[Solutions Architect] Active Directory Flashcards

(22 cards)

1
Q

What is the purpose of AWS Directory Service?

A

Connecting AWS resources with on-premises AD

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

When using AWS Managed Microsoft AD, who is responsible for ensuring multi-AZ deployment?

A

AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What does AD stand for?

A

Active Directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is Active Directory?

A
  • On-premises directory service
  • Uses a Hierarchical database of users, groups, computers, organized in trees and forests
  • You apply group policies to help you manage users and devices on a network
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is the key feature of AWS Managed Microsoft AD?

A

AD Domain Controllers – to which you have exclusive access– running Windows Server that are reachable by applications in your VPCs,

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

How does AWS Managed Microsoft AD ensure high availability?

A
  • You get 2 DCs by default,
  • You can also add DCs for additional HA and Performance
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

When using AWS Managed Microsoft AD, who is responsible for backup operations?

A

AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

When using AWS Managed Microsoft AD, who is responsible for ensuring you are on the most up-to-date version of the software?

A

AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

When using AWS Managed Microsoft AD, who is responsible for scaling out domain controllers?

A

You

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

When using AWS Managed Microsoft AD, who is responsible for maintaining users, groups, and group policy objects?

A

You

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Suppose you want to extend existing AD to your on-premises infrastructure. What tool might you use to do this?

A

AD Trust

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

When using AWS Managed Microsoft AD, who is responsible for any identity federation?

A

You

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

When using AWS Managed Microsoft AD, who is responsible for dealing with certificate authorities?

A

You

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What is AWS Simple AD?

A

A standalone managed directory in the cloud used for Basic AD features

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Does AWS Simple AD support trusts?

A

No

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

How many users can a small Simple AD handle?

17
Q

How many users can a large Simple AD handle?

18
Q

Does Simple AD allow you to join with on-premises AD?

A

No, Simple AD does not support trusts

19
Q

What is AD Connector?

A
  • AD Connector is a directory gateway (proxy) for on-premises AD
20
Q

What is AWS Cloud Directory?

A
  • A fully-managed directory-based store for developers
  • Used in applications that implement org charts, course catalogs, device registries
21
Q

What are Amazon Cognito User Pools?

A
  • Managed User directory for SaaS Applications
  • sign-up and sign-in for web / mobile
  • typically used with social media identities
22
Q

What are the key benefits of AD Connector?

A
  • Avoid cacheing information in the cloud
  • Allow on-premises users to log in to AWS using AD
  • Join EC2 instances to your existing AD domain
  • Scale across multiple AD connectors