Introduction
Prerequisites
3. Now the Active Directory Domain Services Installation wizard will open up. Tick the Use advanced mode installation check box and click next.
7. On the Domain NETBIOS name wizard leave it as default and click Next. In our example it is MATHEW
Domain is one of the most important concept in a Windows
network. A domain is a collection of user and computer accounts that
are grouped together so that they can be centrally managed using a
Domain controller. A domain controller is a server which hold the
'Active Directory Domain Service (AD DS)' role in a network. Once
you promote a Windows server as a domain controller it can be used
for controlling and managing the whole domain in a centralized
location. The domain controller will provide a single sign-on to
various servers and services inside a domain. Also users and
computers can be granted with access permissions. Group policy is one
of the most important feature in AD DS that controls the working
environment of user accounts and computer accounts. Group policy
provides centralized management and configuration of operating
systems, applications and user's setting in active directory
environment. While you setup a domain controller, a DNS server will
also get configured along with the AD DS. DNS server is one of the
most important service in a network that will serve the computers
with its name resolution functionality.
Visit http://technet.microsoft.com/en-us/library/cc786438(v=ws.10).aspx and http://technet.microsoft.com/en-us/library/dd578336(v=ws.10).aspx for more details about Domain Controllers and Active Directory Services.
Prerequisites
- Server should be configured with a static IP address.
- Appropriate DNS configuration should be there, if there is no DNS server in your network put the loop-back address as the DNS server address in TCP/IP configuration.
-
Computer must be connected in a network.
Promoting
Windows Server 2008R2 as Domain controller
1. Log on to windows server 2008R2 computer as an
administrator.
Click
Start
> Run
Type
'dcpromo'
and click OK
2. Now AD DS binaries will start installing on your
server. Wait for the installation to get finished.
3. Now the Active Directory Domain Services Installation wizard will open up. Tick the Use advanced mode installation check box and click next.
6.
On this windows you can name the domain that you are going to create.
In this example I am naming it as 'mathew.com'
Type the fully
qualified domain name that you wish to use and click Next.
7. On the Domain NETBIOS name wizard leave it as default and click Next. In our example it is MATHEW
8. On
the forest functional level wizard choose the functional level that
you wish to use and click next. In this example I am choosing
'Windows Server 2008
R2'. You can see the
details about each functional level available on the box below. Click
Next.
To
know more about functional levels visit http://technet.microsoft.com/en-us/library/understanding-active-directory-functional-levels(v=ws.10).aspx
9.
On the Additional Domain Controller Option tick
the DNS
server option and
click Next. Here
you can find that the Global catalog option is ticked and grayed out.
This is because Global catalog is installed by default while you
configure first domain controller in a network.
10.
Safely ignore the DNS warning wizard and click Yes
to continue.
14. Once you click Next the wizard will configure Active Directory Domain Services on your Server. It is better to tick the Reboot on completion check box to reboot the server automatically to finish the Installation.
3. Default Domain Policy of after the fresh Installation of AD DS.
You can find the screen-shots of the default domain policy after the installation of AD DS. Refer Figure 1 and Figure 2:
11.
Now the wizard will ask you to choose a location for Database, Log
Files and SYSVOL. The best practice is to choose a location which is
other than the System volume to store these files. Click Next
12.
Choose a Directory services restore mode administrator password. Make
sure that you are providing a password other than the administrator
password. This password is used for recovering AD in case of any
disaster. Click Next
13. On
the Summary window review the settings and
Click next.
14. Once you click Next the wizard will configure Active Directory Domain Services on your Server. It is better to tick the Reboot on completion check box to reboot the server automatically to finish the Installation.
15.
After the reboot go to
Start > Administrative Tools > Active Directory Users and
computers where you
will find the domain that you have created. In our example you can
find 'mathew.com' in
Active
Directory Users and computers.
Additional
Information
1. To find
out the roles Installed along with AD DS
You
can use the command 'netdom
query fsmo' to find
out the roles installed along with the Active Directory Domain
Services. Below is the screen-shot which shows the output of the
command.
You can visit "How to transfer FSMO Roles in 2008R2" to know more about fsmo roles and how to transfer these
roles to another DC in the same domain.
2. DNS
Server Snap-In after the fresh installation
Here you can find the DNS Manager snap-in after a fresh
Installation.
To know more about DNS Server Role visit http://technet.microsoft.com/en-us/library/cc753635(v=ws.10).aspx
3. Default Domain Policy of after the fresh Installation of AD DS.
You can find the screen-shots of the default domain policy after the installation of AD DS. Refer Figure 1 and Figure 2:
Figure 1:
Figure 2:
To know more about group policy visit http://technet.microsoft.com/en-us/library/bb742376.aspx
While we configure a Domain Controller in a network it is better to configure an additional domain controller to improve the reliablility and availability of the network services. The Additional Domain Controller will serve the client machines in case of any failure of the Primary Domain Controller. I will explian how to configure an Additional Domain Controller latter in my Blogs.
While we configure a Domain Controller in a network it is better to configure an additional domain controller to improve the reliablility and availability of the network services. The Additional Domain Controller will serve the client machines in case of any failure of the Primary Domain Controller. I will explian how to configure an Additional Domain Controller latter in my Blogs.
ReplyDeleteVery nice and informative blog. It really helped me add some useful points in my knowledge. Thanks for sharing!
Also check out these amazing Cisco products if you want:
C3850-NM-8-10G
C3850-NM-2-10G
C9200L-24P-4X-E