Monday, 9 December 2013

Installing Active Directory on Windows Server 2008 R2 Enterprise 64-bit

Installing Active Directory on Windows Server 2008 R2 Enterprise 64-bit

From The Rackspace Cloud -- Cloud Servers Knowledge Base
This article will address how to prepare and install Active Directory Domain Services (AD) on Windows Server 2008 R2 Enterprise 64-bit (W2K8).
This article is not intended for adding a Domain Controller (DC) to an already existing Active Directory Forest Infrastructure.

Preparation for Active Directory

Installing Active Directory Domain Services on a Rackspace Cloud Server is a relatively easy process. There are a few requirements that must be present first to ensure a smooth installation however.
1. Have your domain name selected along with the Domain Administrator Password that you wish to use.
  • Note- Though it is not a requirement, It is recommended you use a multiple name format for you domain name. Example would be, domainName.com or domainName.local rather than simply domainName.
2. A properly configured and available DNS server. This can be installed locally on the DC, and will be the case with this installation scenario.
  • W2K8 can properly install and configure DNS during the AD installation if it knows that DNS is to be local.
  • This is accomplished by having the Private network adapter’s Preferred DNS server address point to the already assigned IP address of the same Private network adapter.
To do this, select View Network Connections within the Server Summary of Server Manager.
2K8_64R2_ADDS.jpg

Right click on the Private adapter and select Properties. Or Double click the Private adapter and select Properties.
2K8_64R2_ADDS(1).jpg

Double click Internet Protocal Version 4, or select it and click Properties.
2K8_64R2_ADDS(7).jpg

Now copy your assigned IP address: displayed in the top box into the Preferred DNS server: box and click “OK”.
2K8_64R2_ADDS(2).jpg

Now click OK again for the private Properties and close the Network Connection window.

3. The last step for prepping W2K8 for AD is adding the proper Server Role.
  • New to W2K8 is the ability to configure the server to perform specific roles.. The “Active Directory Domain Services” Role will be added. This only installs the framework for W2K8 to become a DC and run AD. It does not promote the server to DC or install AD.
To add the “Active Directory Domain Services” Role click on the Role Directory within Server Manager and select Add Roles in the Roles Summary.
2K8_64R2_ADDS(3).jpg

Click Next at the “Before You Begin” section.
Now simply check mark Active Directory Domain Services and click “Next” twice, “Install” and finally “Close” when complete.
2K8_64R2_ADDS(4).jpg2K8_64R2_ADDS(5).jpg2K8_64R2_ADDS(6).jpg

Installation of Active Directory Domain Services (DCPROMO)

Now that the Server has been prepared the installation of AD we can proceed. You now have three different ways we can begin the installation.
1. Within Server Manager, if you expand the Roles directory you will see the Active Directory Domain Services directory. Select that and you will find in the Summary “Run the Active Directory Domain Services Installation Wizard (dcpromo.exe)” Simply click that to begin the installation.
2K8_64R2_ADDS(8).jpg

2. The comandline equivilant to Active Directory Domain Services Installation Wizard is - Servermanagercmd.exe –I ADDS-Domain-Controller
3. The last and probably the most recognized method is typing DCPROMO.exe at the command prompt.
2K8_64R2_ADDS(9).jpg

Whichever way you choose, You should get to this point. Simply click Next. You do not check advanced mode.
2K8_64R2_ADDS(10).jpg

Click Next again.
2K8_64R2_ADDS(11).jpg

Now select “Create a new domain in a new forest” and click Next.
2K8_64R2_ADDS(12).jpg

Now enter the domain name you have chosen.
2K8_64R2_ADDS(13).jpg

After the installation verifies that the NetBIOS Name, you will choose the Forest function level. I chose 2008 R2. After selecting click Next.
2K8_64R2_ADDS(14).jpg

It will examine and verify you DNS setting. DNS server should already be checked. Now click Next.
2K8_64R2_ADDS(15).jpg

You will now be prompted with the following message. This is OK. Just click Yes.
2K8_64R2_ADDS(16).jpg

Click Next Again.
2K8_64R2_ADDS(17).jpg

Now enter your Domain Administrator Password that you chose. This is not your Admin Password that emailed to you during the creation of you Server, unless you want to use it. It is your decision.
2K8_64R2_ADDS(18).jpg

Click Next.
2K8_64R2_ADDS(19).jpg

The installation will now complete. You can check the reboot on completion if you like.
2K8_64R2_ADDS(20).jpg

If not, you will need to click Finish here. Then restart your server.
2K8_64R2_ADDS(21).jpg

After a few minutes, reconnect to your server via the Console in your Control Panel or RDP.
To log in, you will need to select “Switch User”, then Other User. Type in your full domain name you picked followed by a back slash and Administrator for user. Then enter the password that was emailed to you when you first built the server. If you had already changed your password for the local admin account to this server before your began the install for AD, use that password.
2K8_64R2_ADDS(22).jpg

!!!Congratulations!!! You have installed an Active Directory Domain Controller.

Sunday, 8 December 2013

Step-by-Step Guide for Setting Up A Windows Server 2012 Domain Controller

Step-by-Step Guide for Setting Up A Windows Server 2012 Domain Controller


 

OVERVIEW

In Windows Server 2012, dcpromo has been deprecated.
In order to make the windows server 2012 domain controller we will install ADDS (Active Directory Domain Services) role from the server manager on Windows Server 2012.
First we will change the server name let say server2012dc and  the IP address 10.10.21.1 (try to avoid using default 192.168.0.1)

INSTALLING AD DS ROLE

“Before You Begin” screen provides you basic information such as configuring strong passwords, IP addresses and Windows updates.
On Installation Type page, select the first option “Role-based or Feature-based Installation“.
Scenario-based Installation option applied only to Remote Desktop services.
On the “Server Selection” Page, select a server from the server pool and click next.
To install AD DS, select Active Directory Domain Services in turn it will pop-up to add other AD DS related tools. Click on Add Features.
After clicking “Add Features” above, you will be able to click “Next >” as shown in the screen below.
On the “Select Features” Page, Group Policy Management feature automatically installed during the promotion. Click next.
On the “Active Directory Domain Services” page, it gives basic information about AD DS. Click Next.
On the “Confirmation” Page, You need to confirm this to continue with this configuration. It will provide you an option to export the configuration settings and  also if you want the server to be restarted automatically as required.
After clicking “Install” the selected role binaries will be installed on the server.
After “Active Directory Domain Services” role binaries have been installed and now it is time to promote the server to a Domain Controller.
  

TechNet Article:

PROMOTING WINDOWS 2012 SERVER TO DOMAIN CONTROLLER

To create a new AD forest called “ArabITPro.local”, select add a new forest.
Type the name ArabITPro.local
Specify the FFL, DFL, whether or not it should be a DNS Server and also the DSRM administrator password. As you can see, it has selected the GC option by default and you cannot deselect it. The reason for this is that is the very first DC of the AD forest and at least one needs to be a GC.
DNS delegation warning.
Checks the NetBIOS name already assigned.
Specify the location of the AD related folders and then click next.
Summary Of All Installation Options/Selections.
Click View script for single command  line PowerShell script for dcpromo.
Before the actual install of AD, all prerequisites are checked. If All prerequisite checks are passed successfully then click Install.
When you click Install, DNS and the GPMC are installed automatically.
After the promotion of the server to a DC finished server restart automatically.
Once the server is booted and you logon to it, click on  Server Manager | Tools ,  will notice that following have been installed :
   •   Active Directory Administrative Center
   •   Active Directory Domains and Trusts
   •   Active Directory Module for Windows PowerShell
   •   Active Directory Sites and Services
   •   Active Directory Users and Computers
   •   ADSI Edit
   •   DNS
   •   Group Policy Management