Introduction |
|
xiii | |
Organization of this book |
|
xiii | |
Microsoft certifications |
|
xiv | |
Quick access to online references |
|
xiv | |
Errata, updates, & book support |
|
xiv | |
Stay in touch |
|
xv | |
|
Chapter 1 Deploy and manage Active Directory Domain Services in on-premises and cloud environments |
|
|
1 | (98) |
|
Skill 1.1 Deploy and manage AD DS domain controllers |
|
|
1 | (28) |
|
Deploy and manage domain controllers on-premises |
|
|
2 | (21) |
|
Deploy and manage domain controllers in Azure |
|
|
23 | (1) |
|
Deploy read-only domain controllers (RODCs) |
|
|
24 | (2) |
|
Troubleshoot flexible single master operations (FSMO) roles |
|
|
26 | (3) |
|
Skill 1.2 Configure and manage multi-site, multi-domain, and multi-forest environments |
|
|
29 | (16) |
|
Configure and manage forest and domain trusts |
|
|
29 | (6) |
|
Configure and manage AD DS sites |
|
|
35 | (6) |
|
Configure and manage AD DS replication |
|
|
41 | (4) |
|
Skill 1.3 Create and manage AD DS security principals |
|
|
45 | (9) |
|
Create and manage AD DS users and groups |
|
|
45 | (2) |
|
Manage users and groups in multi-domain and multi-forest scenarios |
|
|
47 | (1) |
|
Implement group managed service accounts (GMSAs) |
|
|
48 | (4) |
|
Join Windows Servers to AD DS, Azure AD DS, and Azure AD |
|
|
52 | (2) |
|
Skill 1.4 Implement and manage hybrid identities |
|
|
54 | (29) |
|
Implement Azure AD Connect |
|
|
54 | (11) |
|
Manage Azure AD Connect Synchronization |
|
|
65 | (2) |
|
Implement Azure AD Connect cloud sync |
|
|
67 | (1) |
|
|
68 | (3) |
|
Integrate Azure AD, AD DS, and Azure AD DS |
|
|
71 | (1) |
|
Manage Azure AD Connect Health |
|
|
72 | (1) |
|
Manage authentication in on-premises and hybrid environments |
|
|
73 | (1) |
|
Configure and manage AD DS passwords |
|
|
74 | (9) |
|
Skill 1.5 Manage Windows Server by using domain-based Group Policies |
|
|
83 | (16) |
|
Implement Group Policy in AD DS |
|
|
83 | (10) |
|
Implement Group Policy preferences in AD DS |
|
|
93 | (2) |
|
Implement Group Policy in Azure AD DS |
|
|
95 | (1) |
|
|
95 | (1) |
|
|
96 | (1) |
|
Thought experiment answers |
|
|
97 | (2) |
|
Chapter 2 Manage Windows Servers and workloads in a hybrid environment |
|
|
99 | (28) |
|
Skill 2.1 Manage Windows Servers in a hybrid environment |
|
|
99 | (14) |
|
Choose administration tools |
|
|
100 | (2) |
|
Deploy a WAC gateway server |
|
|
102 | (3) |
|
Configure a target machine for WAC |
|
|
105 | (1) |
|
Manage Azure hybrid services with WAC |
|
|
105 | (1) |
|
Configure PowerShell remoting |
|
|
105 | (3) |
|
Configure CredSSP or Kerberos Delegation for second hop remoting |
|
|
108 | (1) |
|
Configure Just Enough Administration for PowerShell remoting |
|
|
109 | (4) |
|
Skill 2.2 Manage Windows Servers and workloads by using Azure Services |
|
|
113 | (14) |
|
Manage Windows Servers by using Azure Arc |
|
|
114 | (2) |
|
Assign Azure Policy guest configuration |
|
|
116 | (1) |
|
Deploy Azure services using the Azure VM extensions on non-Azure machines |
|
|
117 | (1) |
|
Manage updates for Windows machines |
|
|
118 | (2) |
|
Integrate Windows Servers with Log Analytics |
|
|
120 | (1) |
|
Integrate Windows Servers with Microsoft Defender for Cloud |
|
|
121 | (1) |
|
Manage IaaS VMs in Azure that run Windows Server |
|
|
122 | (1) |
|
Create runbooks to automate tasks on target VMs |
|
|
123 | (1) |
|
Implement Azure Automation for hybrid workloads |
|
|
123 | (1) |
|
Implement Desired State Configuration to prevent configuration drift in IaaS machines |
|
|
124 | (1) |
|
|
125 | (1) |
|
|
125 | (1) |
|
Thought experiment answers |
|
|
126 | (1) |
|
Chapter 3 Manage virtual machines and containers |
|
|
127 | (58) |
|
Skill 3.1 Manage Hyper-V and guest virtual machines |
|
|
127 | (31) |
|
|
128 | (1) |
|
Manage VM using PowerShell remoting, PowerShell Direct, and HVC.exe |
|
|
129 | (1) |
|
Enable VM Enhanced Session Mode |
|
|
130 | (1) |
|
Configure nested visualization |
|
|
130 | (1) |
|
|
131 | (2) |
|
Configure integration services |
|
|
133 | (1) |
|
Configure Discrete Device Assignment |
|
|
133 | (1) |
|
Configure VM resource groups |
|
|
134 | (1) |
|
|
135 | (1) |
|
Configure hypervisor scheduling types |
|
|
135 | (1) |
|
|
136 | (1) |
|
Implement high availability for virtual machines |
|
|
137 | (11) |
|
Manage VHD and VHDX files |
|
|
148 | (5) |
|
Configure Hyper-V network adapter |
|
|
153 | (3) |
|
|
156 | (1) |
|
|
156 | (2) |
|
Skill 3.2 Create and manage containers |
|
|
158 | (15) |
|
Understand container concepts |
|
|
158 | (5) |
|
Manage Windows Server container images |
|
|
163 | (4) |
|
Manage container instances |
|
|
167 | (1) |
|
Configure container networking |
|
|
168 | (3) |
|
Create Windows Server container images |
|
|
171 | (2) |
|
Skill 3.3 Manage Azure Virtual Machines that run Windows Server |
|
|
173 | (12) |
|
|
173 | (1) |
|
|
174 | (1) |
|
|
175 | (1) |
|
Configure continuous delivery for an Azure VM |
|
|
176 | (1) |
|
Configure connections to VMs |
|
|
176 | (3) |
|
Manage Azure VM network configuration |
|
|
179 | (3) |
|
|
182 | (1) |
|
|
183 | (1) |
|
Thought experiment answers |
|
|
183 | (2) |
|
Chapter 4 Implement and manage an on-premises and hybrid networking infrastructure |
|
|
185 | (48) |
|
Skill 4.1 Implement on-premises and hybrid name resolution |
|
|
185 | (15) |
|
|
186 | (2) |
|
Create and manage zones and records |
|
|
188 | (4) |
|
Configure DNS forwarding/conditional forwarding |
|
|
192 | (1) |
|
Integrate Windows Server DNS with Azure DNS private zones |
|
|
193 | (1) |
|
|
194 | (1) |
|
Manage Windows Server DNS |
|
|
195 | (5) |
|
Skill 4.2 Manage IP addressing in on-premises and hybrid scenarios |
|
|
200 | (10) |
|
Implement and manage IPAM |
|
|
200 | (3) |
|
Implement and configure the DHCP server role |
|
|
203 | (1) |
|
Resolve IP address issues in hybrid environments |
|
|
204 | (1) |
|
|
204 | (4) |
|
Create and manage IP reservations |
|
|
208 | (1) |
|
Implement DHCP high availability |
|
|
209 | (1) |
|
Skill 4.3 Implement on-premises and hybrid network connectivity |
|
|
210 | (23) |
|
Implement and manage the Remote Access role |
|
|
210 | (9) |
|
Implement and manage Azure Network Adapter |
|
|
219 | (1) |
|
Implement and manage Azure Extended Network |
|
|
219 | (1) |
|
Implement and manage Network Policy Server role |
|
|
220 | (7) |
|
Implement Web Application Proxy |
|
|
227 | (1) |
|
|
227 | (1) |
|
Implement site-to-site VPN |
|
|
228 | (1) |
|
|
228 | (1) |
|
Implement Azure Virtual WAN |
|
|
229 | (1) |
|
Implement Azure AD Application Proxy |
|
|
229 | (1) |
|
Use Azure App Service Hybrid Connections |
|
|
230 | (1) |
|
|
231 | (1) |
|
|
232 | (1) |
|
Thought experiment answers |
|
|
232 | (1) |
|
Chapter 5 Manage storage and file services |
|
|
233 | (36) |
|
Skill 5.1 Configure and manage Azure File Sync |
|
|
233 | (6) |
|
Create Azure File Sync Service |
|
|
234 | (1) |
|
|
235 | (1) |
|
|
235 | (1) |
|
|
235 | (1) |
|
|
236 | (1) |
|
|
237 | (1) |
|
|
237 | (1) |
|
Migrate DFS to Azure File Sync |
|
|
238 | (1) |
|
Skill 5.2 Configure and manage Windows Server File Shares |
|
|
239 | (12) |
|
Configure Windows Server File Share access |
|
|
239 | (2) |
|
|
241 | (2) |
|
Configure File Server Resource Manager quotas |
|
|
243 | (1) |
|
Use additional FSRM functionality |
|
|
244 | (3) |
|
|
247 | (1) |
|
Implement and configure Distributed File System |
|
|
248 | (3) |
|
Skill 5.3 Configure Windows Server Storage |
|
|
251 | (18) |
|
Configure disks and volumes |
|
|
251 | (1) |
|
Configure and manage storage spaces |
|
|
252 | (5) |
|
Configure and manage Storage Replica |
|
|
257 | (3) |
|
Configure data deduplication |
|
|
260 | (1) |
|
|
261 | (1) |
|
|
262 | (1) |
|
|
263 | (3) |
|
|
266 | (1) |
|
|
266 | (1) |
|
Thought experiment answers |
|
|
267 | (2) |
Index |
|
269 | |