Beruflich Dokumente
Kultur Dokumente
Gordon Pont
13 April 2017
Executive Summary
where we will be able to host network resources for businesses. This is a service that
will particularly benefit small companies that are unable to justify paying thousands
of dollars to configure their own datacenter. Whether it be one server to host a web
site or hosting all network services for the client, we will have the flexibility to work
more efficiently utilize the hardware resources we have. Initially, we will start with a
cluster of three machines for our first client. However, as time goes on, we will need
VMWare
vCenter
vSphere
Our first client is a small company of around 250 employees. They have asked
1 Web Server
1 File/Print Server
Backup Services
1 Network Switch
2 Monitors
4 display cables
5 power cables
5 Ethernet Cables
2 keyboard/mouse sets
Cent OS 7
VMWare/ESXI/vSphere
Project Schedule
ESXi/vSphere/vCenter
2 Create Virtual Machine on Personal February 2, 2017
tests.
5 - Automate User creation and expand to 250 March 2, 2017
employees
6 Install web server/print server/file server March 23, 2017
set up. Each department will have their own secure folders to store project files in,
the systems will be secure through group policy and there will be a web server that
ESXi
vCenter
If you have more than a couple of ESXi hosts, it can be hard to manage each
host one by one. vCenter takes ESXi to the next level, with vCenter, you can cluster
several machines together and allow them to share resources such as storage and
memory. Using vCenter, you have the ability to manage all of your ESXi hosts from
one place.
vSphere
vSphere is an application you install your machine that allow you to manage
ESXi hosts or a vCenter Cluster. Without vSphere, your ESXi hosts are going to be
useless. The great thing about vSphere is that you can access it from anywhere within
the network. You dont have to be in the server room to manage the cluster.
Windows is the core of this business network. Using Windows Server 2012 R2
and Windows Server 2016, I will be building a network that provides services such as a
print server, file server and security through Group Policy. Client computers are
CENTOS 7
level servers. In our case, we will be using CENTOS to set up a LAMP Web Server.
5.0
Milestone Overview
The first step in the project was to set up the physical machines and connect
them together with a switch. I had to reset the network switch to defaults to
overwrite any VLANs that existed previously. Once everything was set up, I installed
Windows Server 2012 R2 on one machine and ESXi on the other three physical
machines.
needed to use vSphere to access each machine individually and manage them until I
[ESXi Image]
I created the domain, Capstone.com to serve as my base domain for vCenter.
Once I had set up the domain on the physical Windows Server 2012 machine, I used
vSphere to create another Windows Server 2012 machine to host vCenter. The biggest
problem I ran into while installing vCenter was setting up the virtual machine with the
correct hardware to meet the requirements for vCenter. The minimum requirement
was at least 8 GB dedicated for the server hosting vCenter. I decided to upgrade each
host to 12 GB of physical memory. In doing so, I was able to assign enough memory to
[vCenter Image]
Once I had vCenter configured, all I had to do was add the 3 ESXi hosts by IP
workstation onto a vCenter cluster. I created and configured my LAMP server at home
using VMWare. When the server was built and ready to be added to the domain, I
brought my laptop to the school and used the Upload feature of VMWare to upload
the machine to one of my ESXi hosts. However, I ran into a problem here. I have
vCenter I was using is only compatible with machines created in VMWare workstation
and fill out the correct information and my virtual machine was uploaded to an ESXi
host.
Milestone 3: Install Operating Systems and roles and features that will
be needed
Blue Nebula Studios has requested that we configure a network that will allow
them to be able to have a secure environment, authenticate and print centrally and
host a web page. I installed the following features in Windows Server 2012 R2 and
o Active Directory Domain Services is the Role that allows you to create
o AD RMS is a role that allows you to set templates and secure documents
and users in the domain. I was only able to get this 75% functional as it
o Using this feature, I was able to set up NFS shares for each team
those who need it. The shares are backed up using Volume Shadow
and System Reserved. You can also configure Volume Shadow Copies
o DNS is required for a fully functional domain. DNS is the service that
versa. Without DNS, the computers would not be able to talk to each
other, thus rendering the whole network useless. For extra security, I
DNSSEC signs your DNS records and helps protect against attacks such as
DNS spoofing.
Getting security tests to pass was one of the more difficult things to
accomplish. I was able to get everything to pass except for the installation of one
Important Windows Update. I am confident that it was because not all of my Windows
Through Group Policy, you are able to limit the number of attempts a user has before
their account is locked and they need to contact an administrator. You can also set
auditing policies to keep track of changes that are made on your systems. Below are
Password requirement
o Passwords remembered - 24
password
Audit Policies
Security Settings
Nebula Studios
Days
workstation: Enabled
Disabled
elevation: Enabled
There are many other things you can do with group policy, for example, you
can force a default home page for every user. I was very excited to delve
deeper into how Group Policy can be implemented. A great thing I was able to
set up was login scripts to map a particular network drive when they log in.
This is a very widely used feature that you can easily implement with Group
Policy. The biggest issue I came across while implementing Group Policy was
navigate if you arent sure what you are looking for. I spent the time to go
through each option and remember where they are located and what each item
for our client. Each of these services will allow users to have access to
I have created an NFS file share for each department to store their
project files. I have also created file shares for server backups and IT
admin files.
I was able to set up the print server itself and have been able to get
have not been able to get it to recognize a printer that is attached to the
network switch. The problem I kept running into is that I was unable to
find the network printer even though it was connected to the switch. I
The printer I was using did not have a way to look up the IP address on
the printer itself, so I was unable to try and map it that way.
Making the web server was probably one of my favorite parts of this
Apache, MySQL and PHP or LAMP. Once you have installed these
components, you can use open source software such as Joomla to create
and design your web page. However, I used the website of the business I
6.0 Conclusion