Active Directory Flashcards
9 cards from real MCM practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 9 Active Directory flashcards as text
What is the primary purpose of Active Directory?
Answer: To centralize resource management and security.
Active Directory's primary purpose is to provide a centralized, hierarchical directory service for managing network resources like users, computers, and groups. It enables administrators to enforce security policies, authenticate users, and control access to resources across an entire Windows domain. This centralization simplifies administration and enhances security.
Which protocol is used by Active Directory for communication?
Answer: LDAP
Active Directory primarily uses the Lightweight Directory Access Protocol (LDAP) for communication between clients and servers. LDAP is a standard protocol for accessing and maintaining distributed directory information services. It allows users and applications to query and modify directory data efficiently.
What does the Group Policy feature in Active Directory do?
Answer: Manages and enforces security settings and configurations.
Group Policy is a powerful feature within Active Directory that allows administrators to manage and enforce security settings, software installations, and various configurations for users and computers. It provides a centralized way to define the working environment for users and computer accounts. This ensures consistent security and operational policies across the organization.
Which tool is used to manage Active Directory on Windows Server?
Answer: Active Directory Users and Computers
Active Directory Users and Computers (ADUC) is the primary graphical user interface (GUI) tool used by administrators to manage Active Directory objects. It allows for the creation, modification, and deletion of users, groups, computers, and organizational units within a domain. This tool is essential for day-to-day Active Directory administration.
What does the term 'Trust Relationship' in Active Directory refer to?
Answer: A security relationship between two domains.
A Trust Relationship in Active Directory establishes a secure communication path and allows users in one domain to be authenticated by a domain controller in another domain. This enables users and resources in different domains to access each other, facilitating resource sharing and centralized management across multiple domains. It's crucial for multi-domain environments.
What is an Organizational Unit (OU) in Active Directory?
Answer: A container used to organize resources within a domain.
An Organizational Unit (OU) is a container object within an Active Directory domain that allows for the hierarchical organization of users, groups, computers, and other OUs. OUs are used to delegate administrative control and apply Group Policy settings to specific subsets of objects. This structure simplifies management and allows for granular control within a domain.
Which of the following is a key feature of Active Directory Domain Services (AD DS)?
Answer: It provides centralized user authentication and authorization.
Active Directory Domain Services (AD DS) is the core component of Active Directory, providing a centralized system for user authentication and authorization. It allows users to log in once and access various network resources based on their assigned permissions. This enhances security, simplifies access management, and provides a single sign-on experience.
What is the function of DNS in Active Directory?
Answer: It resolves domain names to IP addresses for locating resources.
DNS (Domain Name System) is critical for Active Directory because it resolves human-readable domain names to numerical IP addresses, allowing computers to locate domain controllers and other network resources. Without proper DNS resolution, Active Directory services would not function correctly. It acts as the 'phone book' for the network.
Which of the following is an example of a default Active Directory group?
Answer: Domain Admins
"Domain Admins" is a powerful default security group created automatically when an Active Directory domain is established. Members of this group have full administrative control over the entire domain, including all domain controllers and objects. It is a critical built-in group for managing the Active Directory environment.