Interview Questions
Interview Questions
Question 20. Explain What Are Rodcs? And What Are The Major
Benefits Of Using Rodcs?
Read only Domain Controller, organizations can easily deploy a domain
controller in locations where physical security cannot be guaranteed.
Question 27. How Do I Set Up Dns For Other Dcs In The Domain That
Are Running Dns?
For each additional DC that is running DNS, the preferred DNS setting is
the parent DNS server (first DC in the domain), and the alternate DNS
setting is the actual IP address of network interface.
What Is Tree?
Tree is a hierarchical arrangement of windows Domain that share a contiguous
name space.
What Is Domain?
Active Directory Domain Services is Microsoft’s Directory Server. It provides
authentication and authorization mechanisms as well as a framework within which
other related services can be deployed.
What Is Forest?
Forest consists of multiple Domains trees. The Domain trees in a forest do not form
a contiguous name space however share a common schema and global catalog
(GC)
What Is Schema?
Active directory schema is the set of definitions that define the kinds of object and
the type of information about those objects that can be stored in Active Directory
Active directory schema is Collection of object class and there attributes
Object Class = User
Attributes = first name, last name, email, and others.
Tel Me About Active Directory Database And List The Active Directory
Database Files?
o NTDS.DIT
o EDB.Log
o EDB.Che
o Res1.log and Res2.log
All AD changes didn’t write directly to NTDS.DIT database file, first write to EDB.Log
and from log file to database, EDB.Che used to track the database update from log
file, to know what changes are copied to database file.
NTDS.DIT: NTDS.DIT is the AD database and store all AD objects, Default location
is the %system root%nrdsnrds.dit, Active Directory database engine is the extensible
storage engine which us based on the Jet database
EDB.Log: EDB.Log is the transaction log file when EDB.Log is full, it is renamed to
EDB Num.log where num is the increasing number starting from 1, like EDB1.Log
EDB.Che: EDB.Che is the checkpoint file used to trace the data not yet written to
database file this indicate the starting point from which data is to be recovered from
the log file in case if failure
Res1.log and Res2.log: Res is reserved transaction log file which provide the
transaction log file enough time to shutdown if the disk didn’t have enough space.
What Is Use Active Directory Partitions? And How To Find The Active
Directory Partitions And There Location?
Schema Partition – It store details about objects and attributes. Replicates to all
domain controllers in the Forest
DN location is CN=Schema,CN=Configuration,DC=Domainname, DC=com
Configuration Partition – It store details about the AD configuration information
like, Site, site-link, subnet and other replication topology information. Replicates to
all domain controllers in the Forest
DN Location is CN=Configuration,DC=Domainname,DC=com
Domain Partitions – object information for a domain like user, computer, group,
printer and other Domain specific information. Replicates to all domain controllers
within a domain
DN Location is DC=Domainname,DC=com
Application Partition – information about applications in Active Directory. Like AD
integrated DNS is used there are two application partitions for DNS zones –
ForestDNSZones and DomainDNSZones, see more
Gpo Apply Order When Multiple Group Policy Objects Are Assigned, The
Group Policies Are Applied In The Following Order:?
o The local group policy object is applied first
o Then, the group policy objects linked to sites are applied
o If multiple GPOs exist for a site, they are applied in the order specified by
an administrator
o GPOs linked to the domains are applied in the specified order
o Finally, GPOs linked to OUs are applied
The OU group policy objects are set from the largest to the smallest organizational
unit, i.e., first the parent OU and then the child OU.
By default, a policy applied later overwrites a policy that was applied earlier. Hence,
the settings in a child OU can override the settings in the parent OU
Group policy settings are cumulative if they are compatible with each other. In case
they conflict with each other, the GPO processed later takes precedence.
If Dns Dynamic Updates Not Working What Are The Checks Needs To Do?
1. Check the primary DNS configuration on the system, Primary DNS server
should be reachable from client in order to register DNS record.
2. Register this connections addresses in DNS should be selected on network
card properties (advance options where you configure the IP Address).
3. Also Check the DHCP configuration if the managed through DHCP.