Lesson 14: Creating and Managing Active Directory Users and Computers Flashcards
Two types of users on 2012
Local Users
Domain Users
Local Users
Can only access resources on a local computer and are stored on the local SAM database on the computer where they reside.
SAM
Security Account Manager – database present on servers that stores user accounts and security descriptors for users on the local computer
Domain Users
Users that can access network resources. Account info is stored in the AD DS database and replicated to all domain controllers.
Two built-in user account on computers running Windows Server 2012
Administrator
Guest
4 security guidelines for the administrator account
Rename the account
use a strong password
limit knowledge of who has the password
do not use the account for non-admin tasks
By default, the guest account is ____
Disabled and has no password
What are two restrictions you should consider for the guest account
Rename the account.
set a strong password
You cannot ____ the admin or guest account
delete
ADAC
Active Directory Administrative Cener
Two interfaces to create a user
ADAC
Active Director Users and Computers console
4 tools used to create multiple users and groups
Dsadd.exe
Windows PowerShell
Comma-separated value directory exchange (CSVDE.exe)
LDIFDE.exe
LDIFDE.exe
LDAP Data Interchange Format Directory Exchange
User Template
A standard user object containing boilerplate attribute settings that you can apply to new users that you create.
Which exe file can you use to create objects like users, groups, and OUs?
Dsadd.exe
LDIFDE.exe