• Shuffle
    Toggle On
    Toggle Off
  • Alphabetize
    Toggle On
    Toggle Off
  • Front First
    Toggle On
    Toggle Off
  • Both Sides
    Toggle On
    Toggle Off
  • Read
    Toggle On
    Toggle Off
Reading...
Front

Card Range To Study

through

image

Play button

image

Play button

image

Progress

1/10

Click to flip

Use LEFT and RIGHT arrow keys to navigate between flashcards;

Use UP and DOWN arrow keys to flip the card;

H to show hint;

A reads text to speech;

10 Cards in this Set

  • Front
  • Back

What type of objects are not security principals, but they are used to specify information about individuals within the organization?

Contact--Contact objects are usually used in OUs to specify the main administrative contact. Contacts are not security principals like users, but they are used to specify information about individuals within the organization.

You go into an OU and the Security tab is missing. What do you have to do to fix the OU so you can see the Security tab?

Change the View to Advanced Options.--Changing the View to Advanced Options allows the security tab of the object to appear.

You need to create 25 users and five new OUs. What tool is used to achieve this functionality?

Active Directory Users And Computers MMC--If you need to create users or OUs, you use the Active Directory Users And Computers MMC.

You need to create a new group for all users for email only. How do you accomplish this goal?

Create a new Distribution Global group and add all the users to the group.--Distribution groups are for email and this type of group cannot have rights and permissions associated with it. Security groups can have email sent to the group but they can also have permissions for objects in the domain. The “Email Only” box does not exist.

You create five new shares and use NET USE to test them. Everything appears to work fine, so you send out a message that the shares are available. You start receiving calls from users who say that they cannot see any of the five resources that you created. What is the most likely reason for the calls from the users?

You need to publish the shares in the directory.--You need to publish shares in the directory before they are available to the users of the directory. If NetBIOS is still enabled on the network, the shares will be visible to the NetBIOS tools and clients, but you do not have to enable NetBIOS on shares. Although replication must occur before the shares are available in the directory, it is unlikely that the replication will not have occurred by the next day. If this is the case, then you have other problems with the directory as well.

ABCD corporation has multiple domains: ABCD.com, NH.ABCD.com, and TX.ABCD.com. You are the administrator for the NH.ABCD.com domain. There is a printer in your domain that everyone in the TX.ABCD.com domain has to be able to access. What do you need to do to make this happen?

Have the administrator in the TX.ABCD.com domain create a security Global group. Have the administrator then place all the users who need access to the printer into the global group. Create a Domain Local group in NH.ABCD.com domain and place the TX.ABCD.com global group into this domain local group. Give them print access--A good rule of thumb to follow is AGLP or AULP. First you create Accounts, Then place the accounts into Global or Universal groups. Then place the Global or Universal groups into Domain Locals and give the locals Permissions. Another way to remember groups is if you are the admin of a domain and users are coming to you (like in this question), you are local. If your users are going to another domain then they are going Global or Universal.

You want to allow the new jr. admins to have permissions to reset passwords for all users within a specific OU. However, it’s important that the admins not be able to make permissions changes for objects within other OUs in the domain. Which of the following is the best way to do this?

Use the Delegation of Control Wizard to assign the necessary permissions on the OU that he or she is to administer.--The Delegation of Control Wizard is designed to allow administrators to set up permissions on specific Active Directory objects.

True or False:You can create OUs in Active Directory Sites and Services.

False--OUs are created in Active Directory Users and Computers.

True or False:It is always better to delete accounts instead of disable accounts.

False--Depending on your organization, it may be better to disable accounts. When an account is deleted, even if the user comes back, they will need to get a new account with a new SID number. Also, if an account is disabled and you need to re-access the account, just enable it

True or False:Deprovisioning is managing Active Directory objects in the connector space.

True--Another object management task is the process of deprovisioning. Deprovisioning is managing Active Directory objects in the connector space. This is just another method of managing objects within Active Directory.