Setting up Active Directory in Windows Server 2019 (Step By Step Guide)
Summary
TLDRThis tutorial offers a step-by-step guide on setting up Active Directory (AD) on Windows Server 2019. It begins with verifying prerequisites such as administrative privileges, a static IP address, and server naming standards. The process involves installing the AD Domain Services role and promoting the server to become the first domain controller for a new forest. Additionally, the DNS server role is installed for AD integrated DNS zones. The video demonstrates configuring the server with a static IP, setting up DNS, and running the AD Domain Services Configuration Wizard to establish a new forest with 'my.lab.local' as the root domain. The server is then promoted, and post-installation steps include verifying domain and forest functional levels, managing DNS settings, and confirming the server's role as a domain controller through nslookup.
Takeaways
- 😀 The video provides a step-by-step guide on setting up Active Directory (AD) in Windows Server 2019.
- 🛠️ The process starts by installing the Active Directory Domain Services role and promoting the server to be the first domain controller for a new forest.
- 🌐 The DNS server role is also installed to use Active Directory integrated DNS zones.
- 🔒 Before proceeding, it's necessary to have administrative privileges, a server with a static IP address, and the server name should follow the company's naming standard.
- 💻 The server's network adapter is configured to use its own IP address as the preferred DNS server, indicating the intention to install the DNS server role.
- 📊 The video demonstrates using Server Manager to add roles and features, specifically Active Directory Domain Services and DNS Server.
- 🏢 The configuration wizard is used to promote the server to a domain controller, with options to add to an existing domain, add a new domain to an existing forest, or create a new forest.
- 📝 The root domain name 'my.lab.local' is specified during the configuration for a new forest.
- 🔄 The forest and domain functional levels are set to Windows Server 2016, with options for Windows Server 2019 not yet available at the time of the video.
- 🛡️ Directory Service Restore Mode password is set for security purposes during the domain controller promotion.
- 🔄 After the installation, the server restarts automatically, and the new domain administrator is now 'my.lab\administrator'.
- 🔄 The video concludes with the server ready to act as a domain controller and a preview of joining a Windows 10 computer to the domain in the next video.
Q & A
What is the main topic of the video?
-The video provides a step-by-step guide on setting up Active Directory in Windows Server 2019.
What are the prerequisites before starting the Active Directory setup?
-The prerequisites include having administrative privileges on the server, setting up the server with a static IP address, and changing the Windows Server name according to the company's naming standard.
What is the first step in setting up Active Directory?
-The first step is to install the Active Directory Domain Services role on the server.
Why is it necessary to install the DNS server role along with Active Directory?
-The DNS server role is installed to use Active Directory integrated DNS zones, which is a requirement for Active Directory to function properly.
What is the server's static IP address as configured in the video?
-The server's static IP address is configured as 172.18.72.5.
How does the server's preferred DNS server address relate to its role in the setup?
-The server's preferred DNS server address is set to its own IP address because it will also act as a DNS server, which is necessary for Active Directory integration.
What is the process for promoting a server to be the first domain controller?
-The process involves installing the Active Directory Domain Services role and then promoting the server to be the first domain controller for a new forest.
What is the default forest functional level set during the video demonstration?
-The default forest functional level set during the video demonstration is Windows Server 2016.
Why is the Directory Services Restore Mode (DSRM) password required?
-The DSRM password is required for restoring the Active Directory database in case of a failure and for performing certain maintenance tasks.
What is the significance of creating a reverse lookup zone in DNS?
-Creating a reverse lookup zone in DNS allows for the resolution of IP addresses to their corresponding domain names, which is important for proper name resolution and can assist in network troubleshooting.
How can you verify that the server is correctly configured as a DNS server?
-You can verify the server's DNS configuration by using the nslookup command in PowerShell to perform forward and reverse lookups and ensure the server returns the correct results.
What is the next step after setting up Active Directory and DNS as shown in the video?
-The next step, as mentioned in the video, is to join a Windows 10 computer to the newly created domain.
Outlines
🔧 Setting Up Active Directory on Windows Server 2019
This paragraph outlines the initial steps to set up Active Directory in Windows Server 2019. It begins with a checklist of prerequisites such as administrative privileges, a server with a static IP address, and adherence to company naming standards. The speaker demonstrates how to verify the server name and static IP address configuration using Server Manager and PowerShell. The process continues with installing the Active Directory Domain Services role and DNS server role through the Add Roles and Features Wizard. The installation is confirmed, and the server is prepared for promotion to a domain controller.
🌳 Creating a New Active Directory Forest
The speaker proceeds with the configuration of Active Directory Domain Services by promoting the server to be the first domain controller in a new forest. The choice to create a new forest is selected, and a root domain name is specified. The forest and domain functional levels are set to Windows Server 2016 by default, with options for Windows Server 2019 not yet available at the time of the video. The server's roles as a global catalog and DNS server are confirmed, and a Directory Service Restore Mode password is set. The speaker reviews the configuration settings before initiating the installation process, which concludes with the server restarting and the appearance of a new administrator account, indicating successful promotion to a domain controller.
🖥️ Post-Installation Configuration and DNS Setup
After the server restarts, the speaker opens Server Manager and the Active Directory Users and Computers console to verify the domain and forest functional levels. They then open the DNS management console to create a reverse lookup zone, specifying the network ID and completing the zone creation. The DNS console is used to update the associated pointer record for the domain name. The speaker also changes the preferred DNS server address in the network connection properties to the server's IP address and verifies the DNS setup using the nslookup command in PowerShell, confirming the correct resolution of the domain name and its PTR record.
Mindmap
Keywords
💡Active Directory
💡Windows Server 2019
💡Domain Controller
💡DNS Server Role
💡Static IP Address
💡Forest Functional Level
💡Domain Functional Level
💡Global Catalog
💡Directory Service Restore Mode (DSRM)
💡nslookup
Highlights
Introduction to setting up Active Directory in Windows Server 2019.
Process of implementing a new forest for an Active Directory environment.
Installing Active Directory Domain Services role and promoting the server to be the first domain controller.
Installing DNS server role for Active Directory integrated DNS zones.
Verification checklist before proceeding: administrative privilege, static IP address, and server name change.
Server Manager used to verify server configuration and static IP address.
Configuring the server to use its own IP address as the preferred DNS server.
Confirmation of administrator login using PowerShell command 'Who am I'.
Two-step process: install Active Directory service role and promote server as domain controller.
Using Server Manager to add roles and features for Active Directory Domain Services and DNS Server role.
Promoting the server to be a domain controller using the configuration wizard.
Selecting to create a new forest and specifying the root domain name.
Setting the forest and domain functional levels to Windows Server 2016.
Configuring Directory Services Restore Mode (DSRM) password.
Completing the installation and server restart.
Opening Server Manager and Management Consoles to manage Active Directory Domain Services.
Creating a reverse lookup zone in DNS Management Console.
Updating DNS settings to use the server's IP address as the preferred DNS server.
Validating DNS configuration using nslookup command in PowerShell.
Server readiness to act as a domain controller and joining a Windows 10 computer to the domain in the next video.
Transcripts
hello friends welcome to amis octave
upcast this is a step-by-step guide on
how to set up Active Directory in
Windows Server 2019 in this video we
will see the process of implementing a
new forest for an Active Directory
environment using a Windows Server 2019
this will be done initially by
installing the Active Directory domains
service role and then by promoting the
server to be the first domain controller
for a new forest at the same time we
will also install the DNS server role to
use Active Directory integrated DNS
zones but before proceeding ahead we
need to verify certain things like you
must have an administrative privilege on
a server setup server with a static IP
address and change the windows server
name according to your company's naming
standard
so first let's verify all this checklist
and then we will move forward so this is
the other window so 2019 and I'm going
to open saw manager at the saw manager
I'm going to click on local server and
as you can see our computer's name is
ws2 k-19 - this is 0-1
in the last video demonstration we have
performed some basic configuration tasks
on the server and in that those tasks
were included as you can see my computer
is already configured with a static IP
address which is 170 to 180 72.5 let's
click on it then I'm going to select the
net adapter select properties and select
Internet Protocol version 4 and click on
properties here the important thing is
that on a preferred DNS server address
as you can see the server is configured
to use its own IP address as a preferred
DNS server as we also want to install
DNS server drool on this computer so
that's why this IP address is set as a
preferred DNS server let's close this
and in a powershell as you can see c
colon slash users slash
administrator that indicates we have
currently login to the server as an
administrator still we want to confirm
it and for that I'm going to run come on
Who am I as you can see WS took in 19 -
DC 0 1 / administrator so we have an
admin sir - privilege on the server as
well the process is done in a two steps
first one we need to install Active
Directory - means service role and then
we need to promote the server as a
domain controller so let's go back to
soul manager and I'm going to click on
manage and here we have a off sense to
add roles and features so let's click on
it then on before you begin screen 13
things are there that we need to verify
before you continue like our visitor
account has a strong password network
settings and the most current security
updates click on next here we have a two
options for this installation we need to
select rule B's of issue B's
installation let's click on next now we
have only one server and that is WS -
k-19 - DC 0 1 and we want to install the
rule on the same server so let's select
our local server and then click on next
here we have a options to select server
rule and in our case it will be your
Active Directory domain service so I'm
going to select Active Directory domain
services it is also gives a 1 pop-up box
where it is asking us that it also needs
certain features to run Active Directory
to means service properly do you want to
include yes we also want to include
those features as well as include
management tools as well let's click on
add features and at the same time we
also want to install DNS server role so
I am going to select this checkbox as
well let's again click on add features
and then click on next next again
next again next again and now I'm going
to click on install
as you can see Active Directory domain
service a server role installation has
been completed successfully now here we
have a off since su promote this server
to a domain controller so let's click on
promote this server to a domain
controller link that will start Active
Directory domain service configuration
wizard by using this visit you can
promote this server to be a 2 min
controller here we have a total three
options if you want to add domain
controller to an existing domain that
time you have to select the first one if
you want to add a new dummy into an
existing forest that time you need to
select the second box and if you want to
create a new forest that time you need
to select the third one so we are going
for a new forest that's why I'm going to
select add a new forest now here you
need to specify the name of your root
domain for this demonstration I'm going
to use my lab dot local as root domain
name once you specify your root domain
name click on next
here we have to select the functional
level of our forest as well as a root
domain so forest functional level as you
can see it is set to by default Windows
Server 2016 and we are deploying new
forests that's why I want to use the
maximum available forest functional
level as you can see it is Windows
Server 2016 and domain functional level
let's verify do we have options for
Windows Server 2019 functional level no
we have only one of sins and that is
Windows Server 2016 so at the time of
this video recording here we don't have
options to select forest functional
level and domain functional level to
Windows Server 2019 we have a maximum
forest functional level is Windows
Server 2016 and a specific domain
controllers capability as you can see
and DNA sell already selected as well as
global catalog because we are promoting
this server as a first domain controller
in a new forest and that's why these two
checkboxes are already selected and it
is krei out now we need to specify
directory service restore mode password
okay now click on next button click on
next again
we have selected my lab that local as
our root domain and that's why you can
see an advanced domain name is my lab if
you don't want this nad bias name for
your domain you can change as per your
requirement but I'm happy with this nod
bias name so I'm going to click on next
here we have a options to specify the
location of Active Directory database
log files and sis wall we are going to
use the default location and that's why
I'm going to click on Next button so
this is all the selection review
information that we are going for a new
domain which is my lab local and this is
also the name of our new forest an
adverse name is my lab forest and domain
functional levels are set to Windows
Server 2016 we have selected global
catalog as well as a DNS server and this
is a path for your database log files
and assess whole folder if you want to
change anything then you can click on
previous button and change those
settings and if you are happy with the
selection you can click on next to start
installation
and this green box means we can start
installation so let's click on install
one the active directory post
installation configuration process
completes your server will restart
automatically
now press ctrl to delete key to unlock
of a server and now the most important
thing is there instead of only
administrator now we can see my laps
last administrator is there the only
reason is that because now this server
is promoted as a domain controller
now first of all I'm going to open saw
manager and I'm going to click on tools
and here we have the management consoles
by using those consoles we can manage
our Active Directory domain services so
first of all I'm going to open Active
Directory users and computers consoles
ok here we go here we have a my laptop
local and that is the name of our two
beam
that's right click there and select
properties here we can see our domain
functional level and forest functional
level is there Windows Server 2016 let's
minimize it and I'm going to open DNS
management console so let's click on
tools and select DNS going to expand my
server which is a WS - k-19 - des is 0-1
and under forward look up zone you can
see - Active Directory integrated DNS
zones are there underscore a master CS
thought my lab with local & Mild with
local I'm going to create a one a
reverse look up zone as well so let's
right click on reverse look up zones and
select new zone click on next we want to
select primary zone as well as Active
Directory integrated click on next we
are happy with this click on next
happy person for realistic of zone next
again and I'm going to specific the
network ID here it will be a first three
octet of your IP address which is 170 to
180 72 in my case let's click on next
next to clean and finish so now as you
can see we have a reverse look up zone
or with a start of authority and name
server entry let's click on my lab dot
local zone and this is the host record
for our domain name I'm going to select
this check box update associated pointer
record click on apply and click on ok
now let's again click on our reverse
look up zone and hit refresh okay here
we have a point at a code as well fine
that's closed over DNS console and I'm
going to open Network a connection
console ok let's click on local server
click on this IP address right click on
your asana select properties select
Internet Protocol was in 4 click on
properties and here you can see on your
preferred DNS server address 127.0.0.1
IP address is there because now this
server is acting as a DNS server I'm
going to jammu this and instead of I'm
going to put 172 1 8 72 dot file which
is the IP address of our server and this
IP address is a preferred DNS server
click on OK click on close and closes
console
I'm going to open PowerShell and at the
powershell i'm going to run command
nslookup and here we go
our default server is WS 2k 19 - TC 0 1
dot my little and IP address is there
that is 172 dot 18.7 to do that file now
I'm going to type my lab data local and
we are getting an answer that my lab dot
local as IP address is 170 to 180 72.5
I'm going to specify the IP address as
well and we are also getting the answer
for the same as well that 170 to 180
72.5 PTR record is belong to WS 2 k 19 -
TC 0 1 dot my laptop local so this is
the way how we can set up Active
Directory domain service on a Windows
Server 2019 now the server is ready to
act as domain controller in the next
video we will see how we can join a
Windows 10 computer to this domain that
concludes our video demonstration thank
you all for watching this video
Browse More Related Video
Install and Configure DHCP Server in Windows Server 2019 Step By Step Guide
Migrate Active Directory Domain Controller From Server 2016 to Server 2019. (Part 1 of 2)
17. Migrate Active Directory from Windows Server 2008 R2 to Server 2022
CSS NC II COC 3: SET UP COMPUTER SERVER. #computersystem #computernetwork #computerrepair #css
How to Join a Client PC (Windows 10) to an Active Directory Domain Controller (Windows Server 2019)
Basic Configuration tasks in Windows Server 2019
5.0 / 5 (0 votes)