Active Directory Domain Services Flashcards

1
Q

AD DS logical components

A
  1. Domain
  2. Tree
  3. Forest
  4. OU
  5. Partition
  6. Schema
  7. Container
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

AD DS physical components

A
  1. Data store
  2. Global catalog
  3. DC
  4. RODC
  5. Site
  6. Subnet
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Trusts: Parent and child

A
  1. Created when new domain is added to an existing tree.
  2. Transitive, two-way
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Trusts: Tree-root

A
  1. Created when a new tree is added to the forest
  2. Transitive, two-way
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Trusts: Forest

A
  1. Manually created between forests
  2. Transitive, one-way or two-way
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

Trusts: Shortcut trust

A
  1. Manually created to reduce authentication time between domains
  2. Non transitive, one-way or two-way
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Trusts: external

A
  1. Manually created to allow access to resources from a domain in another forest or NT 4.0 domain
  2. Non transitive, One-way or two-way
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Trusts: realm

A
  1. Manually created between AD DS and another service running kerberos 5
  2. Transitive or non transitive, one-way or two-way
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Security principal

A

Any entity that can be authenticated by the operating system e.g user account, computer account, or a thread or process that runs in the security context of a user or computer account

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

SID

A
  1. Security identifier
  2. Unique identifier for a security entity issued by an authority such as a domain controller
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

AD components: Data Store

A
  1. Holds the AD database
  2. Two files on each DC
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

AD DS database file path

A

C:\Windows\NTDS\NTDS.DIT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

AD DS transaction log file path

A

C:\Windows\NTDS\EDB.log

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

NTDS.DIT partitions

A
  1. Domain partition
  2. Configuration partition
  3. Schema partition
  4. Application partitions
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

NTDS.DIT partitions: domain partition

A

Stores object information for the domain

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

NTDS.DIT Partitons: configuration partition

A

Stores config in for the forest and domain trees

17
Q

NTDS.DIT partitions: schema partiton

A

Stores the schema

18
Q

NTDS.DIT partiton: application partition

A

Where applications store data in AD DS

19
Q

IDP

A

Identity provider e.g AD DS, Azure AD

20
Q

Azure AD Connect

A

Tool that allows an organization to establish a hybrid identity. Synchronizes user identities, attributes, and objects between both IDPs (Azure AD and AD DS on prem)

21
Q

Hybrid identity

A

Same username and password used to access resources in both IDP environments (cloud and on prem)