Skip to content

This tutorial outlines the implementation of on-premises Active Directory within Azure Virtual Machines.

Notifications You must be signed in to change notification settings

gregjames1/Active-Directory

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

7 Commits
 
 

Repository files navigation

Microsoft Active Directory Logo

On-premises Active Directory Deployed in the Cloud (Azure)

This tutorial outlines the implementation of on-premises Active Directory within Azure Virtual Machines.

Environments and Technologies Used

  • Microsoft Azure (Virtual Machines/Compute)
  • Remote Desktop
  • Active Directory Domain Services
  • PowerShell

Operating Systems Used

  • Windows Server 2022
  • Windows 10 (21H2)

High-Level Deployment and Configuration Steps

  • Setup resources in Azure - Virtual Machines: Client-1 (Windows 10), DC-1 (Windows Server 2022)
  • Ensure connectivity between Client-1 and DC-1
  • Login to DC-1, install Active Directory Domain Services, and create two accounts (Admin and Normal User)
  • Join Client-1 to the domain
  • Configure Remote Desktop for Non-Administrative Users on Client-1
  • Create a number of users and log into Client-1 with the newly created user's credentials

Deployment and Configuration Steps

Screenshot 2023-08-07 at 11 30 39 PM Screenshot 2023-08-07 at 11 27 44 PM

Create DC-1 (Windows Server VM) in Azure and allow it to create a Resource Group, Virtual Network, and Subnet. Create Client-1 (Windows 10) and select the Resource Group that was created with DC-1 to ensure they share the same permissions, policies, and network.


Screenshot 2023-08-07 at 11 54 58 PM

Navigate to DC-1's Network page and select "IP Configurations." Set DC-1's private IP address to be static.


Screenshot 2023-08-08 at 12 49 25 AM Screenshot 2023-08-08 at 12 57 33 AM

Login to DC-1, open Windows Defender Firewall with Advanced Security, and enable ICMPv4 Echo Request. Once this is complete, login to Client-1 and ping DC-1 to verify connectivity between the two VMs.


Screenshot 2023-08-08 at 1 05 53 AM

Return to DC-1 and install Active Directory Domain Services.


Screenshot 2023-08-08 at 1 09 06 AM Screenshot 2023-08-08 at 1 28 14 AM

Promote the server as a Domain Controller, set up a new forest (assign a domain name - Ex: gjamesIT.com) then restart DC-1 and login to DC-1 with the newly configured domain credentials (Ex: gjamesIT.com\DC-User).


Screenshot 2023-08-08 at 1 39 59 AM Screenshot 2023-08-08 at 1 48 34 AM

Open Active Directory Users and Computers and create any Organizational Units needed as well as an Admin user.


Screenshot 2023-08-08 at 1 55 02 AM Screenshot 2023-08-08 at 2 00 43 AM

Add the newly created Admin account to the Domain Admins group. Log out / close the connection to DC-1 and log back in under the Admin account.


Screenshot 2023-08-08 at 2 15 14 AM

Return to the Azure portal and navigate to Client-1's Networking section. Select Client-1's NIC and change its DNS settings to DC-1's private IP address.


Screenshot 2023-08-08 at 2 26 43 AM Screenshot 2023-08-08 at 2 39 14 AM

Restart Client-1 in the Azure portal, return to Remote Desktop and login to Client-1 as the original local admin and join it to the domain. Client-1 will restart.


Screenshot 2023-08-08 at 2 44 56 AM

Verify that Client-1 successfully joined the domain by logging in with the Admin account created in DC-1. Check Client-1's DNS configuration by opening Command Prompt and entering "ipconfig /all".


Screenshot 2023-08-08 at 2 56 49 AM

Configure Remote Desktop for non-administrative users in System Settings on Client-1. In this example, we will allow all Domain Users access to Client-1.


Screenshot 2023-08-08 at 3 30 27 AM

Domain users can now be added into Active Directory. In this example, a PowerShell Script is used to generate random usernames and add them to the _EMPLOYEES group that was created Active Directory Users and Computers on DC-1.


Screenshot 2023-08-08 at 3 34 05 AM Screenshot 2023-08-08 at 3 34 40 AM

To verify that Active Directory was configured correctly, login to Client-1 with one of the newly generated Domain User accounts.


About

This tutorial outlines the implementation of on-premises Active Directory within Azure Virtual Machines.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published