Download as docx, pdf, or txt
Download as docx, pdf, or txt
You are on page 1of 32

PROJECT

CONFIGURING ADVANCE SERVICES IN SCHOOL

Name :

1. Nadia Nursyabani
2. Wahyu Adi Pamungkas

Faculty : Muhammad Riza Iqbal Latief

Quarter :4

Class : 2NAP1

Continuing Education Center for Computing and Information


Technology Faculty of Engineering, University of Indonesia

2020
PROJECT ON

CONFIGURING ADVANCE SERVICES IN SCHOOL

Developed by :

1. Nadia Nursyabani
2. Wahyu Adi Pamungkas
JUDUL

Batch Code : 2NAP1

Start Date : May 2020

Name of the Coordinator : Muhammad Riza Iqbal Latief

Name of Developer :

1. Nadia Nursyabani
2. Wahyu Adi Pamungkas

Date of Submission : 30 June , 2020


CERTIFICATE
This is to certify that this report, titled CONFIGURING ADVANCE SERVICES IN
SCHOOL,embodies the original work done by Nadia Nursyabani, and
Wahyu Adi Pamungkas in partial fulfillment of their project requirement at
NIIT.

Faculty:

Muhammad Riza Iqbal Latief


ACKNOWLEDGEMENT

Thank you, Author wishes to God the Almighty for His blessings,
author can complete this project. Authors don’t forget to thanks especially to
Mr. Muhammad Riza Iqbal Latief who always guiding and helping authors to
finishing this project.

This project is discussing about advance configuring services in


windows server 2012 . hopefully , this paper can be usefull for all. So, that can
improve author and reader knowledge. Author realizes, this paper is far from
perfect. Therefore, we really expect for critic and suggestion from readers in
order to help author to improve this paper.
SISTEM ANALYSIS

System summary:

Microsoft Windows Server 2012 R2 Operating System Server allows network servers
to handle a variety of roles - such as print servers, domain controllers, web servers,
and file servers - and becomes a platform for separate server applications - such as
Microsoft Exchange Server or Microsoft SQL Server.

School also need some server to administrate, monitoring and managing their
school, using Active Directory, DHCP, DNS, Web Server, File Server, etc.
DNS SERVICES
DNSSEC
- Log on Server 1,open DNS manager in tools
- Expand server and domain, right click at domain
- Click DNSSEC and choose sign the zone
- In Zone signing wizard, click ‘use defailt setting to sign the zone’,then
next

- Wait for several time to sign the zone


- Refresh DNS manager and look at domain there was a key icon.
DHCP -SCOPE
- Server 1, Open DHCP at tools. Expan Server and IPv4
- Right click IPv4, click new scope
- In New scope wizard,click next, the fill the scope name. next
- Fill IP address range for that scope. next

- On exclusions and delay, and lease duration click next.


- Fill the router and Domain name, next
- Choose yes on Active scope. The finish
DHCP -SUPERSCOPE

- Right click IPv4, then click New Superscope


- On New superscope wizard fill name for superscope,next

- On the select scope, select available scope. Next


- Select finish. To add new scope in superscope, the step like add new
scope before.
DHCP -SCOPE

- Display for superscope Murid


DHCP -FAILOVER

- Right click IPv4, select configure failover


- On configure failover wizard, there are available scope. click next

- On Specify the partner server to use for file over, fill the IP address
Partner server(server 2), next
- On create a new failover relationship, fill name
- Change local server to 75% and partner server 25%
- Fill the shared secret as a password. Next
- Finish
DHCP -CLIENT

- Log on client as Sman1.id\Administrator, open Network setting


- Click properties, select IPv4. Then properties
- Change IPv4 to ‘Obtain an IP address automatically’. Ok

- Open Server1, check Address leases on DHCP at tools.


- Then observe that IP address on client and the server gave is same
IP ADDRESS MANAGEMENT (IPAM)

- Install IPAM in server without Active Directory Controller (member of


domain controller)
- Select IPAM on the left pane server manager window
- Select Provision the IPAM server link in IPAM task manager
- On IPAM provision wizard click next, the select windows internal
database (WID), next
- Select provisioning method Group Policy Based,fill GPO name. next

- Confirm the setting with select next, wait for installation and
configuration
- IPAM completed, close.
IP ADDRESS MANAGEMENT (IPAM)

- Open windows power shell Enter ‘ Invoke-IpamGpoProvisioning


-Domain Sman1.id -gpoPrefixName IpamSman1 -DelegatedGpoUser
Sman1.id\Administrator’
- Enter ‘y’ to confirm, close
- On the left pane Server Manager select IPAM, click configure server
discovery link
- In configure server discovery, click add sever to discovery. Ok

- Select start server discovery link, click more on information bar


- Wait the task to complete. close
IP ADDRESS MANAGEMENT (IPAM)

- Open services in tools, double click windows firewall then click stop.
Then click Ok

- Next, double click windows event collector then click start. Then click
Ok
IP ADDRESS MANAGEMENT (IPAM)

- Select IPAM in windows server manager, select server inventory


- Click IPv4, select available IPAM then right click, select edit server
- In add or edit server change manageability status to managed. Ok

- Refresh server access status, then restart server.


- Select IPAM, click server inventory. IPAM access is managed and become green
icon. finish
ACTIVE DIRECTORY DOMAIN SYSTEM
(AD DS)
AD DS : CHILD DOMAIN

- In Server2. Promote AD, click Add a new domain to an existing


domain for child ujian and sman1.id as a parent domain
- Change the credentials into Administrator of Computer Parent
domain,click next
- Fill the Password Administrator of Child domain computer,Next

- In DNS option click next


- The NetBIOS domain name will fill automatically, click next
AD DS : CHILD DOMAIN

- Path filled automatically, click next


- Click next after reads the review

- Wait several minutes for prerequisites check. if all checks passed


successfully, click install
- After successfully intall. Close the wizard
- Restart server then check the domain in local server.
AD RIGHTS MANAGEMENT SERVICES

- Install ADRMS in server member of Sman1.id, after installation


complete, select Perform additional configuration
- In ADRMS configuration wizard click next

- In ADRMS cluster select create a new AD RMS root cluster, then next
- Select Use Windows internal database for configuration database, next
AD RIGHTS MANAGEMENT SERVICES

- Use ADRMSSVC Service account from Domain User Account in


Sman1.id , next
- Select cryptographic mode 2 , next

- In cluster key storage select use AD RMS centrally managed key


storage, next
- Fill password for cluster key password, next
AD RIGHTS MANAGEMENT SERVICES

- Select cluster web site, next


- Fill Fully-Qualified Domain Name for cluster address, next

- Select create a self-signed certificate for SSL encryption, next


- Licensor Certificate name fill automatically, next
AD RIGHTS MANAGEMENT SERVICES

- Select register the SCP now, next


- In confirmation, click install. Wait installation until completed

- If installation successfully, close the wizard. Restart server


- Open AD RMS in tools. Click yes in security alert and wait RMS
cluster added.
DISASTER RECOVERY : SCHEDULING
BACKUPS

- Install Windows server backup in add roles and features


- After finish installing, open windows server backup in tools.
- In the left pane select local backup, then right click local backup and
chosee backup schedule

- In backup schedule wizard click next, select full sever in backup configuration. Next
- Select once a day in specify backup time, chosee time of day at 10.00 AM. next
DISASTER RECOVERY : SCHEDULING
BACKUPS

- Select backup to a hard disk…. For destination type. Next


- Fill the location of shared folder for backup. At access control select
inherit. Next

- In windows security dialog box, type username


domain\user(Sman1.id\Administrator) and password. Click Ok
- Review the backup schedule in confirmation and click finish.
- verify the schedule backup is created on summary page.
VM REPLICAS IN HYPER-V

- Open hyper-v manager in tools, right click sever and select hyper-v
setting
- On hyper-v setting windows check enable the computer, use Kerberos
and allow replication. Ok
VM REPLICAS IN HYPER-V

- Right click virtual machine, select enable replication


- On enable replication wizard ,next

- Click browse and type the server tobe a replication ,next


- On specify connection parameters, next
VM REPLICAS IN HYPER-V

- Choose replication VHDs and next


- Change frequency to 30 second, next

- Verify maintain only is selected, next


- Select send initial copy over the network and start replication
immediately, next
VM REPLICAS IN HYPER-V

- For completing select finish


- On virtual machine, right click then select replication and click view
replication health.

- Report of repliction health


NFS

- Install server for NFS feature. And then open shares setting in file and
storage services.
- Right click in the tasks, and new share

- Select the file share profile.

- Chose path share location.


NFS

- Chose the authentication methods.

- In the share permissions, click add and modify the name to all machine
and change the permissions to read/write.

You might also like