|
|
 |

 |
|
Microsoft® Windows® Server 2003 Administrator's Pocket Consultant
|
|
 |
Author |
 |
William R. Stanek
|
 |
|
Pages |
576
|
|
Disk |
N/A
|
|
Level |
All Levels
|
|
Published |
03/12/2003
|
|
ISBN |
9780735613546
|
|
ISBN-10 |
0-7356-1354-0
|
|
Price(USD) |
$29.99
To see this book's discounted price, select a reseller below.
|
|
|
|
|
 |
|
|
Index
Symbols
%HomeDrive%, 227
%HomePath%, 227
%Processor_Architecture%, 227
%SystemRoot%, 116, 227
%UserName%, 227
A
A (address) record, DNS, 499, 500-501
access control entries (ACEs), 178-79
access controls
account permissions, 189
permissions, 331
printer permissions, 436-37
Removable Storage permissions, 387-89
security model and, 178-79
account lockout
duration, 208
enabling account following, 246
threshold, 207-8
Account Lockout Duration, 208
Account Lockout Threshold, 207-8
account passwords, resetting, 164-65
account policies
configuring generally, 205
Kerberos policies, 209-10
lockout policies, 207-9
password policies, 205-7
security templates and, 106
setting, 201-4
viewing, 204-5
Account Policies node, Group Policy, 201-2
accounts. See computer accounts; groups; user accounts
ACEs (access control entries), 178-79
Active Directory, 133-54
administration tools, 155-56
advanced permissions, 251-52
backup and recovery, 373
command-line tools, 156-57
data stores, 148-49
DHCP server authorization in, 448-49
DNS and, 133-34, 488
domains, 135, 146-48
forests and trees, 136-37, 146-48
global catalogs, 149-50
group membership caching, 150-51
LDAP and, 152
logical structures, 134
object auditing, 342
operation master roles and, 152-54
organizational units, 137-38
permissions, 331
physical structures, 134
replication, 151-52
sites, 138-39
structure of, 86, 148
subnets, 138-39
support tools, 157-58
system administration and, 3
Windows 95/98, 141-43
Windows 2000 domains, 143-46
Windows NT domains, 143-46
Windows Server 2003, Windows XP, Windows 2000, 140-41
Active Directory clients
installing, 143-44
network access as, 141-42
types of, 140
Active Directory Domains And Trusts
domain naming master role, 170-71
domain structures, accessing, 137
functions of, 155
Active Directory Installation Wizard (dcpromo)
demoting domain controllers, 6, 140
installing Active Directory, 134
installing domain controllers, 169
promoting domain controllers, 6, 140
Active Directory-integrated primary DNS server, 489
Active Directory Schema
adding to MMC, 156
schema master role, 171
Active Directory Service Interface (ADSI), 152
Active Directory Sites And Services
functions of, 155
global catalogs, 173
sites and subnets, 139
universal group membership caching, 174
Active Directory Users And Computers, 158-68
accessing, 158
account administration, 199
adding computers to domains, 166-68
adding computers to workgroups, 166-68
advanced options, 159
Builtin folder, 158
computer account management, 162
connecting to domain controllers, 159-60
connecting to domains, 160
creating computer accounts, 162-63
creating organizational units, 174
deleting/disabling/enabling computer accounts, 164
deleting organizational units, 175
domain controllers folder, 159
editing computer account properties, 164
editing organizational unit properties, 175
folders, 158-59
functions of, 155
managing organizational units, 138
moving computer accounts, 165
moving organizational units, 175
multiple accounts, properties of, 247
renaming organizational units, 175
resetting locked computer accounts, 164-65
searching for accounts and shared resources, 160-62
transferring domain-wide roles, 169-70
updating user and group accounts, 242
viewing computer account properties, 164
viewing organizational unit properties, 175
viewing domain-wide roles, 169-70
active partition, 262
Add Counters dialog box, 68
Add Excluded Files dialog box, 363
Add Hardware Wizard
adding new hardware, 41-42
Control Panel utilities, 11
troubleshooting hardware, 43-44
Add Or Remove Programs
Control Panel utilities, 11
disabling unnecessary services, 60
installing optional network components, 410
removing automatic updates, 123
uninstalling optional network components, 410
Add Printer Wizard
connecting to network-attached printers, 430-31
installing network-attached printers, 428-30
installing physically attached printers, 425-27
address (A) record, DNS, 499, 500-501
address book entries, 225
address pool, DHCP, 462-63
.adm files, 100
Adm subfolder, Group Policy, 89, 91
administration. See group policies; system administration
administration tools, Active Directory, 155-56
administrative shares. See special shares
administrative templates
adding, 102
configuring policies, 101
disabling policies, 101
enabling policies, 101
removing, 102
viewing, 100-101
Administrative Tools menu
accessing, 17
adding tools to, 155
administrative wizards, 11
administrators
group capabilities for, 196-97
user accounts, 186-87
Adminpak.msi, 14
ADSI (Active Directory Service Interface), 152
advanced settings, DNS, 404-5
Advanced tab, System properties dialog box, 25-29
application performance, 26
virtual memory, 27-29
Windows performance, 25-26
Advanced TCP/IP Settings dialog box
DNS settings, 404-5
WINS settings, 406-7
alerts
configuring, 75-78
sending administrative, 31
algorithms, encryption, 375
allocation unit size, 269, 292
alternate private IP addresses, 397, 400-402
Anonymous Logon identity, 197
Application Data Properties dialog box, 96
application framework, help system, 116
application logs, 60
Application media pools
allocating/deallocating Free media, 386-87
creating, 385-86
defined, 385
deleting, 389
Application servers, 6
applications. See Services And Applications
Applications tab, Task Manager, 46-47
archive logs, 64-66
creating, 65
formats, 64-65
viewing, 65-66
ARP, command-line utilities, 15
arrays, RAID, 287. See also RAID (redundant array of independent disks)
ASPNET account, 187
AT utility, 15, 109
ATTRIB, Recovery Console commands, 383
auditing
Active Directory objects, 342
DHCP servers, 450-51
DNS servers, 512
files and folders, 340-41
logs and, 63
printers, 437
setting audit policies, 338-40
Authenticated Users identity, 197
authentication
protocols, 177-78
support, 144
authoritative restore, 373
authoritative time server, 128
autoloader tapes, backup media, 357
automatic backups, WINS database, 485
Automatic Updates
configuring, 119-21
downloading and installing, 122
overview of, 118-19
removing, 123
server configuration, 121-22
support services, 113
Automatic Update tab, System utility, 34
B
background processes, 45
backup and recovery. See also EFS recovery agents
Active Directory, 373
Backup utility. see Backup utility
devices and media, 356-58
differential vs. incremental backups, 355-56
logs, 374
manual backup, 366-69
manual recovery, 371-73
planning, 353-54
remote systems, 373-74
types of backup, 354-55
WINS database, 485-86
backup domain controller (BDC), 141, 144, 145
backup logs, 374
Backup utility
accessing, 358
backup options, 361-62
backup logs, 374
Backup Wizard, 364-66
exclusions, 362-64
general options, 361
key features, 359
manual backups, 366-69
manual recovery, 371-73
restore options, 361-62
Restore Wizard, 369-71
restoring data on remote systems, 373-74
special types of data, 360
system recovery data snapshot, 380
Backup Wizard, 364-66
bad sectors, hard drives, 275-76
bandwidth, network, 83-84
basic disks
converting to dynamic disk, 263-64
functions of, 261
overview of, 260
basic settings, DNS, 424
Batch identity, 197
BDC (backup domain controller), 141, 144, 145
B-node (broadcast), name resolution, 471
boot disk, 270-71
boot partition, 262
Boot.ini file, 270-71
BOOTP (Bootstrap Protocol), 461
Bootstrap Protocol (BOOTP), 461
bottlenecks
drive-related, 83
memory-related, 81-82
processor-related, 82
broadband connections, 412
broadcast (B-node), name resolution, 471
built-in capabilities
Active Directory groups, 192-94
defined, 189
workgroups and member servers, 194-95
Builtin folder, Active Directory Users And Computers, 158
built-in groups
account types, 185
capabilities for, 195
overview of, 188
built-in local groups, 182
built-in user accounts, 185-86
burst handling, WINS name registration, 477-78
C
caching
checking, 81-82
DNS, 417
group membership, 150-51
memory, 26, 80
WINS, 515-16
caching-only DNS servers. See forwarding-only DNS servers
Cancelled, operation states, 389
canonical name (CNAME) record, DNS, 499, 502
capabilities, user and group accounts, 182-83, 189
certificates, encryption, 280
Certificates snap-in, 378
Change, share permissions, 320
Check Disk (Chkdsk.exe), 275
child domains, 134, 487, 497-99
Chkdsk.exe (Check Disk), 275
Class A networks, 445
Class B networks, 445
Class C networks, 445
Class D networks, 445
Classic Start Menu, 5
clusters, server roles, 7
CNAME (canonical name) record, DNS, 499, 502
command-line utilities
accessing, 11
Active Directory, 156-57
Check Disk (Chkdsk.exe), 275
list of, 15
ping testing, 416
seizing operations master roles, 172-73
transferring operations master roles, 171-72
comments, printer properties, 432-33
compatibility, Windows operating systems
administration tools, 14
group policies, 86, 88-89
Completed, operation states, 389
compression
backup data, 366
directories and files, 278-79
displaying compressed files, 310-11
enabling, 270
hard disk drives, 277-79
removing, 279
computer accounts
creating, 163
deleting, 164
disabling, 164
domain structure and, 141
editing properties, 164
enabling, 164
managing, 162
moving, 165
resetting locked, 164-65
searching for, 160-62
viewing properties, 164
on workstations or servers, 162-63
Computer Configuration node, Group Policy console, 94
Computer Management console, 17-21
accessing, 17
connecting to other computers, 18-19
console messages, 19
DHCP Server service, 448
disabling unnecessary services, 59-60
disk quotas, 347-49, 351-52
event logs, 61-62
file and folder sharing, 316-18, 327-28
information lists, exporting, 20
media pools, 385
overview of, 18
Recovery tab, 58-59
service logon, 57-58
service management, 55-57
Services And Applications, 21, 54-55
shadow copies, 329-30
share permissions, 321-23
shared resources, 325-27
storage tools, 21
system tools, 20-21
WINS services, 473
Computer Name tab, System properties dialog box, 22-23
computer policies, Group Policy, 87-88
Computers folder, Active Directory Users And Computers, 158
conditional DNS forwarders, 511-12
configuration data
data store and, 149
replication and, 151
Configure Your Server Wizard, 446
connectivity, network. See network connections
console messages, Computer Management console, 19
contact information, user accounts, 223-25
Control Panel
accessing, 10
list of utilities, 11-12
Convert utility, 273-74
copy backups, 354
copy (Ctrl+C) command, 312
Copy Disk dialog box, 313-14
counters
Add Counters dialog box, 68
alerts and, 75-78
defined, 67
logs, 71-73
selecting, 67-69
CPU Time, 48
CPU Usage, 50
CPUs
bottlenecks, 82-83
Performance Monitor and, 67-68
system performance and, 82
Creator Group identity, 197
Creator Owner identity, 198
Ctrl+C (copy), 312
Ctrl+V (paste), 312-13
Ctrl+X (cut), 313
D
daily backups, 355
DAT (digital audio tape), 357
data backup. See backup and recovery
Data Encryption Standard (DES), 235, 375
data sharing. See shared resources
data stores, 6, 148-49
data throughput
network performance and, 53
system performance and, 80-81
Datacenter Edition, Windows Server 2003, 4
Date And Time settings, Control Panel, 11
dc security, 106
dcpromo. See Active Directory Installation Wizard (dcpromo)
Debug Logging, DNS, 512-13
Debugging Mode, 381
decryption. See EFS (Encrypting File System); encryption
defragmentation, hard disk drives, 276-77
DES encryption, 235, 375
device drivers
installing, 38-39
printers, 421, 433
removing, 40-41
rolling back, 40
signed, 35-36
tracking driver information, 37-38
unsigned, 35-36
updating, 38-39
Device Manager
disabling hardware, 43
enabling hardware, 43
removing device drivers, 40-41
rolling back drivers, 40
System Tools, 21
viewing hardware devices, 36-38
devices
backup and recovery, 356-58
hardware. See hardware devices
print. See print devices
DHCP clients, 443-44
defined, 443
IP address assignment, 444-45
IP autoconfiguration, 444
leases, 443-44
DHCP console
accessing, 446-47
address conflict detection, 453
address exclusion ranges, 463
backing up DHCP database, 465-66
binding servers to specific network connection, 450
connecting to remote DHCP servers, 447-48
DHCP reservations/leases, 459-60, 463-65, 468
DNS integration, 452
scopes, 459-61
server options, 459
statistics, 450
DHCP databases
backing up, 465-66
moving to new server, 466-67
regenerating, 467-68
repairing, 467
restoring, 466
DHCP (Dynamic Host Configuration Protocol)
adding computers to domains or workgroups, 166
address pool, 462-63
auditing, 450-51
clients. See DHCP clients
Computer Management and, 21
configuring, 453
console. See DHCP console
database. See DHCP database
dynamic IP addresses, 400
IP address assignment, 444-45
leases. See DHCP reservations/leases
releasing/renewing settings, 417
reservations. See DHCP reservations/leases
scopes. See DHCP scopes
servers. See DHCP servers
statistics, 450
DHCP reservations/leases, 463-65. See also DHCP databases
database back up and, 465-66
deleting, 465
overview of, 445
properties, 464
reconciling leases, 468
reconciling reservations, 468
releasing addresses, 464
reserving addresses, 463-64
scopes and, 460
DHCP scopes, 445, 454-55
activating, 461
address pool and, 462-63
BOOTP support, 461
deactivating, 461
modifying, 460-61
multicast scopes, 457-58
multiple, 462
normal scopes, 455-57
overview of, 445
removing, 461
reservation options, 460
scope options, 458-60
server options, 459
statistics, 462
superscopes, 454-55
types of, 445
DHCP servers, 445-53
auditing, 450-51
authorizing in Active Directory, 448-49
backing up, 465-66
binding servers to specific network connection, 449-50
configuring, 449
connecting to remote, 447-48
DHCP console and, 446-47
DHCP database and, 466-68
DNS integration, 452
installing, 446
IP address assignment, 444-45
IP address conflicts, 453
leases and reservations, 463-65, 468
logs, 451
restoring configuration, 453
saving configuration, 453
server roles, 7
starting, 448
statistics, 450
stopping, 448
DHCP Server service, 448
dial-in privileges, user accounts, 233-34
dial-up connections, remote access, 412
Dial-Up identity, 198
differential backups, 355-56
digital audio tape (DAT), 357
directories. See also data stores
compressing/decompressing, 278-79
decrypting, 285
encrypting, 281-82
Directory Service Client Setup Wizard, 142
directory service log, 60
disaster recovery. See also backup and recovery
Recovery Console, 382-83
restoring system, 381
safe mode, 380-81
steps in system recovery, 379
system recovery data, 379-80
Disk Cleanup, 285
disk configuration
active partition, marking, 262
basic disks, 261
converting between format options, 262-64
converting volume to NTFS, 273-74
drive sections and, 262
dynamic disks, 261, 264-65
rescanning disks, 264
types of, 259
Disk Defragmenter, 21, 276-77
disk drives, 357. See also hard disk drives
disk duplexing, 297-98
disk I/O
improving, 66
monitoring and tuning, 83
reads/writes, 48
system performance and, 82
Disk Management
basic disks, 262-64
Check Disk utility, 276
drives, 259-60, 271-73
dynamic disks, 262-65
hard drives, 257-59
mirrored sets, 298, 301, 303
overview of, 21
partitions, 262, 266-69, 273
rescanning disks, 264-65
simple volumes, 294
spanned volumes, 294
striped set with parity, 300
volumes, 272-73, 288, 290-94, 299
disk mirroring. See also RAID (redundant array of independent disks)
breaking mirrored set, 300-301
implementing, 297-99
overview of, 295
removing mirrored set, 303
repairing mirrored system volume to enable booting, 302
resynchronizing and repairing mirrored set, 301
disk partitions
assigning drive letters and paths, 271-72
creating, 266-69
deleting, 273
drive sections and, 262
formatting, 269-70
marking active, 262
overview of, 265
styles of, 257
updating boot disk and, 270-71
volume label and, 272-73
disk quota limit, 342
disk quotas
creating, 349-50
deleting, 350-51
disabling, 351-52
enabling on NTFS volumes, 346-48
exporting/importing, 351-52
overview of, 342-44
policies, 344-46
viewing, 348-49
disk quota warning, 343
disk space. See disk quotas
disk striping. See also RAID (redundant array of independent disks)
implementing, 296
maximizing performance of, 297
overview of, 295
repairing, 303
disk striping with parity. See also RAID (redundant array of independent disks)
implementing, 299-300
overview of, 295
regenerating, 303-4
display names, 199
Display settings, Control Panel, 11
distribution disk, 8-9
distribution groups, 181
DLLs (dynamic-link libraries), 44
DNS aliases, 502
DNS console, 495-96
A records, 500-502
child domains, 497
CNAME records, 502
Debug Logging, 512-13
DNS server management, 495-96
domains or subnets, 499
dynamic updates, 509
event logs, 512
IP addresses, 510
MX records, 502-4
NS records, 504-5
primary DNS server, 490-93
PTR records, 500-502
reverse lookups, 494-95
secondary DNS server, 493-94, 508-9
server management, 496-97
server monitoring, 513-14
SOA records, 505-7
WINS caching, 515-16
WINS lookups, 514-15
WINS time-out values, 515-16
zone changes, 508-9
zone transfers, 507-8
zone type, 509
DNS (Domain Name System), 487-516
Active Directory and, 133-34, 488
advanced settings, 404-5
basic settings, 404
computer names and, 22
console. See DNS console
domains or workgroups, 166
DHCP and, 452
enabling on network, 488-89
flushing, 417-18
hierarchical structure of, 133
integrating with Active Directory, 488
integrating with DHCP servers, 452
overview of, 487
pinging host names, 416
PTR (pointer) records 500-502
records. See DNS records
registering, 417-18
servers. See DNS servers
vs. WINS, 470
DNS forwarding, 510-12
DNS records
A, 500-501
CNAME, 502
MX, 502-4
NS, 504-5
overview of, 499-500
PTR, 500-501
SOA, 505-7
updating, 505
viewing, 505
DNS resolver cache, 417
DNS servers
adding, 496-97
auditing, 512
child domains, 497-99
DNS console and, 495-96
DNS forwarding, 510-12
DNS Server service, 489
domains or subnets, 499
dynamic updates, 509
IP addresses, 510
logs, 60, 512-13
monitoring, 513-14
primary DNS server, 490-93
reverse lookups, 494-95
removing, 496-97
secondary DNS server, 493-94
server roles, 7
starting/stopping, 497
types of, 489
WINS integration, 514-16
zones, 505, 507-9
DNS Server service, 489, 497
DNSCMD, command-line utilities, 15
docked, hardware profiles, 24
documents
default settings, 437
managing print jobs, 440-41
domain controllers
Active Directory and, 140
connecting to, 159-60
as DNS server, 489
demoting, 6, 168-69
global catalogs and, 150
installing, 168-69
promoting, 6
security templates, 106
server roles, 7
universal group membership and, 151
Windows Server 2003 as, 5
domain controllers folder, Active Directory Users And Computers, 159
domain data
data store and, 149
replication and, 151
domain forests. See forests
domain local groups
group scope and, 181
when to use, 183-85
Domain Name System. See DNS (Domain Name System)
domain naming master role
operations master roles, 153
seizing/transferring, 172
viewing, 170-71
domain trees. See trees
domain user accounts
copying, 244-45
creating, 213-15
user account types, 179
domains
Active Directory, 6, 134
adding computers to, 166-68
blocking inheritance, 91
connecting to, 160
deleting, 499
DNS organization and, 487
functional levels of, 135, 146-48
group policies and, 90-91
operations master roles, 153
overview of, 135
Windows 2000, 143-46
Windows NT, 143-46
Windows Time service and, 128-29
double-clicking, 9
drive letters, assigning, 267, 271-72, 292
drive paths, assigning, 267, 271-72, 292
drive sections, disk configuration, 262
drivers. See device drivers
DSADD, Active Directory command-line tools, 156
DSGET, Active Directory command-line tools, 156
DSMOD, Active Directory command-line tools, 157
DSMOVE, Active Directory command-line tools, 157
DSQUERY, Active Directory command-line tools, 157
DSRM, Active Directory command-line tools, 157
dump files, 32
dynamic disks
converting to basic, 264
functions of, 261
moving to new system, 265
overview of, 260
reactivating, 264
Dynamic Host Configuration Protocol. See DHCP (Dynamic Host Configuration Protocol)
dynamic IP addresses, 379, 400
dynamic updates, DNS servers, 509
dynamic-link libraries (DLLs), 44
E
EFS (Encrypting File System)
backing up certificates, 378
configuring EFS recovery, 376-77
encrypting files and directories, 281-82
overview of, 279-80, 374-76
recovery agents, 281
restoring certificates, 378-79
EFS recovery agents, 375-76
Enable Boot Logging, 380
Enable VGA Mode, 380
Encrypting File System. See EFS (Encrypting File System)
encryption. See also EFS (Encrypting File System)
algorithms, 375
hard disk drives, 279-80
password storage and, 207
recovery policy. See EFS (Encrypting File System)
security options and, 235
encryption certificates
backing up, 378
restoring, 378-79
Enforce Password History, 205-6
Enforce User Logon Restrictions, Kerberos, 209
Enhanced CryptoPAK, Microsoft, 375
Enterprise Domain Controllers identity, 198
Enterprise Edition, Windows Server 2003, 4
environment variables, 29-30
%SystemRoot% directory, 116
creating, 29
deleting, 30
editing, 30
user accounts, 226, 227
Environment Variables dialog box, 29-30
error reporting
areas monitored by, 32-33
configuring, 33
disabling, 33-34
enabling, 33
support services, 113
useful policies, 34
errors, hard drives, 275-76
event logs, 60-66. See also logs
accessing, 61-62
archiving, 64-66
clearing, 64
DNS servers, 512-13
options, 62-64
policies, 106
types of, 60-61
using, 61-62
WINS servers, 476
Event Viewer, System Tools, 20
Everyone identity, 198
Exchange server, 360, 372
exclusion range, IP addresses, 462-63
exclusions, backup
changing, 364
creating, 363
viewing, 362
EXIT, Recovery Console commands, 383
Export List dialog box, 20
Extend Volume Wizard, 294
extended partition, 267
extinction interval, WINS, 475
extinction timeout, WINS, 475
F
Failed, operation states, 389
FAT (file allocation table)
features of FAT16 and FAT32, 305
formatting disks for, 313
long file name support, 307
Recovery Console and, 382
fatal system errors, 31
faxes and printers
Control Panel utilities, 12
document defaults, 437
managing print jobs, 439
network-attached printers, 427-30
physically attached printers, 424-25
print server properties, 438
Properties dialog box, 432
file allocation table. See FAT (file allocation table)
file extensions, displaying, 310
file names, 307-9
abbreviation of, 308
long file name support, 307-8
truncation of, 309
File Replication Service, 60
file servers, server roles, 7
file systems
converting to NTFS, 273-74
FAT16 and FAT32, 305
formatting disks for, 313
formatting partitions for, 269
hard disk drive organization and, 255
local and remote, 255
NTFS 4.0 and NTFS 5.0, 306-7
security templates and, 106
volume creation, 292
files and folders. See also shared folders
auditing, 340-41
compressing, 278-79
copying, 311-13
copying and pasting, 312-13
decompressing, 278-79
decrypting, 285
displaying hidden and compressed, 310-11
encrypting, 281-82
FAT and, 305-6
file names, 307-9
handle count, 48
moving, 311-12
NTFS and, 306-7
permissions, 334-38
properties, 309-10
selecting multiple, 310-11
sharing. See shared resources
special permissions, 335-36
Find dialog box, 161
FIXBOOT, Recovery Console commands, 383
FIXMBR, Recovery Console commands, 383
floppy disks
copying, 313-14
formatting, 312-13
Folder Options, Control Panel, 11
folder redirection, 96-99
based on group membership, 97-99
redirecting special folder to single location, 96-97
removing, 99
folders. See files and folders
foreground processes, 45
ForeignSecurity Principals folder, Active Directory Users And Computers, 159
forests
as logical Active Directory structure, 134
operations master roles and, 153
overview of, 136-37
raising functionality of, 146-48
Format dialog box, 269
formatting
disk partitions, 269-70
floppy disks, 312-13
removable disks, 312-13
forward lookups, 493-94, 514-15
forwarders, DNS servers, 510-11
forwarding-only DNS servers, 489, 510-11
FQDN (fully qualified domain name), 180, 487
Free media pools
allocating/deallocating Free media, 386-87
defined, 384
preparing media for, 385
FTP, command-line utilities, 15
full backups, 354
Full Control permissions, file and folders, 320, 334
fully qualified domain name (FQDN), 180, 487
fully qualified names, 133
G
gateways, multiple, 402-3
global catalogs
configuring, 173
group membership caching and, 150-51
overview of, 149-50
global groups
creating, 217-18
group scope and, 182
membership, 219
when to use, 183-85
GPO (Group Policy Object), 86
GPT (GUID Partition Table), 257
gpupdate, 88, 93-94
graphical user interface (GUI)-based tools
accessing, 11
installing, 14
list of, 13-14
overview of, 12
graphs
Performance Monitor, 67
Performance tab, 50-51
group membership caching, 150-51, 174
group policies, 85-102
administrative functions, 85-86
applying during logon, 87-88
applying existing policy to new location, 92-93
blocking and overriding, 91-92
deleting, 93
disabling, 101
enabling, 101
local group policies, 89
order of applying multiple policies, 87
overview of, 86-87
refresh interval for, 93-94
site, domain, and organizational unit policies, 90-91
version compatibility and, 86, 88-89
Group Policy console
Account Policies node, 201-2
administrative templates, 100-102
disk quotas, 344-46
managing policies, 101
nodes and subnodes, 94-95
recovery agent management, 376-77
recovery policies, 283-84
special folders, 96, 96-99
troubleshooting printers, 422
Group Policy Object (GPO), 86
groups
administrators and, 196-97
built-in, 188, 195
capabilities, 189, 192-95
compared with user accounts, 179
defaults, 185
functions of, 177
global, 183-85, 217-18
implicit, 188-89, 197-98
local, 183-85, 195, 218
logon rights, 191-92
managing, 243-45
membership, 219-20
overview of, 181
predefined, 188
primary, 220-21
privileges, 190-91
scopes, 181-83
security identifiers and, 183
types of, 181, 217
universal, 183-85
Guest account, user accounts, 187
GUI-based tools. See graphical user interface (GUI)-based tools
GUID Partition Table (GPT), 257
Next
Last Updated: February 26, 2003
|