Active Directory Flashcards

1
Q

What PowerShell cmdlet gets the resultant password replication policy for an account?

A

The Get-ADAccountResultantPasswordReplicationPolicy cmdlet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

While the graphical version of dcpromo.exe has been deprecated in Windows Server 2012, what command line function of dcpromo.exe can you still perform in Windows Server 2012 R2?

A

You can still run dcpromo /unattend from a command prompt, and perform unattended installations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What tools can you use to view the contents of a mounted Active Directory snapshot?

A

Active Directory Users and Computers (DSA.msc), ADSIEDIT.msc, or LDP.exe

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What setspn.exe command is used to delete an SPN?

A

the setspn -d command

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What GUI tool will allow you to enable the Active Directory Recycle Bin?

A

Active Directory Administrative Center

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

In what location is a sample DCCloneConfig.xml file that can be edited and used for cloning?

A

%windir%\system32

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What command is used to mount a snapshot?

A

ntdsutil

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Why should you use the CustomDCCloneAllowList.xml file when cloning a virtual domain controller?

A

This file is required if there are applications or services that were not recognized by the system as supporting cloning, and therefore were not added to the DefaultDCCloneAllowList.xml file

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which forest functional level is required to enable the Active Directory Recycle Bin?

A

Windows Server 2008 R2 or higher

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which type of account in Windows Server 2008 R2 and above is a “managed local account” that provides the ability to access the network with a computer identity in a domain environment with no password management required?

A

virtual account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly