70-643 notes

Upload: abdul-ahmed

Post on 14-Apr-2018

248 views

Category:

Documents


2 download

TRANSCRIPT

  • 7/27/2019 70-643 Notes

    1/38

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Welcome toWindows Server 2008

    Application Infrastructure

    Your Host:

    Coach Culbertson

    MCT, MCITP, MCTS, MCSA, MCDBA, and severalother random IT certifications

    Train Signal, Inc.

    Coach Culbertson

    Welcome to Windows Server 2008 Active Directory

    About Your Instructor and Train

    Signal

    Overall Scope of the Course

    Whats Covered in this Course

    The Globomantics Scenario

    What Well Build in this Course

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    About Your Instructor and Train Signal

    MCITP: Server Administrator, MCTS: SharePoint Server

    2007, MCSA, MCDBA, MCT, A+, Net+, CIW, and a few

    others

    2 Year Tour of Duty as an Inner City High School Teacher in

    Chicago

    Launched a couple hundred careers

    About Train Signal

    Casual Training Method that teaches real skills first

    Scenario-Based Training to answer the question "Why does

    this change my life?"

    About Benjamin Coach Culbertson

  • 7/27/2019 70-643 Notes

    2/38

    Train Signal, Inc.

    Coach Culbertson

    Whats Covered in this Course

    2. How to Make Believe You Have More Servers

    Than You Really Do

    3. Look Mom, No Hands!

    4. Build Your Own Web-Server-O-Fun!

    5. Setting Up Who Gets To Do What With A Web

    Site

    6. How To Keep Your Stuff Safe From The Bad Guys

    7. What is Terminal Services?

    8. Running Office from Another Machine

    Whats on the hit parade for this one, Coach? Can we dance to it?

    Train Signal, Inc.

    Coach Culbertson

    Whats Covered in this Course

    9. Give Your People What They Want

    Service!

    10.How to Build Your Own Little TV Station

    11.Certification: Its Really Not That Scary

    12.Exam PrepAutomated Activation

    13.Exam PrepStorage

    Train Signal, Inc.

    Coach Culbertson

    The Globomantics Scenario

    You are the newly hired Systems Administrator for a new startup

    company called Globomantics, a stock brokerage. Hank Richards, our

    Founder and CEO, is a rough and tumble Texan who isnt the most tech

    savvy individual, but knows the value of having good people who know

    the ropes when it comes to computers.

    Youll be adding Application Services to the network, including:

    A Hyper V Server for most of the new services

    A Windows Deployment Server to easily install the servers

    An Applications Server (think Web Server on steroids) that will host

    SharePoint Services

    A Terminal Services Server Farm to host Microsoft Office

    A Windows Media Server to stream video

    Heres the story about a man named Hank

  • 7/27/2019 70-643 Notes

    3/38

    Train Signal, Inc.

    Coach Culbertson

    So Heres What Were Building

    Heres What Were BuildingNY-DC1-2K8

    AD DS

    DNS

    Domain: Globomantics.com

    Functional Level: Server 2008

    In this series, were going to add: HYPERV

    DEPLOY1

    MEDIA1

    WEB1

    TS1TS2

    MEDIA2

    Train Signal, Inc.

    Coach Culbertson

    So How About It?

    Are You Ready?

    Cmon, Lets Go!

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    How to Make Believe You

    Have More Servers Than YouReally Do

    Setting Up Hyper-V in Server 2008 for Fun and

    Profit

  • 7/27/2019 70-643 Notes

    4/38

    Train Signal, Inc.

    Coach Culbertson

    How to Make Believe You Have More Servers Than You Really Do

    What? You mean I dont need morehardware?

    What You Need to Set Up A Hyper-V

    Server of Your Very Own

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    How to Make Believe You Have More Servers Than You Really Do

    Heres what were starting out with:

    NY-DC1-2K8

    AD DS

    DNS

    Domain: Globomantics.com

    Functional Level: Server 2008

    In this video, were going to add:

    HYPERV

    Domain: Globomantics.com1 Server 2K8

    Virtual Machine

    w/Extensions

    --Future Deployment Machine

    Train Signal, Inc.

    Coach Culbertson

    What? You mean I dont need more hardware?

    One physical box, many software servers

  • 7/27/2019 70-643 Notes

    5/38

    Train Signal, Inc.

    Coach Culbertson

    What? You mean I dont need more hardware?

    Microsofts Virtualization Whizbang

    Ease of administration

    Hardware costs aresignificantly reduced becausemultiple virtual machines canrun on a single physicalmachine.

    Hyper-V licensing costs areincluded with the license costof Windows Server 2008.

    Fault tolerance supportthrough Hyper-V clustering

    Both 32-bit and 64-bit guestoperating system support Windows, Linux, and others.

    Train Signal, Inc.

    Coach Culbertson

    What You Need to Set Up A Hyper-V Server of Your Very Own

    Server 2008 64-bit Enterprise or Datacenter Edition

    RAMIt Depends.

    Processor64-bit --Must Support Virtualization!

    HDDVaries by situation.

    Network cardAt least 2, one for your virtual machines to share, 1 for

    the physical machine to use.

    Coachs Suggestion for Hyper-V:

    RAMAt least 4GB

    Processor2 GHz with Virtualization Support

    HDD- At least two Hard Drives 250 GB each.

    1 for the Server OS 1 for the Virtual Machine VHD files

    Heres the Hardware Requirements to run Hyper-V:

    Train Signal, Inc.

    Coach Culbertson

    What You Need to Set Up A Hyper-V Server of Your Very Own

    You have to get ready to implement a SharePoint Server for

    collaboration, a Terminal Services Server for using

    networked applications, and a Media Server for streaming

    video training and messages. As the head geek atGlobomantics, you know the budget for hardware is low, but

    you have plenty of licenses of Server 2008 just lying around.

    Fortunately, you also have a pretty decent server-class box

    with 4 GB of RAM with a Quad-Core processor and about a

    terabyte of disk space just hanging out taking up space. You

    decide the best way to use what you have is to provide

    services through using Virtual Machines rather than try to

    beg for more hardware.

    So now, whats our plan?

  • 7/27/2019 70-643 Notes

    6/38

    Train Signal, Inc.

    Coach Culbertson

    What You Need to Set Up A Hyper-V Server of Your Very Own

    You need to get Hyper-V installed in a

    Server 2008 box. Hyper-V actuallyshows up as a Role in Server Manager.Youll start by checking the Serverrequirements, setting up the harddrives, and then install the Hyper-VRole.

    Then, well set up our first Hyper-VMachine to prepare for our nextproject, a Windows DeploymentServer.

    So weve got at least that

    Train Signal, Inc.

    Coach Culbertson

    Hyper-V Addition

    So heres what weve built:

    HYPERV

    Domain: Globomantics.com

    NY-DC1-2K8

    AD DS

    DNS

    Domain: Globomantics.com

    Functional Level: Server 2008

    1 Server 2K8

    Virtual Machine

    w/Extensions

    --Future Deployment Machine

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    Hyper-V A Server Role in Server 2008 that allows

    you to run multiple operating systems in virtual

    machines on a single physical machine.

    Virtual MachineA software-based instance of an

    operating system that uses shared physical

    hardware.

    VHDVirtual Hard DiskA file that lives on a

    physical HDD that acts like a physical HDD on a

    virtual machine.

    Volume A fixed amount of space on a disk. A

    single disk can hold multiple volumes.

    And now, some words from our sponsor

  • 7/27/2019 70-643 Notes

    7/38

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Inspect hardware to determine whetheror not it will be sufficient for Hyper-V

    Configure Simple Volumes in the Storage

    Section of Server Manager in Server 2008

    Install the Hyper-V Role in Server 2008

    Create a Virtual Network in Hyper-V

    After viewing this video, you should be able to:

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Create a Virtual Machine and Install an

    OS in the VM.

    Install Extensions in your VM for ease

    of use.

    After viewing this video, you should be able to:

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Look Mom, No Hands!

    How to Set Up Windows Deployment Services So

    You Can Install Operating Systems While Playing

    World of Warcraft

  • 7/27/2019 70-643 Notes

    8/38

    Train Signal, Inc.

    Coach Culbertson

    Look Mom, No Hands!

    Windows Deployment ServicesWill Make You A Happy Camper

    Setting Up WDS In Like 3 Easy

    Steps

    Lets Build Some Servers, Baby!

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    Before we begin

    Heres What Were BuildingNY-DC1-2K8

    AD DS

    DNS

    Domain: Globomantics.com

    Functional Level: Server 2008

    In this video, were going to add: HYPERV

    DEPLOY1

    MEDIA1

    WEB1

    TS1

    Train Signal, Inc.

    Coach Culbertson

    Windows Deployment Servic es Will Make You A Happy Camper

    Windows Server 2008 and Vista are both image-based installations

    Easy installation for not only Server 2008, but also Vista!

    An image can taken of a hard drive, stored on a server, and then deployed via

    broadcast to several machines all at once.

    DEPLOY1

    MEDIA1

    WEB1

    TS1

    CL1-VISTA

  • 7/27/2019 70-643 Notes

    9/38

    Train Signal, Inc.

    Coach Culbertson

    Setting Up WDS In Like 3 Easy Steps

    1. Join the machine to the Domain

    2. Install the WDS Role

    3. Add Images from the Windows 2008 Install Disk (and

    Vista, if youre deploying clients)

    Youll need to add these two images from the

    sources folder:

    The boot.wim

    The install.wim

    Also, if youre planning on deploying both 32-bit and

    64-bit editions, youll need to grab the WIM files

    from both the 32-bit and 64-bit disks.

    Dude, this is, like, so easy.

    Train Signal, Inc.

    Coach Culbertson

    Our End Result

    Heres What Weve BuiltNY-DC1-2K8

    AD DS

    DNS

    Domain: Globomantics.com

    Functional Level: Server 2008

    HYPERV

    DEPLOY1

    WDS ServerMEDIA1

    WEB1

    TS1

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    Windows Deployment ServicesA Server Role that allows easy

    installation of Server and Client Operating Systems, using image-based

    installations.

    WIM- Windows Imaging FormatThe File Type used to create and

    deploy Windows OS

    PXE--Preboot eXecutionEnvironment (pronounced 'pixie') is an

    environment to boot computers using a network interface

    independently of available data storage devices (like hard disks) or

    installed operating systems.

    Boot ImageAn image pulled from the Server 2008 installation disk

    that allows a machine to boot into Deployment Services installation

    mode.

    Install ImageAn image file that contains the actual OS you want to

    install

    Big Words To Help You Sound Smarter At Cocktail Parties

  • 7/27/2019 70-643 Notes

    10/38

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Install the WDS Server Role

    Add Boot and Installation images to the

    WDS Server from the Server 2008

    installation disk

    Describe why you should only pull the

    Server 2008 Boot Image rather than the

    boot image from the Vista installation disk

    Deploy Server 2008 to multiple machines

    After viewing this video, you should be able to:

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Build Your Own

    Web-Server-O-Fun!

    How to Install Internet Information Services

    (IIS) 7.0 in Two Different Flavors

    Train Signal, Inc.

    Coach Culbertson

    Build Your Own Web-Server-O-Fun

    Application Server or Web Server?

    Getting SharePoint Installed

    In this video:

  • 7/27/2019 70-643 Notes

    11/38

    Train Signal, Inc.

    Coach Culbertson

    Were going to focus on building our

    Web Server for SharePoint Services

    Where are we so far?

    Heres What Weve BuiltNY-DC1-2K8

    AD DS

    DNS

    Domain: Globomantics.com

    Functional Level: Server 2008

    HYPERV

    DEPLOY1

    WDS ServerMEDIA1

    WEB1

    TS1

    Train Signal, Inc.

    Coach Culbertson

    Application Server or Web Server?

    You need to get a Web Server Set up to prep for your

    SharePoint Services. Theres two Web-type Server Roles

    Available, Web Server and Application Server. Which one

    should you choose?

    So which one?

    Web Server Application Server

    Basic Core Web

    Services (IIS 7)

    ASP Pages

    Basic Core Web

    Services (IIS 7)

    ASP Pages

    .NET Services

    COM+ Network AccessAnd more!

    Train Signal, Inc.

    Coach Culbertson

    Application Server or Web Server?

    The Application Server Role is required for

    SharePoint Services Installation.

    The Web Server Role is good if you all have is a

    basic web site or maybe an ASP or PHP content

    management system that requires a database on

    the back end.

    Think Application Server more for heavy duty

    internal use.

    Think Web Server for External Sites

    For SharePoint and other high level web apps/distributed apps:

  • 7/27/2019 70-643 Notes

    12/38

    Train Signal, Inc.

    Coach Culbertson

    Getting SharePoint Installed

    SharePoint Services is a separate free

    download from Microsoft

    Installation is quick and easy

    Once youve got the SharePoint Services

    installed, youll create a new SharePoint Site

    for the Globomantics Operations Staff

    Now that the App Server is installed.

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    Web ServerA Server Role that installs IIS 7 only. Great for

    basic and dynamic web sites both external and internal.

    Application ServerA Server Role that installs IIS 7 plus a

    lot of heavy duty components that support distributed

    applications with greater power.

    Application PoolA Set-aside amount of resources

    specifically for one particular web application

    SharePoint ServicesA free web application available as a

    separate download from Microsoft that promotes

    collaboration through SharePoint Sites.

    Heres some important words to remember:

    Train Signal, Inc.

    Coach Culbertson

    What Weve Covered

    Install Web Server and Application

    Server Roles to your Server 2008

    Navigate the IIS 7 Manager

    Create a new web site

    Create Application Pools

    Install SharePoint Services

    Create a SharePoint Site

    After viewing this video, you should be able to:

  • 7/27/2019 70-643 Notes

    13/38

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Setting Up Who Gets To Do

    What With A Web Site

    Controlling Access to A Web Site with

    IIS 7s Manager and FTP Tools

    (and well do a little SMTP set-up along the way)

    Train Signal, Inc.

    Coach Culbertson

    Setting Up Who Gets To Do What With A Web Site

    The Globomantics Custom Web

    App

    Getting FTP Up and Running

    One More Thing: SMTP

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    The Globomantics Custom Web App

    Hank is ok with having SharePoint, but hes

    decided that it doesnt have enough features

    that are specific to the business of stocks and

    securities. Hes hired a developer that will becustomizing SharePoint for Globomantics.

    Of course, supporting this new developer will

    be your job.

    Youve already created the SharePoint Site,

    but now you need to allow management

    access to that site to the developer.

    So we have SharePoint, but

    Han

  • 7/27/2019 70-643 Notes

    14/38

    Train Signal, Inc.

    Coach Culbertson

    The Globomantics Custom Web App

    1.Youll enable RemoteManagement in IIS 7 and IIS

    Manager Credentials

    2.Youll create an IIS ManagerUser account for our developer.

    3.Youll then provide specificaccess for the SharePoint Site to

    your developers account.

    4.Last, well provide FTP accessfor our web developer for easy

    access to the file folders for the

    site.

    So What Do We Need To Do?

    Train Signal, Inc.

    Coach Culbertson

    Getting FTP Up and Running

    FTP (File Transfer

    Protocol) is a super easy

    way to get files uploaded

    to the server.

    Its installed as a Role

    Service, an optional part

    of IIS

    Youll need to enable FTP

    for IIS, but then youll

    also need to restrict FTP

    access only for your webdeveloper as well.

    Lets make it just a little easier to get stuff uploaded to the server

    Train Signal, Inc.

    Coach Culbertson

    BREAKING NEWS!!!!NEW FTP FOR IIS 7!!

  • 7/27/2019 70-643 Notes

    15/38

    Train Signal, Inc.

    Coach Culbertson

    One More Thing: SMTP

    Your Developer requests SMTP (Simple Mail Transfer Protocol) be installed and

    configured on SharePoint on the web server for email alerts delivered to users.

    SMTP Server is a F eature that needs to be installed on the Web Server and

    then also configured separately on the SharePoint Site.

    Oh yeah, I forgot to tell you I needed

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    FTPFile Transfer ProtocolEasy way to transfer files up

    to a web site.

    SMTPSend Mail Transfer ProtocolSimple Email service.

    IIS Manager UserA separate user account specifically for

    managing IIS from a remote console.

    IIS 7.0 Manager Downloadable console for remote

    management of IIS 7 from an XP or Vista client (or on a

    Server 2K3 machine!)

    SharePoint Central AdministrationA separate web

    application for high level administration of SharePoint.

    Webby Words to Remember

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Enable Remote Management for IIS 7Create IIS Manager Accounts for use with the IIS

    Management console

    Enable access for an IIS Manager Account on a particularweb site

    Download and install the IIS 7 Manager console forremote access

    Install and configure FTP on IIS 7Install and Configure SMTP on Server 2008 and in

    SharePoint Services

    After watching this video, you should be able to:

  • 7/27/2019 70-643 Notes

    16/38

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    How To Keep Your Stuff Safe

    From The Bad Guys

    Implementing SSL for IIS 7

    (and well look at Hyper-V snapshots, too!)

    Train Signal, Inc.

    Coach Culbertson

    How To Keep Your Stuff Safe From The B ad Guys

    A Quick Intro to SSL

    How To Set Up SSL in IIS

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    A Quick Intro to SSL

    Secure Socket Layer (SSL) allows you to encrypt data sent back and forth from

    servers to clients.

    SSL uses Port 443 (generally).

    Data being sent back and forth between the server and client is encrypted

    using Certificates (think secret decoder) .

    Got your secret decoder ring?

    WEB1

    Network/Internet Client

    ENCODED ENCODED

    Using SSL does require more processing overhead for encryption and

    decryption, and may reduce the appearance of speed of the server.

    SSL CertificateSSL Certificate

  • 7/27/2019 70-643 Notes

    17/38

    Train Signal, Inc.

    Coach Culbertson

    How To Set Up SSL in IIS

    that sensitive data may be c ompromised via transmission on the S harePoint

    site.

    Hank is worried

    Hank says:

    I was watching the news last night, and that one guy was

    talking about how a whole mess of data got stolen off of

    somebodys intranet site, and now I know weve got one, I

    think we better make sure that dont happen.

    And of course, you said:

    Dont worry, Mr. Richardson, sir, well have

    that intranet site secured in no time! Im

    watching a video right now about how to do

    just that!

    Train Signal, Inc.

    Coach Culbertson

    How To Set Up SSL in IIS

    First, we need a SSL Certificate.

    You can

    Buy one from a Third Party (Verisign, GoDaddy, etc.)

    Use a Self-Signed Certificate from the Server.

    Use a Certificate generated from a Server 2008/Server 2003

    Certificate Authority.

    Use the SharePoint certificate that was generated during

    SharePoint Configuration.

    Then we need to install the certificate (or verify its existence.)

    After that, we need to set a Binding for the SharePoint Site so that it can

    use HTTPS and port 443.

    Then instruct the users to access the SharePoint 80 site using https://

    instead of http://

    Theres a couple of things we need to do for SSL

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    SSLSecure Socket LayerA protocol used to encrypt data

    transmitted over a network to protect sensitive

    information.

    CertificateA digital file that both identifies a server,

    client, or site and provides the key to

    encryption/decryption of data

    443The well-known port for SSL traffic

    BindingAttaching a port to a particular protocol

    Even More Webby Words To Help You Sound Like An Expert!

  • 7/27/2019 70-643 Notes

    18/38

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Install A Self-Signed Certificate in IISUse an existing certificate created bya SharePoint installation

    Create Snapshots of a Hyper-VMachine

    Edit Bindings to include HTTPS onport 443 for a web site

    After watching this video, you should be able to:

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    What is Terminal Services?

    How to run applications by remote control

    (more or less)

    Train Signal, Inc.

    Coach Culbertson

    What is Terminal Services?

    Just what in the sam-hill is

    THIS? (Hanks question)

    Components of Terminal

    Services

    Lets get it installed

    In this video:

  • 7/27/2019 70-643 Notes

    19/38

    Train Signal, Inc.

    Coach Culbertson

    Just what in the sam-hill is THIS?

    Hank has purchased a report-building software that

    is based on Microsoft Office components that will bemade available to traveling sales people. The issue

    is that this report building software will be handling

    sensitive data on client accounts. Thus, having

    traveling sales people have unsecured access is a

    really bad idea.

    You suggest creating a Terminal Services option to

    increase security for the application. Hanks

    response:

    Just what in the sam-hill is this Terminal Services

    thing, any-how!?

    So you need to show him.

    Hanks Question

    Train Signal, Inc.

    Coach Culbertson

    Components of Terminal Services

    Terminal Services operates on an older model of having small clients

    (terminals) access a server. The server does all the work, the terminal only

    provides input and displays output.

    Everything old is new again!

    TS1

    Client

    Client

    An Application lives here

    (i.e. Microsoft Office,

    etc.)

    but is accessed and

    controlled here

    and here

    Train Signal, Inc.

    Coach Culbertson

    Components of Terminal Services

    The Terminal Services Server RoleThe foundation of using TS

    TS Remote App A Role Service installed with the Terminal ServicesServer Role, it allows you to make applications available on the serveravailable for use by client machines via a short cut or through TS Web

    Access.TS LicensingTS requires more licenses, and the TS licensing Role

    Service allow you to more easily manage TS licenses.

    TS Session BrokerInstall this Role Services only when you want tohave multiple TS Servers operating in a farm for highly availableapplications. TS Session Broker allows clients to reconnect todisconnected sessions.

    TS Web AccessThis Role Service allows users to access TS RemoteApps through a web page.

    TS GatewayA Role Service to provide Terminal Services to usersoutside of your network.

    What makes up Terminal Services?

  • 7/27/2019 70-643 Notes

    20/38

    Train Signal, Inc.

    Coach Culbertson

    Lets get it installed

    Oh gee, another Role Installation

    Role Installation is pretty easy,

    but there are some optionsalong the way that youll need

    to know something about.

    Which Role Services will you

    need?

    Will you use Authentication or

    not?

    How will TS Licensing be

    handled?

    Who will need access to the

    TS?

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    Terminal Services RoleThe foundational role that allows

    users to use applications that live on a TS server.

    TS GatewayThe TS Role Service that allows access to a

    server application over the Internet without the need for a

    VPN (although you can use a VPN still if you want to).

    TS Remote AppRole Service that comes along with the TS

    Role. Required for pretty much everything else.

    TS LicensingRole Service for managing lots of TS licenses.

    TS Session BrokerOnly for use with multiple TS servers to

    allow reconnects to disconnected sessions.

    TS Web AccessAccess TS Remote Apps via a web page

    Wannabe an IT Word Wizard? Here ya go!

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Describe the 6 components of Terminal

    Services.

    Describe the differences between the twotypes of TS licenses.

    Install the Terminal Services Server Role.

    Select Appropriate Role Services during the

    Role Installation Process.

    Use the Help links after Role Installation.

    After watching this video, you should be able to:

  • 7/27/2019 70-643 Notes

    21/38

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Running Office from Another

    Machine

    Implementing Remote Apps

    (sorry, no snarky title or subtitle)

    Train Signal, Inc.

    Coach Culbertson

    Running Office From Another Machine

    Installing Office on the TS

    Server

    Shortcuts vs. TS Web Access

    To the Gateway!

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    Installing Office on the TS Server

    Since Hanks new

    software will be

    generating reports using

    Office, you need to install

    Microsoft Office on the

    TS server so it can be

    accessed remotely by

    Hank and other sales

    staff.

    Once its installed, youll

    add Microsoft Word to

    the applications available

    via TS.

    Ok, so youve got TS installednow what?

  • 7/27/2019 70-643 Notes

    22/38

    Train Signal, Inc.

    Coach Culbertson

    To The Gateway

    Heres the typical setup if youre going to be providing acc ess to users outside of

    your network:

    Connect to TS even while youre in a faraway exotic locale!

    Domain Controller with

    TS Gateway

    (Separate Machine)

    TS Servers

    (Remote App Lives Here)Client Connects over the Internet

    Via RDP over SSL

    Firewall Firewall

    ISA Server can be used in the DMZ if you dont want to put your DC/TS

    Gateway there.

    Your Remote Desktop Connection shortcuts will need to be configured to

    use TS Gateway.

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    RDPRemote Desktop ProtocolA method of

    connecting to other computers and having a

    Desktop interface. Create an .rdp file for easy

    connections.

    TS GatewayA Role Service of Terminal Services

    that allows access to a Terminal Services Server

    without the need for a VPN.

    Remote Desktop UsersThe Local Computer

    Group that you add Users and Groups to that will

    be able to access the Terminal Services Server.

    HeeeeeeresVocab!

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Install applications on a TS Server and publish them via RemoteApp.

    Use Web Access to utilize applications on the Server via

    Remote App.Add additional Users and Groups to the Local Remote Desktop

    Users Group of the TS server using the Computer Management

    MMC .

    Create RDP files and .msi installation packages to distributeshortcuts to users via Group Policy who will be using TS Remote

    Apps.

    Describe a TS Gateway implementation.Configure a Remote Desktop Connection file to use TS

    Gateway.

    After watching this video, you should be able to:

  • 7/27/2019 70-643 Notes

    23/38

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Give Your People What They

    WantService!

    Creating Highly Available Solutions with Network

    Load Balancing Plus How To Capture an Image for

    Duplicating Machines for NLB or Clustering

    Train Signal, Inc.

    Coach Culbertson

    Give Your People What They WantService!

    The Big Three

    How to Build and Deploy a

    Deployment Services Image To Create

    Duplicate Machines So You Can Make

    the Big Three Work.

    Implementing TS Load Balancing.

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    The Big Three

    Hank is concerned that the Terminal Services machine mig ht fail in the most

    critical of times. He is adamant that you do whatever you need to so t hat he and

    the other sales staff have access to the Office-based report writing software as

    close to 100% of the time. So heres our options:

    Network Load Balancing--Distributes work load to different machinesto alleviate stress on the machines and provide high scalability. Bestfor Web-Based stuff.

    Failover ClusteringMultiple machines acting like one machine forhigh availability in case one machine fails. Best for Fault Tolerance (incase one machine blows up) and for Database servers.

    Terminal Services Load BalancingRequires at least two machineswith TS configuration. Load balancing just redirects TS requests to theserver thats less busy.

    Hank learns about Fault Tolerance

  • 7/27/2019 70-643 Notes

    24/38

    Train Signal, Inc.

    Coach Culbertson

    The Big Three

    Lets break them down visually

    TS Server TS Server

    TS Server

    Network Load Balancing (TS)

    DB Server

    DB ServerDB Server

    Clustering

    All three machines act like one machine.

    If one machine goes down, t he others keep

    going to provide services.

    Train Signal, Inc.

    Coach Culbertson

    How to Build and Deploy a Deployment Services Image To Create Duplicate Machines So

    You Can Make the Big Three Work

    Since we already have a TS machine built, well use ourDeployment Services machine to capture an image of itand then deploy it on another virtual machine.

    1. First, we need to create a Capture Image so we can grabwhats on TS1.

    2. Then we need to run a utility called sysprep on TS1 sowe can use the OS and all its fun features weveinstalled as a clean image.

    3. Then we capture the image by rebooting the machineand using the Capture image we created to boot upwith.

    4. After the capture is complete, we can deploy usingDeployment Services as normal.

    Hey, we know something about this already!

    Train Signal, Inc.

    Coach Culbertson

    How to Build and Deploy a Deployment Services Image To Create Duplicate Machines So

    You Can Make the Big Three Work

    Once youve used sysprep on a machine, you

    will either have to:

    A.Use the new image to redeploy themachine.B.If youre running the machine in Hyper-V,

    you can just go back to a snapshot.

    ( You are making snapshots, right? )

    Heres a really important thing to remember

  • 7/27/2019 70-643 Notes

    25/38

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    Network Load BalancingUsing multiple servers with similar

    configuration to share the load by alternating which server handlesrequests.

    Failover ClusteringUsing multiple servers with similar configuration

    to provide highly available services in case of a machine failure.

    TS Load BalancingNetwork Load Balancing with TS Servers using TS

    Session Broker.

    Capture ImageA separate image file used for capturing an image of a

    hard drive.

    Reference ComputerA Computer that is set up with all the

    configuration, software applications and whiz-bangs needed for

    multiple machines, and then is captured via Deployment Services.

    TS Session BrokerA Role Service used for TS Load Balancing and for

    reconnecting users to disconnected sessions.

    I know youve been just waiting anxiously for these, so here ya go!

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Describe the Big Three of Highly Available Services.Run sysprep on Server 2008 before creating a

    capture image.

    Create a Capture Image of a Reference Computer.Use Deployment Services to install a captured

    image.

    Install TS Session Broker.Configure Load Balancing for TS.

    After watching this video, you should be able to:

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    How To Build Your Own Little

    TV Station

    How to set up Windows Media Server for easy

    Broadcasting Over Your Network, Plus a Primer on

    Clustering!

  • 7/27/2019 70-643 Notes

    26/38

    Train Signal, Inc.

    Coach Culbertson

    How To Build Your Own Little TV Station

    Hanks New IdeaGloboTV

    Get Media Server Installed

    How to Get Your Stuff

    Streaming

    Cluster What?

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    Hanks New IdeaGloboTV

    Hank recently took a trip to visit a buddys company, and while hewas there he witnessed employees viewing training and videoupdates from the CEO while sitting their desks. He asked his buddyhow that worked, and he said that his IT guys used Server 2008 tocreate it, but he didnt know how. All he did was talk in front of acamera.

    So of course, Hank wants you to create GloboTV, whereemployees can also be able to get updates and training.

    After asking Hanks secretary to stop putting visits to othercompanies on his schedule, you look up Windows Media Server.

    Yes, it can be done.

    This is what happens when Hank visits other companies

    Train Signal, Inc.

    Coach Culbertson

    Get Media Server Installed

    Windows Media Services

    is actually a downloadable

    role from Microsoft.

    Theres three downloads

    that youll need to grab

    and install.

    After youve installed the

    three updates, you can

    then install the Role using

    Server Manager.

    IIS will also be installed.

    Not your typical Role Install

  • 7/27/2019 70-643 Notes

    27/38

    Train Signal, Inc.

    Coach Culbertson

    How To Get Your Stuff Streaming

    Once Streaming Media Services is installed, you can

    create Publishing Points which can hold: Single Files

    Playlists

    Web Pages

    Live Broadcasts

    Everything is wizardized, so you wont need a whole

    lot of special knowledge. All youll really need is a

    media file in WMV format (or a live broadcast).

    Publishing Points can be accessed via Internet

    Explorer, but instead of using http://, you can use

    mms:// as the protocol.

    Media is automatically opened up into Media

    Player, and is not actually saved to the hard drive.

    Creation of Publishing Points

    Train Signal, Inc.

    Coach Culbertson

    Cluster What?

    Failover Clustering is a Feature that allows multiple servers to do the same j ob.

    If one server dies, the other server(s) in the cluster will take over the tasks.

    Failover Clustering uses a Quorum disk (AKA witness disk) which holds

    replicated files and other info that determines how many failures can occur

    before the cluster goes boom.

    While designed primarily for Storage Area Networks, you can use c lustering for

    other services (with caution).

    Clustering does have very specific hardware requirements, i.e. SCSI, iSCSI, Fiber

    Channel for use. Be careful when selecting hardware for clusters.

    Microsoft has actually opened up a new section specifically for devel opment of

    hardware that plays nice in the Failover Clustering sandbox.

    Clustering: A Weird Word For Fault Tolerance

    Clustering is not a one-size-fits-all solution. Its great for use with Exchange,

    SQL Server, and File Servers. Other services may or m ay not play wel l with

    clustering. If you find yourself frustrated by trying to cluster a particular Role

    or Service, you might find that Network Load Balancing is a better choice.

    Train Signal, Inc.

    Coach Culbertson

    Cluster What?

    In the interest of science, youll be doing a little experiment to see if you cluster

    Windows Media Services. Normally, you would cluster two physical machines

    together, or two Hyper-V machines on TWO SEPARATE H yper-V servers. Since

    were kind of hardware poor at Globomantics right now, well try i t with 2 Hyper-

    V machines.

    It might work, or it might blow up in y our face. But why not try it to get famili ar

    with the process?

    First well grab an image of our Media Services machine and create a duplicate

    virtual machine, and then get Failover Clustering installed on both. Then well

    attempt to create a cluster.

    Will it work? Will it crash and burn? Lets find out!

    Our Media Services Clustering Experiment

  • 7/27/2019 70-643 Notes

    28/38

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    Windows Media ServicesA downloadable Role for Server 2008 that

    allows streaming video and audio over a network.Publishing PointA defined location that allows for single files, play

    lists of files, web pages, and live broadcasts. (Uses IIS and RTSP, and

    can use http).

    RTSPReal Time Streaming ProtocolA protocol optimized for

    streaming media.

    WMVWindows Media VideoA file format that supports streaming

    video.

    Failover ClusterA Feature that allows for multiple servers to be

    clustered together for fault tolerance.

    Quorum diskA SCSI hard drive that allows for clustering to occur and

    provides storage for replicated files between clustered servers as well

    as other info that supports cluster. (Also called a witness disk).

    So many big words to remember!

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Download and install Windows Media Services in Server

    2008.

    Create an on-demand Publishing Point for a single file to be

    streamed.

    Instruct users to use IE and the mms:// prefix to access

    available media.

    Install the Failover Clustering feature in Server 2008.

    Run the Validate a Cluster Wizard.

    Create a Cluster.

    Identify scenarios when using the different Quorum disk

    configurations.

    After viewing this video, you should be able to:

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Certification: Its Really Not

    That Scary

    What it is, what to expect, and how to prepare

  • 7/27/2019 70-643 Notes

    29/38

    Train Signal, Inc.

    Coach Culbertson

    Certification: Its Really Not That Scary

    The New Generation of Certifications

    for Server 2008

    The Upgrade Paths for MCSAs/MCSEs

    How to Sign Up for a Microsoft Exam

    70-643 Exam Prep Tips

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    The New Generation of Server 2008 Certifications

    The Three New Server

    Certification Blocks for

    Network Admins

    MCTS

    MCITP: Server

    Administrator

    MCITP: Enterprise

    Administrator

    There is no MCSE 2008

    There is no MCSA 2008

    New Alphabet Soup for Everyone!

    Train Signal, Inc.

    Coach Culbertson

    The New Generation of Server 2008 Certifications

    MCTS - Take any one exam from a large selection

    MCITP: Server Administrator Exams (From Scratch - Three Exams)

    70-640: TS Active Directory

    70-642: TS Network I nfrastructure

    70-646 Pro: Server Administrator

    MCITP: Enterprise Administrator (From Scratch - Five Exams)

    70-620: Vista

    70-640: TS Active Directory

    70-642: TS Network I nfrastructure

    70-643: TS Server 2008 Application Infrastructure, Configuring

    70-647 Pro: Enterprise Administrator

    What you need to take for each Credential

    When you get mulitpleTS certs, you can

    build a nifty logo using MSs Logo Builder!

  • 7/27/2019 70-643 Notes

    30/38

    Train Signal, Inc.

    Coach Culbertson

    The Upgrade Paths for MCSAs/MCSEs

    Take Two Exams

    70-648: Provides 2 Additional MCTS Certs

    70-646: Provides MCITP

    For an MCSA 2003 to Move Up To MCITP: Server Administrator

    Train Signal, Inc.

    Coach Culbertson

    The Upgrade Paths for MCSAs/MCSEs

    Take 4 Tests:

    70-648: Provides 2 MCTS

    70-620 or 70-624: TS: Vista

    70-643: TS: Applications Infrastructure

    70-647: MCITP: Enterprise

    For an MCSA 2003 to Upgrade to MCITP: Enterprise Administrator

    Train Signal, Inc.

    Coach Culbertson

    The Upgrade Paths for MCSAs/MCSEs

    Take Two Tests:

    70-649: Provides 3 MCTS

    70-646: MCITP: Server Administrator

    For an MCSE 2003 to MCTIP: Server Administrator

  • 7/27/2019 70-643 Notes

    31/38

    Train Signal, Inc.

    Coach Culbertson

    The Upgrade Paths for MCSAs/MCSEs

    Take 3 Exams:

    70-649: Provides 3 MCTS

    70-620 or 70-624: TS: Vista

    70-647: MCITP: Enterprise Administrator

    For an MCSE 2003 to MCITP: Enterprise Administrator

    Train Signal, Inc.

    Coach Culbertson

    How to Sign Up for a Microsoft Exam

    Go to Prometric.com

    its easy!

    Prometric is the

    exclusive provider of

    Microsoft exams.

    Microsoft periodically

    offers free Second

    Shots check the

    Microsoft site first!

    One Web Site To Sign Up For Them All!

    Train Signal, Inc.

    Coach Culbertson

    70-640 Exam Prep Tips

    I recommend:

    Take the Transcender Practice Exam Several TimesLook up the stuff that you

    miss in this Video Course or in the Microsoft Press Book.

    Review this course at least twice

    Get some Virtual Machines and push buttons!

    Prep

    MCTS Self-Paced Training Kit (Exam 70-643): Configuring

    Windows Server 2008 Applications Infrastructure from Microsoft

    Press

  • 7/27/2019 70-643 Notes

    32/38

    Train Signal, Inc.

    Coach Culbertson

    70-640 Exam Prep Tips

    Do not stay up all night studying get good sleep!

    When you go in to the test center, leave your cell phone

    and anything else in your car.

    Bring in only 2 forms of ID and your car keys. You must

    have 2 forms of ID!!!

    Before taking the test, stop and breathe. Relax.

    During the test, do not forget to breathe.

    Mark Questions for Review the first time through if you

    have to think too long about any one of them. You can go

    back at the end of the test and answer them later.

    On the day of the test

    Train Signal, Inc.

    Coach Culbertson

    70-640 Exam Prep Tips

    Know the material.

    The Biggest Tip I Can Give You--

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Describe the Requirements for MCTS and the MCITP

    Tracks

    Describe the Upgrade Paths for MCSAs\MCSEs to

    MCITP

    Sign up for an Exam on the Prometric Web Site

    After watching this video, you should be able to:

  • 7/27/2019 70-643 Notes

    33/38

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Exam PrepAutomated

    Activation

    KMS, MAK, VAMT, and any other acronyms I can fit

    in to make a nifty alphabet soup

    Train Signal, Inc.

    Coach Culbertson

    Exam PrepAutomated Activation

    Look Mom, No Hands! Part Deaux

    The Volume Activation

    Management Tool (VAMT)

    The Key Management Service

    (KMS)

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    Look Mom, No Hands! Part Deaux

    When youre doing mass deployment of servers and

    clients, you probably dont want to take the time to go

    around to all of the machines and put in the license keys

    (unless you get paid by the hour

    ).Microsoft provides two automated solutions that work

    with a license key you buy that allows you to activate

    multiple machines.

    Of the two tools, the Key Management Service is more

    hands-off, while the VAMT is more hands-on and for

    smaller deployments.

    Lets take a look at each tool in more detail.

    Its all about the keys

  • 7/27/2019 70-643 Notes

    34/38

    Train Signal, Inc.

    Coach Culbertson

    The Volume Activation Management Tool

    The VAMT is a downloadable tool that allows for activation only. You still have to

    enter the license key manually or via an answer file during deployment. (Hint: For a

    large deployment of a lot of machines, go with the answer file opt ion)

    You have to buy a MAK (Multiple Activation Key) from Microsoft to use the VAMT.

    The VAMT can be installed on a Vista client, Server 2k8, or Server 2k3.

    Heres how it works:

    The VAMTKind of good

    Microsoft Activation

    Servers

    With a MAK

    License Key

    Your

    VAMTYour

    Servers

    Train Signal, Inc.

    Coach Culbertson

    The Key Management Service

    The KMS is a command line option that allows L icense Key Distribution and

    Activation. More hands-off and better for massive server deployments.

    You need to buy a KMS L icense Key from Microsoft that has the appropriate

    number of activations for your servers .

    You need to have a minimum of 5 Servers for KMS to work. Otherwise, it will

    fail.

    The KMS Much Better

    Microsoft Activation

    ServersYour 2008

    Servers

    Your

    KMS Server

    With a KMSLicense Key

    Train Signal, Inc.

    Coach Culbertson

    The Key Management Service

    From the Command Line:

    Slmgr the primary

    command Slmgr ipk

    Installs your KMS Key

    Slmgr ato

    Activates your KMS

    Server

    Some commands that youll need:

  • 7/27/2019 70-643 Notes

    35/38

    Train Signal, Inc.

    Coach Culbertson

    Critical Vocabulary

    MAKMultiple Activation KeyA License key that

    allows for multiple activations and works with theVAMT.

    VAMT Volume Activation Management ToolA clientapplication that allows activation of a MAK onmachines.

    KMS Key Management ServicesA Service thatallows for distribution and activation of KMS licensekeys.

    SLMGRSoftware Licensing Management Tool Acommand line tool that implements KMS on Server2008.

    A Quick Review of Alphabet Soup

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Define what a MAK is.

    Define KMS and VAMT.

    Describe the differences between KMS

    and the VAMT.

    Describe how the KMS and VAMT tools

    work .

    After viewing this video, you should be able to:

    Welcome to Train SignalTrain Signal, Inc.

    Coach Culbertson

    Exam PrepStorage Review

    Umm, yeah, I cant think anything funny for this

    one. Its storage. Its really not that funny, but Ill

    try to make it as interesting as I can.

  • 7/27/2019 70-643 Notes

    36/38

    Train Signal, Inc.

    Coach Culbertson

    Exam PrepStorage Review

    Oh, The Fun, The Excitement OfStorage

    RAIDNo, Not The Bug Killer

    NAS, SANTwo things with the

    same letters but not the same.

    SCSIIts Really Not Scuzzy At All

    In this video:

    Train Signal, Inc.

    Coach Culbertson

    Oh, The Fun, The Excitement Of Storage

    So, this is pretty much a basic review of storage

    stuff. If youve done your A+ Certification, you

    really should know all this by now. If you havent

    done your A+ or maybe Server +, then you should

    watch this.

    If youve been in the field for a while, you can

    probably skip this.

    Storage Stuff Yeah, its on the exam.

    Train Signal, Inc.

    Coach Culbertson

    RAIDNo, Not The Bug Killer

    Having a Server without RAID is like havingdinner on a piece of notebook paper. Pickyour hardware carefully.

    Best and most Prevalent OptionHardware-based RAID 5 array

    Needs at least 3 HDDs to work. Protects against the failure of a single

    disk. Through the magic of parity.

    Uses 20% (or less, depending on howmany disks you have) of each disk forparity.

    Can rebuild a failed disk from theinformation on the parity informationon the other disks.

    Most hardware-based RAID 5 arraysare hot-swappable.

    Redundant Array of Inexpensive Disks

  • 7/27/2019 70-643 Notes

    37/38

    Train Signal, Inc.

    Coach Culbertson

    RAIDNo, Not The Bug Killer

    If you have to go cheap,

    you can configure asoftware RAID 5 with IDEor SATA Drives in theStorage MMC of theServer Manager.

    If you only have two disksand want fault tolerancefor your Server, you cancreate a Mirrored Disksetup, where you havetwo identical disks.

    On the cheap side

    Train Signal, Inc.

    Coach Culbertson

    NAS, SANTwo things with the same letters but not the same.

    Heres the difference:

    A Storage Area Network is a bunch of drives on a separate machine that

    look like theyre attached to a machine. Usually a Server or a Server

    Farm.

    Network Attached Storage is a bunch of drives on a server or an

    appliance that are clearly on a separate drive. (Think Shared

    Drives/Folders).

    Network Attached Storage Vs. Storage Area Network

    Train Signal, Inc.

    Coach Culbertson

    SCSIIts Really Not Scuzzy At All

    SCSI (Small Computer System Interface) is a faster (and more

    expensive) type of HDD that is the foundation of many RAID hardware

    solutions.

    Its very popular in SANs and NAS, as it natively supports multiple disks

    on the same Bus.

    iSCSI is very similar to SCSI , except that it uses TCP/IP as a transport

    protocol and doesnt require crazy cabling like Fiber Channel. It can be

    used over long distances using existing network structure.

    Pop QuizWhat kind of disks do you need for c lustering to play nice?

    Yes, thats rightSCSI (and iSCSI).

    Sounds funny, but really isnt

  • 7/27/2019 70-643 Notes

    38/38

    Train Signal, Inc.

    Coach Culbertson

    What We Covered

    Describe a RAID 5 Array.

    Describe the differences between a

    SAN and NAS.

    Describe SCSI and the differences

    between iSCSI.

    After viewing this video, you should be able to: