2. Configuring Names Resolution (22 percent) Flashcards

1
Q

What is LLMNR?

A

LOCAL LINK MULTICAST NAME RESOLTION

Enabled on WIN 7 and windows 8

works on local subnet

multicasts not broad casts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is NETBIOS?

A

Uses Broadcasts WINS LMHosts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Netbios Node types?

A

b node broadcast

p node point to point (uses WINS)

m node mixed broad cast & Wins

h node hybrid cast & Wins then LMHosts (default)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Netbios large organizations?

A

use push pull replication

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are the ZONES used by DNS?

A

Primary zone

Secondary zone

Stub zone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a primary zone?

A

Primary zone

When a zone that this DNS server hosts is a primary zone, the DNS server is the primary source for information about this zone, and it stores the master copy of zone data in a local file or in AD DS. When the zone is stored in a file, by default the primary zone file is named zone_name.dns and it is located in the %windir%\System32\Dns folder on the server.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is a Secondary zone?

A

Secondary zone

When a zone that this DNS server hosts is a secondary zone, this DNS server is a secondary source for information about this zone. The zone at this server must be obtained from another remote DNS server computer that also hosts the zone. This DNS server must have network access to the remote DNS server that supplies this server with updated information about the zone. Because a secondary zone is merely a copy of a primary zone that is hosted on another server, it cannot be stored in AD DS.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a stub zone?

A

Stub zone

When a zone that this DNS server hosts is a stub zone, this DNS server is a source only for information about the authoritative name servers for this zone. The zone at this server must be obtained from another DNS server that hosts the zone. This DNS server must have network access to the remote DNS server to copy the authoritative name server information about the zone.

NS & assosiated a records

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is a resolver?

A

The requesting client

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What replacement for NETBIOS/WINS?

A

GMZ

Global Names Zone

Create a new zone called ‘GLOBALNAMES’

to enable use cmd

dnscmd . /config /enableglobalnamessupport 1

. is local server else use name of the server

0 disable

1 enable

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Ipconfig?

A

/registerdns : register client on DNS

/release - /renew

/flushdns :clearcache :

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

AAAA

A

Host record for IPv6

Forwards

(same as A record)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

CMD install DNS on CORE?

A

start /locsetup DNS-Server-Core-Role

Using /w prevents the command prompt from returning until the installation completes. Without /w, there is no indication that the installation completed.

Case sensitive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

CORE: Add zone

A

dnscmd /Zoneadd

Syntax

dnscmd [ServerName] /zoneadd ZoneName ZoneType [/dp FQDN| {/domain|/enterprise|/legacy}] /load

Example

dnscmd dnssvr1.contoso.com /zoneadd test.contoso.com /dsprimary

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

CORE: Add record

A

dnscmd recordadd

Syntax

dnscmd [ServerName] /recordadd ZoneName NodeName RRType RRData

Example

dnscmd dnssvr1.contoso.com /recordadd contoso.com test A 10.0.0.5

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

CORE: Update AD DNS

A

dns /zoneupdatefromdns

dnscmd ServerName /zoneupdatefromds ZoneName

17
Q

CMD: Server dns using old host

A

dnscmd /clearcache

18
Q

Difference between a conditional forwarder and a forwarder?

A

a forwarder forwards all external (internet) dns queries to another dns server
a conditional forwarder checks the query first and depending on the requested domain he sends it to another server or resolves it himself

19
Q

dnscmd cmd to tighten security

A

dnscmd /config /CachLockingPercent 90

Prevent malisious overwriting DNS Cache with spoofed hosts

dnscmd /config /SocketPoolSize 5000

Source port randomization is a method that can be used to protect against DNS cache poisoning attacks.

cache poisoning :

20
Q

How to check/start SRV records in promoted DC sever….

A
  1. Restart the Netlogon service on domain controller.
  2. Run DcDiag /fix
  3. Run NetDiag /ifx
  4. Re-register from Netlogon.dns file in \Windows or Winnt\System32\Config directory.

The SRV Records of a domain controller in the domain plays an important role in Active Directory. Active Directory can not work without a DNS server. The DNS server in Active Directory is used to locate Domain Controllers in the forest or domain with the help of SRV records. Service Records or SRV records are registered specifically for domain controllers when you promote a member server to domain controller. The Netlogon service on domain controller is responsible to register SRV records.