Directory Services Flashcards Preview

UCT - Phase 2, Block 2 (DCO) > Directory Services > Flashcards

Flashcards in Directory Services Deck (32)
Loading flashcards...
1

What is the "heart and soul" of the enterprise network?

Directory Services

2

What are the 3 primary functions in Directory Services?

- Active Directory Domain Controllers
- Dynamic Host Configuration Protocol (DHCP)
- Domain Name System (DNS) servers

3

Active Directory is capable of tracking a variety of items that can share common attributes. What are these items called?

Objects (Users, Machines, Groups, Services, etc.)

4

What is a set of attributes available for any particular object type?

Schema

5

What is a special type of object used to group other objects, also known as an organizational unit (OU).

Container

6

When containers and objects are combined hierarchically, they tend to form branches. What is the term used to describe a set of objects within AD that have a transitive trust and contiguous namespace?

Tree

7

What term describes trees that are not part of the same namespace but that share a common schema, configuration, and global catalog?

Forest

8

Why is Network Time Protocol (NTP) so essential for Active directory to operate?

If the time disparity between the DC and the authenticating computer is excessive, Kerberos ticket generation fails. The computer is unable to process login requests for clients if Kerberos is required, otherwise the client must fall back to a less secure authentication method.

9

Service logon is typically used by service accounts or applications. What is the primary issue with this logon method?

It is very vulnerable

10

What is the difference between interactive and domain logon?

Interactive = local
Domain = network

11

What logon method caches previous users' logon information locally so that they can log on if a logon server is unavailable during later logon attempts?

Cached Domain Logon

12

What servers are in charge of Active Directory, DHCP, and DNS for a domain?

Domain Controllers

13

What process ensures that all Domain Controllers have the same up-to-date information?

Replication

14

What is the service that translates friendly domain names (i.e. microsoft.com) to IP addresses (i.e. 207.46.197.32)?

DNS

15

The host address (A) record is a standard DNS hostname record. What does it point to?

It points a hostname to an IP address.

16

What is a Canonical Name (CNAME) record?

It's a DNS entry that is an alias to another domain name. For example, Google.com & Gogle.com

17

What is a Pointer Record (PTR)?

It points an IP address to the hostname.

18

When are you assigned a Security Identifier (SID)?

When being authenticated by the DC.

19

What are the 5 FISMO (Flexible Single Master Operations) roles?

- Schema Master
- Domain Naming Master
- PDC Emulator
- RID Master
- Infrastructure Master

20

What is responsible for handling any changes that are sent to modify the Active Directory schema?

Schema Master

21

When a new domain is added to the Active Directory forest, what is responsible for making sure the new domain name is unique across the entire forest and entries are made into Active Directory and propagated to all other domain controllers?

Domain Naming Master

22

What is responsible for security descriptor propagation, distributed file system consistency, group policy replication, and login and password management among other things.

PDC (Primary Domain Controller) emulator

23

What is responsible for handing out blocks of relative identification numbers to each domain controller that participates in the domain. It is also responsible for removing an object from its domain and putting it in another domain during an object move.

RID (Relative Identification) Master

24

What handles cross-domain group membership and ensures that if a user’s group membership changes, the task of adding or removing the unique identifier is completed?

Infrastructure Master

25

What establishes parent-child relationships and prevent conflicts?

PDC (Primary Domain Controller) Emulator. There is one PDC emulator per domain.

26

What is a collection of tools for managing complex networks, and is deployed in the new AFIN?

NetIQ

27

What are the 3 primary NetIQ tools?

- Directory Resources Administrator (DRA)
- Group Policy Administrator (GPA)
- AppManager

28

What tool gives administrators finely detailed “granular” privilege control which allows them to delegate users the power to perform necessary tasks for the enterprise?

DRA (Directory Resource Administration)

29

Group Policy Administrator is made up of 3 tools. What are they?

- Group Policy Explorer
- Group Policy Repository
- Group Policy Analysis

30

What lets you manage live GPOs in Active Directory, rather than offline?

GP Explorer