MOD 10969: Active Directory Services with Windows Server


Duration: 5 days

During this five-day course students are provided with hands-on instruction and practice administering Active Directory technologies in Windows Server 2012 and Windows Server 2012 R2. Students learn the skills needed to better manage and protect data access and information, simplify deployment and management of your identity infrastructure, and provide more secure access to data from virtually anywhere. How to configure some of the key features in Active Directories such as Active Directory Domain Services, Group Policy, Dynamic Access Control, Work Folders, Workplace Join, Certificate Services, Rights Management Services and Federation Services, as well as integrating your on-premise environment with cloud-based technologies such as Windows Azure Active Directory is also included with this course. A virtual lab environment is utilized to allow students the ability to perform hands-on exercises.

A student that would be interested in this course is an I.T. professional who has Active Directory Domain Services (AD DS) experience and is looking for a single course that will further develop knowledge and skills using Access and Information Protection technologies in Windows Server 2012 and Windows Server 2012 R2. IT professionals types usually include:
AD DS administrators who are looking to further develop skills in the latest Access and Information Protection technologies with Windows Server 2012 and Windows Server 2012 R2.
System or Infrastructure administrators with general AD DS experience and knowledge who are looking to build upon that core knowledge and cross-train into advanced Active Directory technologies in Windows Server 2012 and Windows Server 2012 R2
IT Professionals who have taken the 10967A: Fundamentals of a Windows Server Infrastructure course and are looking to build upon that Active directory knowledge.

Upon course completion, students will be able to:

Understand available solutions for identity management and be able to address scenarios with appropriate solutions
Deploy and administer AD DS in Windows Server 2012
Secure AD DS deployment
Monitor, troubleshoot and establish business continuity for AD DS services
Implement AD DS sites, configure and manage replication
Implement and manage GPOs
Manage user settings with GPOs
Secure and provision data access using technologies such as Dynamic Access Control, Work Folders, and Workplace Join
Implement certification authority (CA) hierarchy with AD CS and how to manage CAs
Implement certificates
Implement and manage AD RMS
Implement and administer AD FS
Implement Windows Azure Active Directory
Implement and administer Active Directory Lightweight Directory Services (AD LDS)


It is recommended that student interested in the course have:

Experience working with AD DS
Experience working in a Windows Server infrastructure enterprise environment
Experience working with and troubleshooting core networking infrastructure technologies such as name resolution, IP Addressing, Domain Name System (DNS) and Dynamic Host Configuration Protocol (DHCP)
Experience with Hyper-V and Server Virtualization concepts
An awareness and understanding of general security best practices
Experience working hands-on with Windows Client operating systems such as Windows Vista, Windows 7 or Windows 8

What’s included?

  • Authorized Courseware
  • Intensive Hands on Skills Development with an Experienced Subject Matter Expert
  • Hands-on practice on real Servers and extended lab support 1.800.482.3172
  • Examination Vouchers & Onsite Certification Testing- (excluding Adobe and PMP Boot Camps)
  • Academy Code of Honor: Test Pass Guarantee
  • Optional: Package for Hotel Accommodations, Lunch and Transportation

With several convenient training delivery methods offered, The Academy makes getting the training you need easy. Whether you prefer to learn in a classroom or an online live learning virtual environment, training videos hosted online, and private group classes hosted at your site. We offer expert instruction to individuals, government agencies, non-profits, and corporations. Our live classes, on-sites, and online training videos all feature certified instructors who teach a detailed curriculum and share their expertise and insights with trainees. No matter how you prefer to receive the training, you can count on The Academy for an engaging and effective learning experience.


  • Instructor Led (the best training format we offer)
  • Live Online Classroom – Online Instructor Led
  • Self-Paced Video

Speak to an Admissions Representative for complete details

StartFinishPublic PricePublic Enroll Private PricePrivate Enroll


Module 1: Overview of Access and Information Protection

Introduction to Access and Information Protection Solutions in Business
Overview of AIP Solutions in Windows Server 2012
Overview of Forefront Identity Manager 2010 R2
Lab: Choosing an Appropriate Access and Information Protection Management Solution

Analyze the Lab Scenario and Identify Business Requirements
Propose a Solution

Module 2: Advanced Deployment and Administration of AD DS

Deploying AD DS
Deploying and Cloning Virtual Domain Controllers
Deploying Domain Controllers in Windows Azure
Administering AD DS
Lab: Deploying and Administering AD DS

Deploying AD DS
Deploying Domain Controller by Performing Domain Controller Cloning
Administering AD DS

Module 3: Securing Active Directory Domain Services

Securing Domain Controllers
Implementing Password and Lockout Policies
Audit Authentication
Lab: Securing Active Directory Domain Services

Implementing Security Policies for Accounts and Passwords and Administrative Groups
Deploying and Configuring an RODC

Module 4: Monitoring, Managing, and Recovering AD DS

Monitoring AD DS
Managing the AD DS Database
AD DS Backup and Recovery Options for AD°DS and Other Identity and Access Solutions
Lab: Monitoring AD DS

Monitoring AD DS with Performance Monitor
Lab: Recovering Objects in AD DS
Backing up and Restoring AD DS
Recovering Objects in AD DS

Module 5: Implementing and Administering AD DS Sites and Replication

Overview of AD DS Replication
Configuring AD DS Sites
Configuring and Monitoring AD DS Replication
Lab: Implementing AD DS Sites and Replication

Creating Subnets and Sites
Deploying an Additional Domain Controller
Configuring AD DS Replication
Troubleshooting AD DS Replication

Module 6: Implementing Group Policy

Introducing Group Policy
Implementing and Administering GPOs
Group Policy Scope and Group Policy Processing
Troubleshooting the Application of GPOs
Lab: Implementing and Troubleshooting a Group Policy Infrastructure

Creating and Configuring GPOs
Managing GPO Scope
Verifying GPO Application
Managing GPOs
Troubleshooting GPOs

Module 7: Managing User Settings with Group Policy

Implementing Administrative Templates
Configuring Folder Redirection and Scripts
Configuring Group Policy Preferences
Lab: Managing User Desktops with Group Policy

Implementing Settings by Using Group Policy Preferences
Configuring Folder Redirection

Module 8: Implementing Secure Shared File Access

Overview of DAC
Implementing DAC Components
Implementing DAC for Access Control
Implementing Access-Denied Assistance
Implementing and Managing Work Folders
Implementing Workplace Join
Lab: Implementing Secure File Access

Preparing for DAC Deployment
Implementing DAC
Validating and Remediating DAC
Implementing Work Folders

Module 9: Deploying and Managing Active Directory Certificate Services

Deploying CAs
Administering CAs
Troubleshooting, Maintaining, and Monitoring CAs
Lab: Deploying and Configuring a Two-Tier CA Hierarchy

Deploying an Offline Root CA
Deploying an Enterprise Subordinate CA

Module 10: Deploying and Managing Certificates

Deploying and Managing Certificate Templates
Managing Certificates Deployment, Revocation, and Recovery
Using Certificates in a Business Environment
Implementing and Managing Smart Cards
Lab: Deploying and Using Certificates

Configuring Certificate Templates
Enrolling and Using Certificates
Configuring and Implementing Key Recovery

Module 11: Implementing and Administering Active Directory Rights Management Services

Overview of AD RMS
Deploying and Managing an AD RMS Infrastructure
Configuring AD RMS Content Protection
Configuring External Access to AD RMS
Lab: Implementing AD RMS Infrastructure

Installing and Configure AD RMS
Configuring AD RMS Templates
Using ADRMS on Clients
Configuring AD RMS Monitoring and Reporting

Module 12: Implementing and Administering AD FS

Overview of AD FS
Deploying AD FS
Implementing AD FS for a Single Organization
Deploying AD FS in a Business to Business Federation Scenario
Extending AD FS to External Clients
Lab: Implementing AD FS

Installing and Configuring AD FS
Configuring an Internal Application for AD FS
Configuring AD FS for a Federated Business Partner
Configuring a Web Application Proxy

Module 13: Implementing Windows Azure Active Directory

Overview of Windows Azure Active Directory
Administering Windows Azure Active Directory
Lab: Implementing Azure AD

Planning to Implement Azure AD
Administering Azure AD

Module 14: Implementing and Administering AD LDS

Overview of AD LDS
Deploying AD LDS
Configuring AD LDS Instances and Partitions
Configuring AD LDS Replication
Lab: Implementing and Administering AD LDS

Configuring AD LDS Instances and Partitions
Configuring AD LDS Replication