? Divided the company into 5 departments: IT, HR, Sales, Finance, and Development, each containing two users within their respective Active Directory groups.
? Configured Group Policy (GPO) to strictly control user access:
Limited logins to working hours only.
Restricted access to USB ports, Control Panel, Task Manager, Command Prompt, and file properties for all departments except the IT group.
? Configured Sharing and Security Permissions for all departmental shared folders to ensure proper access levels (Read/Write/Modify) and data isolation between departments.
? Created multiple partitions and mapped departmental drives (Map-Drives) with a 2GB quota per department, sending alerts at 1.5GB usage.
?️ Implemented File Screening (FSRM) to block unwanted or non-work-related file types.
? Enabled Shadow Copies for file recovery.
? Configured DHCP, DNS, and DHCP Failover for high availability.
? Configured DFS Replication between PDC and ADC to ensure data redundancy and synchronization between both servers.
?️ Configured five printers, one for each department, with color printing restrictions.
? Deployed Windows installation via WDS, automatically joining new clients to the domain.
? Enabled RSAT tools on IT devices to remotely manage ADDS and GPO.
? Implemented WSUS for centralized Windows updates.
? Configured RDC access via GPO for IT group members.
? Automated hourly backups during business hours to a dedicated partition on the ADC server (BM-Backup-PDC).