

In the next part of this series we will extend our configuration by Installing and configuring Active Directory Certificate Services.The PowerShell Module named ADSyncConfig.psm1 was introduced with build 1.1.880.0 (released in August 2018) that includes a collection of cmdlets to help you configure the correct Active Directory permissions for your Azure AD Connect deployment. To verify that everything is installed and working click on Tools and you will find few AD DS Microsoft Management Console (MMC) snap-in that you can use to administer and publish information in the directory. It will reboot server automatically once completed. Should all the prerequisites pass, click the Install button to start the installation. As an added bonus, When clicking View Script button you are provided with the PowerShell script to automate future installations. Next page gives us option to review the configuration. Leave the default settings and click on next

On the Additional Options page click on next. On the DNS selection page click on next. The message can safely be ignored. Select the domain and forest functional levels (Windows Server 2016) and specify DSRM Password.ĭirectory Services Restore Mode (DSRM) is a safe mode boot option for Windows Server domain controllers. This password provides the administrator with a back door to the database in case something goes wrong later on, but it does not provide access to the domain or to any services. It will open up the new wizard for the additional AD DS configuration. OBS!!! If you close the wizard without clicking on Promote this server… you can get it back by clicking on Tasks in Server Manager. On the Results page click Promote this server to a domain controller. On the description page click next to proceed. In the features selection we will keep the default settings and click on next Then it will ask to add additional features. In server selection, leave the default selection and click on next.įrom the role selection click on Active Directory Domain Services and click on next. In installation type selection, leave the default selection and click on next. In the wizard on the Before you begin page click on next. Go to Manage –> Add Roles and Features or click on the second option in Quick Start. Log in as administrator and start Server Manager. Now we will move forward and install Active Directory Domain Services and configure it. In previous post we installed windows server 2016.
