Please contact with me, if you are interested in that seminar by 99540206 or thru following link http://goo.gl/forms/3Cb3SwfY2b Agenda of seminar Date: 08.10.2014 Subject: Active Directory essentials, Virtualization, WDS/WSUS Venue: Suite 601, UJM office, Peace avenue-36, Chingeltei district, 3th khoroo, Ulaanbaatar, Mongolia Presenter and author: B.Munkhtuvshin Language: Mongolian Organizer: Geomon Engineering LLC First day Subject: Common questions, installation, configurations 9.00-9.45IntroductionWhy Active Directory/AD Pre-history For whom, how to convince management to implement AD, the main obvious benefits of AD implementation What is AD for system administration,  <span><a href="https://www.itforce.mn/index.php/2014/08/08/it-training-for-4-days-there-are-2-3-vacancies-50-discount/" class="readmore">Continue reading &rarr;</a></span>{"id":190,"date":"2014-08-08T22:13:59","date_gmt":"2014-08-08T14:13:59","guid":{"rendered":"http:\/\/www.itforce.mn\/?p=190"},"modified":"2017-02-08T22:14:22","modified_gmt":"2017-02-08T14:14:22","slug":"it-training-for-4-days-there-are-2-3-vacancies-50-discount","status":"publish","type":"post","link":"https:\/\/www.itforce.mn\/index.php\/2014\/08\/08\/it-training-for-4-days-there-are-2-3-vacancies-50-discount\/","title":{"rendered":"IT training for 4 days. There are 2-3 vacancies, 50% discount."},"content":{"rendered":"<p>Please contact with me, if you are interested in that seminar by 99540206 or thru following link http:\/\/goo.gl\/forms\/3Cb3SwfY2b<\/p>\n<h2><\/h2>\n<h2>Agenda of seminar<\/h2>\n<p>Date: 08.10.2014<\/p>\n<p>Subject: <strong>Active Directory essentials, Virtualization, WDS\/WSUS<\/strong><\/p>\n<p>Venue: Suite 601, UJM office, Peace avenue-36, Chingeltei district, 3th khoroo, Ulaanbaatar, Mongolia<\/p>\n<p>Presenter and author: B.Munkhtuvshin<\/p>\n<p>Language: Mongolian<\/p>\n<p>Organizer: Geomon Engineering LLC<\/p>\n<h2>First day<\/h2>\n<p>Subject: Common questions, installation, configurations<\/p>\n<ol>\n<li><strong>9.00-9.45<\/strong>IntroductionWhy Active Directory\/AD<\/li>\n<li>Pre-history<\/li>\n<li>For whom, how to convince management to implement AD, the main obvious benefits of AD implementation<\/li>\n<li>What is AD for system administration, network admin, for IT manager, business owners<\/li>\n<li><strong>9.45-10.15<\/strong>The main definitions and termsforest, tree, Domain, DC, GC,OU, security groups<\/li>\n<li>GPO<\/li>\n<li>Subnet and site, DNS for sites (glue records and delegation of zones for forest)<\/li>\n<li>Fsmo roles (PDC emulator, RID, infrastructure, domain naming, schema masters) and GC<\/li>\n<li>Functional levels<\/li>\n<li>Kerberos protocol, NTLM protocols, SAM and NTDS, KDC service<\/li>\n<li>Schema considerations (precautions, how activate snap-in, Schema changes for Exchange, Lync and so on)<\/li>\n<li><strong>10.15-11.15<\/strong>Installation and Initial configurationsPre-requisites (compatible BIND, static IP, unique name of server, unique domain name)<\/li>\n<li>What network changes(conflicts between DNS, DHCP setting for ISP and AD) are required in typical Mongolian company<\/li>\n<li>Types of AD, functional levels, when and how to rise functional levels<\/li>\n<li>Insides of AD (database files, used TCP\/IP ports and so on)<\/li>\n<li>How to install AD in multisite, multi subnet and multi domain environment<\/li>\n<li><strong>11.15-11.30<\/strong> Q&amp;A<\/li>\n<li><strong>11.30-11.45 break<\/strong><\/li>\n<li><strong>11.45-13.00<\/strong>Standard basic operations sometimes ignored or wrongly used by Mongolian sysadmins, common mistakes:Deleting domain<\/li>\n<li>Adding computer into domain, removing computer from domain. Duplicated netbios names for domains and computers, wrong length of names or wrong symbols. Naming computers in corporate environment \u2013 why it\u2019s important<\/li>\n<li>Why pre-installed Windows versions on the notebooks cannot be added to AD<\/li>\n<li>Why Desktop Windows is not good as a fileservers and printer servers<\/li>\n<li>Sysprep \u2013 why, for what?<\/li>\n<li>Grouping computer accounts, user accounts by OU for GPO<\/li>\n<li>Usage of only one DC despite the vendor recommendations<\/li>\n<li>DNS considerations, proper configurations recommended by the best configurations<\/li>\n<li>How to promote server in AD, how to demote, how to re-add workstation\/member servers to AD<\/li>\n<li>How to add user, group (local, global, universal) why it\u2019s necessary to re-login after changing the membership in group<\/li>\n<li>Groups, which of them to use and when<\/li>\n<li>Assigning rights to groups for sharing, how to correctly share, how to automatically map shares, how automatically empty content of temporarily share folders<\/li>\n<li>Printers in AD, publishing in AD, default print rights and how to administrate printers in AD, print monitor software (who, when, what, how many pages printed)<\/li>\n<li>Time Service and Kerberos (time zones, NTP server, virtualization aspects, net time command, how auto check time on multiple servers by script)<\/li>\n<li><strong>13.00-14.00<\/strong> break<\/li>\n<li><strong>14.00-15.00<\/strong>Demonstration of the provisioning stereotype AD domain in average Mongolian company. IT policy best practices for ADRestricting LocalAdmins, and what resistance it causes from user side, how to solve<\/li>\n<li>How to solve problems to launch some programs without LocalAdmin rights<\/li>\n<li>Fileserver and AD, advantages, pitfalls (for comparison &#8211; example of how to setup it without AD on workstations with max 10 connections) Automatically mounted users shared folders, quotas, backuping and redirection, re-assigning to new employee. Samba protocol\/CIFS, ports 135, 138,139, 445, Windows Browser Service (elections and network neighborhood lists)<\/li>\n<li>How to give LocalAdmin rights for somebody not making him\/her DomainAdmin<\/li>\n<li><strong>15.00-15.30<\/strong>Once again DNS server setting for ADZones, domains \u2013 the difference<\/li>\n<li>DNS server at multi homed server, round robin for DNS, listening IPs of DNS server<\/li>\n<li>Forwarders and root servers, conditional forwarders and stub zones, primary and secondary zones<\/li>\n<li>Storing AD in filesystem or AD integrated?<\/li>\n<li>New type of records \u2013 SRV, connection dynamic records with Netlogon service<\/li>\n<li>Why dhcp client should be used even for servers and workstation with static IPs<\/li>\n<li>How to add static records (A, CNAME, MX) in case of existence of public Internet domain with the exactly same as an AD domain name, troubleshooting<\/li>\n<li>Reverse lookup zones \u2013 for what<\/li>\n<li>Caching DNS \u2013 when and how to utilize, ipconfig \/flushdns<\/li>\n<li><strong>15.30-16.00<\/strong>Theory of authorization and authenticationKerberos (Kerberos and DNS, predecessors like NTLMv1\/v2) ticket system<\/li>\n<li>SQL and AD\/windows authorizations, vendor recommendations<\/li>\n<li>Syskey for SAM, digests and how passwords are stored, LC and saminside<\/li>\n<li>PKI\/CA and AD<\/li>\n<li>Certificates for web SSL, SSH, Wi-Fi AccessPoints, VPN, e-mail and so on<\/li>\n<li>Smart cards\/eTokens for winlogon<\/li>\n<li><strong>16.00-17.00<\/strong>Management and administration in AD environmentBrief review of standard tools\/snap-ins for work with AD<\/li>\n<li>Password policy \u2013 pitfalls which can ruin whole implementation of AD in the company, unlocking accounts, why you shouldn\u2019t to disable a strong password policy, resetting LocalAdmin passwords, removing local users+profiles, new in password policy for functional level win2008r2.<\/li>\n<li><strong>c. <\/strong>Remote work (RDP, regedit, shutdown, net time, firewall settings, $resources, remote execution shells like powershell, remotely computer\/server management, GPO, WMI and so on)<\/li>\n<li><strong>17.00-17.30<\/strong> Q&amp;A<\/li>\n<\/ol>\n<h2>Second day<\/h2>\n<p>Subject: Maintenance and troubleshooting of AD<\/p>\n<ol>\n<li><strong>09.00-10.00<\/strong>Insides of Group PolicyGPC and GPT, locations and storage of them, how it works<\/li>\n<li>GP extension templates for Microsoft Office, WSUS and so on<\/li>\n<li>How to target GP to OU, domain, site and so on<\/li>\n<li>Merging GPO (LSDOU), loopbackes, WMI filters<\/li>\n<li>Troubleshooting of Group Policy (gpedit.msc, gpresult, Rsop, gpotool, gpupdate \/force), FRS<\/li>\n<li><strong>10.00-13.00<\/strong>Group Policy best practices:WMI and security filters<\/li>\n<li>Disabling shutdown tracker, autorun, Windows Browser service on non-DCs and so on<\/li>\n<li>Enabling RDP, DHCP client, DNS client, eventlog,remote registry, print spooler, windows update,time service on everywhere in domains and so on<\/li>\n<li>Enabling remote Device management<\/li>\n<li>GPO for Terminal Service lockdown<\/li>\n<li>WSUS and GPO<\/li>\n<li>PKI\/CA and GPO<\/li>\n<li>IPsec, VPN and GPO<\/li>\n<li>PKI and GPO (certificates)<\/li>\n<li>Software distribution (assigning and publishing, patching, removing msi)<\/li>\n<li>Software restriction (restrict running gtalk, yahoo messenger and so on)<\/li>\n<li>Domain wide setup of services<\/li>\n<li>Logon messages configuration<\/li>\n<li>Configure EvenLog thru GPO<\/li>\n<li>Scripting and GPO<\/li>\n<li><strong>13.00-14.00<\/strong> break<\/li>\n<li><strong>14.00-15.00<\/strong>Sites, multi domain implementations, trusts, replications (bridgeheads, various topologies)USN milestones<\/li>\n<li>SPN (setspn and ADCU delegation, for what)<\/li>\n<li>What is site, for what, what\u2019s the difference from subnets,topologies<\/li>\n<li>RPC, smtp replications, KCC, Read-onlyDC (password caching)<\/li>\n<li>Troubleshooting AD\/frs replication (Repadmin, replmon, ADSites and Services, eventlog, time, DNS, dcdiag and on) Everything is wsused.<\/li>\n<li><strong>15.00-15.30<\/strong> Seizing\/moving fsmo role (for example after crush of DC)<\/li>\n<li><strong>15.30-16.45 Q&amp;A<\/strong><\/li>\n<li><strong>16.45-17.00 break<\/strong><\/li>\n<li><strong>17.00-18.00<\/strong> Backup and restore of DCs, restoring objects in AD by ntdsutil, authoritative and non-authoritative restores, other tools like adsiedit, ldp, netdom and so on. New features of AD in the last Windows versions<\/li>\n<\/ol>\n<h2>Third day<\/h2>\n<p>Subject: Microsoft Hyper-V virtualization<\/p>\n<ol>\n<li>9.00-9.10 Coffee break, registration<\/li>\n<li>9.10-10.00 Theory, short introduction presentation<\/li>\n<li>10.00-13.00 Installation on single host server with external storage system.Planning and designing Microsoft virtualization, prerequisites<\/li>\n<li>Performance optimizations, synthetic drivers, integration tools<\/li>\n<li>Creation of new VMs from a scratch or from template\u2019s library<\/li>\n<li>Methodology of system administration in virtualized environment. New paradigm for system management \u2013 differences from conventional way<\/li>\n<li>New aspects of backup for virtualization. MSSC DPM<\/li>\n<li>Conversion of legacy physical server to virtual server \u2013 consideration of the servers with SCVMM<\/li>\n<li>13.00-14.00 break<\/li>\n<li>14.00 &#8211; 17.00 Clustered installation of Hyper-V on two node cluster with external storageServer specification recommendations (choice of UPS and UPS software, antivirus for virtualization, storage issues and so on<\/li>\n<li>Storage configuration<\/li>\n<li>Classic Microsoft HA cluster, new features for virtualization<\/li>\n<li>Installation and initial configuration<\/li>\n<li>Live Migration demo<\/li>\n<li>17.00-17.15 Q&amp;A session<\/li>\n<li>17.15-18.00 Comparison with VMware ESX<\/li>\n<\/ol>\n<h2>Fourth day<\/h2>\n<p>Subject: WDS<\/p>\n<ol>\n<li>WDS. Introduction.For what and when , how to use.<\/li>\n<li>Advantages of WDS.<\/li>\n<li>Predecessors like RIS and alternatives like Ghost Server, Acronis Server and so on. What\u2019s the difference and pitfalls.<\/li>\n<li>Basement of the WDS implementation.System requirements.<\/li>\n<li>Pre-requisites in network (DHCP server, router, DNS, tftp and so on),<\/li>\n<li>AD integration<\/li>\n<li>New features of WDS in windows 2008r2.Multicast,<\/li>\n<li>driver injections,<\/li>\n<li>deduplication and so on<\/li>\n<li>X32, x64 images, pxe boot mechanism<\/li>\n<li>Which OS can be deployed by WDS and why. WIM format, WINPE, SLP, OPK and so on.<\/li>\n<li>Sysprep in Windows XP, windows2003r2, Setup Manager (where, how to use) Lab1.<\/li>\n<li>Capture disk<\/li>\n<li>Deployment of the windows XP thru WDS. Lab2.<\/li>\n<li>ERD disk (locksmith, services and so on) Microsoft Optimization Pack. Lab3<\/li>\n<li>How to integrate pxelinux and WDS to be able to run mhdd, memtest, Norton ghost, Acronis Director, knopix network boot thru network. Lab4<\/li>\n<li>Discovery disk, for what, how to create, how to move to usb boot flashdisk, Win7 to usb Microsoft tool, esx installation from the network) Lab5<\/li>\n<li>WAIK for Vista, win7, windows 2008r2 (pass\/ stages) Generating answer files for different scenarios. Lab6<\/li>\n<li>Pending, delegation in AD , PreStaging computer names in AD, Lab 7<\/li>\n<li>KMS server \u2013 auto activation of Win7\/Vista\/Win2008r2\/Office2010, automatically adding computer accounts into AD<\/li>\n<li>Office 2010\/2007 unattended installation. Lab 8<\/li>\n<li>Driver injections into boot images, into install images. Lab 9<\/li>\n<li>Recommendations and best practices what and how to do. How to completely get rid off re-installation of workstations (AD group policy, WSUS, corporate antiviruses, LocalAdmin rights, Terminal Server, VMware View and so on)<\/li>\n<\/ol>\n","protected":false},"excerpt":{"rendered":null,"protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[9],"tags":[],"class_list":["post-190","post","type-post","status-publish","format-standard","hentry","category-it-training-announcements"],"_links":{"self":[{"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/posts\/190","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/comments?post=190"}],"version-history":[{"count":1,"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/posts\/190\/revisions"}],"predecessor-version":[{"id":191,"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/posts\/190\/revisions\/191"}],"wp:attachment":[{"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/media?parent=190"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/categories?post=190"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.itforce.mn\/index.php\/wp-json\/wp\/v2\/tags?post=190"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}