Contents

Introduction xxi

Assessment Test xxxii

Chapter 1 Introducing 1 Windows Server 2008 Editions 2 Key Benefits of Windows Server 2008 5 IIS 7 and the . Framework 5 Virtualization 6 Security 8 Interaction with Vista 9 New Features of Windows Server 2008 10 Server Manager 10 Server Core 12 PowerShell 12 Windows Deployment Services 13 New Functionality in Terminal Services 14 Network Access Protection 15 Read-Only Domain Controllers 15 Improvements in Failover Clustering 16 Installing Windows Server 2008 18 Hardware Requirements 18 Running Windows Server 2008 on Your System 18 Using Virtual PC 2007 19 Activating Windows Server 2008 24 Review of Active Directory 25 Active Directory Elements 26 Promoting a Server to a Domain Controller 29 Active Directory Domain Services Tools 33 Summary 34 Exam Essentials 35 Review Questions 36 COPYRIGHTEDAnswers to Review Questions MATERIAL 40

Chapter 2 Planning Server Deployments 43 Introducing Windows Deployment Services 44 The Big Picture of WDS 45 WDS Requirements 49 WDSUtil 50 Installing Windows Deployment Services 52 Creating a Standard Server Image 57 Configuring Windows Deployment Services 61

93157book.indd 13 8/7/08 3:51:20 PM xiv Contents

Deploying a Computer Image 65 Multicast Transmissions 68 Introducing Server Core 70 Managing Server Core Remotely 72 Server Core Registry Editor 75 Creating a Rollback Plan 78 Creating Backups 79 Enabling Another Server 80 Utilizing Virtualization 80 Virtual Server Uses 82 Virtual Server Licensing 85 Summary 85 Exam Essentials 86 Review Questions 87 Answers to Review Questions 92

Chapter 3 Using Windows Server 2008 Management Tools 95 Server-Monitoring Tools 96 Reliability and Performance Monitor 97 111 Windows System Resource Manager 123 Remote Management 125 Accessing the Desktop Remotely 125 Remote Desktop Connection 128 Remote Desktops 130 Remote Server Administration Tools 132 Server Core 133 Using Terminal Services Gateway Servers 133 Windows Server Update Services 134 WSUS Prerequisites 137 Downloading and Deploying Updates 137 WSUS in a Distributed Environment 138 Configuring Clients 138 WSUS 3.0 Remote Management 145 System Center Configuration Manager 145 Summary 147 Exam Essentials 148 Review Questions 149 Answers to Review Questions 154

Chapter 4 Monitoring and Maintaining Network Infrastructure Servers 157 Dynamic Host Configuration Protocol 159 Overview 159 Scopes 163

93157book.indd 14 8/7/08 3:51:20 PM Contents xv

Ports Used by DHCP 168 Options 169 Windows Deployment Services Interaction 170 DHCP Management 171 Domain Name System 171 Names 172 Zones 175 Dynamic Update 187 DNS and RODCs 189 Windows Internet Naming Service 191 WINS Is a Feature 192 DNS and WINS 192 Network Access Protection 192 VPN Enforcement 195 IPSec Enforcement 196 802.1x Enforcement 196 DHCP Enforcement 197 Summary 198 Exam Essentials 199 Review Questions 200 Answers to Review Questions 204

Chapter 5 Monitoring and Maintaining Active Directory 207 Active Directory Roles 208 Active Directory Domain Services 209 Read-Only Domain Controller 213 Active Directory Certificate Services 217 Types of Certification Authorities 221 Active Directory Lightweight Directory Services 224 Active Directory Rights Management Services 224 Active Directory Federation Services 225 Active Directory Rights and Permissions 225 Active Directory Backup and Recovery 230 Windows Server 2008 Backup 231 Backing Up Active Directory 232 Restoring Active Directory 235 240 Understanding How Group Policy Is Applied 242 When Group Policy Is Applied 247 Loopback Processing 248 Group Policy Management Console 249 Exploring a Few Specific Group Policy Settings 257 Language Specific Administrative Templates 264

93157book.indd 15 8/7/08 3:51:20 PM xvi Contents

Summary 264 Exam Essentials 264 Review Questions 266 Answers to Review Questions 271

Chapter 6 Monitoring and Maintaining Print and File Servers 275 File Servers 276 File Server Resource Manager 277 Shares 281 Permissions 286 Offline Data Access 292 Disk Quotas 297 Indexing and Searching 302 Print Servers 303 Understanding Shared Printers 304 The Print Process 305 Installing a Printer 306 Printer Pooling 308 Printer Publishing 308 Distributed File System 310 Using DFS Namespaces to Organize Content 311 DFS Replication 313 Domain-Based vs. Stand-Alone Namespaces 316 Replication Topology 317 Creating a DFS Replication Group 318 SharePoint Services 322 Application Pools 323 SharePoint and WSRM 323 Summary 323 Exam Essentials 324 Review Questions 325 Answers to Review Questions 330

Chapter 7 Planning Terminal Services Servers 333 Terminal Services Servers 334 Terminal Services Role 336 TS RemoteApp 343 Terminal Services Gateway 346 Terminal Services Session Broker 350 Terminal Services Web Access 351 Terminal Services Licensing 352

93157book.indd 16 8/7/08 3:51:20 PM Contents xvii

Internet Information Services 354 IIS and ASP.NET 355 IIS and the Windows Process Activation Service 356 IIS and WSRM 356 URL Authorization Rules 356 Installing IIS 357 Ports Used by IIS 358 Summary 359 Exam Essentials 359 Review Questions 361 Answers to Review Questions 366

Chapter 8 Planning Windows Server 2008 Security 369 Disk-Level Security with BitLocker 370 BitLocker Requirements 371 Adding the BitLocker Feature 371 Configuring the Partitions 373 Enabling BitLocker on Non-TPM Systems 376 Starting a System with BitLocker 377 Multifactor Authentication with BitLocker 377 BitLocker Recovery 378 378 EFS and BitLocker 379 Encrypting Files and Folders 379 EFS Certificates and Keys 380 Recovering EFS-Encrypted Files 382 Auditing for Server Security 387 Auditing Detailed Active Directory Events 388 Enabling Directory Service Access Auditing 389 Enabling Object Access 391 Network Security 392 Firewalls 392 Remote Access 397 Network Policy and Access Services 400 RADIUS 401 Network Encryption with IPSec 402 Summary 403 Exam Essentials 404 Review Questions 405 Answers to Review Questions 410

93157book.indd 17 8/7/08 3:51:21 PM xviii Contents

Chapter 9 Planning Business Continuity and High Availability 413 Shadow Copies 414 Disks 418 RAID Configurations 418 Disk Storage Solutions 421 Failover Clustering 424 Requirements 425 Nodes and Quorums 426 Network Load Balancing 428 Requirements 430 NLB and Server Core Installation 431 Windows Server Backup Features 431 Backup Locations 433 Wbadmin 433 Using Windows Server Backup 435 Windows Recovery Environment 436 Entering WinRE 437 Summary 439 Exam Essentials 439 Review Questions 441 Answers to Review Questions 446

Appendix About the Companion 449 What You’ll on the CD 450 Sybex Test Engine 450 PDF of the Book 450 Adobe Reader 450 Electronic Flashcards 451 System Requirements 451 Using the CD 451 Troubleshooting 451 Customer Care 452

Glossary 453

Index 467

93157book.indd 18 8/7/08 3:51:21 PM