Course description
This course covers auditing and threat analytics. It will talk about auditing events and using group policy, dynamic auditing, virtualization infrastructure, guarded fabric and shielded virtual machines. It will then cover deploying security baselines, host guardian service, nano server and server roles.
Prerequisites
This is part 3 of the course
Learning Paths
This course will help you prepare for the following certification and exam:
MCSA: Windows Server 2016
70-744: Securing Windows Server 2016
This course is part of the following LearnNowOnline SuccessPaths™:
Windows Server 2016
Meet the expert
Patrick Loner has certifications for MCSA, MCSE, MCITP, A+, Network+, Security+, and more. He has been working as a Microsoft Certified Trainer, network administrator, and network consultant for over ten years. He has over a decade of experience working with and teaching about Windows networks with client and server operating systems. He has guided many students toward Microsoft and CompTIA certifications. Most recently, he has worked as a freelance trainer and network consultant specializing in Windows Server 2008 and Microsoft Exchange 2007 and Exchange 2010 implementations, design, and upgrades. Patrick continues to branch out now working with and training on Windows Server 2012, Windows 8, Exchange 2013, and System Center Configuration Manager 2012.
Course outline
Auditing Windows Server 2016
Auditing (21:24)
- Introduction (00:17)
- Overview of Auditing (01:50)
- The Purpose of Auditing (01:29)
- Types of Events (04:49)
- Auditing Goals (00:56)
- Auditing File and Object Access (01:52)
- Demo: Define Audit Policies (05:11)
- Demo: Event Log Settings (04:51)
- Summary (00:06)
Advanced Auditing (41:39)
- Introduction (00:40)
- Advanced Auditing (01:11)
- Advanced Auditing Subcategories (02:40)
- Dynamic Auditing (02:38)
- Event Log Subscriptions (02:27)
- Audit Collection Services (02:01)
- Demo: Event Forwarding (04:45)
- Demo: Events (02:13)
- Auditing with Windows PowerShell (01:58)
- Demo: Auditing with PowerShell (03:49)
- Demo: Event Logs in PowerShell (04:10)
- Transaction Logging (02:02)
- Module Logging (01:06)
- Script Block Logging (00:50)
- Demo: Get Logging Modules (03:00)
- Demo: Logging (05:56)
- Summary (00:06)
Analytics and Baselines
Advanced Threat Analytics (15:11)
- Introduction (00:09)
- Overview of ATA (02:35)
- Usage Scenarios (05:08)
- Deployment Requirements (02:14)
- ATA Gateways (02:02)
- Port Mirroring (01:17)
- Configuring ATA Center (01:37)
- Summary (00:06)
Operations Management (07:06)
- Introduction (00:07)
- Introduction to Operations Management Suite (00:54)
- Deployment Overview (01:39)
- OMS Solutions (01:33)
- Installing OMS (01:26)
- OMS Solutions Continued (01:19)
- Summary (00:06)
Virtualization Infrastructure (15:14)
- Introduction (00:29)
- Introduction to Guarded Fabric (03:16)
- Host Guardian Service (01:31)
- Preparing HGS Nodes (01:20)
- Installing and Configuring HGS (02:10)
- Attestation and Encryption (01:35)
- Attestation Methods (01:22)
- Initializing HGS (01:59)
- Configuring HSG Clients (01:23)
- Summary (00:06)
Security Baselines (20:13)
- Introduction (00:07)
- Security Compliance Manager (03:33)
- SCM Requirements (01:21)
- Demo: Install SCM (03:11)
- Demo: Import GPOs (04:28)
- Demo: Configuring a Baseline (03:22)
- Demo: Deploy a Baseline (04:01)
- Summary (00:06)
Deploy Nano Server (07:11)
- Introduction (00:14)
- Planning for Nano Server (01:06)
- Understanding Nano Server Roles (00:45)
- Installing Nano Server Roles (02:06)
- Nano Server Installation (01:00)
- Installation Steps (01:52)
- Summary (00:06)