Anda di halaman 1dari 1

Forest-wide operations master roles

Schema master
Domain naming master

Domain-wide operations master roles


Relative ID (RID) master
Primary domain controller (PDC) emulator master
Infrastructure master

These roles are also known as FSMO roles flexible single master operation.

Schema master
The schema master domain controller controls all updates and modifications to the schema.
There can be only one schema master in the entire forest

Domain naming master


The addition or removal of domains in the forest, there can be only one domain naming master in the
entire forest.

Relative ID (RID) master


The RID master allocates sequences of relative IDs (RIDs) to each of the various domain controllers in its
domain
Whenever a domain controller creates a user, group, or computer object, it assigns the object a unique
security ID (SID).

PDC emulator master


It processes password changes from clients and replicates updates to the BDCs,
If a logon authentication fails at another domain controller due to a bad password then that domain
controller will forward the authentication request to the PDC emulator before rejecting the log on attempt.
PDC emulator master is also responsible for synchronizing the time on all domain controllers throughout
the domain

Infrastructure master
The infrastructure master is responsible for updating references from objects in its domain to objects in
other domains,

Why should not Infrastructure master and global catalog in the same server?
If the infrastructure master and global catalog are on the same domain controller, the infrastructure
master will not function. The infrastructure master will never find data that is out of date, so it will never
replicate any changes to the other domain controllers in the domain.

What is KCC (Knowledge Consistency Checker?)


A connection object is a connection that AD uses for replication. Connection objects are fault tolerant.
When a communication fails, AD will automatically reconfigure itself to use another route to continue
replication. The process that creates connection objects is called Knowledge Consistency Checker
(KCC)

What is the SYSVOL folder?


The sysVOL folder stores the server's copy of the domain's public files. The contents such as group
policy, users etc of the sysvol folder are replicated to all domain controllers in the domain. The sysvol
folder must be located on an NTFS volume.

Where exactly do fault-tolerant DFS shares store information in Active Directory?


In Partition Knowledge Table, this is then replicated to other domain controllers.

Anda mungkin juga menyukai