Assignment 6/7 – Active Directory Flashcards
- What is Active Directory? What term is used to describe managed components within the Active Directory database?
Active Directory is the database of all managed components within the domain. Components are called objects and include computers, users, account policies, roles, services, etc.
- What are the three roles that a computer can take on within a domain environment?
Client – users of the domain services
Member Server – provides services to the domain and clients
Domain Controller – maintains the Active Directory database
- What is the name of the file used to store the Active Directory database?
The Active Directory database is stored in a file called Ntds.dit.
- Describe the differences between a domain, tree and a forest with respect to domain structure.
A domain is an administratively-defined collection of network resources that share a common directory database and security policies.
A tree is a group of domains based on the same namespace that share a common schema, share resources between domains, and have two-way trust relations
A forest is a collection of related domain trees. The forest establishes the relationship between trees that have different DNS name spaces.
- How are domains identified?
Domains are identified by their domain name. For example, Camosun.BC.CA for Camosun College.
- What is the difference between a default container and an organizational unit (OU)?
A container is a built-in structure for holding objects. Containers cannot be renamed, deleted, or have group policy applied to them.
- What is meant by a ‘trust relationship’ between domains?
Trust relationship allows users in one domain to use services within another domain. Child and Parent domains generally have a two way trust relationship by default.
- What is the process used by domain controllers to maintain consistency between the active directory information?
Domain Controllers use replication to maintain consistency.
- What is the process of promoting a member server to become a domain controller?
Install the Active Directory Domain Services role and use the Active Directory Domain Services Configuration Wizard to promote the server to become the Domain Controller.
- What is a common role to install at the same time as promoting a member server to a domain controller?
If a server is being promoted to a Domain Controller, then the DNS role is usually installed as well.
- What are some important settings to verify before promoting a member server to become a domain controller?
Make sure the computer name is correct.
Make sure the time zone is set correctly.
Use a static IP address.
- What are four methods for installing the Active Directory Domain Services Role?
Add a domain controller to an existing domain – replica domain controller
Add a new domain to an existing forest as a Child domain.
Add a new domain to an existing forest as a new tree.
Add a new forest when there is no existing domain.
- What is Windows Azure?
Windows Azure is a Microsoft cloud service used to create and maintain the Active Directory Role and Services.
- What is a Global Catalog server?
A Global Catalog Server is a domain controller used for searches and logons. They contain information about other objects in other forests as well as its own domain.
- What is meant by a ‘site’? How are sites typically defined?
A site is a physical representation of a network and is usually defined by an IP address range.