answersLogoWhite

0


Best Answer

Each RODC will have an analagous group that will prevent users passwords from being stored only on a single DC. Members of the purpose group are not eligible to have their passwords stored on any RODC in the domain

User Avatar

Darwin Hudson

Lvl 10
1y ago
This answer is:
User Avatar

Add your answer:

Earn +20 pts
Q: What are the security administrative issues addressed by a read only domain controller?
Write your answer...
Submit
Still have questions?
magnify glass
imp
Related questions

Why do we need domain controller?

a domain controller (DCO) is a server that responds to security authentication requests (logging in, checking permissions, etc.) within the Windows Server domain


What is the term used for a server that has active directory domain service installed?

domain controller DC a domain controller (DC) is a server that responds to security authentication requests (logging in, checking permissions, etc.) within the Windows Server domain.


What is a domain controller?

Domain Controller it is Microsoft Windows Server 2000/2003 directory server that provides access controls over users, accounts, groups, computers and other network resources. Domain Controller authenticate users and maintains directory services and the security database for a domain.


Why ADS is required for domain controller?

Domain Controller it is Microsoft Windows Server 2000/2003 directory server that provides access controls over users, accounts, groups, computers and other network resources. Domain Controller authenticate users and maintains directory services and the security database for a domain. without ADS it is not possible.


What 3 types of domain controller does Exchange access?

Global Catalog, Normal Domain Controller, and Configuration Domain Controller


What is the different between domain and domain controller?

Server is a computer which serves files to other users or computers. A server can be a windows XP operating system also, but it does not have any securityDomain controller is a computer which controls other users or computers .A domain controller must have windows 2003 server operating system and need to configure as a domain. It has a Excellent security


What is RID master?

What is the RID Master role? The RID Master is one of the operations master roles that exist in each domain in a forest. It controls the sequence number for the domain controllers within a domain. It provides a unique sequence of RIDs to each domain controller in a domain. When a domain controller creates a new object, the object is assigned a unique security ID consisting of a combination of a domain SID and a RID. The domain SID is a constant ID, whereas the RID is assigned to each object by the domain controller. The domain controller receives the RIDs from the RID Master. When the domain controller has used all the RIDs provided by the RID Master, it requests the RID Master to issue more RIDs for creating additional objects in the domain. When a domain controller exhausts its pool of RIDs, and the RID Master is unavailable, any new object in the domain cannot be created


What is a domain controller server?

In network first server has been install is call domain controller server.. If you wan t to check server is domain controller or, backup domain controller. you can check Run -> cmd -> net accounts If computer role will show PRIMARY it means your domain is PRIYMARY domain controller, if it will be show BACKUP, means you can assume my domain installed in my network is ADC (Additional Domain Controller) Hope you will get benefit.. Regards, Ranjeet karak New Delhi


Which is a physical object domain controller or forest in active directory?

Domain controller is the physical object.


What is Active Directory rid?

Users, computers, and groups (collectively known as "security principals") that are stored in Active Directory are assigned Security Identifiers (SIDS), which are unique alphanumeric numeric strings that map to a single object in the domain. SIDS consist of a domain-wide SID concatenated with a monotonically-increasing relative identifier (RID) that is allocated by each Windows 2000 domain controller in the domain. Each Windows 2000 domain controller is assigned a pool of RIDs by the RID flexible single-master operations (FSMO) owner in each Active Directory domain. The RID FSMO is responsible for issuing a unique RID pool to each domain controller in its domain.


When is it possible to use administrative shares?

To use administrative shares you have to belong to a domain. Administrative shares only work on a domain and are default settings.


What is DCDIAG When would you use it?

it is the command line tool used to analyze the state of Windows domain controller it can check DNS errors.It can also help to check security for AD domain.