Multi-domain access

  1. What is the concept of a domain tree?
    A domain tree is a number of domains with contiguous name spaces, that is, in a domain tree, all domain names have the same extension.
  2. What is the concept of subdomain?
    Any new domain added to the domain is a subdomain, and the domain above the subdomain is the parent domain
  3. What is Lin's concept?
    A single domain tree or multiple domain trees becomes a forest, and different domain trees in the forest do not share a continuous name space.
  4. Graphically express the trust relationship with the forest

  5. What is the difference between the scope of a local domain group and a global group?
    The scope of the local domain group is the scope of the local domain global group is the entire forest, that is, the trust domain
  6. Brief description of AGDLP rules
    A means account, G means global group, DL means local domain group, and P means grant permissions.
  7. What are the two types of trust relationships between forests?
    Cross-domain access in the forest
  8. What is the difference between external trust and forest trust?
    External trust refers to the non-transitive trust created between domains in different forests.
    Forest trust is a forest-specific trust in the advanced version of Windows server. The forest trust can only be created when the functional level of both forests is Windows server 2003 or higher. The creation of a forest trust between two forests can provide a one-way or two-way transitive trust relationship between each domain in any forest.
  9. What kind of work scenario is suitable for inter-forest cross-domain access?
    After the trust relationship is established between forests, there is no guarantee that resources can be successfully accessed. Just like cross-domain access in forests, access permissions must be set correctly to successfully access resources
    (1) The account of the trusted domain is added to the entire crew of the domain
    (2) Join the global group of the trusted domain to the local domain group of the
    trusting domain (3) Set permissions for the local domain group of the trusting domain
  10. What are the trust directions of external trust and forest trust?
    The direction of trust is divided into one-way and two
    -way. One-way trust is divided into internal transmission and external
    transmission. Internal transmission: the designated domain trusts the local domain

Guess you like

Origin blog.51cto.com/15070896/2576794