Documente Academic
Documente Profesional
Documente Cultură
To read more about this tool like how does it work on windows 7 and windows 10,
go through below link.
Remote Server Administration Tools (RSAT) for Windows Client and Windows
Server (dsforum2wiki)
Question 9: What is the FSMO roles? OR tell me something about FSMO roles?
Answer: Flexible Single Master Operation Roles (FSMO); Active Directory has
five special roles which are vital for the smooth running of AD as a multi-master
system.
Some functions of AD require there is an authoritative master to which all Domain
Controllers can refer to.
Here are five roles, these roles are Forest based and Domain based.
Question 10: How to check which server holds which FSMO role?
Answer: To check the FSMO roles, type below command on CMD.
netdom query fsmo
FSMO Roles
(Here you get answer like, What is Schema Master? What is Domain Naming
Master? What is PDC emulator? What is RID Master? What is Infrastructure
Master?)
Question 12: Explain where does the AD database is held? What other folders are
related to AD?
OR Tell me about Active Directory Database and list the Active Directory
Database files?
Answer:
%SystemRoot%\NTDS\Ntds.dit
This file stores the database that is in use on the domain controller. It contains the
values for the domain and a replica of the values for the forest (the Configuration
container data).
%SystemRoot%\NTDS\EDB.Log
EDB.Log is the transaction log file when EDB.Log is full, it is renamed to EDB
Num.log where num is the increasing number starting from 1, like EDB1.Log
%SystemRoot%\NTDS\EDB.Che
EDB.Che is the checkpoint file used to trace the data not yet written to database
file this indicate the starting point from which data is to be recovered from the log
file in case if failure
Res is reserved transaction log file which provide the transaction log file enough
time to shutdown if the disk didn’t have enough space
- Net Logon shares. These typically host logon scripts and policy objects for
network client computers.
- User logon scripts for domains where the administrator uses Active Directory
Users and Computers.
- Windows Group Policy.
- File replication service (FRS) staging folder and files that must be available and
synchronized between domain controllers.
- File system junctions.
File system junctions are used extensively in the SYSVOL structure and are a
feature of NTFS file system 3.0. You must be aware of the existence of junction
points and how they operate so that you can avoid data loss or corruption that may
occur if you modify the SYSVOL structure.
Question 15: what is the difference between domain admins and enterprise admins
in AD?
Answer:
Domain Admins Group
- Members of this group have complete control of all domains in the forest.
- By default, this group belongs to the administrators group on all domain
controllers in the forest.
- As such this group has full control of the forest, add users with caution.
Schema Partition
Configuration Partition
Domain Partition
Schema Partition, It store details about objects and attributes. Replicates to all
domain controllers in the Forest
DN Location is CN=Configuration,DC=Domainname,DC=com
Domain Partitions, object information for a domain like user, computer, group,
printer and other Domain specific information. Replicates to all domain controllers
within a domain
DN Location is DC=Domainname,DC=com