lolpee69 revised this gist . Go to revision
1 file changed, 108 insertions
Mockans(file created)
@@ -0,0 +1,108 @@ | |||
1 | + | Sure! Here's the step-by-step **process for each scenario** explained clearly in chat: | |
2 | + | ||
3 | + | --- | |
4 | + | ||
5 | + | ### ✅ **Scenario 1: Active Directory + GPO** | |
6 | + | ||
7 | + | **Goal**: | |
8 | + | Create user `Win_Yourname`, give them Windows 10 login rights, and apply a GPO. | |
9 | + | ||
10 | + | **Steps**: | |
11 | + | ||
12 | + | 1. Open **Active Directory Users and Computers (ADUC)**. | |
13 | + | 2. Right-click the OU (`Yourname_Xceed`) → New → User → Name it `Win_Yourname`. | |
14 | + | 3. Add `Win_Yourname` to the group **Remote Desktop Users** (for Windows login). | |
15 | + | 4. Open **Group Policy Management**: | |
16 | + | ||
17 | + | * Create a new GPO called `YourName_XceedGPO`. | |
18 | + | * Right-click → Edit and set the following under **User Configuration** → **Administrative Templates**: | |
19 | + | ||
20 | + | * **Control Panel** → Prohibit access to Control Panel. | |
21 | + | * **Add or Remove Programs** → Hide or disable. | |
22 | + | * **Desktop** → Prevent changing desktop background. | |
23 | + | * **Printers** → Prevent addition of printers. | |
24 | + | * **Windows Components → Windows Update** → Hide "Installed Updates". | |
25 | + | * **Display → Screen saver** → Force specific screen saver (e.g., `scrnsave.scr`). | |
26 | + | 5. Link the GPO to your OU (`Yourname_Xceed`). | |
27 | + | ||
28 | + | --- | |
29 | + | ||
30 | + | ### ✅ **Scenario 2: FSRM (File Server Resource Manager)** | |
31 | + | ||
32 | + | **Goal**: | |
33 | + | Create `\\domain\Xceed\Legal` share with 5GB quota and block video files. | |
34 | + | ||
35 | + | **Steps**: | |
36 | + | ||
37 | + | 1. Create folder: `C:\Xceed\Legal`. | |
38 | + | 2. Right-click → Properties → Share → Set network path: `\\domain\Xceed\Legal`. | |
39 | + | 3. Open **FSRM**: | |
40 | + | ||
41 | + | * Go to **Quota Management** → Create a **custom quota** on that folder → Set limit to **5 GB**. | |
42 | + | 4. Under **File Screening Management**: | |
43 | + | ||
44 | + | * Create a file screen for that folder. | |
45 | + | * Choose to **block file groups**: `Video Files` (includes MP4, MOV, MKV). | |
46 | + | 5. Set up monthly storage reports: | |
47 | + | ||
48 | + | * In **Storage Reports Management** → Schedule a monthly report for `\\domain\Xceed\Legal`. | |
49 | + | ||
50 | + | --- | |
51 | + | ||
52 | + | ### ✅ **Scenario 3: DNS - Stub Zone Configuration** | |
53 | + | ||
54 | + | **Goal**: | |
55 | + | Create a stub zone for a new rural branch. | |
56 | + | ||
57 | + | **Steps**: | |
58 | + | ||
59 | + | 1. Open **DNS Manager**. | |
60 | + | 2. Expand your server → Right-click **Forward Lookup Zones** → New Zone. | |
61 | + | 3. Select **Stub Zone** → Store in AD → Zone Name: e.g., `rural.xceed.local`. | |
62 | + | 4. Enter the **IP address of the authoritative DNS server** from the rural branch. | |
63 | + | 5. Complete the wizard → Stub Zone is created (contains NS, SOA, A records of master). | |
64 | + | ||
65 | + | --- | |
66 | + | ||
67 | + | ### ✅ **Scenario 4: VMware Snapshot (User File Safety)** | |
68 | + | ||
69 | + | **Goal**: | |
70 | + | Preserve Raj's desktop files and VM state during maintenance. | |
71 | + | ||
72 | + | **Steps**: | |
73 | + | ||
74 | + | 1. Open **vSphere Client** → Locate Raj’s VM. | |
75 | + | 2. Ensure files (File1, File2, File3) are visible on the desktop. | |
76 | + | 3. Take a **snapshot** before maintenance: Right-click VM → Snapshot → Take Snapshot. | |
77 | + | 4. Perform maintenance. | |
78 | + | 5. After maintenance, **revert to snapshot**: VM → Snapshot Manager → Revert. | |
79 | + | 6. Ensure: | |
80 | + | ||
81 | + | * VM is **powered on**. | |
82 | + | * Raj’s desktop files are still present. | |
83 | + | ||
84 | + | --- | |
85 | + | ||
86 | + | ### ✅ **Scenario 5: DFS (Distributed File System) + AD Groups** | |
87 | + | ||
88 | + | **Goal**: | |
89 | + | Create `APP Team` share with access managed via AD groups and quota. | |
90 | + | ||
91 | + | **Steps**: | |
92 | + | ||
93 | + | 1. Create folder: `C:\Shares\APP Team` and share it as `\\server\APP Team`. | |
94 | + | 2. In AD: | |
95 | + | ||
96 | + | * Create 2 security groups: | |
97 | + | ||
98 | + | * `APP_Read` → Add **Rakesh** and **Raj**. | |
99 | + | * `APP_Modify` → Add **Amul** and **Pankaj**. | |
100 | + | 3. Right-click shared folder → Properties → **Security tab**: | |
101 | + | ||
102 | + | * Add `APP_Read` with **Read** permissions. | |
103 | + | * Add `APP_Modify` with **Modify** permissions. | |
104 | + | 4. Open **FSRM** → Create **custom quota** on that folder → Limit: **100 MB**. | |
105 | + | ||
106 | + | --- | |
107 | + | ||
108 | + | Let me know if you want **PowerShell commands** or screenshots for any of these steps. |
Newer
Older