- Learn how to remotely administer Windows Server IaaS VMs in Azure using the Azure portal, Windows Admin Center, Azure PowerShell, Azure CLI, Azure Bastion for secure RDP/SSH, and Just-In-Time (JIT) VM access.
After completing this module, you'll be able to:
- Select appropriate remote administration tools.
- Secure management connections to Azure IaaS VMs running Windows Server with Azure Bastion.
- Configure JIT VM access.
- Learn how to select and use Windows Server administration tools including Windows Admin Center, Server Manager, Remote Server Administration Tools (RSAT), and Windows PowerShell remoting for local and remote server management.
After completing this module, you'll be able to:
- Describe Windows Admin Center.
- Describe how to use Remote Server Administration Tools (RSAT) to manage servers.
- Describe Server Manager.
- Describe how to use Windows PowerShell to manage servers.
- Explain how to use Windows PowerShell to remotely administer a server.
- Learn how to configure Just Enough Administration (JEA) in Windows Server to restrict PowerShell remoting sessions to specific cmdlets, parameters, and values using role capability files and session configuration files.
After completing this module, you'll be able to:
- Explain the concept of Just Enough Administration (JEA)
- Define role group capabilities and session configurations for a JEA session
- Create and connect to a JEA endpoint
- Learn how to apply the principle of least privilege, delegate administrative control in Active Directory, implement Privileged Access Workstations (PAWs) with Windows Defender security features, and configure jump servers for secure remote administration.
After completing this module, you'll be able to:
- Explain least privilege administrative models.
- Implement delegated privilege.
- Describe privileged access workstations.
- Describe jump servers.
- This module covers some useful advanced techniques that help overcome the limitations of basic Windows PowerShell remoting.
Upon completion of this module, the learner is able to:
Configure common remoting options.
Send parameters and local variables to remote computers.
Describe the use of Windows PowerShell scopes.
Send local variables to a remote computer.
Configure multi-hop remoting authentication.
- This module explains how to use remoting to perform administration on remote computers.
Upon completion of this module, the learner will be able to:
Describe the Windows PowerShell remoting architecture.
Explain the difference between Windows PowerShell remoting and other forms of remote administration.
Describe Windows PowerShell remoting security and privacy features.
Enable remoting on a computer.
Use Windows PowerShell remoting for single-computer management.
Use Windows PowerShell remoting for multiple-computer management.
Use Windows PowerShell remoting.
Explain the difference between local output and remoting output.
- Learn how to use Azure Arc to manage hybrid workloads by onboarding on-premises Windows Server and Linux machines, deploying extensions, applying Azure Policy guest configuration, and restricting access with RBAC.
After completing this module, you'll be able to:
- Describe Azure Arc.
- Explain how to onboard on-premises Windows Server instances in Azure Arc.
- Connect hybrid machines to Azure from the Azure portal.
- Use Azure Arc to manage devices.
- Restrict access using RBAC.
- Learn how to assess and deploy updates to Azure virtual machines and Azure Arc-enabled servers by using Azure Update Manager.
After completing this module, you can:
- Describe Azure Update Manager.
- Prepare Azure virtual machines and Azure Arc-enabled servers for update management.
- Assess update compliance.
- Deploy one-time and recurring updates.
- Monitor update operations across multiple machines.
- Learn how to deploy Desired State Configuration (DSC) extensions, implement those extensions to remediate noncompliant servers, and use custom script extension.
After completing this module, you'll be able to:
- Describe Azure Automation.
- Implement Azure Automation with DSC.
- Remediate noncompliant servers.
- Describe custom script extension.
- Configure a VM by using DSC extensions.
- Audit and enforce OS security configuration on Azure virtual machines and Arc-enabled servers using Azure Machine Configuration. Apply built-in Windows and Linux security baseline policies, configure audit and enforce modes, and author custom machine configurations for organization-specific requirements.
After completing this module, you can:
- Explore how Azure Machine Configuration audits and enforces OS-level settings using Azure Policy
- Deploy the Azure Machine Configuration extension and configure required prerequisites
- Assign built-in Windows and Linux security baseline policies in audit and enforce modes
- Author and publish a custom machine configuration for organization-specific requirements
- Learn how to implement Azure Automation with DevOps using runbooks, webhooks, and PowerShell workflows. Understand automation accounts, shared resources, source control integration, and hybrid management for automated cloud operations.
By the end of this module, you're able to:
- Create and configure Azure Automation accounts for managing cloud resources.
- Implement and manage runbooks using PowerShell, PowerShell Workflow, Python, and graphical editors.
- Configure webhooks to trigger runbooks from external systems and services.
- Integrate Azure Automation with GitHub and Azure DevOps for version control and CI/CD.
- Create and execute PowerShell workflows with checkpoints and parallel processing.
- Plan and implement hybrid management using Azure Automation across cloud and on-premises resources.
PowerBI Data Analyst - Create visualizations and dashboards from scratch
AI, Data Science & Cloud Certificates from Google, IBM & Meta
Overview
Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Syllabus
- Administer and manage Windows Server IaaS Virtual Machine remotely
- Introduction
- Select the appropriate remote administration tool
- Manage Windows Virtual Machines with Azure Bastion
- Create an Azure Bastion host
- Configure just-in-time administration
- Module assessment
- Summary
- Describe Windows Server administration tools
- Introduction
- Explore Windows Admin Center
- Use Server Manager
- List Remote Server Administration Tools
- Use Windows PowerShell
- Use Windows PowerShell to remotely administer a server
- Module assessment
- Summary
- Just Enough Administration in Windows Server
- Introduction
- Explain the concept of Just Enough Administration (JEA)
- Define role capabilities for a JEA endpoint
- Create a session configuration file to register a JEA endpoint
- Describe how JEA endpoints work to limit access to a PowerShell session
- Create and connect to a JEA endpoint
- Demonstration: Connect to a JEA endpoint
- Module assessment
- Summary resources
- Perform Windows Server secure administration
- Introduction
- Define least privilege administration
- Implement delegated privileges
- Use privileged access workstations
- Use jump servers
- Module assessment
- Summary
- Use advanced Windows PowerShell remoting techniques
- Introduction
- Review common remoting techniques of Windows PowerShell
- Send parameters to remote computers in Windows PowerShell
- Set access protection to variables, aliases, and functions by using the scope modifier
- Enable multi-hop remoting in Windows PowerShell
- Module assessment
- Summary
- Manage single and multiple computers by using Windows PowerShell remoting
- Introduction
- Review the remoting feature of Windows PowerShell
- Compare remoting with remote connectivity
- Review the remoting security feature of Windows PowerShell
- Enable remoting by using Windows PowerShell
- Use one-to-one remoting by using Windows PowerShell
- Use one-to-many remoting by using Windows PowerShell
- Compare remoting output with local output
- Module assessment
- Summary
- Manage hybrid workloads with Azure Arc
- Introduction
- Describe Azure Arc
- Onboard Windows Server instances
- Connect hybrid machines to Azure from the Azure portal
- Use Azure Arc to manage Windows Server instances
- Restrict access with RBAC
- Module assessment
- Summary
- Manage Azure updates
- Introduction
- Describe Azure Update Manager
- Prepare machines for Azure Update Manager
- Deploy updates
- Assess updates
- Manage updates at scale
- Module assessment
- Summary
- Automate the configuration of Windows Server IaaS Virtual Machines
- Introduction
- Describe Azure Automation
- Implement Azure Automation with DSC
- Remediate noncompliant servers
- Describe Custom Script Extensions
- Configure a Virtual Machine by using DSC
- Module assessment
- Summary
- Enforce VM security configuration with Azure Machine Configuration
- Introduction
- Explore Azure Machine Configuration extension capabilities and modes
- Apply built-in security baseline policies
- Author and assign custom machine configurations
- Knowledge check
- Summary
- Explore Azure Automation with DevOps
- Introduction
- Create automation accounts
- What is a runbook?
- Understand automation shared resources
- Explore runbook gallery
- Examine webhooks
- Explore source control integration
- Explore PowerShell workflows
- Create a workflow
- Explore hybrid management
- Examine checkpoint and parallel processing
- Module assessment
- Summary