Section 5 - Chapter 13 Flashcards

1
Q

ADSI Edit

A

Query, view and edit directory objects and attributes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

DCDiag

A

diagnose AD DS directories and AD LDS instances

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

DFSRadmin

A

Manage DFS-R

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

DSACL

A

control access control lists on directory objects

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Dsamain

A

Mount AD store (.dit) backups or snapshots

New in 2008 r2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

DSdbutil

A

Maintenance AD DS store

Config AD LDS ports

View AD LDS instances

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

dsmgmt

A

manage application partitions and operations master roles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

GPfixup

A

repair domain name dependencies in GPOs, relink GPOs after a domain rename operation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Ksetup

A

Config client to use Kerberos v5 realm instead of AD DS domain

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

ktpass

A

config a non Windows Kerberos service as a security principal in AD DS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

ldp

A

perform LDAP operations against the directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

movetree

A

moves objects between domains in a forest

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

nltest

A

query rep status or verify trust relationships

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

nslookup

A

view info on name servers to diagnose DNS infrastructure problems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Ultrasound

A

troubleshoot and diagnose reps between DCs that use FRS, relies on WMI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

W32tm

A

View settings, manage config, or diagnose problems with Windows Time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Offline Maintenance 2008 r2

A

Can now start and stop AD DS service to perform maintenance, no longer need to shut down and restart the DC in DSRM

Can now script defragmentation and compaction operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

AD Recycle Bin

A

2008 r2 Forest Functional Level

Enable-ADOptionalFeature -Identity ‘Cn=Recycle Bin Feature,CN=Optional Features,CN=Directory Service,CN=Windows NT, CN=Services,CN=Configuration,DC=contoso,DC=com’ -scope ForestOrConfigurationSet -Target ‘contoso.com’

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Win PS Set Forest Functional Level

A

Set-ADForestMode -Identity DNSForestName -ForestMode Windows2008R2Forest

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Recovering AD Recycle Bin Objects

A

recoverable 180 days

ldp.exe, connect to server, bind current logged on user, Return Deleted Objects, cn=Deleted Objects,dc=contoso,dc=com, double click object

Edit entry value = isDeleted
DistinguishedName
Replace

make sure Extended check box is selected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Recovering Objects pre 2008 r2

A

can use ldp - make sure to check synchronous and extended check boxes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Win PS to Recover Objects

A

Get-AdOject and Restore-ADObject

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

System State Data

A
AD DS Role on Server
Registry
COM+ Class Registration database
System Files under Windows Resource Protection
AD DS database
Sysvol directory

Other Roles
AD CS database
Cluster service info
IIS config files

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Critical Volumes

A
System volume
Boot volume
Volume hosting sysvol share
Volume hosting AD DS database
Volume hosting AD DS logs
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Restore Downed Server

A

Windows Recovery Environment (WinRE)

To install on DCs access to Windows Automated Installation Kit (WAIK) needed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Restore Options

A

Full server, system state only, individual files or folders

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Backup Catalog File

A

Backups go to the same file, each time a new catalog file created, catalog file used to locate data for a particular backup

28
Q

Installation From Media

A

IFM - ntdsutil

Options:
Create Full destination
Create RODC destination
Create Sysvol Full destination
Create Sysvol RODC destination
29
Q

Windows Server Backup

A

In Admin Tools, launches Backup Once Wizard, chose options, choose destination

30
Q

wbadmin.exe

A

wbadmin start backup -allcritical -backuptarget:location -quiet

31
Q

Scheduling a backup

Windows Server Backup

A

Admin Tools, backup schedule, full server, specify backup time, specify destination type, select destination disk

Formats disk when backup done

32
Q

Scheduling a backup

wbadmin

A

wbadmin enable backup -addtarget:diskid -schedule:times -include:sourcedrives

Task in Microsoft\Windows\Backup of Task Scheduler

Target drive reformatted each time it runs

33
Q

Restore Modes

A

Restoring nonauthoritative data
Restoring authoritative data
Restoring complete DC from backup

34
Q

Restart to Restore

A

Restart and:
Run WinRE
In DSRM

35
Q

Launch DSRM

A

F8 during startup

Change boot
bcdedit /set safeboot dsrepair

When done
bdcedit /deletevalue safeboot

36
Q

Create snapshots

A

Creates a snapshot of the same volume as the database:

ntdsutil “activate instance ntds” snapshot create quit quit

37
Q

View Backup Data or Snapshot Contents

A

ntdsutil “activate instance NTDS” snapshot “list all” quit quit >snapshot.txt

Look into file:
notepad snapshot.txt

Locate and copy GUID needed

Mount Snapshot:
ntdsutil, activate instance ntds, snapshot, mount GUID, quit, quit

Load the snapshot as LDAP server
dsmain -dbpath c:$SNAP_datetime_VolumeC$\windows\ntds\ntds.dit -ldapport portnumber

Use all caps for -dbpath value and any number beyond 40,000 for port

Use ldp or AD U&C to access instance

38
Q

Unmount snapshot

A

ntdsutil, activate instance ntds, snapshot, unmount GUID, quit, quit

39
Q

wbadmin restore - non authoritative

A

Start in DSRM

wbadmin get versions -backuptarget:drive -machine:servername

wbadmin start systemstaterecovery -version:datetime -backuptarget:drive -machine:servername -quiet

Restart in normal operating mode

40
Q

Authoritative restore

A

Perform non authoritative restore

Do not let rep

Stop AD DS service

ntdsutil, activate instance ntds, authoritative restore, restore object database, quit, quit

Restart AD DS service

41
Q

To restore only a portion of the directory

A

subcommand ntdsutil

restore subtree ou=name,dc=dcname,dc=dcname

42
Q

Full Server Recover

A
2008 r2 installation DVD
Repair Your Computer Link
System Recovery Options - clear any OS
Choose a Recovery Tool - System Image Recovery
Select A System Image
Select the lcoation of the Backup
Select date and time of image to restore
Choose Additional Restore Options, Format and Repartition Disks
Exclude Disks
Finish
43
Q

Command Line Full Server Recovery

A

2008 r2 installation DVD

wbadmin start sysrecovery -version:datetime -backuptarget:drive -machine:servername -quiet

Restart server

44
Q

Compact ntds.dit

A
Stop AD DS service
ntdsutil
activate instance ntds
files
compact to drive:\temp
quit
quit

copy files to c:\windows\ntds\ntds.dit (first move old one to new location in case needed again)

del c:\windows\ntds*.log

Restart AD DS service

Verify integrity

45
Q

Moving ntds.dit

A

Stop AD DS service

ntdsutil
activate instance ntds
files
info - look where they are now - optional
move db to location
move logs to location

Restart AD DS

46
Q

Task Manager

A

Real time system status shows running: applications, processes and services, performance, networking and currently logged on users

47
Q

Resource Manager

A

Graphs - single view, expandable components

CPU
Disk
Memory
Network Usage

48
Q

Event Viewer

A

Apps, security, set up, system and forwarded events logs

49
Q

Server Manager Logs

A

Provides custom log views that percolate all events related to a specific server role

50
Q

Event logs

A

Shows info, warnings, and errors

51
Q

Windows Reliability Monitor

A

tracks changes make to system

52
Q

Performance Monitor

A

tracks performance data, logs and alerts

Create system counters

Server Performance Advisor and System Monitor

Create re-usable data collector sets

53
Q

Windows Reliability and Performance Monitor (WRPM)

A

Performance Monitor
Reliability Monitor
Data Collector Sets
Reports

54
Q

Performance Log Users

A

new builtin group 2008 r2

Must have log on as a batch job user right

55
Q

Data Collector Sets

AD Diagnostics

A

AD

Registry Keys

Performance Counters

Trace Events

56
Q

Data Collector Sets

LAN Diagnostics

A

System Performance

NIC

System Hardware

Registry Keys

57
Q

Data Collector Sets

System Performance

A

Local DC

Hardware Resources

System Response Time

Processes

58
Q

Server Performance Advisor

A

2003 tool

No longer in 2008 r2

Rolled into WRPM

59
Q

Windows System Resource Manager (WSRM)

A

Added as a Features but is under Diagnostics in Service Manager

Profiles apps to identify resources used

Manage Mode - uses allocation policies to control how many resources application can use on server

60
Q

WSRM Setup

A

Define policies for resources

Calendar rules apply policies

Collect usage in local .txt or store on SQL db

61
Q

WSRM allocations

A

Processes

Users

IIS applications pools

62
Q

Network Manager

A

captures packets for analysis

63
Q

Forwarded Events

A

Vista or 2008

Can forward to a single collector computer

Start Windows Event Collector on collecting computer

64
Q

Forwarded Events - Forwarder Config

A

Start Windows Event Collector Service
winrm -quickconfig (sets up firewall and existing ports)

Event Log Reader Group - make collecting computer a member

On Subscriptions - create subscription

Select File Location

Select Collector Computer

(TEST)

Pick types of events

http or https can be used

65
Q

wecutil

A

Windows Event Collector Service

66
Q

Server Performance Advisor

A

No more - use Reliability Performance

67
Q

replmon

A

GUI replication manager