Course 6426: Configuring and Troubleshooting Identity and Access Solutions with Windows Server® 2008 Active Directory®

Type:Course
Audience(s):IT Professionals
Technology:Windows Server
Level:300
This Revision:C
Delivery method:
Instructor-led (classroom)
Length:3 days
Language(s):English

First published:

November 5, 2009
Overview
About this course
This three-day instructor-led course provides in-depth training on configuring and troubleshooting Active Directory® Identity and Access (IDA) solutions with Windows Server® 2008 and Windows Server 2008 R2.
Audience profile
This course is intended for those who want to learn how IDA solutions are implemented in Windows Server 2008 and Windows Server 2008 R2. It is also intended for those preparing for MCTS: Windows Server 2008 Active Directory certification. This course provides a technology overview of IDA and PKI solutions, and details the implementation of each of the roles in Windows Server 2008 and Windows Server 2008 R2 that implement the IDA solution.
At course completion
After completing this course, students will be able to:
  • Describe the fundamental IDA components and Windows Server 2008 and Windows Server 2008 R2 IDA technologies. 
  • Deploy, configure, and troubleshoot Active Directory Certificate Services (AD CS).
  • Deploy, configure, and manage certificates.
  • Deploy, configure, and troubleshoot Active Directory Lightweight Directory Services (AD LDS).
  • Deploy, configure, and troubleshoot Active Directory Federation Services 2.0 (AD FS 2.0).
  • Deploy, configure, and troubleshoot Active Directory Rights Management Services (AD RMS).
  • Maintain Windows Server 2008 and Windows Server 2008 R2 Active Directory IDA Solutions.
Course details
Course OutlineModule 1: Exploring IDA SolutionsLessons
  • Overview of IDA Management
  • Active Directory Server Roles in IDA Management
  • Overview of ILM 2007
Lab : Exploring IDA Solutions
  • Explore how Active Directory Server Roles will provide IDA Management solutions
After completing this module, students will be able to:
  • Describe IDA Management.
  • Identify Active Directory server roles in IDA Management.
  • Identify the key aspects of ILM 2007.
Module 2: Configuring AD CSLessons
  • Overview of PKI
  • Deploying a CA Hierarchy
  • Installing AD CS
  • Managing CA
Lab : Configuring AD CS
  • Installing the AD CS Server Role
  • Issuing and Installing a Subordinate Certificate
  • Publishing the CRL
After completing this module, students will be able to:
  • Describe Public Key Infrastructure.
  • Deploy a Certification Authority hierarchy.
  • Install Active Directory Certificate Services.
  • Manage a Certification Authority.
Module 3: Deploying and Managing CertificatesLessons
  • Deploying Certificates by Using AD CS
  • Deploying Certificates by Using Autoenrollment
  • Revoking Certificates
  • Configuring Certificate Templates
  • Configuring Certificate Recovery
Lab : Deploying and Managing Certificates
  • Configuring AD CS Web Enrollment
  • Configuring Certificate Enrollment
  • Configuring AD CS Certificate Revocation
  • Configuring AD CS Certificate Templates
  • Managing Key Archival and Recovery
After completing this module, students will be able to:
  • Deploy certificates by using AD CS.
  • Use autoenrollment to deploy certificates.
  • Revoke certificates.
  • Configure certificate templates.
  • Configure certificate recovery.
Module 4: Configuring AD LDSLessons
  • Installing and Configuring AD LDS
  • Configuring AD LDS Instances
  • Configuring AD LDS Replication
  • Configuring AD LDS Integration with AD DS
Lab : Configuring AD LDS
  • Configuring an AD LDS instance and an application partition
  • Configuring AD LDS Access Control
  • Configuring AD LDS Replication
  • Configuring AD DS and AD LDS synchronization
After completing this module, students will be able to:
  • Install and configure AD LDS.
  • Configure AD LDS instances.
  • Configure AD LDS replication.
  • Configure AD LDS integration with AD DS.
Module 5: Configuring AD FSLessons
  • Overview of AD FS
  • AD FS Deployment Scenarios
  • Deploying AD FS
  • Implementing AD FS Claims
Lab : Configuring AD FS for Federated Web SSO by Using Forest Trust Scenario
  • Installing the AD FS Server Role
  • Configuring Certificate Requirements
  • Configuring the AD FS Web Agent
  • Configuring the Web Server application on a virtual computer
  • Configuring the Forest Trust and the Federated Trust Policies
  • Configuring the Federation Service Within the Internal Network
  • Configuring the Federation Service Within the Extranet
  • Testing the AD FS Implementation
  • Installing the AD FS Server Role
  • Configuring Certificate Requirements
  • Configuring the AD FS Web Agent
  • Configuring the Web Server application on a virtual computer
  • Configuring the Federation Trust Policies
  • Configuring the Account Partner Federation Service
  • Configuring the Resource Partner Federation Service
  • Testing the AD FS implementation
Lab : Configuring Active Directory Federation Services by Using Federated Web SSO Scenario
  • Installing the AD FS Server Role
  • Configuring Certificate Requirements
  • Configuring the AD FS Web Agent
  • Configuring the Web Server application on a virtual computer
  • Configuring the Forest Trust and the Federated Trust Policies
  • Configuring the Federation Service Within the Internal Network
  • Configuring the Federation Service Within the Extranet
  • Testing the AD FS Implementation
  • Installing the AD FS Server Role
  • Configuring Certificate Requirements
  • Configuring the AD FS Web Agent
  • Configuring the Web Server application on a virtual computer
  • Configuring the Federation Trust Policies
  • Configuring the Account Partner Federation Service
  • Configuring the Resource Partner Federation Service
  • Testing the AD FS implementation
After completing this module, students will be able to:
  • Identify the key aspects of AD FS.
  • Explore AD FS deployment scenarios.
  • Deploy AD FS.
  • Implement AD FS claims.
Module 6: Configuring AD RMSLessons
  • Overview of AD RMS
  • Installing and Configuring AD RMS Server Components
  • Administering AD RMS
  • Implementing AD RMS Trust Policies
Lab : Configuring AD RMS
  • Installing the AD RMS Server Role
  • Managing AD RMS rights policy templates
  • Configuring Trust Policies
  • Testing AD RMS functionality
After completing this module, students will be able to:
  • Identify the key aspects of AD RMS.
  • Install and configure AD RMS server components.
  • Administer AD RMS.
  • Implement AD RMS Trust Policies.
Module 7: Maintaining Access Management SolutionsLessons
  • Supporting AD CS
  • Maintaining AD LDS
  • Maintaining AD FS
  • Maintaining AD RMS
Lab : Maintaining Access Management Solutions
  • Configuring CA Event Auditing
  • Implementing role-based administration in AD CS
  • Backing up a CA
  • Reconfiguring AD RMS cluster settings
  • Generating AD RMS Reports
  • Configuring AD RMS logging
After completing this module, students will be able to:
  • Support AD CS.
  • Maintain AD LDS.
  • Maintain and Monitor AD FS.
  • Maintain AD RMS.
Module 8: Troubleshooting IDA SolutionsLessons
  • Troubleshooting AD CS
  • Troubleshooting AD LDS
  • Resolving AD FS Issues
  • Solving AD RMS Issues
Lab : Troubleshooting IDA Solutions
  • Identifying Tools and Troubleshooting Techniques of IDA Solutions
After completing this module, students will be able to:
  • Troubleshoot AD CS.
  • Troubleshoot AD LDS.
  • Resolve AD FS issues.
  • Solve AD RMS issues.
Prerequisites
Before attending this course, students must have:
 
  • Technical skills in Active Directory Domain Services (AD DS). This includes technical skills equivalent to 6425C: Configuring Windows Server 2008 Active Directory Domain Services.
  • Technical skills in Windows Server 2008 equivalent to 6419B: Configuring, Managing and Maintaining Windows Server 2008 Servers.
Community

Looking for training resources, events and advice from peers? Join the Microsoft Training and Certification Community.

Preparing for an exam now? Find your Microsoft Certification Study Group.

Talk to us on these social networks:

Find a Microsoft Learning Partner near you