- Administer and manage Windows Server IaaS Virtual Machine remotely
After completing this module, you'll be able to:
- Select appropriate remote administration tools.
- Secure management connections to Azure IaaS VMs running Windows Server with Azure Bastion.
- Configure JIT VM access.
- Describe Windows Server administration tools
After completing this module, you'll be able to:
- Describe Windows Admin Center.
- Describe how to use Remote Server Administration Tools (RSAT) to manage servers.
- Describe Server Manager.
- Describe how to use Windows PowerShell to manage servers.
- Explain how to use Windows PowerShell to remotely administer a server.
- Streamline the administration of your Windows Server environments with Just Enough Administration (JEA). Limit privileged operations to a set of specified PowerShell cmdlets, parameters and variables, and limit which users can connect to JEA endpoints. Constrain the level of privilege those users have when performing administrative tasks.
After completing this module, you'll be able to:
- Explain the concept of Just Enough Administration (JEA)
- Define role group capabilities and session configurations for a JEA session
- Create and connect to a JEA endpoint
- Perform Windows Server secure administration
After completing this module, you'll be able to:
- Explain least privilege administrative models.
- Implement delegated privilege.
- Describe privileged access workstations.
- Describe jump servers.
- This module covers some useful advanced techniques that help overcome the limitations of basic Windows PowerShell remoting.
Upon completion of this module, the learner is able to:
Configure common remoting options.
Send parameters and local variables to remote computers.
Describe the use of Windows PowerShell scopes.
Send local variables to a remote computer.
Configure multi-hop remoting authentication.
- This module explains how to use remoting to perform administration on remote computers.
Upon completion of this module, the learner will be able to:
Describe the Windows PowerShell remoting architecture.
Explain the difference between Windows PowerShell remoting and other forms of remote administration.
Describe Windows PowerShell remoting security and privacy features.
Enable remoting on a computer.
Use Windows PowerShell remoting for single-computer management.
Use Windows PowerShell remoting for multiple-computer management.
Use Windows PowerShell remoting.
Explain the difference between local output and remoting output.
- Manage hybrid workloads with Azure Arc
After completing this module, you'll be able to:
- Describe Azure Arc.
- Explain how to onboard on-premises Windows Server instances in Azure Arc.
- Connect hybrid machines to Azure from the Azure portal.
- Use Azure Arc to manage devices.
- Restrict access using RBAC.
- You'll be able to enable Azure Update Management, deploy updates, review an update assessment, and manage updates for your Azure VMs.
After completing this module, you will be able to:
- Describe Azure updates.
- Enable Update Management.
- Deploy updates.
- Review an update assessment.
- Manage updates for your Azure VMs.
- Learn how to deploy Desired State Configuration (DSC) extensions, implement those extensions to remediate noncompliant servers, and use custom script extension.
After completing this module, you'll be able to:
- Describe Azure Automation.
- Implement Azure Automation with DSC.
- Remediate noncompliant servers.
- Describe custom script extension.
- Configure a VM by using DSC extensions.
- Audit and enforce OS security configuration on Azure virtual machines and Arc-enabled servers using Azure Machine Configuration. Apply built-in Windows and Linux security baseline policies, configure audit and enforce modes, and author custom machine configurations for organization-specific requirements.
After completing this module, you can:
- Explore how Azure Machine Configuration audits and enforces OS-level settings using Azure Policy
- Deploy the Azure Machine Configuration extension and configure required prerequisites
- Assign built-in Windows and Linux security baseline policies in audit and enforce modes
- Author and publish a custom machine configuration for organization-specific requirements
- Learn how to implement Azure Automation with DevOps using runbooks, webhooks, and PowerShell workflows. Understand automation accounts, shared resources, source control integration, and hybrid management for automated cloud operations.
By the end of this module, you're able to:
- Create and configure Azure Automation accounts for managing cloud resources.
- Implement and manage runbooks using PowerShell, PowerShell Workflow, Python, and graphical editors.
- Configure webhooks to trigger runbooks from external systems and services.
- Integrate Azure Automation with GitHub and Azure DevOps for version control and CI/CD.
- Create and execute PowerShell workflows with checkpoints and parallel processing.
- Plan and implement hybrid management using Azure Automation across cloud and on-premises resources.
Lead AI Strategy with UCSB's Agentic AI Program — Microsoft Certified
AI, Data Science & Cloud Certificates from Google, IBM & Meta
Overview
Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
Syllabus
- Administer and manage Windows Server IaaS Virtual Machine remotely
- Introduction
- Select the appropriate remote administration tool
- Manage Windows Virtual Machines with Azure Bastion
- Create an Azure Bastion host
- Configure just-in-time administration
- Module assessment
- Summary
- Describe Windows Server administration tools
- Introduction
- Explore Windows Admin Center
- Use Server Manager
- List Remote Server Administration Tools
- Use Windows PowerShell
- Use Windows PowerShell to remotely administer a server
- Module assessment
- Summary
- Just Enough Administration in Windows Server
- Introduction
- Explain the concept of Just Enough Administration (JEA)
- Define role capabilities for a JEA endpoint
- Create a session configuration file to register a JEA endpoint
- Describe how JEA endpoints work to limit access to a PowerShell session
- Create and connect to a JEA endpoint
- Demonstration: Connect to a JEA endpoint
- Module assessment
- Summary resources
- Perform Windows Server secure administration
- Introduction
- Define least privilege administration
- Implement delegated privileges
- Use privileged access workstations
- Use jump servers
- Module assessment
- Summary
- Use advanced Windows PowerShell remoting techniques
- Introduction
- Review common remoting techniques of Windows PowerShell
- Send parameters to remote computers in Windows PowerShell
- Set access protection to variables, aliases, and functions by using the scope modifier
- Enable multi-hop remoting in Windows PowerShell
- Module assessment
- Summary
- Manage single and multiple computers by using Windows PowerShell remoting
- Introduction
- Review the remoting feature of Windows PowerShell
- Compare remoting with remote connectivity
- Review the remoting security feature of Windows PowerShell
- Enable remoting by using Windows PowerShell
- Use one-to-one remoting by using Windows PowerShell
- Use one-to-many remoting by using Windows PowerShell
- Compare remoting output with local output
- Module assessment
- Summary
- Manage hybrid workloads with Azure Arc
- Introduction
- Describe Azure Arc
- Onboard Windows Server instances
- Connect hybrid machines to Azure from the Azure portal
- Use Azure Arc to manage Windows Server instances
- Restrict access with RBAC
- Module assessment
- Summary
- Manage Azure updates
- Introduction
- Describe update management
- Enable update management
- Deploy updates
- View update assessments
- Manage updates for your Azure Virtual Machines
- Module assessment
- Summary
- Automate the configuration of Windows Server IaaS Virtual Machines
- Introduction
- Describe Azure Automation
- Implement Azure Automation with DSC
- Remediate noncompliant servers
- Describe Custom Script Extensions
- Configure a Virtual Machine by using DSC
- Module assessment
- Summary
- Enforce VM security configuration with Azure Machine Configuration
- Introduction
- Explore Azure Machine Configuration extension capabilities and modes
- Apply built-in security baseline policies
- Author and assign custom machine configurations
- Knowledge check
- Summary
- Explore Azure Automation with DevOps
- Introduction
- Create automation accounts
- What is a runbook?
- Understand automation shared resources
- Explore runbook gallery
- Examine webhooks
- Explore source control integration
- Explore PowerShell workflows
- Create a workflow
- Explore hybrid management
- Examine checkpoint and parallel processing
- Module assessment
- Summary