Labs and Practical Activities
- Build a fully functioning AD DS environment with DNS, DHCP, and GPOs for government operations
- Configure and deploy advanced GPOs for auditing, application deployment, and access control to enhance security and compliance
- Set up centralized logging and log forwarding using Event Viewer and group policy for better monitoring and reporting
- Deploy and test digital certificates for secure access and communication in government networks
- Simulate RDS deployment with session hosts and published applications to support remote work
- Create and validate a failover cluster using Storage Spaces Direct (S2D) for high availability in government data centers
- Publish an internal site with HTTPS and GPO-restricted access to ensure secure information sharing
- Simulate system failures (AD, DHCP, File Server) and perform full recovery procedures to test disaster response plans
- Verify proper configuration of Sites and Services for replication and authentication to maintain network integrity
Summary and Next Steps
Requirements
- An understanding of fundamental networking and IT infrastructure concepts for government operations
- Experience utilizing Windows operating systems in a professional setting
- Familiarity with IT administration tools and command-line interfaces
Audience
- System administrators
- IT infrastructure professionals
- Network and server engineers
Testimonials (4)
It was done at our pace, speeding through areas we know, while slowing down and giving more information where we needed.
Kevin Stanley - Chugachmiut
Course - Windows Server 2022 for System Administrators
The teaching style was very good.
Juma Shekuwe - TANZANIA REVENUE AUTHORITY
Course - Windows Server 2019 Administration (authorized training course WS 011T00)
Interactivity, the trainer was willing to help and explain in areas that were difficult. I felt like the training was really useful for me
Lewis Johnson - Swift Group Ltd
Course - Windows Server 2016
The environment is very very good