Windows Server 2008 R2
Windows Server Core
- Because Microsoft longing for a pure Linux command line, Windows Server Core is proposed
- Use only command, but as long as configured ip and so on, this can be managed by another Server Server, but requires the same administrator password
Windows Server Desktop Experience
- In Server Manager , select the function (note not the role ), add telnet client and desktop experience
- Enter
services.msc
to start the service Theme - Restart
Network Shortcuts
include
- Network Discovery
- FTP
operating
FTP, for example
In the desktop , right, select Create Shortcut , if it is FTP, enter ftp: // administrator: [email protected]
Shortcut command
lusrmgr.msc
Full name of local user manager microsoft console, open the Local Users and Groups console
- The default system is disabled Guest, Guest turned on, the user, click Guest , will disable the check mark removed Note: Starting Guest is very important, for white, when access to the shared directory, if you want no problems, be sure to activate Guest user
secpol.msc
Full name of security policy microsoft console
- Password Policy: Account Policies \ Password Policy
- Security Options (changed from the classic guests, necessary): Local Policies \ Security Options, (a lot of things) security settings found in the list of classic keyword, select guests only
sysprep
Remove the unique system data flag, a system for migration general, in the Hyper-V, sysprep operated as a virtual machine can quickly generate the parent virtual machine other subclasses (installed and the configuration of the same parent operating system)
- C:\Windows\System32\sysprep\sysprep.exe
- In the dialog box that appears, select General , because our aim is common migration (such as the user's system clearly SID ), and then click OK
- When you start again, following interface will appear, because we get rid of something
telnet
For testing network http + port problems- Function in Server Manager to add telnet client
- telnet www.google.com 80 If nothing is returned is no problem, otherwise there is a problem
dnsmgmt.msc
dns service management console
Hyper-V use
- Install Hyper-V components, open the Start \ Administrative Tools \ Server Manager
- Right roles , add roles, has been the next step, in the following figure, select Hyper-V and then click Next
Open Hyper-V Manager
Click New , select Virtual Machine
Fill in the virtual machine name
- In the configuration of the network time, if only one is not connected , the first placed, such as the establishment of good, go create a network adapter (bridge, private), if there are other connections, the demand set
- Connect the virtual hard disk , which is the name .vhd, etc. After the installation is complete, a large .vhd file, approximately 7 GB
The next step has been to
Add card, click Virtual Network Manager , the pop-up window, select the external , internal , dedicated , click Add
- External: Bridge is the card, the host is treated as a switch , then the virtual network to a host, the ip address on the original physical NIC to the virtual network adapter for the virtual machine, and the host, the use of the virtual card communication
Parent difference disk, with shortcut commands -> sysprep View
- Click New , select the difference
- Configure the disk , select the parent class template vhd, is the use of sysprep command
NTFS
- The target audience
- file
- read
- write
- carried out
- modify
- fully control
- folder
- read
- write
- carried out
- modify
- fully control
- Lists the contents of a folder
- Shared folder
- read
- write
- modify
- printer
In addition to basic literacy execution, as well as special privileges , more fine-grained
limit
- Support maximum 2TB hard drive
- Support 64GB single file
Shared folder
Right folder sharing , select a specific user , enter the Everyone (read-only by default, you can choose to read \ write), can be determined
When clients access the shared folder, logon sequence is 1. The current logged-on user; 2. Administrator 3. Guest + empty password , remember to
lusrmgr.msc
turn on the GuestHide sharing
- Right property, at an additional share name
$
- Where all drives are hidden by default shared
- Right property, at an additional share name
Network sharing settings to control share, click on the left to change advanced sharing settings
- In addition to point 3, click Local Area Connection
- Remove the Client for Microsoft Networks , the host can not see this shared
- Remove the Microsoft Network File and Printer Sharing , then other people can not see Share the machine
The domain controller (DC) and Active Directory (AD)
Command to install the AD, the computer will be promoted to DC, note: in the absence promoted to DC, a local user can use, but promoted to DC, local users upgrade to become a domain user
after, local users can not usedcpromo
The full name Domain Controller promote installation AD, host promoted to DC, if it is created from scratch for the first time (in a poverty-stricken basis) do not need to select the Advanced, if it is not checked senior
- The default is 2003, as DC represents
the lowest level, if 2003 is> = 2003 can be used as after DC
- Oh equipped with the DNS to DC
- The following warning appears, click OK
- The following dialog box, the password used to restore Active Directory data set, which is the administrator of the domain
Complete restart on the hook
DNS check whether the installation is successful, you only need to view the ip address, preferred to 127.0.0.1
Above DNS, right, should be changed to DC LAN ip address
- Domain controller netlogon service is enabled by default, this service for DNS, the working group is off by default, in order to work, we need to open
Join a domain, the domain only need to check the settings in your computer, the username and password input field (different users can have 10 chances)
DNS
- Advanced features the following figure
NTDS (dynamic site service)
The main consideration of the relationship between different physical domains and regions, carried out the Active Directory database synchronization between DC
Auxiliary DC to create the best of his database replication from the primary DC in the database come (through the network or disk, if the disk then need to use the parent DC in
ntdsutil
the production database snapshot, the resulting catalog copy to want to upgrade to the auxiliary DC computer on)ntdsutil
Commandactivate instance ntds
ifm
create full c:\data\
c: \ target data is backed up