Patrick-Dussault

Fast Tracks for Installing and Configuring Active Directory 2012 R2

Blog Post created by Patrick-Dussault Employee on Mar 7, 2017

Here are the fast track to install and configure an Active Directory Server 2012 R2
in with a specific Windows Domain.

 

First of all, let's list the machine details :

 

      DNS Domain : training.com
      Machine host name : "MyMachine-3799"
      Active Directory Forest Domain : TRAINING
      machine IP : 192.168.1.2

 

Before installing the Active Directory service, if you run an antivirus, disable it. In my machine
I have the McAfee antivirus running. I'm disabling it that way :

 

    c:\> mvadm disable

 

After having done the installation you enable it again :

 

    c:\> mvadm enable

 

Install all available Microsoft Windows updates, so we don't run a bug on the pieces we want to
install :

 

    Click on "Control Panel"
    Click on "System and Security";
    Click on "Windows Update";
    Click on "Check for updates";
          install all availables update by clicking on "Install updates" if any;
    Click on "Restart now" to reboot the machine;

 

Install DNS server. I like to get this service and use this DNS with the other trusted machines I use.

 

    c:\> mvadm disable

 

    Click on "Server Manager";
    Click on "Add roles and features";
    In "Before you begin" pane, click "Next";
    in "Select installation pane, select "Role-based or feature-based installation";
    Click "Next";
    In "Select destination server", make sure "Select a server from the server pool" and
       that the current machine is selected in "Server Pool" section.
    Click "Next";
    In "Select server roles", check "DNS Server";
    Click "Add Features";
    You can ignore the validation results if it has found that the IP isn't static. No matter. Click "Continue";
    Click "Next";
    Click "Next";
    Click "Next";
    Click "Install";

 

    When you see "Installation succeeded on " then click on "Close";

 

Configure the DNS for the Domain we will use for Active Directory :

 

    Click Start > Administrative Tools;
    Double click on "DNS";
    Expand the "MyMachine-3799" on the left menu;
    Right-click on "Forward Lookup Zones" and select "New Zone...";
    Click "Next";
    Select "Primary zone";
    Click "Next";
    In "Zone name:", write "training.com";
    Click "Next";
    Click "Next";
    Select "Allow both nonsecure and secure dynamic updates";
    Click "Next";
    Click "Finish";

 

Add the current machine resolution in the domain training.com
    
    Click Start > Administrative Tools;
    Double click on "DNS";
    Expand the "MyMachine-3799" on the left menu;
    Click on "Forward Lookup Zones";
    Right-click on "training.com" and select "New Host (A or AAAA)...";
    In "Name", writes "MyMachine-3799";
    In "IP_address:" writes "192.168.1.2";
    Click "Add Host";
    Click "OK";
    Click "Done";

 

    Right-click on "Reverse Lookup Zones";
    Select the "New Zone...";
    Click "Next";
    Select "Primary zone";
    Click "Next";
    Select "IPV4 Reverse Lookup Zone";
    Click "Next";
    Select "Network ID:"
           In the field, writes "192.168.1"
    Click "Next";
    Click "Next";    
    Select "Allow both nonsecure and secure dynamic    updates";
    Click "Next";        
    Click "Finish";

 

    Click on "Forward Lookup Zones";
    Click on "training.com"
    Right-click on "MyMachine-3799" and select "Properties";
    Check "Update associated pointer (PTR) record";
    Click "Apply";
    Click "OK";

 

Install Active Directory

 

    c:\> mvadm disable
    Click Start > Administrative Tools;
    Double click on "Service";
    Right-click Remote Registry and open the "Properties" menu;
    From the *Startup type:" drop-down menu, select "Automatic".
    Under "Service Status", select "Start";

 

    The remote registry service will start.

 

Install then the Active Directory :

 

  Click on "Server Manager";

 

  Click on "Add roles and features";
  In "Before you begin" pane, click "Next";
   in "Select installation pane, select "Role-based or feature-based installation";
  Click "Next";
  In "Select destination server", make sure "Select a server from the server pool" and
   that the current machine is selected in "Server Pool" section.
  Click "Next";
  In "Select server roles", check "Active Directory Domain Services";
  Click "Add Features";
  Click "Next";
  Click "Next";
  Click "Next";
  Click "Install";

 

  When you see the message "Configuration required. Installation succeeded on " then restart the
  machine.

 

  Click "Close";

 

Finally, configure the Active Directory using the Active Directory Domain Services Configuration Wizard :

 

  Click on "Server Manager";

 

  Open the "Notifications" pane by selecting the "Notifications" icon from the
   top of the Server Manager. From the notification regarding configuring AD DS,
   click "Promote this server to a domain controller";
  Select "Add a new forest"
  In "Root domain name" writes "training.com"
  Click Next;
  In "Forest functional level" select "Windows Server 2012 R2"
  In "Domain functional level" select "Windows Server 2012 R2"
  In "Specify domain controller capabilities", select "Domain Name System (DNS) server" and "Global Catalog (GC)"
  In "Type the Directory Service Restore Mode (DSRM) password, type for "Password" : mypassword, and for "Confirm password" : mypassword
  Click Next;
  In DNS Option pane, Click "Next";
  In "Additional Option", verify that you have filled in "The NetBIOS domain name" "TRAINING", Click "Next";
  In "Paths", Click "Next";
  In "Review Options" Click "Next";
  In "Prerequisites Check" Click "Install";

 

  After the installation, the reboot the machine.

 

Login to the machine with TRAINING\administrator or TRAINING.COM\administrator and the password of the machine that you have for this user before installing the Active Directory.
Note that the password you gave during the configuration of the Active Directory is only if you run the machine in "Restore Mode". This password doesn't replace the administrator password.

Outcomes