MCP Configuring Advanced Windows Server 2012 Services (70-412) - study guide – part two (version 1)

This is part two of my study guide to prepare MCP 70-412 : Configuring Advanced Windows Server 2012 Services

Part 1 is available here : https://blogs.technet.com/b/stanislas/archive/2012/08/13/mcp-configuring-advanced-windows-server-2012-services-71-412-study-guide-part-one-version-1.aspx

 

**********************************************
Configure Network Services (17%)
**********************************************

-- Implement an advanced Dynamic Host Configuration Protocol (DHCP) solution --

Dynamic Host Configuration Protocol (DHCP) Overview
https://technet.microsoft.com/en-us/library/hh831825.aspx

What's new in DHCP
https://technet.microsoft.com/en-us/library/jj200226.aspx

Step-by-Step: Configure DHCP Using Policy-based Assignment
https://technet.microsoft.com/en-us/library/hh831538.aspx

Step-by-Step: Configure DHCP for Failover
https://technet.microsoft.com/en-us/library/hh831385.aspx

Step-by-Step Guide: Demonstrate DHCP Name Protection in a Test Lab
https://technet.microsoft.com/en-us/library/ee404786(v=ws.10).aspx

Virtual Lab Managing Network Infrastructure
https://go.microsoft.com/?linkid=9806466

Superscopes
https://technet.microsoft.com/en-us/library/cc958938.aspx

Creating Superscopes
https://technet.microsoft.com/fr-fr/library/cc784138(v=ws.10).aspx

Create a DHCP Superscope
https://technet.microsoft.com/fr-fr/library/dd183703(v=ws.10).aspx

The DHCPv6 Protocol
https://technet.microsoft.com/en-us/magazine/2007.03.cableguy.aspx

-- Implement an advanced DNS solution --

DNS Socket Pool
https://technet.microsoft.com/fr-fr/library/ee683907(v=ws.10).aspx

What's new in DNS
https://technet.microsoft.com/en-us/library/jj200224.aspx

Step-by-Step: Demonstrate DNSSEC in a Test Lab
https://technet.microsoft.com/en-us/library/hh831411.aspx

-- Deploy and manage IPAM --

IP Address Management (IPAM) Overview
https://technet.microsoft.com/en-us/library/hh831353

Step-by-Step: Configure IPAM to Manage Your IP Address Space
https://technet.microsoft.com/library/hh831622

Virtual Lab Managing Your Network Infrastructure with IP Address Management
https://go.microsoft.com/?linkid=9806475

*****************************************************
Configure the Active Directory Infrastructure (18%)
*****************************************************

Video : What's New in Active Directory in Windows Server 2012
https://channel9.msdn.com/Events/TechEd/NorthAmerica/2012/SIA312

-- Configure a forest or a domain --

-- Configure Trust --

-- Configure Sites --

Active Directory Sites and Services
https://technet.microsoft.com/en-us/library/cc730868.aspx

-- Manage Active Directory & Sysvol Replication --

Repadmin /syncall
https://technet.microsoft.com/en-us/library/cc835086(v=WS.10).aspx

Nltest
https://technet.microsoft.com/fr-fr/library/cc731935(WS.10).aspx

*****************************************************
Configure Identity and Access Solutions (15%)
*****************************************************

-- Implement Active Directory Federation Services 2.1 --

Active Directory Federation Services Overview
https://technet.microsoft.com/en-us/library/hh831502.aspx

New and changed functionality
- Integration with Dynamic Access Control scenarios
- Improved installation experience using Server Manager
- Additional Windows PowerShell cmdlet tools

AD FS Design Guide
https://technet.microsoft.com/en-us/library/adfs2-design-guide

You can create the AD FS configuration database for SQL Server using the Fsconfig.exe command-line tool and for Windows Internal Database using the AD FS Federation Server Configuration Wizard.

AD FS Deployment Guide
https://technet.microsoft.com/en-us/library/adfs2-deployment-guide

 

-- Install and configure Active Directory Certificate Services (AD CS) --

What's New in AD CS?
https://technet.microsoft.com/en-us/library/hh831373.aspx

Several new capabilities are available in the Windows Server 2012 version of AD CS. They include:
- Integration with Server Manager
- Deployment and management capabilities from Windows PowerShell®
- All AD CS role services run on any Windows Server 2012 version
- All AD CS role services can be run on Server Core
- Support for automatic renewal of certificates for non-domain joined computers
- Enforcement of certificate renewal with same key
- Support for international domain names
- Increased security enabled by default on the CA role service

AD CS in Windows Server 2012 introduces version 4 certificate templates. These templates have several differences from previous template versions.
Version 4 certificate templates:
- support both cryptographic service providers (CSPs) and key service providers (KSPs).
- can be set to require renewal with the same key.
- are only available for use by Windows® 8 Release Preview and Windows Server 2012.
- specify the minimum certification authority and certificate client operating systems that can utilize the template.

AD CS Deployment Cmdlets in Windows PowerShell
https://technet.microsoft.com/fr-FR/library/hh848390.aspx

 

-- Manage certificates --

AD CS Administration Cmdlets in Windows PowerShell
https://technet.microsoft.com/fr-FR/library/hh848365.aspx
/! The CA administration cmdlets can only be run on a computer that has the CA role service installed.

 

-- Install and configure Active Directory Rights Management Services (AD RMS) --

Active Directory Rights Management Services Overview
https://technet.microsoft.com/en-us/library/hh831364.aspx

What's New in Active Directory Rights Management Services (AD RMS)?
https://technet.microsoft.com/en-us/library/hh831554.aspx

for Windows Server 2012 the following versions of Microsoft SQL Server have been tested and are supported for use with AD RMS deployment.
- SQL Server 2005 Service Pack 3
- SQL Server 2008 Service Pack 3
- SQL Server 2008 R2 Service Pack 1

If you are going to be viewing reports related to AD RMS, you must also install the .NET Framework 3.5

On Server Core installations, the optional Identity Federation Support role service for the AD RMS server role is not supported. This is because Identity Federation Support relies on a role service of the AD FS Server role, the Claims-aware Agent, which is disabled on Server Core installations

Windows Server 2012 also includes the following feature updates, which have been added recently as updates for the AD RMS role in Windows Server 2008 R2.
- Simple delegation : Simple delegation for AD RMS enables you to have the same access rights to protected content that are assigned to one person delegated to other individuals within their organization
Simple delegation provides the ability to have content rights assigned to executives and managers be easily and effectively delegated to their assistants.wo attributes, msRMSDelegator and msRMSDelegatorBL must be added to the Active Directory schema
- Strong cryptography : enables you to increase the cryptographic strength of your AD RMS deployment by running in an advanced mode known as cryptographic mode

AD RMS and cryptographic support for SHA-2/RSA 2048
https://blogs.technet.com/b/rms/archive/2012/04/29/ad-rms-and-cryptographic-support-for-sha-2-rsa-2048.aspx

Test Lab Guide: Deploying an AD RMS Cluster
https://technet.microsoft.com/en-us/library/adrms-test-lab-guide-base

I encourage you also to download Windows Server 2012, install it and test it as much as you can because there are some questions where you need to have already manipulate User Interface or command.

 

You can download eval version of Windows Server 2012 as :

 

- Stanislas Quastana -