You are on page 1of 6

Lab A: Maintaining Active Directory Answer Key

This Answer Key provides the detailed steps for completing Lab A: Maintaining Active Directory in Module 10, Maintaining Active Directory.

Exercise 1 Backing Up Active Directory


In this exercise, you will create an organizational unit and a set of user accounts in the new organizational unit. You will then delete the organizational unit after you back up the system state data on the domain controller. Task 1

! Browse to Domain.nwtraders.msft and then create an organizational


unit 1. Log on as Nwtradersx\ComputerNameUser (where ComputerName is the name of your computer) with a password of P@ssw0rd 2. Click Start, point to Administrative Tools, right-click Active Directory Users and Computers, and then click Run as. 3. In the Run as dialog box, click The following user. 4. In the User name box, type Nwtradersx\Administrator with a password of P@ssw0rd 5. In Active Directory Users and Computers, right-click nwtradersx.msft, point to New, and then click Organizational Unit. 6. In the New Object - Organizational Unit dialog box, type LabComputerNameOU and then click OK.

Task 2

! Create the following user accounts in the LabComputerNameOU


organizational unit First name = ComputerName. Last name = User1. Logon Name = ComputerNameUser1 First name = ComputerName. Last name = User2. Logon Name = ComputerNameUser2 1. In the console tree, expand your domain, right-click the LabComputerNameOU organizational unit, point to New, and then click User. 2. In the New Object User dialog box, specify the user account information that the lab instructions provided for each user, and then click Next.

Lab A: Maintaining Active Directory Answer Key

3. In the Password and Confirm Password boxes, type St@rTr3k! 4. In the New Object User dialog box, select the Account is Disabled check box, click Next, and then click Finish. Task 3

! Initiate replication with your partners domain controller


1. Start Active Directory Sites and Services as Nwtradersx\Administrator by using Run as with a password of P@ssw0rd 2. Expand Sites, expand LabComputerNameSite, expand Servers, expand ComputerName, and then click NTDS Settings. 3. Right-click the connection object, click Replicate Now, and then click OK. 4. In Active Directory Users and Computers, click nwtradersx.msft, and press F5 to refresh the display. 5. Verify that both organizational units appear. Note: If your partners organizational unit does not appear, repeat steps 3 and 4. 6. Close Active Directory Sites and Services and Active Directory Users and Computers.

Task 4

! Back up your domain controllers system state data


Important Make sure that you set the backup to use detailed logging. 1. Start the backup as Nwtradersx\Administrator by using Run as with a password of P@ssw0rd 2. On the Welcome to the Backup or Restore Wizard page, click Advanced Mode. 3. On the Tools menu, click Options. 4. On the Backup Log tab, click Detailed, click OK, and then click Backup Wizard (Advanced). 5. On the Welcome to the Backup Wizard page, click Next. 6. On the What to Backup page, click Only Backup the System State data, and then click Next. 7. On the Backup Type, Destination, and Name page, click Browse. 8. In the Save As dialog box, click Save, and then click Next. 9. On the Completing the Backup Wizard page, click Finish.

Task 5

! View the log of the backed-up session


1. In the Backup Progress dialog box, click Report, and then view the log. 2. Close the log, close Backup Progress, and then close the Backup utility.

Lab A: Maintaining Active Directory Answer Key

Task 6

! Delete the organizational units that you created earlier, confirm the
deletion of both objects, and then force replication if necessary Important Each student performs the following steps. 1. Start Active Directory User and Computers as Nwtradersx\Administrator by using Run as with a password of P@ssw0rd 2. Expand nwtradersx.msft, right-click LabComputerNameOU, click Delete, and then click Yes. 3. Click Yes to confirm that you want to delete this object and its contents.

Task 7

! Initiate replication with your partners domain controller


1. Start Active Directory Sites and Services as Nwtradersx\Administrator by using Run as with a password of P@ssw0rd 2. Expand Sites, expand LabComputerNameSite, expand Servers, expand ComputerName, and then click NTDS Settings. 3. Right-click the connection object, click Replicate Now, and then click OK. 4. In Active Directory Users and Computers, click nwtradersx.msft, and then press F5 to refresh the display. 5. Verify that both organizational units have been deleted. Note: If your partners organizational unit still appears, repeat steps 3 and 4. 6. Close Active Directory Sites and Services and Active Directory Users and Computers.

Lab A: Maintaining Active Directory Answer Key

Exercise 2 Restoring Active Directory


In this exercise, you will test Northwind Traders disaster recovery capabilities by trying to restore the organizational units that you recently deleted. Task 1

! Restart your domain controller in Directory Services Restore Mode


1. Start a command prompt as Nwtradersx\Administrator by using Run as with a password of P@ssw0rd 2. At the command prompt, type shutdown /r /d p:2:4 3. Restart your domain controller in Directory Services Restore Mode 4. Log on as Administrator with a password of P@ssw0rd

Task 2

! Restore the domain controllers system state from the previous backup
1. Start the Backup utility. 2. On the Welcome to the Backup or Restore Wizard page, click Advanced Mode. 3. In the Backup Utility [Untitled] dialog box, on the Restore and Manage Media tab, expand all items until you see the system state backup that you created in Exercise 1, select the backup for restore, and then click Start Restore. 4. In the Warning window, click OK, and then in the Confirm Restore window, click OK. 5. After the restore has completed, click Close. 6. When prompted to restart your computer, click No. 7. Close the Backup utility.

Task 3

! Mark the organizational unit that you restored as authoritative


1. Click Start, click Run, type CMD and then click OK. 2. At the command prompt, type ntdsutil and then press ENTER. 3. At the ntdsutil prompt, type authoritative restore and then press ENTER. 4. At the authoritative restore prompt, type restore subtree ou=LabComputerNameOU,dc=nwtradersx,dc=msft and then press ENTER. 5. In the Authoritative Restore Confirmation Dialog dialog box, click Yes. 6. Restart your domain controller.

Lab A: Maintaining Active Directory Answer Key

Exercise 3 Verifying the Results of an Active Directory Restore


In this exercise, you will verify that the deleted objects have been restored and replicated to the domain controllers in the domain. Task 1

! Initiate replication with your partners domain controller and verify


that the organizational unit was authoritatively restored 1. Log on as Nwtradersx\ComputerNameUser with a password of P@ssw0rd 2. Start Active Directory Sites and Services as Nwtradersx\Administrator by using Run as with a password of P@ssw0rd 3. Expand Sites, expand LabComputerNameSite, expand Servers, expand ComputerName, and then click NTDS Settings. 4. Right-click the connection object, click Replicate Now, and then click OK. 5. Start Active Directory Users and Computers as Nwtradersx\Administrator by using Run as with a password of P@ssw0rd 6. Click nwtradersx.msft, and then press F5 to refresh the display. 7. Verify that both organizational units appear. Note: If your partners organizational unit does not appear, perform steps 3 and 4 again. 8. Close Active Directory Sites and Services.

THIS PAGE INTENTIONALLY LEFT BLANK

You might also like