calendar

Search

9/12/10

Upgrade to windows server 2008 from windows 2003

Require: your Operating is Raise Domain Function level and Forest Function level to 2003
             Your Server has  at least 512 Mb of RAM and ensure enough free space disk, recomended 40Gb or more
Note: Let's Backup your operating systems before upgrade to windows 2008

The first, insert DVD Instal Windows 2008 on CD/DVD drive; and then we need Run Adprep.exe from cmd. This updating the Active Directory Schema, prepare your Infrastructure, security scrips....:
Run CMD.exe and switch to DVD/CD-Rom : example D:
 
 Continue type cd sources go to sources and type cd adprep switch on adprep in sources
 
 At here we typing adprep /forestPrep , adprep warning require enter "c" to continue
If you plan to install a read-only domain controller (RODC), run adprep /rodcprep.

Type "c" and waiting .........to complete process
as shown
This step, we enter adprep /domainPrep to finished command line with adprep.exe
The end, go to Install Windows click Install Now complete upgrade windows server to 2008
 


Addition, you can readmore  at technet support
Stumble
Delicious
Technorati
Twitter
Facebook

9/11/10

Access Internal with VPN connect client to site

To day, I 'll create a connect client to site. This very simple:
We need DC, ISA server, clientvpn  and to set up IP address as shown:
Next step:create a new user: vpnclient and allow access VPN connect (Dial-in or VPN)
Create a Group VPN and add vpnclient in it;













Configure Firewall Policy to create new rule allow access External  to Internal
Start ISA manager to verify VPN properties and add Group VPN (on DC) to VPN clients.


Configure Address Assignment {100.100.100.0 - 100.100.100.255) and enable VPN clients access;
 Ultimately, on vpnclient create a connect VPN to VPN Server (ISA Server), at here IP reference = 192.168.1.201, type user vpn is clientvpn / password and connect successful to Internal resource on Domain vispro
Stumble
Delicious
Technorati
Twitter
Facebook

9/10/10

configure VPN site to site use isa 2006

Lab Isa 2006, configuration VPN Site – to – Site
Model(simplyfied):

F.1
The first, we need setup
Configure IP Address at lab machines as figure 1
Join server ISA-msviet to DCmsviet (msviet.com)
Join server ISA-vispro to Dcvispro (vispro.com)
Step 2:
At ISA-msviet create new user: vispro / password
At ISA-vispro create new user: msviet / password
At the moment, confer these user have allow access in Dial-in Tab
Step 3:
Install Isa 2006 standar to ISA-msviet and ISA-vispro
Configure ISA rule, the following figure:
 F.2

The IP range: 100.100.100.1 – 100.100.100.254 (customize) is virtual range IP which assigned automatic for clientvpn access to Internal (192.168.10.0/24)
To continue, select Remote sites Tab: create new connection

F.3


Note: site name = username which create at last step, here( ISA-mviet) sitename= vispro

Select Point-to-Point at next table.
In table Remote Site Gateways, enter the IP Address of Remote site VPN server that allow Internal connect out site, here we type 192.168.1.201 – interface WAN in ISA-vispro.
Click next, we to Remote Authentication tab, at that type user remote is created out site (vispro) – msviet / password
The part Network Address, specify IP range Internal on out site, at here we type 192.168.11.1 - 192.168.11.254
To continue, click next and select protocol (all outbound traffic), the end click finish.
Step 4:
Right mouse on Virtual Private Network and select properties, at tab access network we tick EXT, vispro as following figure:

F.4

Ok, we configure successful in ISA-msviet. Analog simulator, we’ll configuration on server ISA-vispro


Step 5: at both ISA server,
Start Routing and Remote access, ensure Network interface is connected

F.5


Note, in ISA2006, we must edit system policy on Firewall Policy ( both isa server)

F.6
Now, we can access resource from site msviet to site vispro. ^^
Stumble
Delicious
Technorati
Twitter
Facebook

8/9/10

mở đầu cái nak

^^

đây là bài đầu tiên của mình trên blog spot, tuy viết nhiều entry trên một số dịch vụ blog cá nhân khác nhưng mình cũng muốn thử xem spot có thú vị không, có lẽ với spot thì mình chỉ đề cập các entry về Networking mà thôi.
Công cụ chỉnh sửa của spot cũng khá lạ lẫm đây ^^ từ từ mình sẽ trải nghiệm xem sao
Stumble
Delicious
Technorati
Twitter
Facebook