Active Directory Interview Questions With Answers - YourComputer
Active Directory Interview Questions With Answers - YourComputer
in
Searches that are directed to the global catalog are faster because they
do not involve referrals to different domain controllers.
The global catalog provides the ability to locate objects from any domain
without having to know the domain name. A global catalog server is a
domain controller that, in addition to its full, writable domain directory
partition replica, also stores a partial, read-only replica of all other
domain directory partitions in the forest.
User logon. In a forest that has more than one domain, two
conditions require the global catalog during user authentication:
Universal Group Membership Caching: In a forest that has more
than one domain, in sites that have domain users but no global
catalog server, Universal Group Membership Caching can be used
to enable caching of logon credentials so that the global catalog
does not have to be contacted for subsequent user logons. This
feature eliminates the need to retrieve universal group
memberships across a WAN link from a global catalog server in a
different site.
In a domain that operates at the Windows 2000 native
domain functional level or higher, domain controllers must
request universal group membership enumeration from a
global catalog server.
When a user principal name (UPN) is used at logon and the
forest has more than one domain, a global catalog server is
required to resolve the name.
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 2/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
Bahubali 2: The …
Prabhas, Rana Dag…
What are the components of Logical AD? INR 898.00
The logical parts of Active Directory include forests, trees, domains, OUs
5 Milestone Brei…
and global catalogs. WatchTime.com
Domain –It is still a logical group of users and computers that share the
characteristics of centralized security and administration. A domain is Doctor Strange …
still a boundary for security – this means that an administrator of a Benedict Cumberba…
INR 1,349.00
domain is an administrator for only that domain, and no others, by
default.
What are the different Partition in AD and explain all? Hitachi Storage How to check How to check
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 3/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
Schema Partition
Only one schema partition exists per forest. The schema partition is
stored on all domain controllers in a forest. The schema partition
contains definitions of all objects and attributes that you can create in
the directory, and the rules for creating and manipulating them. Schema
information is replicated to all domain controllers in the attribute
definitions.
Configuration Partition
There is only one configuration partition per forest. Second on all domain
controllers in a forest, the configuration partition contains information
about the forest-wide active directory structure including what domains
and sites exist, which domain controllers exist in each forest, and which
services are available. Configuration information is replicated to all
domain controllers in a forest.
Domain Partition
Many domain partitions can exist per forest. Domain partitions are stored
on each domain controller in a given domain. A domain partition contains
information about users, groups, computers and organizational units. The
domain partition is replicated to all domain controllers of that domain.
All objects in every domain partition in a forest are stored in the global
catalog with only a subset of their attribute values.
Application Partition
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 4/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
http://yourcomputer.in/what-is-raid-configuration-in-windows/
All the RAID types and models are commonly classified as RAID levels, since
RAID represented by a higher number is regarded to be superior, more efficient,
high-performance array than the low numbered RAID. Hence, high security
feature of RAID also depends on the RAID level you are using. RAID arrays, not
only, provide the users with maximum security and reliability but also make
sure that if a disk fails no data is lost. The in-depth knowledge about RAID
levels would help you through buying of RAID servers.Let’s briefly discuss here
the main RAID levels and classes:
RAID 0 – Striping:
It is the Stripped Disk Array with no fault tolerance and it requires at
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 5/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
With all the significant RAID levels discussed here briefly, another
important point to add is that whichever level of RAID is used regular and
consistent data backup maintenance using tape storage is must as the
regular tape storage is best media to recover from lost data scene.
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 7/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
http://technet.microsoft.com/en-us/library/cc755994(WS.10).aspx
System Start-up Files (boot files). These are the files required for
Windows 2000 Server to start.
System registry.
Class registration database of Component Services. The
Component Object Model (COM) is a binary standard for writing
component software in a distributed systems environment.
SYSVOL. The system volume provides a default Active Directory
location for files that must be shared for common access
throughout a domain. The SYSVOL folder on a domain controller
contains:
NETLOGON shared folders. These usually host user logon
scripts and Group Policy objects (GPOs) for non-Windows
2000based network clients.
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 8/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
Note: If you use Active Directory-integrated DNS, then the zone data is
backed up as part of the Active Directory database. If you do not use
Active Directory-integrated DNS, you must explicitly back up the zone
files. However, if you back up the system disk along with the system
state, zone data is backed up as part of the system disk.If you installed
Windows Clustering or Certificate Services on your domain controller,
they are also backed up as part of system state.
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 9/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
An authoritative restore will not overwrite new objects that have been
created after the backup was taken. You can authoritatively restore only
objects from the configuration and domain-naming contexts.
Authoritative restores of schema-naming contexts are not supported.
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 10/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
change replicates to the other domain controllers and you cannot easily
recreate the objects. To perform an authoritative restore, you must start
the domain controller in Directory Services Restore Mode.
By authoritatively restoring the SYSVOL, you are specifying that the copy
of SYSVOL that is restored from backup is authoritative for the domain.
After the necessary configurations have been made, Active Directory
marks the local SYSVOL as authoritative and it is replicated to the other
domain controllers within the domain.
http://yourcomputer.in/authoritative-vs-non-authoritative-restoration-
of-active-directory
http://technet.microsoft.com/en-us/library/bb727048.aspx
http://technet.microsoft.com/en-us/library/bb727048.aspx
Note In Windows Server 2003 Service Pack 1, the default TSL value has
increased from 60 days to 180 days.
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 11/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
Lingering objects can occur if a domain controller does not replicate for
an interval of time that is longer than the tombstone lifetime (TSL). The
domain controller then reconnects to the replication topology. Objects
that are deleted from the Active Directory directory service when the
domain controller is offline can remain on the domain controller as
lingering objects.
http://yourcomputer.in/difference-between-windows-2003-and-2008/
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 12/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
KEY Name:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NTDS\Parameters
Registry Entry: Strict Replication Consistency
Value: 1 (enabled), 0 (disabled)
Type: REG_DWORD
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 13/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
Maximum 4 4 8 64
number of
CPUs
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 14/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
U.S. estimated US$470 per US$800 per US$3,000 per US$3,000 per
retail price7 server ( server server processor
available only
without (US$772 (US$2,972 (US$2,972 per
Hyper-V) without without Hyper- processor
Hyper-V) V) without
Hyper-V)
If user are not getting IP from the DHCP servers what step you take to
fix the issue?
DORA PROCESS
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 15/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
DHCPREQUEST
This message comes from a client and to the DHCP server to
convey three various messages. The first is to request
configuration details from one specific DHCP server and
specifically rejecting offers from any other potential DHCP
servers. Secondly it can be used for verification of previously used
IP address after a system has undergone a reboot. Lastly, it can be
used to extend the lease of a specific IP address.
http://technet.microsoft.com/en-us/library/bb742516.aspx
Registry
COM+ class registration database
Boot files, including the system files
Certificate services database
Active Directory
The system volume
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 16/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
Kernel Mode
User Mode
Windows 2000 Active Directory data store, the actual database file, is
%SystemRoot%\ntds\NTDS.DIT. The ntds.dit file is the heart of Active
Directory including user accounts. Active Directory’s database engine is
the Extensible Storage Engine ( ESE ) which is based on the Jet database
used by Exchange 5.5 and WINS. The ESE has the capability to grow to 16
terabytes which would be large enough for 10 million objects. Back to
the real world. Only the Jet database can maniuplate information within
the AD datastore.
Schema table
the types of objects that can be created in the Active Directory,
relationships between them, and the optional and mandatory attributes
on each type of object. This table is fairly static and much smaller than
the data table.
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 17/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
Link table
contains linked attributes, which contain values referring to other
objects in the Active Directory. Take the MemberOf attribute on a user
object. That attribute contains values that reference groups to which the
user belongs. This is also far smaller than the data table.
Data table
users, groups, application-specific data, and any other data stored in the
Active Directory. The data table can be thought of as having rows where
each row represents an instance of an object such as a user, and columns
where each column represents an attribute in the schema such as
GivenName.
The purpose of virtual memory is to enlarge the address space, the set of
addresses a program can utilize. For example, virtual memory might
contain twice as many addresses as main memory. A program using all of
virtual memory, therefore, would not be able to fit in main memory all at
once. Nevertheless, the computer could execute such a program by
copying into main memory those portions of the program needed at any
given point during execution.
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 18/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
How to take DNS and WINS, DHCP backup ? What is the use of terminal
services?
Multimaster Replication
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 19/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
the copies consistent, the directory service can handle more queries per
second.
Define each of the following names: DN, RDN, GUID, UPN. What is the
primary reason for defining an OU?
1. First is the POST, this stands for Power On Self Test, for the
computer. This process tests memory as well as a number of other
subsystems. You can usually monitor this as it runs each test. After
that is complete the system will run POST for any device that has
a BIOS (Basic Input-Output System). An AGP has its own BIOS, as
do some network cards and various other devices.
2. Once the POST is complete and the BIOS is sure that everything is
working properly, the BIOS will then attempt to read the MBR
(Master Boot Record). This is the first sector of the first hard drive
(called the Master or HD0). When the MBR takes over it means that
Windows is now in control.
3. The MBR looks at the BOOT SECTOR (the first sector of the active
partition). That is where NTLDR is located, NTLDR is the BOOT
LOADER for Windows XP. NTLDR will allow memory addressing,
initiate the file system, read the boot.ini and load the boot menu.
NTLDR has to be in the root of the active partition as do
NTDETECT.COM, BOOT.INI, BOOTSECT.DOS (for multi-OS booting)
and NTBOOTDD.SYS (if you have SCSI adapters)
http://yourcomputer.in/active-directory-interview-questions-with-answers/ 20/24
7/17/2017 Active Directory Interview questions with answers – YourComputer.in
What will be the next action plan if a customer reports that a server is
down?
Ans:- http://yourcomputer.in/list-port-numbers-windows/