Server 2022 Roles Flashcards

1
Q

What is the role of Active Directory Certificate Services?

A

Provides customizable services for creating and managing public key infrastructure (PKI) and digital certificates for secure communications, encryption, and authentication.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the role of Active Directory Domain Services?

A

Provides directory services for managing users, computers, and other objects, and supports authentication, authorization, and centralized management of resources in a Windows environment.”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the role of Active Directory Federation Services?

A

Enables single sign-on (SSO) and federated identity management across organizational boundaries, allowing users to access multiple applications with one set of credentials.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the role of Active Directory Lightweight Directory Services?

A

Offers a lightweight directory service with LDAP support for applications that require directory-based authentication and data storage without the overhead of full Active Directory.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the role of Active Directory Rights Management Services?

A

Provides information protection by allowing organizations to control how their documents and emails are used, preventing unauthorized access and usage.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the role of Device Health Attestation?

A

Verifies the health status of devices before they are allowed to access resources, ensuring that devices meet the required security standards.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the role of the DHCP Server?

A

Automatically assigns IP addresses and other network configuration settings to devices on a network, simplifying IP address management and reducing configuration errors.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the role of the DNS Server?

A

Translates domain names into IP addresses, allowing users to access resources using human-readable names instead of numerical IP addresses.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What is the role of the Fax Server?

A

Manages the sending and receiving of faxes, providing centralized fax services for network users.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is the role of File and Storage Services?

A

Provides file sharing, data storage, and management services, including support for NTFS, SMB, and NFS file sharing protocols.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the role of the Host Guardian Service?

A

Provides support for Shielded VMs, ensuring that virtual machines are protected from unauthorized access and tampering.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the role of Hyper-V?

A

Provides virtualization services, allowing multiple virtual machines to run on a single physical server, each with its own operating system and applications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What is the role of Network Policy and Access Services?

A

Provides policy-based access control for network resources, including RADIUS server functionality and Network Access Protection (NAP).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is the role of Print and Document Services?

A

Manages printers and print servers, providing centralized control over print queues, drivers, and print jobs.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is the role of Remote Access?

A

Provides VPN and DirectAccess solutions, allowing secure remote access to network resources for users outside the corporate network.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the role of Remote Desktop Services?

A

Enables remote access to desktops and applications, allowing users to work from anywhere while accessing their work environment.

17
Q

What is the role of Volume Activation Services?

A

Manages the activation of Windows operating systems and Office products across an organization using Key Management Service (KMS) or Active Directory-based activation.

18
Q

What is the role of the Web Server (IIS)?

A

Hosts and manages websites and web applications, providing a secure and scalable platform for web services.

19
Q

What is the role of Windows Deployment Services?

A

Facilitates the deployment of Windows operating systems, allowing for automated installation of OS images over a network.

20
Q

What is the role of Windows Server Essentials Experience?

A

Provides simplified management and essential services for small to medium-sized businesses, including file sharing, remote access, and backup solutions.

21
Q

What is the role of Storage Replica?

A

Provides block-level replication of data between servers or clusters for disaster recovery and high availability, ensuring data consistency and protection.

22
Q

What is the role of Windows Admin Center?

A

A web-based management tool that provides a unified interface for managing servers, clusters, hyper-converged infrastructure, and Windows 10 PCs, simplifying administrative tasks.

23
Q

Where do we use Active Directory Certificate Services in domain?

A
  1. Secure Communications: AD CS enables organizations to issue digital certificates that ensure secure communication channels using protocols like SSL/TLS. This is crucial for encrypting data transmitted over networks to prevent eavesdropping and tampering.
    1. Authentication: Certificates issued by AD CS can be used for strong authentication mechanisms, replacing traditional username/password credentials with more secure certificate-based authentication methods. This enhances security by reducing the risk of credential theft.
    2. Data Integrity: Digital signatures generated by AD CS certificates ensure data integrity by verifying that the content has not been altered since it was signed. This is essential for ensuring the authenticity and trustworthiness of electronic documents and transactions.
    3. Compliance and Regulation: Many industries and regulatory standards (such as PCI DSS, HIPAA, GDPR) require organizations to implement PKI for secure transactions and data protection. AD CS helps meet these compliance requirements by providing a secure infrastructure for managing certificates and keys.
    4. Internal Services: Within an organization, AD CS can be used to secure internal services such as VPNs, Wi-Fi networks, and email encryption. It ensures that only authorized users and devices can access sensitive resources.
    5. Code Signing: AD CS supports code signing certificates, which are used to digitally sign software applications and scripts. This verifies the authenticity of the software publisher and ensures that the code has not been altered or tampered with since it was signed.
    6. Document and Email Encryption: Certificates issued by AD CS can be used to encrypt sensitive documents and emails. This protects confidential information from unauthorized access and ensures that only intended recipients can decrypt and access the content.
    7. Client and Server Authentication: AD CS certificates are used for authenticating both clients (users/devices) and servers in various network and application scenarios. This strengthens security by validating the identity of parties involved in communication and transactions.
24
Q

What protocols are used in AD CS?

A
  1. LDAP (Lightweight Directory Access Protocol)
    • Description: Used for directory services communication.
    • Function: Allows AD CS to publish certificates, certificate revocation lists (CRLs), and other PKI-related information to Active Directory, making them accessible to clients and servers.
    1. HTTP/HTTPS (Hypertext Transfer Protocol / Hypertext Transfer Protocol Secure)
      • Description: Used for secure web-based communication.
      • Function: Provides access to the web enrollment pages where users can request certificates, and for publishing the CRLs and authority information access (AIA) to the internet or intranet. HTTPS ensures secure communication.
    2. DCE/RPC (Distributed Computing Environment/Remote Procedure Call)
      • Description: Used for communication between distributed applications.
      • Function: Facilitates communication between AD CS components and clients, including certificate enrollment and management operations.
    3. Kerberos
      • Description: A network authentication protocol.
      • Function: Provides secure authentication for users and services requesting certificates from AD CS.
    4. PKCS (Public Key Cryptography Standards)
      • Description: A group of standards used for public key cryptography.
      • Function: AD CS supports several PKCS standards, including:
      • PKCS #7: Used for certificate chain generation and distribution.
      • PKCS #10: Used for certificate signing requests (CSRs).
      • PKCS #12: Used for importing and exporting certificates and private keys.
    5. OCSP (Online Certificate Status Protocol)
      • Description: A protocol used for obtaining the revocation status of a digital certificate.
      • Function: Provides real-time certificate status checking, complementing the use of CRLs by allowing clients to query the status of a certificate directly.
    6. CRL (Certificate Revocation List)
      • Description: A list of revoked certificates.
      • Function: Published by the Certificate Authority (CA) to inform clients about certificates that are no longer valid.
    7. SCEP (Simple Certificate Enrollment Protocol)
      • Description: A protocol used for certificate enrollment.
      • Function: Facilitates the secure issuance of digital certificates, often used in network devices like routers and switches.