Course details

Server 2016 - Identity: Active Directory Object Management

Server 2016 - Identity: Active Directory Object Management

Target Audience
Expected Duration
Lesson Objectives
Course Number
Expertise Level

In this course, you'll examine Active Directory object types and group management. You'll also learn about using service accounts and options for Active Directory authentication services. This course is part of a series preparing for the Identity with Windows Server 2016 (70-742) exam.

Target Audience
Individuals who will manage the planning, implementation, and configuration of Active Directory, including Group Policy, in Windows Server 2016 environments; Individuals preparing for the Microsoft Identity with Windows Server 2016 (70-742) exam


Expected Duration (hours)

Lesson Objectives

Server 2016 - Identity: Active Directory Object Management

  • start the course
  • configure group nesting
  • convert Active Directory groups, including security, distribution, universal, domain local, and domain global groups
  • manage group membership using Group Policy
  • enumerate group membership
  • automate group membership management using Windows PowerShell
  • delegate the creation and management of Active Directory groups and OUs
  • manage default Active Directory containers
  • create, copy, configure, and delete groups and OUs
  • create and configure Service Accounts
  • create and configure Group Managed Service Accounts (gMSAs)
  • configure Kerberos Constrained Delegation (KCD)
  • manage Service Principal Names (SPNs)
  • configure virtual accounts
  • configure domain and local user password policy settings
  • configure and apply Password Settings Objects (PSOs)
  • delegate password settings management
  • configure account lockout policy settings
  • configure Kerberos policy settings within Group Policy
  • identify the correct steps used to manage Active Directory objects
  • Course Number:

    Expertise Level