Learn Active Directory from the fundamentals to production-grade administration: prerequisites & environment setup, history & background, architecture & logical structure, physical structure, DNS integration, installing Active Directory Domain Services, additional domain controllers, users and computers, PowerShell for Active Directory, group policy fundamentals, common group policy settings, fine-grained password policies, security best practices, Kerberos authentication, NTLM authentication, access control & permissions, replication, backup & recovery, AD Certificate Services, read-only domain controllers, hybrid identity with Azure AD Connect, troubleshooting tools, common issues, security monitoring, performance tuning, migration, disaster recovery, AD at scale, compliance & auditing, modern authentication & passwordless, through the production checklist & the future of AD — 31 episodes in total.
Preparing the skills and lab environment before building your first domain controller: Windows Server administration basics, DNS and networking, PowerShell, software and hardware specifications, virtual lab planning, and choosing a domain name.

Tracing the evolution of Windows networking from Windows NT domains to modern Active Directory and Azure AD, and understanding the problems Active Directory solves: centralized identity, single sign-on, security policies, and large-scale enterprise management.

Breaking down Active Directory's logical structure: forest, domain tree, domain, organizational unit, object, and trust relationships, plus the role of the schema, global catalog, and FSMO roles in shaping the security and administration boundaries of directory services.

Understanding Active Directory's physical structure: sites, subnets, and site links that govern domain controller placement and replication, including the role of the KCC, site link costs, and domain controller placement strategies across geographically dispersed networks.

Covering DNS's critical role in Active Directory: AD-integrated zones, the _msdcs zone, SRV records, the DC locator, conditional forwarders, and DNS troubleshooting steps with nslookup and dcdiag.

Running an Active Directory Domain Services installation from prerequisites to promoting the first domain controller, covering role installation via PowerShell, Install-ADDSForest, the old vs new DCPromo, and verification with dcdiag and ntdsutil.

Adding a second or additional domain controllers for fault tolerance, load distribution, and fast recovery. Covering AD DS role installation, additional DC promotion, the global catalog, verification with dcdiag and repadmin, and clean demotion.

Managing directory objects through the Active Directory Users and Computers console: creating users, understanding account properties, logon hours, and user account control flags, distinguishing security and distribution groups, and designing a clean Organizational Unit structure.

Automating Active Directory administration with PowerShell: the ActiveDirectory module, Get-ADUser and Set-ADUser, filter-based searching, account status management, domain controller discovery, and creating hundreds of users at once from a CSV file.

The foundations of Group Policy: anatomy of a Group Policy Object, the difference between gpedit and GPMC, LSDOU processing order, inheritance and blocking, link order, security filtering and WMI filters, and reading results with gpresult.
