Section 5 - Chapter 13 Flashcards

1
Q

ADSI Edit

A

Query, view and edit directory objects and attributes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

DCDiag

A

diagnose AD DS directories and AD LDS instances

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

DFSRadmin

A

Manage DFS-R

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

DSACL

A

control access control lists on directory objects

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Dsamain

A

Mount AD store (.dit) backups or snapshots

New in 2008 r2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

DSdbutil

A

Maintenance AD DS store

Config AD LDS ports

View AD LDS instances

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

dsmgmt

A

manage application partitions and operations master roles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

GPfixup

A

repair domain name dependencies in GPOs, relink GPOs after a domain rename operation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Ksetup

A

Config client to use Kerberos v5 realm instead of AD DS domain

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

ktpass

A

config a non Windows Kerberos service as a security principal in AD DS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

ldp

A

perform LDAP operations against the directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

movetree

A

moves objects between domains in a forest

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

nltest

A

query rep status or verify trust relationships

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

nslookup

A

view info on name servers to diagnose DNS infrastructure problems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Ultrasound

A

troubleshoot and diagnose reps between DCs that use FRS, relies on WMI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

W32tm

A

View settings, manage config, or diagnose problems with Windows Time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Offline Maintenance 2008 r2

A

Can now start and stop AD DS service to perform maintenance, no longer need to shut down and restart the DC in DSRM

Can now script defragmentation and compaction operations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

AD Recycle Bin

A

2008 r2 Forest Functional Level

Enable-ADOptionalFeature -Identity ‘Cn=Recycle Bin Feature,CN=Optional Features,CN=Directory Service,CN=Windows NT, CN=Services,CN=Configuration,DC=contoso,DC=com’ -scope ForestOrConfigurationSet -Target ‘contoso.com’

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Win PS Set Forest Functional Level

A

Set-ADForestMode -Identity DNSForestName -ForestMode Windows2008R2Forest

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Recovering AD Recycle Bin Objects

A

recoverable 180 days

ldp.exe, connect to server, bind current logged on user, Return Deleted Objects, cn=Deleted Objects,dc=contoso,dc=com, double click object

Edit entry value = isDeleted
DistinguishedName
Replace

make sure Extended check box is selected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Recovering Objects pre 2008 r2

A

can use ldp - make sure to check synchronous and extended check boxes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

Win PS to Recover Objects

A

Get-AdOject and Restore-ADObject

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

System State Data

A
AD DS Role on Server
Registry
COM+ Class Registration database
System Files under Windows Resource Protection
AD DS database
Sysvol directory

Other Roles
AD CS database
Cluster service info
IIS config files

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Critical Volumes

A
System volume
Boot volume
Volume hosting sysvol share
Volume hosting AD DS database
Volume hosting AD DS logs
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Restore Downed Server
Windows Recovery Environment (WinRE) To install on DCs access to Windows Automated Installation Kit (WAIK) needed
26
Restore Options
Full server, system state only, individual files or folders
27
Backup Catalog File
Backups go to the same file, each time a new catalog file created, catalog file used to locate data for a particular backup
28
Installation From Media
IFM - ntdsutil ``` Options: Create Full destination Create RODC destination Create Sysvol Full destination Create Sysvol RODC destination ```
29
Windows Server Backup
In Admin Tools, launches Backup Once Wizard, chose options, choose destination
30
wbadmin.exe
wbadmin start backup -allcritical -backuptarget:location -quiet
31
Scheduling a backup | Windows Server Backup
Admin Tools, backup schedule, full server, specify backup time, specify destination type, select destination disk Formats disk when backup done
32
Scheduling a backup | wbadmin
wbadmin enable backup -addtarget:diskid -schedule:times -include:sourcedrives Task in Microsoft\Windows\Backup of Task Scheduler Target drive reformatted each time it runs
33
Restore Modes
Restoring nonauthoritative data Restoring authoritative data Restoring complete DC from backup
34
Restart to Restore
Restart and: Run WinRE In DSRM
35
Launch DSRM
F8 during startup Change boot bcdedit /set safeboot dsrepair When done bdcedit /deletevalue safeboot
36
Create snapshots
Creates a snapshot of the same volume as the database: ntdsutil "activate instance ntds" snapshot create quit quit
37
View Backup Data or Snapshot Contents
ntdsutil "activate instance NTDS" snapshot "list all" quit quit >snapshot.txt Look into file: notepad snapshot.txt Locate and copy GUID needed Mount Snapshot: ntdsutil, activate instance ntds, snapshot, mount GUID, quit, quit Load the snapshot as LDAP server dsmain -dbpath c:\$SNAP_datetime_VolumeC$\windows\ntds\ntds.dit -ldapport portnumber Use all caps for -dbpath value and any number beyond 40,000 for port Use ldp or AD U&C to access instance
38
Unmount snapshot
ntdsutil, activate instance ntds, snapshot, unmount GUID, quit, quit
39
wbadmin restore - non authoritative
Start in DSRM wbadmin get versions -backuptarget:drive -machine:servername wbadmin start systemstaterecovery -version:datetime -backuptarget:drive -machine:servername -quiet Restart in normal operating mode
40
Authoritative restore
Perform non authoritative restore Do not let rep Stop AD DS service ntdsutil, activate instance ntds, authoritative restore, restore object database, quit, quit Restart AD DS service
41
To restore only a portion of the directory
subcommand ntdsutil restore subtree ou=name,dc=dcname,dc=dcname
42
Full Server Recover
``` 2008 r2 installation DVD Repair Your Computer Link System Recovery Options - clear any OS Choose a Recovery Tool - System Image Recovery Select A System Image Select the lcoation of the Backup Select date and time of image to restore Choose Additional Restore Options, Format and Repartition Disks Exclude Disks Finish ```
43
Command Line Full Server Recovery
2008 r2 installation DVD wbadmin start sysrecovery -version:datetime -backuptarget:drive -machine:servername -quiet Restart server
44
Compact ntds.dit
``` Stop AD DS service ntdsutil activate instance ntds files compact to drive:\temp quit quit ``` copy files to c:\windows\ntds\ntds.dit (first move old one to new location in case needed again) del c:\windows\ntds\*.log Restart AD DS service Verify integrity
45
Moving ntds.dit
Stop AD DS service ``` ntdsutil activate instance ntds files info - look where they are now - optional move db to location move logs to location ``` Restart AD DS
46
Task Manager
Real time system status shows running: applications, processes and services, performance, networking and currently logged on users
47
Resource Manager
Graphs - single view, expandable components CPU Disk Memory Network Usage
48
Event Viewer
Apps, security, set up, system and forwarded events logs
49
Server Manager Logs
Provides custom log views that percolate all events related to a specific server role
50
Event logs
Shows info, warnings, and errors
51
Windows Reliability Monitor
tracks changes make to system
52
Performance Monitor
tracks performance data, logs and alerts Create system counters Server Performance Advisor and System Monitor Create re-usable data collector sets
53
Windows Reliability and Performance Monitor (WRPM)
Performance Monitor Reliability Monitor Data Collector Sets Reports
54
Performance Log Users
new builtin group 2008 r2 Must have log on as a batch job user right
55
Data Collector Sets | AD Diagnostics
AD Registry Keys Performance Counters Trace Events
56
Data Collector Sets | LAN Diagnostics
System Performance NIC System Hardware Registry Keys
57
Data Collector Sets | System Performance
Local DC Hardware Resources System Response Time Processes
58
Server Performance Advisor
2003 tool No longer in 2008 r2 Rolled into WRPM
59
Windows System Resource Manager (WSRM)
Added as a Features but is under Diagnostics in Service Manager Profiles apps to identify resources used Manage Mode - uses allocation policies to control how many resources application can use on server
60
WSRM Setup
# Define policies for resources Calendar rules apply policies Collect usage in local .txt or store on SQL db
61
WSRM allocations
Processes Users IIS applications pools
62
Network Manager
captures packets for analysis
63
Forwarded Events
Vista or 2008 Can forward to a single collector computer Start Windows Event Collector on collecting computer
64
Forwarded Events - Forwarder Config
Start Windows Event Collector Service winrm -quickconfig (sets up firewall and existing ports) Event Log Reader Group - make collecting computer a member On Subscriptions - create subscription Select File Location Select Collector Computer (TEST) Pick types of events http or https can be used
65
wecutil
Windows Event Collector Service
66
Server Performance Advisor
No more - use Reliability Performance
67
replmon
GUI replication manager