Differences between revisions 18 and 40 (spanning 22 versions)
Revision 18 as of 2015-08-18 23:37:08
Size: 1832
Editor: scot
Comment:
Revision 40 as of 2022-09-29 17:19:41
Size: 1368
Editor: scot
Comment:
Deletions are marked like this. Additions are marked like this.
Line 3: Line 3:
In this lab you will create some organizational groups and users in In this lab you will use the organizational units, groups and users in your AD that we created last time. In your domain controller (Using the RSAT tools or powershell):
Line 5: Line 5:
In your primary domain:

 1. Create an organizational unit named {{{OU_Contractors}}}
  a. Create a global group in the {{{OU_Contractors}}} called {{{g_contractors}}}
  a. Create a user called {{{contractor}}} and put them in {{{g_contractors}}} group.
 1. Create a user mgr in the users folder.
  a. Make mgr the Administrator for the {{{OU_Contractors}}} by using the delegation wizard.
   1. set his password and document it in the "password" page. Make sure there is no requirement to change the password.
   1. Make mgr a member of the server operators group and give the account remote desktop access (through system, remote add user).
  a. Start Group Policy - Find the Domain Controllers Folder/OU, right click on the Default Domain Controller Policy, click edit
   1. Navigate to Computer Configuration\Policies\Windows Settings\Security Settings\Local Policies\User Rights Assignments
   1. Add the mgr user to the "Allow Logon through remote desktop services" list.
  a. You will demonstrate mgr's ability by changing the password for "contractor"

In your subdomain:

 1. Create a domain local group called {{{dl_temporary}}} in the users folder.
  a. Add {{{g_contractors}}} group to the {{{dl_temporary}}} group.
 1. Delegate control over users in the OU_Sales Organizational unit to jpatterson.
 1. Delegate control over users in the OU_Developers Organizational unit to kthompson
 1. Delegate control over users in teh OU_CSuite Organizational unit to kthompson
Line 25: Line 10:
 1. Document the OU structures added and Groups added to each domain on the domains page.
 1. Do this in a new section called "Organizational Units" and "Groups"
Line 28: Line 11:
== Grade Guide ==
||<tablewidth="815px">'''Topics'''||'''Points'''||
||Video Shows: OU structures and groups created in the instructions||40||
||Video Shows: A remote login event using the mgr user. ||30||
||Video Shows: the mgr user changing the password for the contractor user.||30||
 1. Document the Share created and its purpose in a new section called "Shared Resources"
Line 34: Line 13:
== Video Grade Guide ==
||'''Topics''' ||'''Points''' ||
||Video Shows: Server Manager on Windows 10 || 10 ||
||Video Shows: WAC running on Windows 10 with access to server || 10 ||
||Video Shows: Remote Power Shell session from windows 10 machine to server || 10 ||
||Video Shows: OU structures and groups created in the instructions ||10 ||
||Video Shows: A remote desktop login to windows 10 using the mgr user. ||10 ||
||Video Shows: the mgr user changing the password for the contractor user on the windows 10 machine. ||10 ||
||Video Shows: the contractor user accessing the file share and adding a new text file || 10 ||
||Video Shows: the mgr user accessing the file share and deleting the new text file || 10 ||
||Video talks through the required documentation. ||20 ||

Lab 04

Instructions

In this lab you will use the organizational units, groups and users in your AD that we created last time. In your domain controller (Using the RSAT tools or powershell):

  1. Delegate control over users in the OU_Sales Organizational unit to jpatterson.
  2. Delegate control over users in the OU_Developers Organizational unit to kthompson
  3. Delegate control over users in teh OU_CSuite Organizational unit to kthompson

Documentation

  1. Document the Share created and its purpose in a new section called "Shared Resources"

Video Grade Guide

Topics

Points

Video Shows: Server Manager on Windows 10

10

Video Shows: WAC running on Windows 10 with access to server

10

Video Shows: Remote Power Shell session from windows 10 machine to server

10

Video Shows: OU structures and groups created in the instructions

10

Video Shows: A remote desktop login to windows 10 using the mgr user.

10

Video Shows: the mgr user changing the password for the contractor user on the windows 10 machine.

10

Video Shows: the contractor user accessing the file share and adding a new text file

10

Video Shows: the mgr user accessing the file share and deleting the new text file

10

Video talks through the required documentation.

20

WindowsAdministration/Lab04DelegationAndShares (last edited 2024-10-03 19:39:01 by scot)