Тёмный

Active Directory Disaster Recovery Essentials 

Andy Malone MVP
Подписаться 128 тыс.
Просмотров 17 тыс.
50% 1

In this, my third video on Microsoft Active Directory essentials, I focus on understanding FSMO Flexible Single Master Operations as well as other disaster recovery skills. If you’re studying for an exam or simply looking to gain knowledge, then this is session that you’ll not want to miss. As well as FSMO I’ll also discuss backup, Global catalog server, Hybrid defence, and domain and forrest functional levels. So, if you want to up skill, then make sure you watch it right through. Also check out and see if your question is answered in this weeks question time at the end of the demo.
Visit my site at www.Andymalone.org
Other videos in this series
• Learn Microsoft Active...
• Learn Microsoft Active...
Time codes
00:00 Introduction
03:00 FSMO Components explainer
03:56 Locating & managing the 5 Operations Master roles
10:52 Active directory Database Maintenance NTDSUTIL
14:03 The Global Catalog Server
16:13 A discussion around ADDS & Hybrid security & maintenance
18:17 Enabling the ADDS Recycle Bin
19:17 Understanding Domain / Forrest levels
22:01 Question Time!
27:04 Session Review

Наука

Опубликовано:

 

4 июл 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 34   
@christiangonzalez5028
@christiangonzalez5028 2 года назад
Men, you're the best, I can reproduce your content In 1.5 Speed and still understand perfectlly. Amazing!!
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
He he I must sound like a Minion 😂
@hardikdesai24
@hardikdesai24 2 года назад
Thank you for the video, it was nostalgic to revisit the topic on AD disaster recovery. Just a note on RID master. The RID master in the domain allocates 500 RIDs to each domain controller to enable user creation on any domain controller. Once the DC consumes 250 RIDs, the RID master renews the pool. So the absence of RID master does not immediately effect user creation.
@acethemcacethemc1491
@acethemcacethemc1491 2 года назад
Your content is awesome Andy. Thank you. I appreciate you.
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
You’re very welcome 👍
@sujitdaswant5256
@sujitdaswant5256 2 года назад
Hi Andy, Thanks for giving the quick response of my questions. It will be helpful to me in my current implementation. You are doing great job for us keep going.
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
You're very welcome :-)
@bartosz0.
@bartosz0. 2 года назад
Just as I'm preparing for sc-900 - that is a nice deep-dive. Cheers from Poland.
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
You’re very welcome I’m delighted to hear that and good luck with the exam. Greetings from Scotland
@RichardGailey
@RichardGailey 2 года назад
Really liked this one as DCs are a Tier-0 focus point for us, so getting a better understanding of FSMO Roles was really helpful. One thing I would love you to a walkthrough for if possible, is how to create a basic KQL query in Sentinel, (this much I am fine with) but then create a alert that can then trigger a basic playbook that will be for sending an email to certain teams, like Infra or the SOC team. That way I can use the Playbook for other alerts that I want to be prioritised should they be triggered. Doing this in Advanced Hunting in Defender for Endpoint is made really simple, but not so much in Sentinel. Creating Playbooks is one thing that I am very weak on so would love to have you do an ELI5 type walkthrough for this.
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
Thanks Richard delighted to hear that. So notices thanks for the suggestion 😊
@syedafzal2453
@syedafzal2453 Год назад
Thanks for making such a valuable content and covering all the topics. would mind sharing the links or where can i find you more videos on Infrastructure and sites that would really helps me alot.
@AndyMaloneMVP
@AndyMaloneMVP Год назад
Have you looked at my On prem playlist ru-vid.com/group/PLEgclf_4HA-i1viJp70XzMT64H7AXmFtl
@muhammadnadeemahmed275
@muhammadnadeemahmed275 Год назад
Excellent VDOs Andy, Could you possibly do something on ADRES, if not already done. Thank you. Nadeem
@AndyMaloneMVP
@AndyMaloneMVP Год назад
Great suggestion!
@Guy3008
@Guy3008 Год назад
Thanks so much. Can you please show me where you talked about LDAP?
@AndyMaloneMVP
@AndyMaloneMVP Год назад
Here’s a good article www.techtarget.com/searchmobilecomputing/definition/LDAP
@Guy3008
@Guy3008 Год назад
Thank you. So basically it's just the name of the protocol used in active directory to authenticate and authorize users and groups?
@11pramod
@11pramod 2 года назад
We are having single forest multiple domain infrastructure in our environment
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
See answer
@danielb4959
@danielb4959 2 года назад
Hi Andy, I have just been tasked with upgrading a very small office network (only four Windows 10 client PCs) plus an sbs2011 DC. As email was migrated to Microsoft 365 (Business Standard) some time ago, ADDS is now the only thing left to migrate. I had initially considered an on-prem (or perhaps hybrid) setup of server 2022 consisting of two DCs (physical + VM). However after watching your videos and realising Azure AD is already somewhat included in the subscription, it seems it would be fairly straightforward to switch to Azure AD. My only concern is that the users won’t be able to log on if the internet connection is down. It would be interesting to hear your thoughts, and if you could also kindly answer the following questions: 1. User’s domain profiles are currently stored on client PCs. Each user has their own main PC on which their ‘master profile’ is saved. However as they have occasionally logged on to each other’s PC’s, separate profiles were created on each PC. Could that potentially cause any issues whereby the server isn’t aware which profile is the ‘master profile’ and would this be determined by whichever profile the user logs in to first (after being changed to a roaming profile in AD). 2. How would the profiles be migrated to Azure AD without losing anything (would a third party tool such as ForensiT be required)? 3. If using Azure AD with user documents stored in OneDrive, would it be possible for each user to also have a home directory, for example stored on a NAS? 4. Is there an add on to the Business Standard licence which would enable endpoint manager in Azure AD? If not which licence would be required? P.S. Thanks for the very informative and well explained videos. I’m looking forward to seeing many more!
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
Hi Daniel. Thanks for your question. Unfortunately due to limitations in my time I’m unable to answer very long questions like this. That said, from your scenario business basic is not the correct plan to be on. You will need a minimum of business premium. As this gives you some InTune functionality. Don’t think of moving to Microsoft 365 as an upgrade, think of it as a migration. New accounts, new profiles and so on. Within Azure active directory MDM & MAM is the capability to create roaming profiles for Windows 10, 11, however at this point I’m unaware of a migration tool that would bring profiles across. If you are not yet in Microsoft 365 then my advice would be to create a couple of test accounts, create a profile and so on. Remember that Azure AD joined devices do not require a server and that this provides perfect single sign-on. I think in your situation where you have a small number of users it’s a much better option than trying to install Azure AD connect and so on. I don’t think it would bring any benefit. PS I do t think business basic supports AAD connect.
@danielb4959
@danielb4959 2 года назад
@@AndyMaloneMVP Thank you very much for taking the time to reply Andy, it’s very much appreciated and this info has definitely helped to steer me in the right direction!
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
@@danielb4959 You’re very welcome Daniel and the Best of luck😊👍
@jstinn123
@jstinn123 10 месяцев назад
Can the Regsvr32 schmmgmt.dll be registered from a workstation? Must it be done from a DC?
@AndyMaloneMVP
@AndyMaloneMVP 10 месяцев назад
A workstation MMC and then do a remote snap in
@donya_ayandeh
@donya_ayandeh Год назад
Hey Andy, Thanks for your great videos. can u tell me how can i have a demo like lab to try office 365 without payment? i need to learn but it is so expensive.
@AndyMaloneMVP
@AndyMaloneMVP Год назад
Office.com creat an e5 trial account. You’ll get 30 days. Then creat another one👍
@kg3474
@kg3474 Год назад
can you do a windows server installation and active directory set up?
@AndyMaloneMVP
@AndyMaloneMVP Год назад
Sure, I can cover that
@11pramod
@11pramod 2 года назад
I am having issue with login issue for the users not able to login to other domain
@AndyMaloneMVP
@AndyMaloneMVP 2 года назад
It's either one of a few things. Trust relationships in AD Domains & trusts not transitive or it's a DNS issue. Best of luck :-)
@James-sc1lz
@James-sc1lz Год назад
You’d description of the pdc was a little odd to be honest. It’s the most important role and has a lot of functions. Windows recycle bin should only be turned on if you have done your domain functional level upgrade and don’t need to revert back to 2012 for example otherwise your screwed. Considering most people are off 2008 for DCs these days or even 2012 I would not expect this will not wppl6 to a lot
@AndyMaloneMVP
@AndyMaloneMVP Год назад
Hi James thanks for the input. That’s what this channel is all about. Making a contribution 👍
Далее
Learn Microsoft Active Directory Advanced skills!
40:37
Disaster Recovery vs. Backup: What's the difference?
9:32
Disaster Recovery of Workloads on AWS | AWS Events
51:11
Understanding Active Directory and Group Policy
51:56
Active Directory Domain Service Deep Dive
1:00:09
Просмотров 66 тыс.
Understanding Active Directory Sites
31:45
Просмотров 84 тыс.
Why are you NOT Using These 5 Microsoft 365 Apps?
25:27