.

Thursday, July 19, 2012

microsoft exam Microsoft MCITP Certification Exam


To demote a domain controller, you basically access the Active Directory Installation Wizard. The wizard automatically notices that the neighborhood server is actually a domain controller, and it asks you to verify each and every step you take, as with most points you do in Windows. Note that if the nearby server is really a Global Catalog (GC) server, you be warned that at least one copy with the GC ought to stay on the market in order that you may carry out logon authentication.

In order for a domain to continue to exist, a minimum of 1 domain controller must remain in that domain. As noted in the dialog box in Figure 4.3, you have to take some really critical consid- erations into account when you are removing the last domain controller from the domain. If computers are still attempting to log on, they going to not be capable of use any with the security characteristics, such as any security permissions or logon accounts. Users will, yet, nevertheless have the ability to log on towards the laptop utilizing cached authenticated knowledge.

All the user accounts that reside within the domain (and all the resources and permissions associated with them) shall be lost when the domain is destroyed. Once the domain no longer exists, the security information stored inside it is going to no longer be obtainable, and any encrypted advice stored in the filesystem will grow to be permanently inaccessible. So, you must decrypt any encrypted information ahead of you start the demotion approach in order that it is possible to be sure it is possible to access this information and facts afterward. For example, when you have encrypted files or folders that reside on NTFS volumes, you must decrypt them prior to you continue with the demotion approach.

No comments:

Post a Comment