SPSCC server 1 chapter 6

¡Supera tus tareas y exámenes ahora con Quizwiz!

A database that stores information about a computer network and includes features for retrieving and managing that information.

What is the definition of Directory Service?

A boot mode used to perform restore operations on Active Directory if it becomes corrupted or parts of it are deleted accidentally.

What is the definition of Directory Services Restore Mode (DSRM)?

A directory partition that contains all objects in a domain, including users, groups, computers, OUs, and so forth.

What is the definition of Domain Directory Partition?

A user account created in Active Directory that provides a single logon for users to access all resources in the domain for which they have been authorized.

What is the definition of Domain User Account?

The core structural unit of Active Directory; contains OUs and represents administrative, security, and policy boundaries.

What is the definition of Domain?

An item in a GPO that allows an administrator to configure a policy setting.

What is the definition of Extension?

Specialized domain controller tasks that handle operations that can affect the entire domain or forest. Only one domain controller can be assigned a particular FSMO.

What is the definition of Flexible Single Master Operation (FSMO) roles?

The first domain created in a new forest.

What is the definition of Forest Root Domain?

A collection of one or more Active Directory trees. A forest can consist of a single tree with a single domain, or it can contain several trees, each with a hierarchy of parent and child domains.

What is the definition of Forest?

A domain name that includes all parts of the name, including the top-level domain.

What is the definition of Fully Qualified Domain Name (FQDN)?

The objects affected by a GPO linked to a site, domain, or OU.

What is the definition of GPO Scope?

A directory partition that stores the global catalog, which is a partial replica of all objects in the forest. It contains the most commonly accessed object attributes to facilitate object searches and user logons across domains.

What is the definition of Global Catalog Partition?

A list of settings that administrators use to configure user and computer operating environments remotely through Active Directory.

What is the definition of Group Policy Object (GPO)?

An option when installing a DC in an existing domain; much of the Active Directory database contents are copied to the new DC from media created from an existing DC.

What is the definition of Install from media (IFM)?

Active Directory replication that occurs between two or more sites.

What is the definition of Intersite Replication?

Active Directory replication between domain controllers in the same site.

What is the definition of Intrasite Replication?

A process that runs on every domain controller to determine the replication topology.

What is the definition of Knowledge Consistency Checker (KCC)?

A protocol that runs over TCP/IP and is designed to facilitate access to directory services and directory objects. It's based on a suite of protocols called X.500, developed by the International Telecommunication Union.

What is the definition of Lightweight Directory Access Protocol (LDAP)?

A user account defined on a local computer that's authorized to access resources only on that computer. Local user accounts are mainly used on stand-alone computers or in a workgroup network with computers that aren't part of an Active Directory domain.

What is the definition of Local User Account?

The process for replicating Active Directory objects; changes to the database can occur on any domain controller and are propagated, or replicated, to all other domain controllers.

What is the definition of Multimaster Replication?

A grouping of information that describes a network resource, such as a shared printer, or an organizing structure, such as a domain or OU.

What is the definition of Object?

A domain controller with sole responsibility for certain domain or forest wide functions.

What is the definition of Operations Master?

An Active Directory container used to organize a network's users and resources into logical administrative units.

What is the definition of Organizational Unit (OU)?

Settings that define which resources users can access and what level of access they have to resources.

What is the definition of Permissions?

An application package made available via Group Policy for users to install by using Programs and Features in Control Panel. The application is installed automatically if a user tries to run it or opens a document associated with it.

What is the definition of Published Application?

The part of a SID that's unique for each Active Directory object.

What is the definition of Relative Identifier (RID)?

A domain controller configured to replicate with another domain controller.

What is the definition of Replication Partner?

A setting that specifies what types of actions a user can perform on a computer or network.

What is the definition of Right?

A shared folder that stores information from Active Directory that's replicated to other domain controllers.

What is the definition of SYSVOL Folder?

A category of schema information that defines what type of information is stored in each object.

What is the definition of Schema Attributes?

A category of schema information that defines the types of objects that can be stored in Active Directory, such as user or computer accounts.

What is the definition of Schema Classes?

A directory partition containing the information needed to define Active Directory objects and object attributes for all domains in the forest.

What is the definition of Schema Directory Partition?

Information that defines the type, organization, and structure of data stored in the Active Directory database.

What is the definition of Schema?

b. Schema d. Global catalog

All domains in the same forest have which of the following in common? (Choose all that apply.) a. Domain name b. Schema c. Domain administrator d. Global catalog

c. At user logon

By default, when are policies set in the User Configuration node applied? a. Every 5 minutes b. Immediately c. At user logon d. At computer restart

-Add-WindowsFeature AD-Domain-Services (if using power shell include -IncludeManagementTools parameter)

How to install Active Directory Domain Services Role using commands?

b. LDAP

The protocol for accessing Active Directory objects and services is based on which of the following standards? a. DNS b. LDAP c. DHCP d. ICMP

b. Domains d. Sites

To which of the following can a GPO be linked? (Choose all that apply.) a. Trees b. Domains c. Folders d. Sites

True - -It is responsible for storing a copy of the domain data and replicating changes -Providing data search and retrieval functions -providing authentication and authorization services

True or False - Each domain controller contains a full replica of the objects that make up the domain?

A numeric value assigned to each object in a domain that uniquely identifies the object; composed of a domain identifier, which is the same for all objects in a domain, and an RID. See also relative identifier (RID).

What is the definition of Security Identifier (SID)?

A physical location in which domain controllers communicate and replicate information regularly.

What is the definition of Site?

A grouping of domains that share a common naming structure.

What is the definition of Tree?

An arrangement that defines whether and how security principals from one domain can access network resources in another domain.

What is the definition of Trust Relationship?

A user logon name that follows the format username@domain. Users can use UPNs to log on to their own domain from a computer that's a member of a different domain.

What is the definition of User Principal Name (UPN)?

-User accounts -Groups -Computer accounts -Printers -Shared folders -Applications -Servers -Domain controllers

What objects are in the OU active directory?

d. IFM

When installing an additional DC in an existing domain, which of the following is an option for reducing replication traffic? a. New site b. Child domain c. GC server d. IFM

Local Computer Site Domain Organization Unit

Where can GPO's be applied?

a. Active Directory Domains and Trusts c. ADSI Edit

Which MMC is added after Active Directory installation? (Choose all that apply.) a. Active Directory Domains and Trusts b. Active Directory Groups and Sites c. ADSI Edit d. Active Directory Restoration Utility

d. Domain

Which container has a default GPO linked to it? a. Users b. Printers c. Computers d. Domain

c. Domain naming master

Which is responsible for management of adding, removing, and renaming domains in a forest? a. Schema master b. Infrastructure master c. Domain naming master d. RID master

b. Similar to a database program but with the capability to manage objects

Which of the following best describes a directory service? a. Similar to a list of information in a text file b. Similar to a database program but with the capability to manage objects c. A program for managing the user interface on a server d. A program for managing folders, files, and permissions on a distributed server

c. Schema attributes

Which of the following defines the types of information stored in an Active Directory object? a. GPOs b. Attribute values c. Schema attributes d. Schema classes

d. Schema classes

Which of the following defines the types of objects in Active Directory? a. GPOs b. Attribute values c. Schema attributes d. Schema classes

c. Sites

Which of the following is a component of Active Directory's physical structure? a. Organizational units b. Domains c. Sites d. Folders

a. Computers

Which of the following is a default folder object? a. Computers b. Domain Controllers c. Groups d. Sites

Get-ADDomain Get-ADForest

Power shell Command to view FSMO Roles?

A single Schema Forest-wide Administrative Accounts Operations Masters Global Catalog Trusts Between Domains Replications Between Domains

What are some of the Common Characteristics that all domains in a forest share?

Schema Master -Forest Level Infrastructure Master - Domain Naming Master - Dead RID Master - Relative ID master PDC Emulator Master - PW change

What are the five Operation master roles?

Domain directory partition - contains all objects in a domain, including users, groups, computers, OU's, and so forth Schema directory partition - Contains information needed to define AD objects and object attributes Global catalog partition - holds the global catalog, which is a partial replica of all objects in the forest. Application directory partition - Used by applications and services to hold information that benefits AD replication. Configuration partition - Holds configuration information that can affect the entire forest.

What are the five directory partition types in the AD database?

-Organizational Units (OU) -Domains -Trees -Forests

What are the four organizing components of Active Directory?

AD DS

What is the Windows Active Directory Service commonly referred to as?

The transfer of information between all domain controllers to make sure they have consistent and up-to-date information.

What is the definition of Active Directory replication?

A directory partition that applications and services use to store information that benefits from automatic Active Directory replication and security.

What is the definition of Application Directory Partition?

An application package made available to users via Group Policy and places a shortcut to the application in the Start screen. The application is installed automatically if a user tries to run it or opens a document associated with it. If the assigned application applies to a computer account, the application is installed the next time Windows boots.

What is the definition of Assigned Application?

Information stored in each attribute.

What is the definition of Attribute Value?

A process that confirms a user's identity, and the account is assigned permissions and rights that authorize the user to access resources and perform certain tasks on the computer or domain.

What is the definition of Authentication?

User accounts created by Windows automatically during installation.

What is the definition of Built-In User Accounts?

Domains that share at least the top-level and second-level domain name structure as an existing domain in the forest; also called "subdomains."

What is the definition of Child Domains?

A directory partition that stores configuration information that can affect the entire forest, such as details on how domain controllers should replicate with one another.

What is the definition of Configuration Partition?

A section of an Active Directory database stored on a domain controller's hard drive. These sections are managed by different processes and replicated to other domain controllers in an Active Directory network.

What is the definition of Directory Partition?

a. Domain directory partition c. Schema directory partition d. Configuration partition

Which of the following is a directory partition? (Choose all that apply.) a. Domain directory partition b. Group policy partition c. Schema directory partition d. Configuration partition

a. Fine-grained access controls b. Can be distributed among many servers

Which of the following is a feature of Active Directory? (Choose all that apply.) a. Fine-grained access controls b. Can be distributed among many servers c. Can be installed on only one server per domain d. Has a fixed schema

a. Can contain trees with different naming structures b. Allows independent domain administration d. Represents the broadest element in Active Directory

Which of the following is associated with an Active Directory forest? (Choose all that apply.) a. Can contain trees with different naming structures b. Allows independent domain administration c. Contains domains with different schemas d. Represents the broadest element in Active Directory

c. Global catalog

Which of the following is associated with installing the first domain controller in a forest? a. RODC b. Child domain c. Global catalog d. DHCP

d. Shared folder

Which of the following is considered a leaf object? (Choose all that apply.) a. Computer account b. Organizational unit c. Domain controller d. Shared folder

b. A container object that can be linked to a GPO

Which of the following is not associated with an Active Directory tree? a. A group of domains b. A container object that can be linked to a GPO c. A common naming structure d. Parent and child domains

c. DC

Which of the following is not part of Active Directory's logical structure? a. Tree b. Forest c. DC d. OU

c. Domain

Which of the following is the core logical structure container in Active Directory? a. Forest b. OU c. Domain d. Site

a. Storing a copy of the domain data b. Providing data search and retrieval functions d. Providing authentication services

Which of the following is the responsibility of a domain controller? (Choose all that apply.) a. Storing a copy of the domain data b. Providing data search and retrieval functions c. Servicing multiple domains d. Providing authentication services

d. Classes

Which of the following specifies what types of actions a user can perform on a computer or network? a. Attributes b. Rights c. Permissions d. Classes

b. Local user account

Which type of account is not found in Active Directory? a. Domain user account b. Local user account c. Built-in user account d. Computer account

They might require an AD structure composed of several domains, multiple trees, and even a few forests

While working with Forests, Trees and Domains what do Larger organizations might require?

They focus on OU's and their Child Objects

While working with Forests, Trees and Domains what do Smaller organizations most likely focus on?

Simplicity Lower Costs Easier Management Easier Access to Resources

Why is a single Domain better for small and medium businesses?

Need for differing account policies Need for different name identities Replication control Need for internal versus external domains Need for tight security

Why should you use more then one Domain?

c. The first domain controller in the forest root domain

You have an Active Directory forest of two trees and eight domains. You haven't changed any operations master domain controllers. On which domain controller is the schema master? a. All domain controllers b. The last domain controller installed c. The first domain controller in the forest root domain d. The first domain controller in each tree


Conjuntos de estudio relacionados

European History Through Art TEST

View Set

Liver, Bile, Gallbladder, Pancreas

View Set

Social Statistics for exam 2 chapters

View Set

Marketing test 2 sample questions (ch 4, 5

View Set

Chapter 7 - Corruption and Ethics

View Set

SAChE Module hazards and risk AJJ

View Set