(C) 2012 Dean Suzuki, All Rights Reserved 1 Dean Suzuki Blog Title: Deploying AD into Windows Azure with No Corporate Connectivity Created: 6/2/2014 Description: In this blog post, I record the process that I went through to build an Active Directory (AD) environment in Microsoft Azure. There are multiple scenarios for deploying AD in Azure. In this scenario, I will document the scenario with no connectivity back to the corporate network. It is basically a stand-alone AD forest in Azure. In the future blog post, we will work through the other scenarios. Please refer to the article (http://msdn.microsoft.com/en-us/library/azure/jj156090.aspx) for a description of the other scenarios. DC1 Int: 10.0.0.10 Microsoft Azure References: http://msdn.microsoft.com/en-us/library/azure/jj156090.aspx ; Guidelines for Deploying Windows Server Active Directory on Azure Virtual Machines http://msdn.microsoft.com/en-us/library/dn631643.aspx ; Configure a Cloud-Only Virtual Network in the Management Portal http://azure.microsoft.com/en-us/documentation/articles/active-directory-new-forest-virtual- machine/ ; Install a new Active Directory forest on an Azure virtual network Disclaimer: Contents of this blog and article represent the opinions of Dean Suzuki, and do not reflect the views of my employer. (C) 2012 Dean Suzuki, All Rights Reserved
22
Embed
Dean Suzuki Blog Title: Deploying AD into Windows Azure ... · 02/06/2014 · ... Deploying AD into Windows Azure with No Corporate Connectivity ... Guidelines for Deploying Windows
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
(C) 2012 Dean Suzuki, All Rights Reserved 1
Dean Suzuki Blog
Title: Deploying AD into Windows Azure with No Corporate Connectivity
Created: 6/2/2014
Description:
In this blog post, I record the process that I went through to build an Active Directory (AD) environment
in Microsoft Azure. There are multiple scenarios for deploying AD in Azure. In this scenario, I will
document the scenario with no connectivity back to the corporate network. It is basically a stand-alone
AD forest in Azure. In the future blog post, we will work through the other scenarios. Please refer to
the article (http://msdn.microsoft.com/en-us/library/azure/jj156090.aspx) for a description of the other
scenarios.
DC1Int: 10.0.0.10
Microsoft Azure
References:
http://msdn.microsoft.com/en-us/library/azure/jj156090.aspx ; Guidelines for Deploying
Windows Server Active Directory on Azure Virtual Machines
http://msdn.microsoft.com/en-us/library/dn631643.aspx ; Configure a Cloud-Only Virtual
Table of Contents 1 Create the Azure Virtual Network......................................................................................................... 3
1.1 Creating a Cloud-Only Network .................................................................................................... 3
2 Install Active Directory in Azure ............................................................................................................ 4
2.1 Create the VM to Host the Domain Controller ............................................................................. 5
2.2 Set Static IP Address for VM ......................................................................................................... 7
2.2.1 Download and Install Powershell for Azure .......................................................................... 7
2.2.2 Connect to your Azure subscription. .................................................................................... 8
2.2.3 Verify that Static IP Address is Available ............................................................................... 9
2.2.4 Update VM with Static IP Address ........................................................................................ 9
2.3 Add a Data Disk to VM for AD Database ..................................................................................... 10
2.4 Install Active Directory ................................................................................................................ 12
2.4.1 Install Active Directory Domain Services Role (AD DS) ....................................................... 12
2.4.2 Promote the machine to a domain controller .................................................................... 16
2.5 DNS Configuration ....................................................................................................................... 20
2.6 Configure the DNS Server on the Azure Virtual Network ........................................................... 21
(C) 2012 Dean Suzuki, All Rights Reserved 3
1 Create the Azure Virtual Network You have a couple options when creating an Azure Virtual Network. They are:
Create a Cloud-Only Network that will only exist in Azure
Create a network that will be connected through VPN with your on-premise corporate network.
1.1 Creating a Cloud-Only Network This section describes how to create a cloud-only network (not connected to corporate note).
NOTE: Its important to create the Azure Virtual Network before creating the virtual machine, because
you can’t go back and put a VM in a virtual network after you’ve created the VM.
See http://msdn.microsoft.com/en-us/library/dn631643.aspx
1. Log in to the Windows Azure Management Portal (manage.windowsazure.com)
2. In the lower left-hand corner of the screen, click New. In the navigation pane, click Networks, and
then click Virtual Network. Click Custom Create to begin the configuration wizard.
3. On the Virtual Network Details page, enter a name for the network: