General Active Directory Interview Questions
General Active Directory Interview Questions
General Active Directory Interview Questions
Additional Information: There are so many you can pick from. I have listed 5
below. However, you could chose from the list in the article in this link – Active
Directory Objects List.
There are two parts to this AD interview question. One, name the 2 protocols
used by AD. Two, explain the protocols.
Additional Information: This question are two questions bundled into one
question. When you attend an AD interview or any interview, it is important to
Liston attentively to the questions and ensure you provide a complete answer.
For more information read How DNS Support for Active Directory Works.
Question 8: What is the Name of the GUI Tool You Use to Promote a
Windows Sever 2016 to a Domain Controller?
Answer: Server Manager
Question 9: What is the Name of the Role You Install in Server Manager
to Promote a Server to a Domain Controller?
Answer: Active Directory Domain Services
Though DCPROMO have been deprecated, you have another command line
option. PowerShell! You can still promote a Server to DC using PowerShell. See
Active Directory Questions relating to PowerShell later.
Question 12: Name the 4 types of Forest Trusts You Can Create in AD?
Answer: External, Forest, Shortcut, and Realm trusts.
Additional Information: Forest Trusts allows 2 Active Directory Domains, to
communicate with each other and share resources.
Question 13: Name a GUI Tool You can Use to Create and Manage
Trusts in AD?
Answer: Active Directory Domains and Trusts
Question 14: Name a Command Line Tool You Can Use to Manage AD
Replication.
Answer: Repadmin
Additional Information: To get the command line options for Repadmin, type
the command:
Repadmin /?
Run Repadmin command in a Domain Controller.
Question 15: What AD GUI Tool Can You Use to Configure Replication
Between Two Domain Controllers?
Answer: Active Directory Sites and Services
Question 21: Name the Windows Tool You Use to Create Managed
Service Accounts
Answer: Windows PowerShell
Question 23: Name one GUI tool and a Command Line Tool You can
Use to Create a Service Principal Name?
Answer 1 (GUI Tool): Active Directory Users and Computers
On subsequent logon requests by the same user, the domain controller (with
UGMC enabled) uses cached universal group memberships. It means that the
DC does not have to contact a global catalog server.
Only global catalog servers store the memberships of all universal groups in the
forest. Therefore, if a global catalog server is not available in the site when a
user logs on to a domain, the domain controller must contact a global catalog
server in another site. If the link between the sites ina slow WAN link, this can
potentially slow down the login session. Thus, the need for UGMC.
Question 26: Name one Tool You Can Use to Transfer and Seize FSMO
Roles
Answer: ntdsutil
Question 27: List the Items Backed Up When You Perform a System
State Backup of a DC.
Answer: A DC system state backup copies the following:
Registry.
COM+ Class Registration database.
Boot files.
Active Directory database (Ntds.dit) file and log files.
SYSVOL directory.
Additional Information: Depending on roles installed on the DC, the following
additional files may be included in a DC system state backup: