Designing and Managing a Windows Public Key Infrastructure
Unfiled
This four-day instructor-led course provides students with the knowledge and skills to design deploy and manage a public key infrastructure (PKI) to support applications that require distributed security. Students get hands-on experience implementing solutions to secure PKI-enabled applications and services such as Microsoft Internet Explorer Microsoft Exchange Server Microsoft Internet Information Server Microsoft Outlook and remote access services.
|
|
||||||||||
Program Outline
Module 1: Overview of Public Key Infrastructure
This module explains the basic concepts of a public key infrastructure (PKI) and its components. It also provides an overview of the topics that will be explained in-depth in the course.
Lessons
Lab A: Identifying Trusted Root CAs
After completing this module students will be able to:
Module 2: Designing a Certification Authority Hierarchy
This module introduces students to designing a CA hierarchy. It explains the major tasks that are involved including identifying business and legal requirements and planning a Certification Authority (CA) hierarchy structure.
Lessons
Lab A: Designing a CA Hierarchy
After completing this module students will be able to:
Module 3: Creating a Certification Authority Hierarchy
This module explains how to create a CA hierarchy based on a CA hierarchy design. Students also learn how to install Certificate Services validate a certificate and publish a certificate revocation list (CRL) and an Authority Information Access (AIA).
Lessons
Lab A: Installing an Offline CA
Lab B: Publishing CRLs and AIAs
Lab C: Implementing a Subordinate Enterprise CA
After completing this module students will be able to:
Module 4: Managing a Public Key Infrastructure
This module explains how to manage a PKI by managing certificates and CAs. Students also learn how to recover a PKI in the event of a failure.
Lessons
Lab A: Enabling Role Separation
Lab B: Backing Up and Restoring a Certification Authority
After completing this module students will be able to:
Module 5: Configuring Certificate Templates
This module introduces students to certificate templates and how to design them. Students also learn about creating publishing and changing certificate templates.
Lessons
Lab A: Delegating Certificate Template Management
Lab B: Designing a Certificate Template
Lab C: Configuring Certificate Templates
After completing this module students will be able to:
Module 6: Configuring Certificate Enrollment
In this module students learn about the various methods of enrolling certificates. Students can either process the certificate requests manually or automatically depending upon the approval requirement from the certificate manager.
Lessons
Lab A: Enrolling Certificates
After completing this module students will be able to:
Module 7: Configuring Key Archival and Recovery
This module describes the importance of creating a strategy for data and key recovery and explains the key archival and recovery process. Students also learn how Windows XP and Windows Server 2003 enhance data protection and data recovery.
Lessons
Lab A: Configuring Key Recovery
After completing this module students will be able to:
Module 8: Configuring Trust Between Organizations
Students learn how to extend an organization s PKI trust hierarchy to other organizations. By extending the trust hierarchy an organization s certificates can be used and trusted across organizations for purposes like secure e-mail messages client authentication and server authentication.
Lessons
Lab A: Implementing a Bridge CA
After completing this module students will be able to:
Module 9: Deploying Smart Cards
In this module students learn how smart cards provide secure storage for data and also support authentication of users. Students also learn how to configure and deploy smart cards in a Windows Server 2003 PKI environment.
Lessons
Lab A: Deploying Smart Cards
After completing this module students will be able to:
Module 10: Securing Web Traffic by Using SSL
This module explains how to secure a Web environment by implementing SSL security and certificate-based authentication for Web applications.
Lessons
Lab A: Deploying SSL Encryption at a Web Server
After completing this module students will be able to:
Module 11: Configuring E-mail Security
In this module students learn how to implement secure e-mail messages in an Exchange 2003 environment.
Lessons
Lab A: Securing E-mail Messages in Exchange Server 2003
After completing this module students will be able to:
Related Exams
This course will help the student prepare for the following Microsoft Certified Professional exams:
Student Pre-Requisites
Before attending this course students must have:
Student Materials
The student kit includes a comprehensive workbook and other necessary materials for this class.
Program Goals
After completing this course students will be able to:
