AZ-800T00: Administering Windows Server Hybrid Core Infrastructure
This course teaches IT Professionals how to manage core Windows Server workloads and services using on-premises, hybrid, and cloud technologies. The course teaches IT Professionals how to implement and manage on-premises and hybrid solutions such as identity, management, compute, networking, and storage in a Windows Server hybrid environment.
Duration :
Classroom |
Live Online |
This course is intended for Windows Server Hybrid Administrators who have experience working with Windows Server and want to extend the capabilities of their on-premises environments by combining on-premises and hybrid technologies. Windows Server Hybrid Administrators implement and manage on-premises and hybrid solutions such as identity, management, compute, networking, and storage in a Windows Server hybrid environment.
Deploy and manage identity infrastructure
Introduction to AD DS
• Introduction
• Define AD DS
• Define users, groups, and computers
• Define AD DS forests and domains
• Define OUs
• Manage objects and their properties in AD DS
• Module assessment
• Summary
Manage AD DS domain controllers and FSMO roles
• Introduction
• Deploy AD DS domain controllers
• Maintain AD DS domain controllers
• Manage the AD DS Global Catalog role
• Manage AD DS operations masters
• Manage AD DS schema
• Module assessment
• Summary
Implement Group Policy Objects
• Introduction
• Define GPOs
• Implement GPO scope and inheritance
• Define domain-based GPOs
• Create and configure a domain-based GPO
• Define GPO storage
• Define administrative templates
• Module assessment
• Summary
Manage advanced features of AD DS
• Introduction
• Create trust relationships
• Implement ESAE forests
• Monitor and troubleshoot AD DS
• Create custom AD DS partitions
• Module assessment
• Summary
Implement hybrid identity with Windows Server
• Introduction
• Select a Microsoft Entra integration model
• Plan for Microsoft Entra integration
• Prepare on-premises Active Directory for directory synchronization
• Install and configure directory synchronization with Microsoft Entra Connect
• Implement Seamless Single Sign-On
• Enable Microsoft Entra login in for Windows VM in Azure
• Knowledge check 1
• Describe Microsoft Entra Domain Services
• Implement and configure Microsoft Entra Domain Services
• Manage Windows Server in a Microsoft Entra Domain Services environment
• Create and configure a Microsoft Entra Domain Services instance
• Join a Windows Server VM to a managed domain
• Module assessment
• Summary
Deploy and manage Azure IaaS Active Directory domain controllers in Azure
• Introduction
• Select an option to implement directory and identity services using Active Directory Domain Services in Azure
• Deploy and configure Active Directory Domain Services domain controllers in Azure VMs
• Install a replica Active Directory domain controller in an Azure VM
• Install a new Active Directory forest on an Azure VNet
• Module assessment
• Summary
Manage Windows Servers and workloads in a hybrid environment
Perform Windows Server secure administration
• Introduction
• Define least privilege administration
• Implement delegated privileges
• Use privileged access workstations
• Use jump servers
• Module assessment
• Summary
Describe Windows Server administration tools
• Introduction
• Explore Windows Admin Center
• Use Server Manager
• List Remote Server Administration Tools
• Use Windows PowerShell
• Use Windows PowerShell to remotely administer a server
• Module assessment
• Summary
Perform post-installation configuration of Windows Server
• Introduction
• List the available post-installation configuration tools
• Configure Server Core using Sconfig
• Use DSC to configure Windows Server
• Perform post-installation configuration with Windows Admin Center
• Configure a server with answer files
• Module assessment
• Summary
Administer and manage Windows Server IaaS Virtual Machine remotely
• Introduction
• Select the appropriate remote administration tool
• Manage Windows Virtual Machines with Azure Bastion
• Create an Azure Bastion host
• Configure just-in-time administration
• Module assessment
• Summary
Manage hybrid workloads with Azure Arc
• Introduction
• Describe Azure Arc
• Onboard Windows Server instances
• Connect hybrid machines to Azure from the Azure portal
• Use Azure Arc to manage Windows Server instances
• Restrict access with RBAC
• Module assessment
• Summary
Just Enough Administration in Windows Server
• Introduction
• Explain the concept of Just Enough Administration (JEA)
• Define role capabilities for a JEA endpoint
• Create a session configuration file to register a JEA endpoint
• Describe how JEA endpoints work to limit access to a PowerShell session
• Create and connect to a JEA endpoint
• Demonstration: Connect to a JEA endpoint
• Module assessment
• Summary resources
Manage virtualization and containers in a hybrid environment
Configure and manage Hyper-V
• Introduction
• Define Hyper-V
• Define Hyper-V Manager
• Configure Hyper-V hosts using best practices
• Configure Hyper-V networking
• Assess advanced Hyper-V networking features
• Define nested virtualization
• Module assessment
• Summary
Configure and manage Hyper-V virtual machines
• Introduction
• List the virtual machine configuration versions
• List the virtual machine generation versions
• List available VHD formats and types
• Create and configure VMs
• Determine storage options for VMs
• Define shared VHDs and VHD Sets
• Implement guest clusters using shared VHDX
• Module assessment
• Summary
Secure Hyper-V workloads
• Introduction
• Define guarded fabric
• Define the Host Guardian Service
• Explore TPM-trusted attestation
• Define KPS
• Determine key features of shielded VMs
• Compare encryption-supported and shielded VMs in a guarded fabric
• Implement a shielded VM
• Module assessment
• Summary
Plan and deploy Windows Server IaaS Virtual Machines
• Introduction
• Describe Azure compute
• Describe Virtual Machine storage
• Deploy Azure Virtual Machines
• Create a windows Virtual Machine using the portal
• Create a windows Virtual Machine using Azure CLI
• Deploy Azure Virtual Machines using templates
• Describe additional management optimization options
• Module assessment
• Summary
Customize Windows Server IaaS Virtual Machine images
• Introduction
• Create a generalized image
• Create a new Virtual Machine from a managed image
• Create a managed image of a generalized virtual machine in Azure
• Create a Virtual Machine from a managed image
• Implement Azure Image Builder
• Create a windows Virtual Machine using Azure Image Builder template
• Create a Windows Virtual Machine with Azure Image Builder using PowerShell
• Module assessment
• Summary
Automate the configuration of Windows Server IaaS Virtual Machines
• Introduction
• Describe Azure Automation
• Implement Azure Automation with DSC
• Remediate noncompliant servers
• Describe Custom Script Extensions
• Configure a Virtual Machine by using DSC
• Module assessment
• Summary
Run containers on Windows Server
• Introduction
• Define containers
• List the differences between containers and VMs
• Define Windows Server and Hyper-V containers and isolation modes
• Explore Docker
• Prepare a Windows Server 2019 host for container deployment
• Security, Storage, and Networking with Windows containers
• Module assessment
• Summary
Orchestrate containers on Windows Server using Kubernetes
• Introduction
• Define orchestration
• Define Kubernetes
• Deploy Kubernetes resources
• Create a Kubernetes cluster on Windows
• Define Azure Arc
• Connect an Azure Arc-enabled Kubernetes cluster to Azure Arc
• Module assessment
Implement and operate an on-premises and hybrid networking infrastructure
Implement DNS for Windows Server IaaS VMs
• Introduction
• Understand Azure DNS
• Implement Azure DNS
• Create an Azure DNS zone and record using the Azure portal
• Implement DNS with Azure IaaS virtual machines
• Implement split-horizon DNS in Azure
• Troubleshoot DNS
• Module assessment
• Summary
Deploy and manage DHCP
• Introduction
• Use DHCP to simplify IP configuration
• Install and configure the DHCP role
• Configure DHCP options
• Configure DHCP scopes
• Select DHCP high availability options
• Implement DHCP Failover
• Module assessment
• Summary
Implement Windows Server DNS
Learn to deploy and configure name resolution with Windows Server DNS.
• Introduction
• Explore the DNS architecture
• Work with DNS zones and records
• Install and configure the DNS role
• Implement DNS forwarding
• Module assessment
• Summary
Implement IP Address Management
• Introduction
• Define IP Address Management
• Deploy IP Address Management
• Administer IP Address Management
• Configure IP Address Management options
• Manage DNS zones with IP Address Management
• Manage DHCP servers with IP Address Management
• Use IP Address Management to manage IP addressing
• Module assessment
• Summary
Implement remote access
• Introduction
• Examine the remote access options in Windows Server
• Select and set up VPNs
• Use NPS to create and enforce network access policies
• Plan and implement NPS
• Deploy a PKI for remote access
• Use WAP as a reverse web proxy
• Module assessment
• Summary
Implement hybrid network infrastructure
• Introduction
• Describe Azure network topologies
• Implement Azure VPN options
• Create a route-based VPN gateway using the Azure portal
• Implement Azure ExpressRoute
• Configure Azure Virtual WAN
• Implement DNS in hybrid environments
• Module assessment
• Summary
Implement Windows Server IaaS VM IP addressing and routing
• Introduction
• Implement a virtual network
• Implement IaaS VM IP addressing
• Assign and manage IP addresses
• Configure a private IP address for a virtual machine using the Azure portal
• Create a virtual machine with a static public IP address using the Azure portal
• Implement IaaS virtual machine IP routing
• Implement IPv6 for Windows Server IaaS virtual machines
• Module assessment
• Summary
Configure storage and file services
Manage Windows Server file servers
• Introduction
• Define the Windows Server file system
• List the benefits and uses of File Server Resource Manager
• Define SMB and its security considerations
• Configure SMB protocol
• Define Volume Shadow Copy Service
• Module assessment
• Summary
Implement Storage Spaces and Storage Spaces Direct
• Introduction
• Define the Storage Spaces architecture and its components
• List the functionalities, benefits, and use cases of Storage Spaces
• Implement Storage Spaces
• List the functionalities, components, benefits, and use cases of Storage Spaces Direct
• Implement Storage Spaces Direct
• Module assessment
• Summary
Implement Windows Server Data Deduplication
• Introduction
• Define the architecture, components, and functionality of Data Deduplication
• Define the use cases and interoperability of Data Deduplication
• Implement Data Deduplication
• Manage and maintain Data Deduplication
• Module assessment
• Summary
Implement Windows Server iSCSI
• Introduction
• List the functionalities, components, and use cases of iSCSI
• List the considerations for implementing iSCSI
• Implement iSCSI
• Configure high availability for iSCSI
• Module assessment
• Summary
Implement Windows Server Storage Replica
• Introduction
• List the functionalities and components of Storage Replica
• Examine the prerequisites for implementing Storage Replica
• Implement Storage Replica by using Windows Admin Center
• Implement Storage Replica by using Windows PowerShell
• Module assessment
• Summary
Implement a hybrid file server infrastructure
• Introduction
• Describe Azure File services
• Configure Azure Files
• Configure connectivity to Azure Files
• Describe Azure File Sync
• Implement Azure File Sync
• Deploy Azure File Sync
• Deploy Azure File Sync 2
• Manage cloud tiering
• Migrate from DFSR to Azure File Sync
• Module assessment
• Summary
Microsoft Certified: Windows Server Hybrid Administrator Associate
Candidates for the Windows Server Hybrid Administrator Associate certification should have subject matter expertise in configuring and managing Windows Server on-premises, hybrid, and infrastructure as a service (IaaS) platform workloads.
Responsibilities for this role include integrating Windows Server environments with Azure services and managing Windows Server in on-premises networks. This role manages and maintains Windows Server IaaS workloads in Azure, in addition to migrating and deploying workloads to Azure.
This role typically collaborates with Azure administrators, enterprise architects, Microsoft 365 administrators, and network engineers.
Candidates for this certification administer core and advanced Windows Server workloads and services using on-premises, hybrid, and cloud technologies. These professionals should have expertise in implementing and managing on-premises and hybrid solutions, such as identity, management, compute, networking, and storage. They are also experts at performing tasks related to security, migration, monitoring, high availability, troubleshooting, and disaster recovery. These professionals use administrative tools and technologies, including Windows Admin Center, PowerShell, Azure Arc, and IaaS virtual machine administration. They also work with Azure Automation Update Management, Microsoft Defender for Identity, Azure Security Center, Azure Migrate, and Azure Monitor.
A candidate for this certification should have extensive experience working with Windows Server operating systems.
You need to be familiar with software development cycle methodologies, data integrity, and data security compliance. And you must have deep knowledge and experience using the underlying framework, data structures, and objects associated with finance and operations solutions in Dynamics 365 that deliver best-in-class functionality.
Required Exams : AZ-800 & AZ-801
Before attending this course, students must have:
· Experience with managing Windows Server operating system and Windows Server workloads in on-premises scenarios, including AD DS, DNS, DFS, Hyper-V, and File and Storage Services
· Experience with common Windows Server management tools (implied in the first prerequisite).
· Basic knowledge of core Microsoft compute, storage, networking, and virtualization technologies (implied in the first prerequisite).
· Experience and an understanding of core networking technologies such as IP addressing, name resolution, and Dynamic Host Configuration Protocol (DHCP)
· Experience working with and an understanding of Microsoft Hyper-V and basic server virtualization concepts
· Basic experience with implementing and managing IaaS services in Microsoft Azure
· Basic knowledge of Azure Active Directory
· Experience working hands-on with Windows client operating systems such as Windows 10 or Windows 11
· Basic experience with Windows PowerShell
| Location | Dates | Time (UTC+2) | Delivery Format | Language |
|---|---|---|---|---|
| Live Online* | 2,3,5,9,10,12 – Μαρ | Δε,Τρ, Πε 17:30-22:00 | Instructor Led | Greek |
* Σύγχρονη εξ αποστάσεως εκπαίδευση με εισηγητή -Virtual Class
Last update : 28/12/2023 (AZ-800T00)


