Showing posts with label Windows Server. Show all posts
Showing posts with label Windows Server. Show all posts

Thursday, October 1, 2015

11 steps to the perfect domain controller


Ways to stable and fast Active Directory


Active Directory is in Windows networks essential basis for a stable operation. In order for the AD function optimally, Administrators should install the domain and the domain controller particularly cautious approach. We show the 11 most important steps when you install new domain controllers.

Step 1: Install and set up DNS for Active Directory

To create a new Active Directory, must be the first planned on the first domain controller to be installed the DNS extension. The software is installed via the Server Manager as a server role. Once installed, the management program for the DNS server in Server Manager is to find "tools" of the area.

With the node "Forward Lookup Zones" and "Reverse Lookup Zones" lay administrators of the areas that requires Active Directory for its operation. The first and most important zone is the "forward lookup zone" of the first domain of Active Directory. Click to create these administrators with the right mouse button on "Forward Lookup Zones" and select in the context menu, select "New Zone" from. When creating new domains in Active Directory exclusively primary domains are needed.

On the next page of the wizard, the name of the new zone is set. Here it is extremely important that the name is used as a zone name exactly who was registered as a DNS suffix of the server and will be used as DNS name of the Active Directory domain.

DNS servers running Windows Server 2012 R2 work with dynamic updates. That is, all server names and IP addresses as well as the SRV records from Active Directory are automatically entered into this zone. The installation wizard of Active Directory must be able to create dozens of messages automatically in a zone. Therefore, when creating a new zone should the option "Allow non-secure and secure dynamic updates" are activated . "Allow only secure dynamic updates" can enable administrators only after the creation of Active Directory.