Active Directory 5 Flashcards

1
Q

What setspn.exe command is used to create an SPN?

A

the setspn -s command

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What would you run from the command line to register SPN http/srv55.nutex.com for a Windows Server 2012 R2 server named srv55?

A

setspn -S http/srv55.nutex.com srv55

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which Kerberos policy setting determines the maximum time difference that Kerberos V5 tolerates between the client clock and the clock on the domain controller that performs authentication?

A

Maximum tolerance for computer clock synchronization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What parameter of the Install-ADDSDomainController cmdlet is used to install and configure DNS on the domain controller?

A

the -InstallDns parameter

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What commands must you run at the ntdsutil prompt to clean up server metadata?

A

metadata cleanup

remove selected server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

When you use the Dsamain tool to offer LDAP services to a mounted ntds.dit file, which port number can you NOT use for the ldapport number?

A

389

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How can you restore the values of an object’s attributes after they have been modified?

A

Mount an Active Directory snapshot, export the object, and import the object to the live Active Directory database.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What PowerShell cmdlet would allow you to view the settings of a Password Settings Object (PSO)?

A

the Get-ADFineGrainedPasswordPolicy cmdlet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which cmdlet is used to restore deleted objects from the Active Directory Recycle Bin to their original location?

A

Restore-ADObject

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What two conditions govern the presence or absence of the Delegation tab on the properties of a service?

A

an SPN must exist and the domain must be at the Windows Server 2003 level, or later

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

To what container should you set the Base DN to in the Search box of the ldp.exe tool when performing tombstone reanimation of a user account in nutex.com?

A

CN=Deleted Objects, DC=nutex, DC=com

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

To use Kerberos authentication with SQL Server, which two conditions are required?

A

The client and server computers must be part of the same Windows domain, or in trusted domains.
Service Principal Name (SPN) must be registered with Active Directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

If you have enabled the Active Directory Recycle Bin in the forest, what container in Active Directory will contain users, groups, and other objects after they have been deleted?

A

The Deleted Objects container

How well did you know this?
1
Not at all
2
3
4
5
Perfectly