Azure - WVD Zero to Hero !!!

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
[Music] [Applause] good morning good afternoon and good evening everyone to the channel it is simplified hope you're having a good time with your family and friends and liking these sessions the topic for today's video is wbd zero to hero the idea behind today's session is that under one video you'll be able to see all the different steps which are involved to make the service up and running and also test it out how it will look from the user perspective when they're trying to access these resources deployed within wvd environment now i have taken different sessions on wbd in which i have uh broken these uh steps but uh what i want to showcase today is that within one video you have all these steps and you can go through this within one session so that it's easy for you and all the steps which are there from step one to five are all listed and that is what we're going to follow the flow and this is going to be our architecture i've kept it specifically simple everything will be deployed within one virtual network and the subnet which is dcvnet and dc subnet and i will divide my resources within three resource groups starting with domain services hostful and storage account the domain i'm going to use this is a free domain or our trial account that i'm using within azure which is customer1505 outlook and my apologies for the name but whatever free option was available i'm taking this and i'm going to keep and i'm going to pause certain steps uh so that you don't want to make want to make sure that the video doesn't get very long but at the same time you're also able to understand what are the steps involved in order to implement this on the azure site so with this in place let's go to our azure portal and what we're going to do is starting with the step one which is to deploy the domain services and for that we're gonna go and select our virtual machine i'm going to go and click add starting with creating a new resource group and this we have done this multiple times so i'm just gonna make it quick mm-hmm so i'm going to review and create and then we'll enable the domain services role on this machine so let's go and click on create and at this stage what i'm going to do is i'm going to pause the video so the deployment is complete at this stage we are going to make changes to our dns at the networking level for this domain controller i will also change the dns at the virtual network level so if i go into the v-nets okay so with all these things in place what i'm going to do is i'm going to establish an rdp connection to this machine and deploy the domain services rule the role was installed successfully so at this stage i'm going to promote this to a domain controller so the domain was installed successfully and it has rebooted i'm now logged in into my dc with my domain credential and let's wait for this machine to boot up so just going back to our diagram as you can see that we are still on our first step deploying dc and sync user so when that machine is successfully up we'll create some test user and then we deploy the ad connect now while that machine is coming up uh for step two i need the step one to complete what i'm gonna do is i'm gonna jump into the step three and create a storage account uh with the name sa1011 under the resource group fsrg so let's utilize some time for that and let's go to the storage account nothing unusual all the regular stuff and i'll deploy this in canada central and it is okay general purpose version 2 you can take all the default review and create and let's create a storage account here storage account is up i'm gonna go to resources and what we'll do is we'll create a file share so i'm going to highlight that add file share and i'll name this profile and i'll set a quota here let's see for testing purpose 30 and i'm going to use up here as hot if you're using maybe for production maybe you want to use a transactional optimized or premium because that is where we're going to save our user profile of fs logic so let's go and click on create and that was saved successfully the machine is still getting deploying all the settings which is required so i'm just going to pause the video before we move further all right so the machine is up you can see that it has been promoted to domain controller my domain is up so what we're going to do here now is we're going to create certain users that we can sync from this directory into our azure ready so let's go and open a duck i'm going to create couple of users here so let's see and also create two more user for the name test one and test two okay so with this in place uh what we're going to do is i'm also going to create one for you which we'll be needing uh in the later part of the video so let me just create one organizational unit and i'll name this on-prem and click on ok alright so we have a couple of users in place and we have an ou which we're gonna use later on and now what we're gonna do is we'll use a free tool to sync our users into azure active directory and for that i'm going to use ad connect so let's go and run this won't take long all right so with eddie connect tool in place let's go and select the agreement continue i'll use express settings okay so at this stage i need to provide the person who has the azure ad global administrator credential so let's go and put that grab the two full credentials here and the password if i remember that correctly all right seems to have worked and at this stage it's saying that you need to provide credential for the active directory so a local active directory credential for that so let me provide okay i hope i got the password correct okay let me try one more time okay so with that in place i will continue without matching the ups effects it's okay let's go and click on next and at this stage i'll start synchronizing all my users from my local active directory in azure ready so that we can use that to test this with our wvd environment so let me just minimize all those things and i'm going to pause the video while the synchronization is taking place all right so the syncs was successful so i'm going to come out of this but let's go and cross check on the azure site so if i go on the azure id i should be able to see all those users so here we go i have these users in place which i can to use for testing purpose or write so let's go back to our diagram so we have done the first step successfully that is all in place now and what we're going to do is we're going to move to the next step which is deploying the host pool so let's do that and let's go and search for the service we'll create a host poll we'll create a new resource group for this as for our diagram it's forceful resource group i'm going to name this ips yes i want to validate the environment and i will keep this under the pooled category number of maximum uses i'll keep it five breath first is okay and i'll add the virtual machine while the host pool is getting created and i want the virtual machines to be in canada and for testing purpose i'm going to keep one machine and the prefix i want to give is it is for id simplified and i'll use the image from the gallery which is windows 10 enterprise multi-session with 365 apps i will keep the standard ssd and i will deploy this under the virtual network under which my domain services is because it needs access to the domain services and generally you won't have a public ip for your machines but for this purpose i'm going to keep it because i need access to that rest of everything i'll keep it standard and you need to provide the 80 domain join upn so you need to provide the credentials here all right and then we also need to have the workspace in place to register the desktop group and let's name this click ok review and create and let's click on the create button now while this host pool is getting created what we're going to do is we'll utilize some time so i'm going to go to the storage account and actually what i'm going to do is let's give the access of the resource group level so i'm going to resource group under which my storage account is it is fsrg i'm going to give owner access at the resource group level so if i go under my resource group under which my storage account is let's go to access control let's go click on add add role assignment and i'll give the owner access here see for wvd admin right here click on save all right with that in place what i'm going to do is let me just go under the under my resource group under which my storage account is i'll give specific access to the storage account by going to access control and add role assignment the role i'm going to select here is i'll pick storage account storage file data smp share elevated contributor role for wvp admin and for the other users i'll give the contributor role that will be important in case you have to file share the files and from the fs logic's perspective so let me just add after that is done let me add also the test one and test two and this time i'm going to give the smbc contributor access so all right so both these roles have been added let's go to our wvd and see that how that is taking place if i go to my host pool yeah the things are appearing but i've still not got the successful notification so what we're going to do is we'll wait for that the deployment is still in progress so while this is getting done what we're going to do is i'm just going to move to the third step so basically we have created the storage account but the file should that we have created we need to integrate with our domain services so what i'm going to do is i'm going to go to my domain controller and we need to go and download a module for that so you see it gives us information about how to integrate and the model that i need is this ac file hybrid module so let's go and select this and let me just so after you download make sure that you extract this i'm going to extract all this and once that is extracted what i'm going to do is i'll just copy the path and we need to run certain commands here now for that i'm going to use powershell and i'll open it as an administrator just going to minimize other files and let me just open the and give the path i'm going to change the directory and go to the path where i have extracted that all right and what we're going to do is we're going to run certain commands so let me just copy and put this here so that's easy for us to run so let's run this first command after you have changed and given the path we have extracted the file then the second command and then we're gonna import the modules now i'm going to run the fourth command and i think we did provided the access but let's see this is for the storage account that we gave access i think it was wvda mainly if i remember correctly so let's just wait for that to provide dvd admin [Music] at so all right and now we need to run the final command let's see and we need to provide the subscription id and that i should be able to get from any of my resource group let me just copy this and let me try to right hit enter so that's good so all we are doing is to make sure that we are able to add our file share and connect it with the domain services so with that done there is a final command that i have to run which is basically to provide the resource group and the storage account so let me just grab that and the command that i'm trying to use is join the storage account for authorization here i need to provide the resource group name under which my account is so it is fsrg and the name of my storage account is sa101 domain account type organization so this is the ou that we created in rdc and i also need to provide my domain name and let me grab that okay so with that in place let me just copy this and let's try to run this now all right so the command ran successfully as you can see that it is in canada central the standard read access grs storage version 2 and the access tier was hot it was successful but we can cross check this so if i go under my organizational unit i should be able to see that my storage account okay not yet let me just refresh ah here we go so my storage account is available here right right over here and there it is the description and you can also further cross check by going on to your azure portal and if i can go under my storage account i should see that it is connected to my local domain services and that you can find under configuration and right over here so you see active directory domain services and this has been now enabled which was not the case before okay so that's good so so far so good so just going back to our diagram so what we have done so far is we have done our step number one and just make sure that our host pool was created successfully um still going on okay so step one is done step three is also done hopefully we'll be able to uh that will be deployed successfully we're just waiting for that confirmation but so far so good so let me just pause the video till we can move forward all right so the host pool has been deployed successfully so if i go under resources you'll see in the session host still showing unavailable but uh i definitely see the machine is up so we're just going to give it a moment but uh what we can do is we can assign some users so i'm going to go on the assignment and right now there is no assigned user so i'm going to test this with the user test one and add this to the desktop application group which is created by default so when we deploy the wvd it creates dhg which is desktop application group and we are going to test this with the username test1 in a moment right but just want to make sure that computer is there under the session host i see one and now you can see that's available now with this we have successfully as you can see created uh done all the three steps successfully now we're going to do fs logic but before we do that let's just do a little bit more testing for the storage account that we created we're going to map the network drive so i'm on my domain controller the storage account is integrated we can definitely see uh under the azure portal as well as on our domain controller but what i'm going to do is let's go and try to map a network drive so let's go to you see map network drive and let's see it see and what i'm going to do is i'm going to grab the information of the storage account and get the path over there there are different ways you can map the network drive but let me show you one way hopefully it will be possible by using the way i'm doing so i'm gonna go to my share and if i go into the properties i'm going to grab this url right and go back to my dc and just provide this and change this accordingly the way we are used to at this stage i will also connect using different credential click on finish and at this stage i need to provide the storage account name which is if i'm not mistaken it is say one zero one one so let me provide that and the password it is asking is the key for that storage account so this access key i'm going to grab it show key copy this and let's see if it let me do and connect to it let's say okay and here you go now you can see that i am mapped to the network drive so let me just say create a folder say test and if i go to the azure portal i should be able to see that under profile that's the name of my file share and here you go so it's all working fine so if i delete from here it should be automatically deleted from there too so here we go so it's all working fine you see it's deleted from here so what i'm going to do is i'm going to further go and put the ntfs permissions here so if i go and right click go to the properties go to security edit and go to add for wvd admin i'll try to give the full control and for the other users i'll try to give the modify access so it is test one okay and they'll be able to modify so let me just put for test one only because that is what i'm going to use it so that's good so that's done so that in place what i'm going to do is i'm going to go to the azure portal and i'm going to connect to the machine or what we're going to do is basically we are trying to deploy the fs logics for the user profile so agent we need to deploy and based on the number of machines you need to deploy the agent on all the machines uh there's another way of doing that you can push that through the gpo policy but i only have one machine so i'm going to use that so let me provide the domain credentials which is right here so try to connect to it and let's give it a moment okay so the machine has put it so what i'm trying to do with step number four which is to download the fs logic agent the fslogix agent okay let's go and grab this okay and i'm going to extract this file okay it's fine on my desktop that's fine okay and at this stage let me go to x64 go to release and this is the one that i want to run the setup the setup was successful and with this i should be able to close it and what i need to do is i need to open the i need to make changes in the registry so let's go and open regedit let's go to hkey local machine software under fs logic what i'm going to do is i'm going to create a new key with the name profiles and at this page i'm going to create a new d word and say it enabled with a value of 1 and say okay and also one more change i need to do is to create a new multi-string value and it will be vhp locations and at this page what i need to do is i need to give the path of that file share so i need to grab that from my storage account that is where all the user profiles will be saved the idea is that as a user they move from one machine to another their profiles will be saved that's the idea about and the beauty with the fslogix is so let me just and we'll see actually if that works or not let me go to my session host provide this value click ok click ok again and let me just close this okay so with that done we have also completed step number four and now is the moment of truth right but before i do that what i'm going to do is i'm just going to restart this machine so go and restart for all those settings to take place so let's okay that's the right one let's go and sign in okay stay signed in all right so you can see the desktop is there if i go and click on this it's connecting and launching the desktop and it should ask me for the credential one more time on submit did i provide the password allow let's paste one oops yeah that was missing so customer and try to connect it okay so i got the green check mark it means it's looking good and for the first time you can see the fs logic app services is getting installed so it seems like the things are working fine but we need to do one more just confirm one more thing we need to go on the file share on our storage account and see that the user profile has been registered over there but it is able to access so this user remember it was on our local active directory we have synced this by using ad connect and now it is trying to login into the host port which we have given access to that now while it is getting registered let me just go and look at the storage account and if i open this and go to my file share here you go this is the uh user profile so as i said that when you have multiple user profiles so going back to my diagram so in this case we have only one but in case the user comes back and register all his settings will be saved and as he bounces around from it0 and if you have the second or the third machine the user profile will be saved and it's all by utilizing fs logic that's the underlining technology so with this we have also successfully done our step five and in this you saw end to end how to deploy and install windows virtual desktop i know the video was a bit long but hopefully this gives you an idea about how to deploy wvd within azure thank you for watching have a good day
Info
Channel: Girish Sharma
Views: 6,538
Rating: undefined out of 5
Keywords: azure, WVD, Fslogix, Azure file storage, IT Simplified
Id: g8HUixWpXxA
Channel Id: undefined
Length: 42min 28sec (2548 seconds)
Published: Sat Dec 19 2020
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.