NT1330
Lab 6 Creating and Managing and Groups
Exercise 6.2 Testing Administrative Access:
PART A: Determine Which Accounts Can Create Sites
Q1. Which Administrative user accounts can create a site? Only the domain admin and the schema admin can create sites.
PART B: Determine Which Accounts Can Create Users
Q2. Which administrative user accounts can create a user account? The Schema Admin and the Ent Admin accounts can create user accounts.
PART C: Determine Which Accounts Can Managing the Schema
3. Screen shot of the registration succeeded message box:
Q3. Which administrative user accounts can view or modify the schema? Only the schadmin can modify the schema and the other two can only view.
Exercise 6.3 Configuring Groups and Permissions
PART C: Assigning Permissions Through Group Membership
Q4. Can you perform administrative tasks, such as creating a user account, shutting down the server, or setting the time, on the domain controllers? Explain the group membership chain that provides this user account with its current permissions. Yes the localadmin account can do administrative tasks.
Exercise 6.4 Using dsadd to Add a User Account
PART A: Using dsadd to Create an OU and User in the Parent Domain
Q5. What does the –desc switch do? The –desc gives it a description.
5. Screen shot of the users and Computers console showing that the sales OU exists and that the Kim user account exists inside the OU.