Tuesday, December 8, 2009

Active Directory Interview Questions & Answers

1.What is AD?
Active directory is a centralized database where it contains information about objects like Users, Groups, Computers, Printers, OUs, and Contacts & shared folders.
2.Feature of AD?
Fully Integrated Security, integration with DNS, Policy Based Administration, Scalable, Flexible, Extensible, inter operability with other directory services.
3.What is the Component of AD?
Logical Structure: Domains, Tress, Forests and OU.
Physical Structure: Sites and Domain Controllers.
4.What is structure of AD?
Logical & Physical
5.What is the protocol used by AD for directory Access?
LDAP (Light Weight Directory Access Protocol)
6.What are the naming conventions used by LDAP?
DN (Distinguished Name), RDN (Relative Distinguished Name), UPN (User Principal Name), GUID (Global Unique Identifier)
7.What is a Domain?
Domain is collection of computers connected together with a server and users.
8.What is a workgroup?
Collection of computers connected together without a server (only client).
9.What is a Tree?
Tree is a logical component of AD, is a collection of domains which share contiguous.
10.What is a Forest?
Collection of trees which don’t share contiguous name space
11.What is a Site?
Site is a physical component of AD; group of TCP/IP subnets connected with a high speed was link.
12.What is DC?
Server with AD install
13.What is a child DC?
CDC is a sub domain controller under root domain controller which share name space
14.What is an additional DC?
It is a backup server for DC.
15.How to promote DC on a member server?
Start>run>DCPROMO (Domain Controller Promotion)
16.What is a roll of ADC?
It maintains backup of AD to provide fault tolerance and network load balancing.
17.How many ADC can create on a DC?
Any no. of ADCs
18.What are the additional tools found after installing a DC?
Active Directory User and Computers,
Active Directory Sites and Services,
Active Directory Domain & Trust,
Domain Controller Security Policy,
Domain Security Policy
19.What is the diff. functional level of 2003?
Domain functional level & Forest functional level
20.What is a member server?
2000 & 2003 server which is a part of the domain
21.What is a standalone server?
Server which is not a part of domain
22.What is an Object?
It is a representation of in entity.
23.What are the different Objects in AD?
Users, Groups, Computers, Printers, OUs, Contacts & Share Folders
24.What is a Schema?
Schema is design of AD, defines objects and classes, set of rules.
25.What is an Attribute?
Attribute is a place of information about objects (Properties of Objects)
26.What is Class?
Class is a Collection of AD objects.
27.What is an FSMO?
Flexible Single Master Operation
28.What is the diff. operation master of 2003?
Schema Master, Domain Naming Master, PDC Emulator, Infrastructure Master, RID Masters.
29.What is a Schema Master?
Is responsible for overall management, structure and design of schema Only one schema master in entire forest
30.What is domain naming master?
Is responsible for addition or removal of domains and maintaining unique domain names only one domain naming master in entire forest
31.What is a PDC Emulator?
Is responsible for providing backup compatibility for NT BDCs, in mixed mode it acts like a PDC for BDCs. It updates the password changes, synchronizes time between DCs. Only one PDC Emulator per domain.
32.What is infrastructure Master?
Is responsible for updating user and group information and updating Global Catalog Only one infrastructure master per domain
33.What is RID Master?
Relative identifier is responsible for assigning unique IDs to the object s created in the AD. Only one RID Master per domain.

18 comments:

  1. ver nice questions, need more ...

    ReplyDelete
  2. Thank you very much. Excellent job done.

    Dharmendra

    ReplyDelete
  3. thanks for commenting....

    More stuff on http://www.makemyserver.com

    ReplyDelete
  4. Many Thanks for sharing these question & answered, it helped me a lot!!

    ReplyDelete
  5. Thanks it's really helpful...

    ReplyDelete
  6. Great work done...
    Thanks for that.

    ReplyDelete
    Replies
    1. Hi

      Tks very much for post:

      I like it and hope that you continue posting.

      Let me show other source that may be good for community.

      Source: Security manager interview questions

      Best rgs
      David

      Delete
    2. I installed AD with windows server 2012 and when I browse tool->computer management
      I did not find local user and groups

      can you help

      Delete
    3. Open the Start screen, type lusrmgr.msc (with as first character an L, not a capital i) and press Enter to open the Local Users and Groups management console.

      Delete
  7. Many wrong answers. For example, infrastructure master is not responsible for updation of global catalog. Even microsoft has a very nice descriptive article on Why Infrastructure Master and Global Catalog should not be on the same server. The global catalog server holds a partial replica of every object in the forest, the infrastructure master, if placed on a global catalog server, will never update anything, because it does not contain any references to objects that it does not hold.

    ReplyDelete
    Replies
    1. http://technet.microsoft.com/en-us/library/cc773108(v=ws.10).aspx

      please go through this article:-
      "At any time, there can be only one domain controller acting as the infrastructure master in each domain. The infrastructure master is responsible for updating references from objects in its domain to objects in other domains. The infrastructure master compares its data with that of a global catalog. Global catalogs receive regular updates for objects in all domains through replication, so the global catalog data will always be up to date. If the infrastructure master finds data that is out of date, it requests the updated data from a global catalog. The infrastructure master then replicates that updated data to the other domain controllers in the domain"

      Delete
  8. Thanks very much for the questions and answers, really they are helpful.

    ReplyDelete
  9. Awesome information buddy.

    I was looking for same sort of questions and answers

    Visit my blog www.technology-howto.com

    ReplyDelete