Academic Integrity: tutoring, explanations, and feedback — we don’t complete graded work or submit on a student’s behalf.

Overview Each student will create a detailed, organized, unified technical solut

ID: 3905698 • Letter: O

Question

Overview

Each student will create a detailed, organized, unified technical solution given the scenario described below. The submission will be in a written format, with at least one diagram, and may include additional diagrams, charts or tables. The assignment is meant for students to enhance their mastery of the material and to provide a creative and realistic way in which to apply knowledge from this course.

Scenario

Join Something New, Inc. (referred to as “JSN”) has hired you as an IT consultant for implementing their Windows network infrastructure. JSN is a new marketing firm, and they are currently hiring staff, establishing two locations, and have a need to get their internal IT services configured. They do not yet have an IT staff, but when they do, the IT staff will take over all aspects of IT administration. You are required to supply JSN with a solution which describes the implementation and configuration of their core IT services. Cost is not a significant concern – JSN wishes to implement the “right” solution to fit their needs now and for the next 2-3 years.

There are several details about JSN which will have an impact on your choices:

? JSN will start with 90 employees, in the following departments: o Executives (9 employees) – manage and run the company o Accounts and Sales Department (15 employees) – perform market research and maintain accounts o Creative, Media and Production Department (49 employees) – marketing o Human Resources and Finances (12 employees) – perform HR and financial duties o IT (5 employees) – manage IT for the company o JSN will have two sites, one in Los Angeles and one in New York. Most staff will be located in LA, with at least 1 person from each of the departments above located in NY. ? Networking equipment is already in place for both sites. A secure tunnel (using IPSec) will be established between the two sites so that inter-site traffic will be securely tunneled over the Internet. You may make whatever other assumptions you wish about intra-and inter-site connectivity. ? Security mechanisms (e.g., firewalls, intrusion detection) will be handled separately, and there is no need to describe them. ? Some departments will want their data to remain private from other departments (e.g., Finances personnel will not want Production staff to see the company’s financial details). Your team may make assumptions about how data should be shared or kept private. ? Assumptions can be made regarding any information not included here; all assumptions should be identified, however.

Describe the technical and business reasons for each choice, citing other resources as appropriate.

The Windows Server 2012 operating system should be used for all aspects of the solution.

The topics should include:

New Features of Windows Server 2012

? Describe new features of Windows Server 2012 that JSN can take advantages of.

Deployment and Server Editions

? How many total servers are needed? Which roles will be combined? ? What edition of Windows will be used for each server (e.g., Standard, Datacenter)? ? Will Server Core be used on any servers? ? Where are each of the servers located (which of the two sites)? ? How will the servers be deployed? Manual or automated?

Active Directory

? Number of AD domains? ? Will there be any Read-Only Domain Controllers? ? How will the second site factor into domain controller placement? How will AD sites be configured? ? How will AD organizational units be organized (considering how group policy will be used and users will be organized)?

DNS and DHCP

? DHCP scope design (e.g., lease times, number of scopes, address range) ? Will a form of DHCP fault tolerance be implemented? ? Will DHCP reservations be used for servers? ? DNS namespace design (e.g., domain name(s) chosen, split DNS for Internet/intranet) ? How will DNS be handled for the second site?

Application Services

? How will applications be deployed? If using Group Policy, what are the details on how Group Policy will be used to deploy the software? Which software applications will likely be needed?

File and Printer Sharing

? What shares might be needed? ? DFS Needed? ? How will quotas/FSRM be configures?

Explanation / Answer

solution: -

Solution: - According to the situation, two offices are established one is in LA and another is in NY. So at first we need to create a domain with domain name “jsn.com” in one of the server and that server will become active directory Domain Controller(DC). A server 2012 datacenter edition will be implemented on the DC machine. For inter-site connectivity we can use we should use VPN(Virtual Private Network) or Direct Access so that no outside traffic can enter into the secure tunnel. This is how the network security can be implemented.

Q) Some departments will want their data to remain private from other departments (e.g., Finances personnel will not want Production staff to see the company’s financial details). Your team may make assumptions about how data should be shared or kept private?

Ans) The files of these departments must be kept in a separate drive and the drive must be shared only to the member of the finance group and the drive must be encrypted with bit locker. The password must be encrypted in a smart card and each and every member of finance group will get the smart card. Without that card, the drive can’t be opened.

Q) Describe the technical and business reasons for each choice, citing other resources as appropriate.

Ans) For running a business and even for making ease for the employees, the domain machines must be installed with Windows 10 and the internal network server must be implemented with Windows Server 2012 OS as it supports lots of applications and also supports outlook which is the most important things for communication with each and every employee.

Q) Describe new features of Windows Server 2012 that JSN can take advantages of.

Q) How many total servers are needed? Which roles will be combined? What edition of Windows will be used for each server (e.g., Standard, Datacenter)? Will Server Core be used on any servers? Where are each of the servers located (which of the two sites)? How will the servers be deployed? Manual or automated?

Ans) One Domain Controller, one Additional Domain Controller(ADC) for each location. In the domain controller, ADDS roles should be installed along with DNS and DHCP.

The Domain Controller should be implemented with Windows server 2012 R2 datacenter edition. Standard edition will be good as it will give a GUI interface and the operation can be performed with ease. If you have a good hold on Windows command line, at that time you can go for core server. Otherwise I would recommend to go with GUI mode.

The DC can be placed in any of the sites along with an ADC and the other site will have another ADC.

Since only 3 servers are there we can use manual installation and then make these ADCs as member of the domain. Network installation is not required as only 3 servers are there.

Q) Number of AD domains? Will there be any Read-Only Domain Controllers? How will the second site factor into domain controller placement? How will AD sites be configured? How will AD organizational units be organized (considering how group policy will be used and users will be organized)?

Ans) There will one AD root domain.

The single ADC can be made RODC but thing is it can be modified whatever changes are made in the DC, it will get automatically replicated. Incase the site is less secure that time RODC is the best option.

The domain controller can be placed on either of the sites, so the location which is less prone to natural disaster or any other physical attacks, there we can put the DC.

A domain is placed inside a site by default and the site created by default is the 1st domain site. DFSN is the default first site name.

Organizational Units are nothing but the container object which allows to store leaf objects such as users and groups. So, we can put different groups under different OUs and then we apply group policy accordingly.

Q) DHCP scope design (e.g., lease times, number of scopes, address range) ? Will a form of DHCP fault tolerance be implemented? Will DHCP reservations be used for servers? DNS namespace design (e.g., domain name(s) chosen, split DNS for Internet/intranet)? How will DNS be handled for the second site?

Ans) The lease period is by default 8 days. After 8 days it will ask for renewal.

We can create different scope for different locations. 2 scopes we can create.

Yeah, DHCP fault tolerant can be implemented on an ADC so that the client machines must get an IP when DC is failed to provide IP.

Yes, DHCP reservation should be used for servers so that after every reboot the server must get the same IP.

DNS name space can be used as “jsn.com”. In the second site, the preferred DNS IP address must be same as the IP of the server where DNS is running. And also change the computer settings from “WORKGROUP” to “DOMAIN”.

Q) How will applications be deployed? If using Group Policy, what are the details on how Group Policy will be used to deploy the software? Which software applications will likely be needed?

Ans) The Application will be installed on the DC and group policies will be implemented on the OUs. Typing gpmc command on the command prompt will open the group policy management console and there we will edit the group policy for particular OUs and then typing gpupdate /force which will forcefully implement the policies with rebooting the machine.

Software application such as outlook for mailing, internet explorer, and other application according to requirement.

Q) File and Printer Sharing What shares might be needed? DFS Needed? How will quotas/FSRM be configures?

Ans) Sharing printer and also sharing files is important. Distributed File system is also important, in a single shared folder we can access shared files which are shared from multiple server at one location at the same time.

Through File Server Resource Manager, we can implement quotas on folders. Both hard and soft quotas can be implemented. By typing fsrm.msc in command prompt it will open the FSRM console and there we can apply.