Anda di halaman 1dari 1

Create a TXT type of record to create a sender policy framework (SPF) record for emails servers on your network.

From DNS Manager, update Server data Files (most up-to-date records for the zone ) dnscmd /Zonerefresh on DNS member srv (or dnscmd /ZoneUpdatefromDs) Create a custom view from Event Viewer and attach a task to the custom view (to minimize the number of email notifications, for DNS logs) Analytic event logs aren't enable by default, modify the General properties of I IS logs. Update Source and Proxy Servet for WSUS to conf as replica of the upstream serve r. SDDL > grant view permission to Security Log wsusutil /reset > recheck metadata and download again corupted fixes, ussualy af ter a restore of WSUS SPF record for email servers on your domains. dsfutil root adddom \\server\namespace v2 (create namespace with the same name, using W2008 server mode) If your DirrectAccess server is acting as NLS, you must install IIS server role with Ip and Domain restrictions role svc. ( A network location server installed on the internal network is used to determine whether a DirectAccess client is co nnected to the internal network. When a DirectAccess client connects to a networ k, it attempts to access the specified HTTPS based URL on a network location ser ver. If the connection to the HTTPS based URL is successful, the DirectAccess cl ient determines that it is on the internal network, and DirectAccess functionali ty is not used. If the network location server is unavailable, and the DirectAcc ess client is connected to the internal network, DirectAccess functionality is e nabled for the client.) IPv6 multicast link local FF00::/8 IPv6 unicast unique local FD00::/8 net nap client show state - show healt agent status of a client comp witch has N AP policies deployed dnscmd /config /EnableIPv6 1 DNSEC secures using IPsec RRAS uses NPS (Radius) Add the computer acc to RAS and IAS Servers group to be able to authenticate use rs from AD by using Windows authentication DTS (newest, XML type) compliant log for NPS has session duration attributes. transparent caching sustains working offline BITS Peerchaching reduces the WAN traffic when downloading updates from WSUS dnscmd /RecordDelete 10.in-addr.arpa 127.2.3 PTR DNSSEC support: create a SIG and a KEY record, enable IPSec A stub DNS zone is minimizing the wan traffic SOA record is used to send inquiries to dnsadmin@contoso.com firewall support for NPS: UDP 1812, 1813, 1645 si 1646 Modify GlobalQueryBlockList registry key and restart DNS svc to config your DNS srv to support DirectAccess (dnscmd /config /glbalqueryblocklist wpad) What is NAP ? Open Print Management. Disable Log spooler information event from from propertie s of Printer1 AP 802.1x authentication support wireless connections. VPN support: IPSec uses UDP 500 port, PPTP uses UDP 1723

Anda mungkin juga menyukai