Clearence's+Wiki

=**Configuring a DHCP server**=
 * Student name: Clearence Wissar**
 * Student ID: 9100036112**
 * Module:** **ICAS3120C-Configure and Administer a Network Operating System**

In this page we are going to cover the configuration of a DHCP server, on Windows Server 2008. > > > > >
 * 1) Open the Server Manager and “Add roles”.
 * 2) Check the DHCP role.
 * 1) Select the IP address of the server.
 * 1) If the DNS server information is known, then fill the fields bellows with the right information.
 * 1) Click on Install
 * 1) Once we finished, the DHCP server has to be authorized, and that is the first part of this tutorial.

=Configuring the Active Directory Service=

Active Directory Service, is a useful tool to manage users in different hierarchies with multiple permissions.

> > > > > > > > > > > > > > > > >
 * 1) We are going to install the Active Directory domain Service. In order to install it, we add the server the role.
 * 1) We go on until the installation is finished. On the Server manager screen will appear the new added role, as in the image below.[[image:image015.png width="640" height="479"]]
 * 2) Then we clicked on the link “Run the Active Directory Domain Services Installation Wizard (dcpromo.exe)”, or we type “DCPROMO.exe” on the run window.
 * 1) It will appear the next screen. We can follow the wizard, it will be much easier if we follow the next screens.
 * 1) Click on "Next", then we have to choose "Create a new domain in a new forest".
 * 1) On the next screen, a Name for the forest has to be given.
 * 1) Click on Yes and wait.
 * 1) It asks us to select the type of functionality level for the forest and the domain. I would rather to choose "Windows 2000" so in case that the organization has an old system operating system for anyone of its server, there will not be any conflict. However that forest will not have all the necessary features of windows 2008, so it is up to you.
 * 1) Then appears the next screen indicating us that a process is being made.
 * 1) Check the "DNS server" box.
 * 1) The following message is due to we have not specified an static IP address.
 * 1) This error occurs because this is the second time that we are creating a domain on the same server.
 * 1) If there is a database on the server, here I think is where we can point it out.We are going to leave as default for the three of them, Database, Log files and System Volume Folders.
 * 1) Try to choose a complex password.
 * 1) This is the final review before proceed with the installation.
 * 1) After the installation is done, the server must to be restarted, so this check box is a useful tool. After this is done, our DNS server is ready to go!.

=Creating a USER, GROUP and ORGANIZATIONAL UNIT= After the ADDS is installed, we proceed to create users, Organizational Unit and a group.

> > > > > > > > > > > > In this example we are choosing "DnsAdmins", but we can give other permissions such as DHCP Admins, or Local Domain users. > > > >
 * 1) Open Active Directory Users and Computers. Then right click on the name of the domain and choose the user option.
 * 1) Complete the following form.
 * 1) Choose a complex password, it depends on the network administrator the passwords policy.
 * 1) In order to create the ORGANIZATIONAL UNIT, it is pretty much the same process as creating a user. The advantage of an Organizational Unit is that the Network manager can delegate control to others users.
 * 1) Give a name, it could be the name of a department in the organization.
 * 1) Creating a group is a similar process, the function of a group is gathering an amount of users with similar permissions.
 * 1) We are going to add users to the new group, by going through its properties, then on Members Tag, we click on "ADD".
 * 1) In this section we find users and add them.
 * 1) We add Administrator, and a simple user.
 * 1) In "Member of" tag we choose the kind of users that our single user is going to be part of.

=Installing an Auditor - Belarc Advisor= Belarc Advisor is a program which gives us all the necessary information about our PC.

> > > > >
 * 1) After downloading the program from [], we proceed with the installation.
 * 1) Once the program is installed, it will open one window on the browser which contains all the information of our Pc.

=Auditing on Windows Server 2008=

In this section we are going to see how to audit on Windows Server 2008. Specifically when a user tries to log in and fail.

> > > > > > > > > > > > > > > > > We have completed our tutorial based on the module: > **ICAS3120C-Configure and Administer a Network Operating System.** > > **Clearence Wissar** > **ID N. 9100036112**
 * 1) We browse on features, in server manager window, and then right click on Default Domain Policy, then click on edit.
 * 1) In this window, we have to configure the first, third, fourth and fifth item. Check them as “Failure”.
 * 1) Then we go to Default Domain Control and we do the same as the step before.
 * 1) On the Audit Policy we modify the same, 1st, 3rd, 4th and 5th item.
 * 1) One of the common mistake that occurs when trying to join up a local machine to the domain, is that we forgot to configure the server options on the DHCP server. We have to show the Server name, Domain name and NetBios over TCP/IP. Another cause of that problem is because we did not enable NetBios on the TCP/IP configuration. Or the last reason is because our user is not member of "Domain users".
 * 1) In order to check the Log file, we go to Event viewer.
 * 1) We clear the Log file to test if the system is working properly.
 * 1) We configure the filter to detect all the failed attempts.
 * 1) After trying to log in with a wrong passowrd this is what we have.