MCP Configuring Advanced Windows Server 2012 Services (70-412) - study guide – part two (version 1)

This is part two of my study guide to prepare MCP 70-412 : Configuring Advanced Windows Server 2012 Services

Part 1 is available here :


Configure Network Services (17%)

-- Implement an advanced Dynamic Host Configuration Protocol (DHCP) solution --

Dynamic Host Configuration Protocol (DHCP) Overview

What's new in DHCP

Step-by-Step: Configure DHCP Using Policy-based Assignment

Step-by-Step: Configure DHCP for Failover

Step-by-Step Guide: Demonstrate DHCP Name Protection in a Test Lab

Virtual Lab Managing Network Infrastructure


Creating Superscopes

Create a DHCP Superscope

The DHCPv6 Protocol

-- Implement an advanced DNS solution --

DNS Socket Pool

What's new in DNS

Step-by-Step: Demonstrate DNSSEC in a Test Lab

-- Deploy and manage IPAM --

IP Address Management (IPAM) Overview

Step-by-Step: Configure IPAM to Manage Your IP Address Space

Virtual Lab Managing Your Network Infrastructure with IP Address Management

Configure the Active Directory Infrastructure (18%)

Video : What's New in Active Directory in Windows Server 2012

-- Configure a forest or a domain --

-- Configure Trust --

-- Configure Sites --

Active Directory Sites and Services

-- Manage Active Directory & Sysvol Replication --

Repadmin /syncall


Configure Identity and Access Solutions (15%)

-- Implement Active Directory Federation Services 2.1 --

Active Directory Federation Services Overview

New and changed functionality
- Integration with Dynamic Access Control scenarios
- Improved installation experience using Server Manager
- Additional Windows PowerShell cmdlet tools

AD FS Design Guide

You can create the AD FS configuration database for SQL Server using the Fsconfig.exe command-line tool and for Windows Internal Database using the AD FS Federation Server Configuration Wizard.

AD FS Deployment Guide


-- Install and configure Active Directory Certificate Services (AD CS) --

What's New in AD CS?

Several new capabilities are available in the Windows Server 2012 version of AD CS. They include:
- Integration with Server Manager
- Deployment and management capabilities from Windows PowerShell®
- All AD CS role services run on any Windows Server 2012 version
- All AD CS role services can be run on Server Core
- Support for automatic renewal of certificates for non-domain joined computers
- Enforcement of certificate renewal with same key
- Support for international domain names
- Increased security enabled by default on the CA role service

AD CS in Windows Server 2012 introduces version 4 certificate templates. These templates have several differences from previous template versions.
Version 4 certificate templates:
- support both cryptographic service providers (CSPs) and key service providers (KSPs).
- can be set to require renewal with the same key.
- are only available for use by Windows® 8 Release Preview and Windows Server 2012.
- specify the minimum certification authority and certificate client operating systems that can utilize the template.

AD CS Deployment Cmdlets in Windows PowerShell


-- Manage certificates --

AD CS Administration Cmdlets in Windows PowerShell
/! The CA administration cmdlets can only be run on a computer that has the CA role service installed.


-- Install and configure Active Directory Rights Management Services (AD RMS) --

Active Directory Rights Management Services Overview

What's New in Active Directory Rights Management Services (AD RMS)?

for Windows Server 2012 the following versions of Microsoft SQL Server have been tested and are supported for use with AD RMS deployment.
- SQL Server 2005 Service Pack 3
- SQL Server 2008 Service Pack 3
- SQL Server 2008 R2 Service Pack 1

If you are going to be viewing reports related to AD RMS, you must also install the .NET Framework 3.5

On Server Core installations, the optional Identity Federation Support role service for the AD RMS server role is not supported. This is because Identity Federation Support relies on a role service of the AD FS Server role, the Claims-aware Agent, which is disabled on Server Core installations

Windows Server 2012 also includes the following feature updates, which have been added recently as updates for the AD RMS role in Windows Server 2008 R2.
- Simple delegation : Simple delegation for AD RMS enables you to have the same access rights to protected content that are assigned to one person delegated to other individuals within their organization
Simple delegation provides the ability to have content rights assigned to executives and managers be easily and effectively delegated to their assistants.wo attributes, msRMSDelegator and msRMSDelegatorBL must be added to the Active Directory schema
- Strong cryptography : enables you to increase the cryptographic strength of your AD RMS deployment by running in an advanced mode known as cryptographic mode

AD RMS and cryptographic support for SHA-2/RSA 2048

Test Lab Guide: Deploying an AD RMS Cluster

I encourage you also to download Windows Server 2012, install it and test it as much as you can because there are some questions where you need to have already manipulate User Interface or command.


You can download eval version of Windows Server 2012 as :


- Stanislas Quastana -