You are on page 1of 8

LOMBA KOMPETENSI SISWA

SEKOLAH MENENGAH KEJURUAN (SMK}

TINGKAT PROVINSI JAWA TENGAH


TAHUN 201.8

Semarang,

LKS SMK XXVil


Provinsi Jawa Tengah 2OI8

MODUL B WINDOWS ENVIRONMENT


i

BIDANG IT NETWORK S}'STEM ADMINISTRATION


INTRODUCTION
The competition has a fixed start and finish time. You must decide how to best divide
your time.

Please carefully read the following instructions!


When the competition tirne ends, please leave your station in a running state.

WORK TASK SER\rER WINSRV-BRI


Configure the server with the hostname, domain and IP specified in the appendix
1. Install/Configure
. Modify the default firewall rules to allow ICMP (ping) tratTic

2. DNS

'Configure DNS for semarang.net


. Create a reverse zone for the all networks

' create subdornain rds.semarang.net should point to the correct IP address to the

RemoteApp website.
. create subdomain wwv.sernarans.net should point to the correct IP address to the IIS

website.

3. Active Directory
. Create OUs named "pastijuara"
. Create the following AD groups:

- NETWORK
- MANAGER
- ADMIN
- VISITOR
. Create for every user a home drive in WINSRV-BR C:\shares\users
. Connect the horne drive automatically to drive U:

\\winsrv-br1. semarang. net\shares\users\YousernameTo


. Make

Usernarne/login Passrvord Group


networkl- network30 Pastijuara-2018 NETWORK
managerl - manager30 Pastijuara-2018 MANAGER

2lP;ge
adminl - admin30 Pasti-juara-2O 1 8

visitorl - visitor30 Pastijuara-2O18

4CA
. Install AD CS Services
. Configure Enterprise Root CA - Use default key length, hash, etc. if not specitied

' Name: SEMARANG Root CA


. Lifetime: l0 years
, Configure a template for all clients called "'Skills Semarang"
5. File Service '

- Create folder "share" on C:\


- Create folder "users, NETWORK, MANAGER, ADMIN" in folder "share"
- share Everyone folder "share" and "users"

- Share folder NETWORK for group NETWORK, folder MANAGER tor

group MANAGER, folder ADMIN for group ADMIN

6. GPO

- Create image with paint, like this image

3lFagr.:
- Make client always using rvallpapper '"Saya Peserta LKS Jateng 2018 Saya
Pasti Juara"
- Automatically Mapping folder NETWORK, MANAGER, ADMIN to DRIVE
Y for user client group

WORI( TASK SERVER WINSRV-BR2


Configure the server with the hostname, domain and IP specified in the appendix
l. Join Domain semarang.net
2. InstalVConfigu.e

'Modify the default Firewall rules to allow ICMP (ping) tratTic


3. Install IIS

' Configuration webserver http:/llvwrv.sernarang.net and https:l/ur.vw.semarang.net with


CA on WINSRV-BRI

woRr( TASK SERVER WTNSRV-HQI


Configure the server with the hostname, domain and IP specified in the appendir
t. Join Domain semarang.net
2" InstalUConfigure

'Modify the default Firewall rules to allow ICMP (ping) traffic


3. DNS
. Configuration DNS Slave semarang.net

4. DHCP Server
. Install and configure DHCP for the clients
. Mode: Load balance
. Partner Server: WINSRV-BRI
. State Switchover: 5 minutes

'Range vlan Client .10.2A.20.100 - 10.20.20.150

' Set the appropriate scope opfions for both DNS Servers anddefault gateway
5. VPN Server (RRAS)
. Setup and configure the VPN service (RRAS)

' use the following IP Range for the VPN Clients: 10.10.10. 120 - 10. 10. 10.130

4[Pag+
. Only users "networkl networklO" should be able to connect to the VPN
-
Server

6. DFS
. Create a Namespace with the name "dfs"
. Create DFS links lor the folder berbagi (NETWORK, MANAGER, ADMIN)
. Create DFS Replication to implement abackup of the department shares on WINSRV-

BRl. The share should be replicated like this:


- WINSRV-HQI : C.\berbagiWETWORK -> WINSRV-BRI :

C:\share\1.{ETWORK
- WINSRV-HQI: C:\berbagi \I\4ANAGER -> WINSRV-BRI : C:\share

\lv{ANAGER
- WINSRV-HQI : C:\berbagi\ADMIN -> WINSRV-BRI: C:\share\ADMIN

woRK TASK SERVER WTNSRV-rIQ2


Configure the server with the hostname, domain and IP specified in the appendix
l. Join Domain semarang.net
2. Remote Desktop Services
. Install Remote Desklop Services

' Add all server


. The RDS login page should be accessible by entering the url

https //rds. semarang. net/rdweb


:

. Publish Wordpad on the WINSRV-BR1


. Publish Calculator on the WINSRV-HQ1

WORK TASK ROUTER RTR-I


1. Change identity: RTR-I
2. Create vlan interface according to topology
3. Give the IP Address on the interface according to topology
4. Configure the Firewall so that WINCLT-2 cannot access 10.10.10.200 and 10.1 1.1 1.200
if not using a YPN
5. Configure DHCP Relay so that WINCLT-I gets the IP Address from the DHCP Server
WTNSRV-HQ1

5lilag*
WORK TASK SWITCH SW.I
' 1. Change hostname: SW-l
2. Create vlan 10, 20, 30
3. Turn on the trunk nrode srvitch for the interface that points to the RTR-I
4. Tum on the access mode switch to wINCLT-1, WINSRV-HQI, WINSRV-HQ2, WINSRV-
BRI, WINSRV-BR2
5. Use semarang.net for ip domain name and 2048 for encryption
6. Create the username "saya" and the encrypted password "bisa"
7. Create enable encrypted password "sayabisa"
8. Configure SSH, use local user and password
9. Configure an IP address on interface vlan 30 with 10.20.20.2A124

WORI( TASK SERI'BR WINCLT-I


Configure the client with the hostname, domain and IP specified in the appendix
1. Join domain semarang.net
2. Modify the default firewall to allow ICMP (ping) traffic
3. Use this client for all tests in the semarang.net domain
4. Use this client tor all tests in the GPO settings

WORK TASK SERVER WINCLT-2


Configure the client with the hostname, domain and IP speci{ied in the appendix
l. Modify the default firervall to allow ICMP (ping) traftic
2. Connect to VPN using external IP of RTR-I

Slilr6e
MODUL B _ WINDOWS, ROUTERBOARD & MANAGABLE SWITCH

Loslcal Vlew

r'r.. l i,-L .', illll j, S rlLr=tll


srtEed HDEIBne Y\rltlCLT-2
ilrret;j
.*,""- ,ffi
t'
eS :y'ilr 1C
,,, Ustr. Adnrnsi'sior
OS : 'ilin 1s F{.d:LK3Js1erE 29'10
l-Jse | . Adrnirist'stc,{ Sictem iJr{*on
Prd L(S-,aiei€F2X16 - VPtlClEn
Sistem furE!on - feitnq el2erffiI acars-.
- J.inOffi,lin to,#tsi:f,

f-1osE:6me
ffilsRv+{Q1
F ACiiGls
13 1C ii 1:i.:{

slst€m FsEton
- AciYe Si:6ct9ry i:e' ST. zyiEi
_ nFi rnt -r.3--iE:9-;a-:
- OHCP S:r';er - Aa r€ I eii'l
- DNS Sar*ei
V-9 A.r:ch
- RR "_i i'r.P:J -ierierj

'J,:ii'.ilali

i+ostrBme
wrttlsRv-Hoz

lP A.d&ess:
:010.10.200,?d

* "., €) '".

Logical View Modul B - Windows, Routerboard & Managable Switch

TlPage
Physicdl Vielrc
u6! m-l
Wtl.lDOI+S HSST[l,o,CHlt.lE rPrl 1 .'r?-]"r',', .r. .r. ,.
:;',' j!.iC,,",'. j H:,)-i IJ:l,1.lhll.]E iFr,:2,

b{rdqeC
llostrEme : rsEtCl
Hostruie t,lllI{CLT-2

lP
WHSRV.HQI

Adsrssr
i
I ere,: iti',
ig 1,1 l*.1!Ci2{ {-41.,::r:, -_ I -,.r,qd
.
Slitsm Fwl*ion: r-!a
^ie
1i,
-Adiw orfedory IJ5.i ACm,nsfalor
. BFS P,1t : L(SJai:rEi2C 13
- Ol'lCP Sen€r Sist€m fJruion.
- ONS Ser"Er - VFit; Ciiert
- frRAS &4rl.,l SrP{er} - lgstlnl e;:-+ru1 e€ass
to HebsJ:i
blrdged
{r,rn{E0i

Hostmme liiri.Br,: WINSRV-E!R'1


YUilSRV+|Q2

P Adffess :

i0 1 s.10 20fi&.r

SFte$ Frrr*iof}:
, Rernoie DesKop
Se&icis
bndg-d
turndl i i-,.,
'//
.)

I'i}slrulle l
lVlitCLT_i bridgeC
{,i,rn6eli i

5[f;'*3q
-
_-S-:]
''i3+a#
*,,i ,_
\
-t\-
={6 v
i5 ,ii..:c.:a1? R?
ffiH
'.F_Y+5.1t

OS'?Sn10 Use'rdnrtr:3a:or
ijser : Adciristrtcr Pxi r-KSJ11engf:3i5
Psd LK5..rate-gre0t$ ::.slern htr*on:
s'lstemifi1ton 1'-h -[t
^6--,o,
- Jen Dmeix

Physical View Modul B - Windows, Routerboard & Managable Switch

8[F*ge

You might also like