mcse-08-implementing of an active directory service-04-lab

Upload: sivasankar015

Post on 07-Apr-2018

225 views

Category:

Documents


0 download

TRANSCRIPT

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    1/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Implementing an Organizational UnitStructure

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    2/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage OU using Directory Service

    Tools

    Type the command

    to create the OU

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    3/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage OU using Directory Service

    Tools

    Created OU will

    displayed here

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    4/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Modifying an Organizational Unit

    Procedure

    Dsmod ou Organizational Unit DN desc Description

    d Domain u UserName p Password

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    5/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Modifying an Organizational Unit

    To modify the

    query

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    6/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Modifying an Organizational Unit

    Our modify thing will

    be displayed here

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    7/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Removing an OU

    This command will

    remove the OU type Y

    to confirm

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    8/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Removing an OU

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    9/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    10/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create OU using Ldifide Tool

    Create an input file

    Dn: OU=Sample OU,DC=nwtraders,DC=msft

    Changetype: add

    objectClass: organizational Unit.

    Run Ldifide to create, modify or delete OU

    Ldifde i k f OU List.ldf -b

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    11/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create OU using Ldifide Tool

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    12/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create OU using Ldifide Tool

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    13/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    14/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create OU using Windows Script Host

    Save this script to

    create the OU

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    15/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    16/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create OU using Windows Script Host

    Ou will be created

    here

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    17/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Delegate Administrative Control

    Click

    ACTIVE DIRECTORY USERS AND

    COMPUTERS

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    18/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Delegate Administrative Control

    Select the OU and right

    click select

    DELEGATE CONTROL

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    19/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Delegate Administrative Control

    Click NEXT to

    continue

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    20/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    21/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Delegate Administrative Control

    Select the delegate

    control

    Click NEXT to

    continue

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    22/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Delegate Administrative Control

    Click FINISH

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    23/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Verify Delegation of Administrative Control

    Click

    ACTIVE DIRECTORYUSERS AND COMPUTERS

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    24/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Verify Delegation of Administrative Control

    Select VIEW and select

    ADVANCED

    FEATURES

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    25/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Verify Delegation of Administrative Control

    Select OU andselect properties

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    26/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Verify Delegation of Administrative Control

    Here select

    SECURITY

    Then click

    ADVANCED

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    27/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Verify Delegation of Administrative Control

    In the list it will

    display the user

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    28/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Implementing User, Group, and Computer

    Accounts

    ADVANTAGE PRO Chennais Premier Networking Training Center

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    29/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create Accounts Using the Csvde Tool

    Right click the domain and

    select the NEW then OU

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    30/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create Accounts Using the Csvde Tool

    Then type the

    name of the OU

    Then click

    OK

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    31/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create Accounts Using the Csvde Tool

    Created OU will

    be displayed here

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    32/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    33/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create Accounts Using the Csvde Tool

    Type this command and press

    enter your user account

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    34/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    35/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Ldifde Tool

    Procedure:

    Prepare the Ldifide file for importing

    -- Ldifide file contains a record that consists of a sequence of

    lines that describe either an entry for a user account.

    -- Any line that begins with a pound-sign(#) is a comment line

    is ignored when you run the Ldifide file.

    -- If a value is missing for an attribute, it must be representedas Attribute Description : FILL SEP

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    36/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Ldifde Tool

    Sample Code:Create Shyam

    dn: cn=Shyam,ou=Human Resources,dc=test1,dc=com

    Changetype: AddobjectClass: user

    SAMaccountName: shyam

    userPrinicipalName:[email protected]

    displayName:shyam

    userAccountControl: 512

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    37/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Ldifde Tool

    Run the ldifde command to import the file and create

    multiple user accounts in Active Directory

    In Command Prompt type:

    ldifide i k f filename b UserName Domain Password

    Where

    i indicates importing a file to Active Directory

    f indicates next parameter of the file that are

    importing

    b sets the command to run as username,domain andpassword

    -k ignores errors during an import operation and

    continues processing

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    38/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Ldifde Tool

    Create the file in this

    format

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    39/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Ldifde Tool

    Type the command and

    execute it

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    40/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Ldifde Tool

    The user will display

    here

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    41/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Windows

    Script Host

    Procedure Use Note to create a text file with a .vbs extension.

    -- Connect to the container in which you want to create

    the Active Directory object by specifying the LightweightDirectory Access Protocol (LDAP) query.

    Set objou=Get object(LDAP://ou=Human

    Resources,dc=test1,dc=com)

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    42/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    43/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Windows

    Script Host

    This is the script to

    create the user

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    44/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Windows

    Script Host

    Save the .vbs

    formatThen click

    SAVE

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    45/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Windows

    Script Host

    Then execute the script by

    using WSCRIPT

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    46/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Create and Manage Accounts using Windows

    Script Host

    Created account will

    display here

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    47/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Changing Value using Windows Script Host

    Procedure Connect to the object that the property will be

    changed

    Set objUser=Get Object(LDAP://cn=Mary,ou=Test,dc=test1,dc=com)

    Set the new value of the property-for example, the

    room number of an employee who has moved to a

    new office

    objUser.Putphysical Delivery Office Name,Room 4358

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    48/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    49/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Adding a UPN suffix

    Procedure

    Open Active Directory Domains and Trusts.

    In the console tree, right click Active Directory

    Domains and Trusts, and then click properties

    On the UPN suffixes tab, type an alternative UPN

    suffix, and then click Add.

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    50/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Adding a UPN suffixOpen Active Directory Domains and Trusts

    Select the ACTIVE

    DIRECTORY DOMAINS

    AND TRUSTS

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    51/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Adding a UPN suffixIn the console tree, right click Active Directory Domains and

    Trusts, and then click properties

    Right click the trust and

    select the properties

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    52/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Adding a UPN suffix

    Here type the suffix

    name

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    53/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Adding a UPN suffix

    Then click ADD

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    54/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    55/60

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    56/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Removing a UPN suffixIn Active Directory Domains and Trusts, in the console tree,

    right-click Active Directory Domains and Trusts, and

    then click Properties

    In active directory domain

    trust right click and select

    properties

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    57/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Removing a UPN suffixOn the UPN Suffixes tab, select the UPN suffix name that

    you want to remove, and then click Remove

    Click REMOVE

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    58/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    Removing a UPN suffix

    Click YES

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    59/60

    ADVANTAGE PRO Chennais Premier Networking Training Center

    SID

    Is a list of all SIDs that were assigned to a useraccount

    Provides migrated user account with continuity of

    access to resources

  • 8/6/2019 MCSE-08-Implementing of an Active Directory Service-04-Lab

    60/60