MCSE Training Kit (Exam 70-294): Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure Comments and Corrections (832376)



The information in this article applies to:

  • MSPRESS MCSE Training Kit (Exam 70-294): Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure, ISBN 0-7356-1438-5

SUMMARY

This article contains comments, corrections, and information about known errors relating to the Microsoft Press book MCSE Training Kit (Exam 70-294): Planning, Implementing, and Maintaining a Microsoft Windows Server 2003 Active Directory Infrastructure, 0-7356-1438-5.

The following topics are covered:
  • Page 1-11: Correction To Domains
  • Page 4-45: Shortcut Trust Should Be External Trust For Selective Authentication
  • Page 5-36: Correction To Intrasite Replication
  • Pages 5-53 And 5-54: Correction To Ntdsutil Commands
  • Page 5-63: Command switch is spelled incorrectly
  • Page 13-10: Correction To Account Policy
  • Page 14-47: Correction To Step 10
  • Page 14-53: Same Domain Should Be Same Site
  • Page 18-29: Organizational Unit is misnamed in figure
  • Page 18-29: Extra line in figure for question 9
  • Back Cover: eBook PDF File Not Printable

MORE INFORMATION

Page 1-11: Correction To Domains

On page 1-11, the second bullet paragraph states that " A domain is a security boundary". This is not accurate. Each domain has its own security policies and trust relationships with other domains. However, the forest is the final security boundary. Please remove this statement.

Page 4-45: Shortcut Trust Should Be External Trust For Selective Authentication

On page 4-45, in the third and fourth paragraphs,

Change:

"Accessing Resources Across Domians Joined by Shortcut Trust Using Active Directory Domains and Trusts you can determine the scope of authentication between two domains that are joined by a shortcut trust. You can set selective authentication differently for outgoing and incoming shortcut trusts... If you use domain-wide authentication on the incoming shortcut trust..."

To:

"Accessing Resources Across Domians Joined by External Trust Using Active Directory Domains and Trusts you can determine the scope of authentication between two domains that are joined by an external trust. You can set selective authentication differently for outgoing and incoming external trusts... If you use domain-wide authentication on the incoming external trust..."


Page 5-36: Correction To Intrasite Replication

On page 5-36, in the second paragraph, change:

"Intrasite replication is triggered by changes; if a change occurs, replication is initiated after a default interval of five minutes."

To:
"Intrasite replication begins when you make a directory update on a domain controller. By default, the source domain controller waits 15 seconds and then sends an update notification to its closest replication partner. If the source domain controller has more than one replication partner, subsequent notifications go out by default at 3 second intervals to each partner."

Pages 5-53 And 5-54: Correction To Ntdsutil Commands

On page 5-53, in the last paragraph,

Change:
"add nc ApplicationDirectoryPartition DomainController"

To:
"add nc replica ApplicationDirectoryPartition DomainController"

On page 5-54, in the first paragraph,

Change:
"remove nc ApplicationDirectoryPartition DomainController"

To:
"remove nc replica ApplicationDirectoryPartition DomainController"

Page 5-63: Command switch is spelled incorrectly

On page 5-63, the second paragraph under the second bullet point reads:

"For example, repadmin /showutdvect server.contoso.com dc=contoso,dc=com. The highest USN is shown for the specified domain controller and its replication partners."

It should read:

"For example, repadmin /showutdvec server.contoso.com dc=contoso,dc=com. The highest USN is shown for the specified domain controller and its replication partners."

Page 13-10: Correction To Account Policy

On page 13-10, in the second bullet,

Change:

"When setting account policies in Active Directory, keep in mind that there can only be one domain account policy: the account policy applied at the root domain of a domain tree."

To:

"When setting account policies in Active Directory, keep in mind that there can only be one domain account policy. The account policy must be defined in the Default Domain policy, and it is enforced by the domain controllers that make up the domain. A domain controller always obtains the account policy from the Default Domain Policy Group Policy object (GPO), even if there is a different account policy applied to the organizational unit that contains the domain controller ."


Page 14-47: Correction To Step 10

On page 14-47, in step 10,

Change:
"type compact c:\"

To:
"type compact to c:\"

Page 14-53: Same Domain Should Be Same Site

On page 14-53, in question 5,

Change:

"If you need Active Directory replication to occur between domain controllers of the same domain"

To:

"If you need Active Directory replication to occur between domain controllers of the same site"


Page 18-29: Organizational Unit is misnamed in figure

On page 18-29, the second OU under Main in the figure accompanying question 9 reads:

"Power Point"

It should read: "Power Users"

Page 18-29: Extra line in figure for question 9

On page 18-29, the line connecting the 'Deskside' OU and the Finance OU in the figure for question 9 should be ignored.

Back Cover: eBook PDF File Not Printable

The eBook PDF's print function is disabled. This is by design. On the back cover,

Change:
"eBook in printable PDF format"

To:
"eBook in PDF format"

Microsoft Press is committed to providing informative and accurate books. All comments and corrections listed above are ready for inclusion in future printings of this book. If you have a later printing of this book, it may already contain most or all of the above corrections.

Modification Type:MinorLast Reviewed:6/28/2006
Keywords:kbinfo kbdocfix kbdocerr KB832376 kbAudEndUser