Windows Server AD Site and domain Deployment Series (ii) Create a forest domain control

Source: Internet
Author: User

This blog post began to enter the domain and the formal deployment of the site, first at the BJ site PC01 host side, create virtual machine ds01, leveling Create the first domain in the forest , the deployment steps are as follows:

Network configuration:

1. In Hyper-V Manager, add a network adapter for this virtual machine, select Bridge native physical NIC, as shown in:

650) this.width=650; "Src=" https://s3.51cto.com/wyfs02/M00/9C/71/wKioL1lwalTzrCrgAACrJhcA6rc449.png-wh_500x0-wm_ 3-wmp_4-s_1568262301.png "title=" 1.png "width=" "height=" 472 "border=" 0 "hspace=" 0 "vspace=" 0 "style=" width:500px; height:472px; "alt=" Wkiol1lwaltzrcrgaacrjhca6rc449.png-wh_50 "/>

2. Enter the DS01 system to specify IP for the added NIC, (Note: The gateway here is the IP address of the three-layer switch interface, and because it is both the first domain and the DNS server, the DNS configuration points to itself) as shown in the following:

650) this.width=650; "Src=" https://s4.51cto.com/wyfs02/M02/9C/71/wKiom1lwa5ijCMvoAAB-XfZ0xGU241.png-wh_500x0-wm_ 3-wmp_4-s_2484640246.png "title=" 2.png "width=" "height=" 432 "border=" 0 "hspace=" 0 "vspace=" 0 "style=" width:350px; height:432px; "alt=" Wkiom1lwa5ijcmvoaab-xfz0xgu241.png-wh_50 "/>


To create a domain controller:


1. Open Server Manager, click Add Roles, select "Active directory Domain Services", such as:

650) this.width=650; "Src=" https://s4.51cto.com/wyfs02/M02/9C/72/wKiom1lwcO7gkGnUAAEzHrKiX0k634.png-wh_500x0-wm_ 3-wmp_4-s_3813459933.png "title=" qq picture 20170720165901.png "alt=" Wkiom1lwco7gkgnuaaezhrkix0k634.png-wh_50 "/>

2, other default next, and so on, click "Promote this server to a domain controller", such as:

650) this.width=650; "Src=" https://s2.51cto.com/wyfs02/M00/9C/72/wKiom1lwbkmh0hhpAADZ14ZHBNU725.png-wh_500x0-wm_ 3-wmp_4-s_1489434848.png "title=" 3.png "width=" "height=" 333 "border=" 0 "hspace=" 0 "vspace=" 0 "style=" width:500px; height:333px; "alt=" Wkiom1lwbkmh0hhpaadz14zhbnu725.png-wh_50 "/>

3. Select "Add a New Forest" and enter the root domain name: bicionline.org, which is the first domain in the forest, such as:

650) this.width=650; "Src=" https://s2.51cto.com/wyfs02/M00/9C/72/wKiom1lwbveTnqX6AACU1QAURMM692.png-wh_500x0-wm_ 3-wmp_4-s_377753065.png "title=" qq picture 20170720164935.png "Width=" "height=" 366 "border=" 0 "hspace=" 0 "vspace=" 0 " Style= "WIDTH:500PX;HEIGHT:366PX;" alt= "Wkiom1lwbvetnqx6aacu1qaurmm692.png-wh_50"/>

4. Select the functional level of the new forest and root domain, tick "domain Name System (DNS) Server", enter the restore password, such as:

650) this.width=650; "Src=" https://s5.51cto.com/wyfs02/M02/9C/72/wKioL1lwb3SCQt8iAADJilnxzbk283.png-wh_500x0-wm_ 3-wmp_4-s_108272377.png "title=" qq picture 20170720165235.png "alt=" Wkiol1lwb3scqt8iaadjilnxzbk283.png-wh_50 "/>

5, the default next.

650) this.width=650; "Src=" https://s3.51cto.com/wyfs02/M00/9C/72/wKiom1lwcF2i6cssAACqDHqx0cU200.png-wh_500x0-wm_ 3-wmp_4-s_2148623257.png "title=" qq picture 20170720165540.png "alt=" Wkiom1lwcf2i6cssaacqdhqx0cu200.png-wh_50 "/>

6, the default next.

650) this.width=650; "Src=" https://s4.51cto.com/wyfs02/M01/9C/72/wKioL1lwcHiziBgwAACJyC-5wY8406.png-wh_500x0-wm_ 3-wmp_4-s_2863434018.png "style=" Float:none; "title=" QQ picture 20170720165545.png "alt=" Wkiol1lwchizibgwaacjyc-5wy8406.png-wh_50 "/>

7, choose the storage path, the default next.

650) this.width=650; "Src=" https://s2.51cto.com/wyfs02/M01/9C/72/wKiom1lwcHiSx5x8AACeUGGj5Dg117.png-wh_500x0-wm_ 3-wmp_4-s_2846760128.png "style=" Float:none; "title=" QQ picture 20170720165550.png "alt=" Wkiom1lwchisx5x8aaceuggj5dg117.png-wh_50 "/>


To configure a DNS server:


1, the AD domain controller installation is complete, waiting for the computer to restart the completion, the domain administrator account to log in.

2. Open the Local Tcp/ipv4 property box, for example, adjust the DNS address 127.0.0.1 to the native IP address: 172.16.10.100. Such as

650) this.width=650; "Src=" https://s4.51cto.com/wyfs02/M02/9C/71/wKiom1lwa5ijCMvoAAB-XfZ0xGU241.png-wh_500x0-wm_ 3-wmp_4-s_2484640246.png "title=" 2.png "width=" "height=" 432 "border=" 0 "hspace=" 0 "vspace=" 0 "style=" width:350px; height:432px; "alt=" Wkiom1lwa5ijcmvoaab-xfz0xgu241.png-wh_50 "/>

3. Open the DNS server configuration interface in Service Manager and create a new 10.16.172.IN-ADDR.ARPR reverse zone, such as:

650) this.width=650; "Src=" https://s5.51cto.com/wyfs02/M01/9C/72/wKioL1lwcZ7hWjKEAAB8DuUu2Sk516.png-wh_500x0-wm_ 3-wmp_4-s_2973784593.png "style=" WIDTH:500PX;HEIGHT:346PX; "title=" QQ picture 20170720170140.png "Width=" "height=" 346 "border=" 0 "hspace=" 0 "vspace=" 0 "alt=" wkiol1lwcz7hwjkeaab8duuu2sk516.png-wh_50 "/>

Note: _msdcs.bicionline.org zone replication: Select all DNS servers in this forest, the name server IP address is native IP

650) this.width=650; "Width=" 260 "height=" 317 "src=" https://s2.51cto.com/wyfs02/M01/9C/72/ Wkiom1lwcfdyaisnaab0zr52lha936.png-wh_500x0-wm_3-wmp_4-s_840738706.png "style=" Background:url ("/e/u261/lang/ Zh-cn/images/localimage.png ") No-repeat center;border:1px solid RGB (221,221,221); width:260px;height:317px;" Alt= " Spacer.gif "title=" qq picture 20170720170311.png "border=" 0 "hspace=" 0 "vspace=" 0 "/> 650) this.width=650;" Src= "https://s 4.51cto.com/wyfs02/m01/9c/72/wkiol1lwcfhqpfrhaabpslb-h2a323.png-wh_500x0-wm_3-wmp_4-s_2077492601.png "Title=" QQ picture 20170720170316.png "Width=" 260 "height=" 321 "border=" 0 "hspace=" 0 "vspace=" 0 "style=" width:260px;height:321px; " alt= "Wkiol1lwcfhqpfrhaabpslb-h2a323.png-wh_50"/>

4, start Nslookup, parse normal: if

650) this.width=650, "width=", "height=" 327 "src=" https://s4.51cto.com/wyfs02/M00/9C/72/ Wkiol1lwclsw0bhgaablhmtvnlm918.png-wh_500x0-wm_3-wmp_4-s_3339786899.png "style=" Background:url ("/e/u261/lang/ Zh-cn/images/localimage.png ") No-repeat center;border:1px solid RGB (221,221,221); width:500px;height:327px;" Alt= " Spacer.gif "title=" qq picture 20170720170511.png "border=" 0 "hspace=" 0 "vspace=" 0 "/>

So far, the first domain in the forest has been created, the next entry to create a site introduction!



This article from "Itcol_xiaoyu" blog, reproduced please contact the author!

Windows Server AD site and domain Deployment Series (ii) Creating a forest domain control

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.