|
server
newsgroups
|
|||||||||||||||||||||||
|
|||||||||||||||||||||||
Windows Server Active Directorymicrosoft.public.windows.server.active_directory
Nicolouw Kruger via WinServerKB.com -
5 May 2007 1:06 PM - 2 messages
We are soon going into production with ADAM as our Application Role repository. I feel though that the ADAM ADSI Edit Tool is not that easy to manage users and roles that are stored in ADAM. It is fine for someone who ...
Luiz -
5 May 2007 11:08 AM - 3 messages
Hi, I am creating an environment with Windows 2003 and Windows 2000 AD that have different subnets but are connected by MPLS coonection. For example: I have created a root domain test.com that is in subnet 172.16.1.x and I have created a replica AD in subnet 172.16.2.x. ...
bbnlal -
5 May 2007 9:45 AM - 4 messages
Hi all, I am working in a windows 2003 domain , one day morning all users try to login domain around 100 users get same message as "domain account lockout" .I check with user tab , account was lockout . Why this ...
MSH -
5 May 2007 8:29 AM - 5 messages
hi. on the LAN how can i create a list of web sites that are always viewable or never viewable on client. thanks. ...
Chris -
5 May 2007 6:58 AM - 2 messages
I'd like to find out if there is a GPO I can set up to block telnet from desktops to port 25 on our Exchange server? If so, where can I find it? Thanks. ...
PL -
4 May 2007 9:54 PM - 5 messages
I have been on this quest for several weeks, still can't get it right. I've searched the web over and over, found numerous mentions of the problem and several solutions offered, however, nothing seems to work, including the most promising documentation from Microsoft directly. ...
phil2627 -
4 May 2007 9:06 PM - 33 messages
We are in a school district with 500 staff and 4000 non staff. We are still undecided on the model, but know the following - only real secure model is separate forest, where staff could be in one and non staff in the other and setup trusts to have certain staff ...
Magnus R -
4 May 2007 8:22 PM - 3 messages
I'm trying to find out what attribute in the Active Directory represents the Global Catalog Checkbox found when looking at a NTDS Settings object under a server in Active Directory Sites and Services. I am assuming that LDAP://CN=NTDS ...
Jim -
4 May 2007 7:50 PM - 2 messages
Is there an easy way to break this error. I have tried the ADSIEdit tool and used the LDP, but can find where the multiple accounts are. Can some one help me. ...
Panda -
4 May 2007 7:24 PM - 8 messages
I created a VBscript login script under computer config on the default domain policy. It checks the size and date last modified of a file on the local computer (XP pro SP2) and a reference file on the server (Server2003). If they are different it renames the local file and ...
jim -
4 May 2007 6:18 PM - 3 messages
Why would AD permissions not propagate down to Contacts? We have an OU just under the default users OU. I've given full access to one of our Admins at both OU levels. The box to allow inheritable permissions is checked on ...
arm123 -
4 May 2007 6:18 PM - 2 messages
I am looking to setup a DC in a remote office and want to give the branch manager the ability to manage file shares on the DC without making him a Domain Admin. Is this possible? And, if so, how would I do this? ...
aBs0lut30 -
4 May 2007 3:52 PM - 2 messages
I am having a some issues with my AD. We have 2 DC's one of them is running exchange 03. So, we are in the process of upgrading to exchange 07. Got our new server in, and joined it to the AD as a ...
bigmackin -
4 May 2007 3:48 PM - 8 messages
So here is the problem. I run the following command "repadmin / options -DISABLE_INBOUND_REPL" and "repadmin /options - DISABLE_OUTBOUND_REPL" and I see Current options: (none) New options: (none) I go to AD sites and services on this machine and Attempt to do an ...
xXVanquishXx -
4 May 2007 3:31 PM - 7 messages
We want to implement password complexity in our AD environment, and we have a couple of concerns before we implement it. 1. Will it affect Service accounts that do not have complex passwords? 2. Will it require that all existing user accounts change to a complex ...
r. wales -
4 May 2007 3:17 PM - 2 messages
We recently changed our gpo to lock the desktop when the screensaver activates. Since then, as you can imagine, there have been a lot of entries in the logs for fat-fingered passwords to unlock the desktop. Yesterday I ...
superitik@gmail.com -
4 May 2007 3:15 PM - 2 messages
I have Windows 2003 RD AD Environment, I havbe one root and 24 child domains.. For some unknown reason in one of my child domains the root zone being a secondary is keeps changing to Active Directory.. SOA is different, ...
Oseborn -
4 May 2007 2:55 PM - 2 messages
Hello EveryBody, Do you have some documentation about recovery of an OU or / and the most important, a domain of active directory. I have already got this : [link] and [link] ...
Gary -
4 May 2007 2:27 PM - 4 messages
I got this event the other day. Fault bucket 395192235 Does anyone know what it means? I couldn't find anything on the MS site and their online support suggested I try the newsgroups. Thank you! Gary ...
Gary -
4 May 2007 2:25 PM - 7 messages
The NTDS settings on one of my servers (the only DC in this particular site) does not show <automatically generated> although replication is working. Should this be a concern? Can it be recitified so all sites appear the same? ...
Benedicte Merci -
4 May 2007 2:05 PM - 4 messages
We were used to use Universal GR to give permission for user from the root domain. We moved and change our range adress. The former universal GR are still working for permission given before we moved. But when I create a new Universal GR with user from the root domain, I can ...
Eric -
4 May 2007 1:36 PM - 5 messages
I have a 2000 member server on a 2003 domain that I don't own. I have users on a second domain that I don't own either. On the domain that has the server there are 5 domain controlers but only two of them trust the domain ...
cbass -
4 May 2007 1:08 PM - 4 messages
Is there a way to delegate control of just one OU w/out having to install the AD U&C on the users workstation? ...
IT_Guru -
4 May 2007 12:31 PM - 5 messages
I have a problem where a remote site domain controller is being used by all clients as the preferred time sync server. I have never configured this. I have always left the defaults for the time services so in other words the DC ...
Tom -
4 May 2007 10:32 AM - 4 messages
Hi all, We have 1 server 2003 and about 15 stations. We consider to put all the applications ( word, excel etc..) on the server with roaming profile so the users will work form anywhere in the network without installing office for each station. ...
newbie admin -
4 May 2007 9:22 AM - 3 messages
Hi all, We have a windows 2000 native domain (upgraded from NT), without forest. As now we are adding a new domain controller I need to decide whether to install windows 2003 or windows 2000 on it. I read some articles they all mention Adprep/ forestprep and the ...
Josef Meile -
4 May 2007 9:11 AM - 3 messages
Hi, We have an Active Directory with several users, which can only logon in certain computers. Only Administrators can logon in all PCs. First at all, excuse the german words in the text, but my windows server install is in german; however, I will include the translations. ...
Tommy Forsman -
4 May 2007 6:52 AM - 5 messages
Hi don´t know if this is the right forum but maybe someone could point me in the right direction. Or workstations 2000/XP have been in a single workgroup with connection to a Novell server. Now we have a new 2003 AD and joining ...
khantahirkheli -
4 May 2007 5:24 AM - 2 messages
i have a win2003 server running at my ministry with service pack 1..everytime i try to backup the system state the error "Volume shadow copy creation: Attempt 1. "NTDS" has reported an error 0x800423f0. This is part of System State. The ...
JC -
4 May 2007 3:56 AM - 3 messages
I have a domain controller that is running Windows 2003 R2 x64 and am trying to add a Windows 2003 R2 x86 but when I run dcpromo it tells me it cannot joing as the source forest ad is different then the destination forest ad but ...
Aldo -
4 May 2007 3:34 AM - 3 messages
Hi On a server 2003 SP1 box, the Netlogon folder access only has the Everyone group with all access rights, and no other groups listed. (problably a mistake on my part.) How do I reset the active directory folders with proper access groups and ...
Phillip McIntosh -
4 May 2007 1:36 AM - 8 messages
How do I determine which 2003 DC/GC will be used to replicate to a another DC (same AD domain, different AD site) when that DC is promoted to a GC. i.e. We have DCs/GCs throughout Asia Pac. I want to promote an already ...
[c] -
3 May 2007 11:32 PM - 6 messages
In our domain of multiple sites - for some reason the internal time server in our domain is a remote site's domain controller. I was always under the impression that the first DC created in an AD environment and that with ...
Jason W. -
3 May 2007 11:00 PM - 6 messages
I started a new job this week and have been looking through our AD setup quite a bit the last few days. It definitely needs to be fine tuned a bit and I have been given the go ahead to look into it and ...
dan_the_man -
3 May 2007 10:22 PM - 4 messages
I set up WSS 3.0 on VPC 2007 running MS Server 2003 R2. My Team Site shows up on the VPC as http://dan-vpc1/default.aspx. On my DNS on the VPC, my site is dan-vpc1.dwy.com. When I try to access My Team Site via IE on my host machine ...
Tom -
3 May 2007 10:04 PM - 2 messages
Hi, We have 1 server 2003 and about 15 stations. Now, each user has his profile localy and they are different from one another. I would like to create for each user a profile that will be on the server, ...
luke -
3 May 2007 9:40 PM - 4 messages
I have set up an Windows 2003 Active Directory server. I have set up dns, and user accounts to create group polices. I have tested my group polices and they work fine. My problem is I cannot get applications to install onto ...
Dooma -
3 May 2007 9:01 PM - 3 messages
How can I import user names and e-mail addresses from my AD? Is there a way to do that w/o having to buy any utility software. I just need to do that once. Thanks, I am using windows 2003 sp1 with exchange 2003 sp1 ...
jmp13 -
3 May 2007 8:54 PM - 3 messages
I have a client that wants to implement WSUS settings via a GPO but an OU admin does not want the those WSUS settings to be applied to her OU. I have tried block inheritence and it does not work. How would I deny the policy to ...
Steve -
3 May 2007 8:11 PM - 4 messages
Hello all, I was wondering if anyone could help me. I am using Virtual Server 2005 to test an AD schema (test1.com -> root.test1.com; test1.com -> root2.test2.com). test1.com is the root of the forest, root and root2 are ...
todd -
3 May 2007 4:56 PM - 3 messages
Need help. I have two 2003 servers one running active directiry for login, the other running a database program. Everyone can login ok to the active directory but when they try to open the program from the second sever on the domain it will not let them in. If I ...
Rob Nicholson -
3 May 2007 4:24 PM - 4 messages
Okay, so lots of questions :-) Do you have to set-up replication of logon scripts with AD as you did have to do with NT 4 domain controllers? Or does AD do it all for you... Thanks, Rob. ...
Rob Nicholson -
3 May 2007 4:12 PM - 4 messages
Can you use policies to create your own folders? For example, it would be nice if we could make the policy create a folder called Shortcuts in the users home folder if it doesn't exist. We're trying to automatic new account ...
Rob Nicholson -
3 May 2007 3:45 PM - 7 messages
When do policy changes get saved? Is it after you make the change to the value and apply/close the dialog or when you close the group policy editor? Thanks, Rob. ...
John Barr -
3 May 2007 3:01 PM - 4 messages
I am getting the following Error and would like to know if someone has a solution to fix it. I looked on the net but only see others with the same problem and no real solution. Thanks in advance. Event Type: Error ...
superitik@gmail.com -
3 May 2007 1:36 PM - 4 messages
We have an Enterprise Environment in a hub and spoke environment.. We have forest root domain xyz.org and 10 Child domains on windows 2003 R2. Each Child domains level has a secondary copy of the root zone xyz.org.. Lately some of those secondary where changed automatic to ...
Bob -
3 May 2007 1:27 PM - 10 messages
Hi, I've had 2 of my 3 DC's experiance Windows\NTDS\edb.log corruption this week and I'm afraid my last DC will be next. The first DC could not boot in normal mode so I ended up forcing a demotion and then bringing it back into ...
Mrpush -
3 May 2007 1:22 PM - 4 messages
Hello, I have created a simple BATCH file to map a drive and put in under: User Config - Scripts - Logon in my Terminal server GPO. When I logon to the Terminal server, the script does not apply. The Batch file maps the drive fine when I run it locally on the Terminal ...
AlexBohner -
3 May 2007 10:32 AM - 6 messages
Hi All, I am looking for a method to automatically shutdown/reboot a user's machine once they logoff. The general idea is to force the reboot of a machine from AD once the time restrictions for a user expire. I ...
superitik@gmail.com -
3 May 2007 10:08 AM - 2 messages
We are on enterprise hub type of Environment. we have Forest root in NY and has 24 Child Domains in various Cities. At the moment we have main site in our forest/root called MainHQ-Site and it has 4 DCs. ...
Ferbalex -
3 May 2007 9:51 AM - 3 messages
I've created a script that creates a shortcut to a shared folder. This script works fine when run on the workstation. I need a single user to run this as a log on script. I have entered the location of the script (A folder ...
superitik@gmail.com -
3 May 2007 9:41 AM - 2 messages
We have an enterprise environment and forest/root is in US (Main HQ) and we have 24 Child domains in various locations {Regional HQs}. AD Database of the root is extended to Win2003R2 including all 24 Child Domains. Objective: Upgrade the 2 remaining Win2000 DCs in the root; raise the ...
kyan -
3 May 2007 7:16 AM - 3 messages
We have domain users in windows 2003 and I want to grant share access and installing program to some of them how can I do that? thank you ...
solvman -
3 May 2007 2:30 AM - 8 messages
hi, I run Exchange on Windows 2003 server. And I have strangest thing ever.
Whenever I browse to a user through "Active Directory Users and
Computers", right-click username and choose "Reset Password..." it give
me the following error: WINDOWS CANNOT ACCESS OBJECT -USERNAME- BECAUSE: ...
Clint Bergman -
2 May 2007 9:04 PM - 5 messages
Hello, Is there an easy setting to limit the number of simultaneous interactive logons a user can initiate? For example if StudentA is logged into Computer1, then they cannot log on to another computer until they have logged off of computer1? ...
John -
2 May 2007 8:28 PM - 4 messages
Hi, I run into a situation where an user changed his password directly from the Active Directory Users and Computers snapin, AD accepted the new password. Then went back to his desk and unlock the computer, computer took the old ...
Rick -
2 May 2007 7:40 PM - 3 messages
we are looking for a Front end App that will give us a more user friendly way for a non technical person to add new users to AD. thanks Rick ...
Chris -
2 May 2007 6:49 PM - 5 messages
I heard this in the past. Is this correct? Is it for Windows 2000 or Windows 2003 too? I haven't seen any MS article saying so. Thanks. ...
Scott -
2 May 2007 6:28 PM - 3 messages
I installed the Office 2003 Resource Kit on my XP SP2 machine which I use exclusively for editing Group Policy with GPMC SP1. I always use local ADM files in Group Policy Object Editor and have turned off automatic update of ...
Pavlo -
2 May 2007 5:57 PM - 3 messages
Hi, was reading this link about Forms Authentication with Active directory in ASP.NET 2.0 and was wondering would I need to change anything in the code to get it to work with a ADAM instance? [link] ...
Michael Magruder -
2 May 2007 4:32 PM - 4 messages
Hi, I have this strange issue of keyboards not working after logon to Win2003 servers, SP1, from WinXP and Win2K clients. I have determined that it is not the clients. If logging on to clients under administrator or simply unplugging the cat 5 cable, the keyboards work fine. This only happens after ...
Abhi -
2 May 2007 4:21 PM - 3 messages
Hi, Currently we have 1 Domain in our forest. All DC's are Windows 2003 and domain is at Windows 2000 Mixed Mode. We don't have any or plan to have any WIndows NT/2000 servers in our domain. I have read KB322692. Is there ...
gloriousglenn -
2 May 2007 3:44 PM - 8 messages
How do I figure out what \\Server\ShareName\UserName is on my system, relating to an active directory profile? For example if I right click on a Word document it shows me the path (i.e. C:\Documents & Settings\ etc etc), if I right click on a user ...
Orbital -
2 May 2007 3:21 PM - 3 messages
Please can someone advise on MS's 'out of the box' 2003 domain security policy settings. Things such as password length, complexity etc. Many Thanks, Orb ...
Super Boobahlicious -
2 May 2007 3:19 PM - 4 messages
I have one child domain of Windows 2003 R2 that has 5 DCs. The Technician played too much and I did all whatI can and no luck to fix the issue! I want to delete the exisitng xyz.orf DNS zone of active directory ...
Chris -
2 May 2007 2:46 PM - 3 messages
I have an AD domain on W2K3R2 at my HQ, and a BDC on W2K3R2 at a branch office. Users can log on to the domain, but are having issues with authentication over the VPN (which it site-to-site between two Cisco PIX ...
nboothe -
2 May 2007 2:08 PM - 8 messages
I'm getting SO close to making this work I can't stand it. I've gotten ADFS implemented to the point that I go to http://servername/certsrv and am prompted to accept two separate certificates, then a logon box ...
Shanthi -
2 May 2007 2:06 PM - 7 messages
I want to add some more lines in all clients host file thru GPO. Please advise me how to do Shanthi ...
agustin -
2 May 2007 1:21 PM - 4 messages
Hi all I have a Windows 2003 Evironment with Exchange 2003 Cluster. I have 3 dc and I need to replace the server that hold all FSMO roles which is also the primary DNS for another server with better processor, memory and disk ...
[c] -
2 May 2007 1:19 PM - 6 messages
Hi All, Would really appreciate a helping hand on this one. Sorry its a long winded. Okay here's the scenario, our primary site has two DC's. DC1 and DC2. We wanted to start virtualizing so I started with DC2. I demoted it from AD ...
Allen -
2 May 2007 12:56 PM - 7 messages
I have two AD servers and one exchange server in my network. First server is W2ksp4, with primary DNS and global catalog. Second server is W2k3sp1, with all of the AD roles transferred from the first server, NO dns, NO global ...
Christopher Smith -
2 May 2007 12:24 PM - 4 messages
Hi All, Am having issues removing indexes from my ADAM instances (in dev) very similar to: [link] Did anyone ever find a resolution to this problem? It seems to happen quite ...
Matteo -
2 May 2007 12:23 PM - 6 messages
Current domain functional level: Windows 2000 mixed --> extranet Current forest functional level: Windows 2000 --> extranet Current domain functional level: Windows 2003 interim --> intranet Current forest functional level: Windows 2003 interim --> intranet Extranet Trust with an external outgoing trust intranet: all pc in the ...
Jose Alves -
2 May 2007 10:37 AM - 7 messages
Hi, i´ve one server with windows 2003 std in englinsh that it´s our primary domain controller. Now i buy a new server with windows 2003 server R2 in portuguese. When i try to put this second server as a backup domain ...
Pascal -
2 May 2007 9:42 AM - 2 messages
Hi, do you know if it is possible to disable certain privileges audit into the logfile ? I have a lot of "Privilege Use" entries about the SeChangeNotifyPrivilege (Bypass traverse checking) and I would like to disable just this king of Privilege use to be audited. ...
Pascal -
2 May 2007 9:26 AM - 4 messages
Hi, Do you know if there is a way to have a list of every audited objects in a server (folder/registry) and in a domain object ? Thank you ...
nico -
2 May 2007 8:52 AM - 2 messages
Hello, i like to create 2000students en set a pasw. so i can post the students in a letter wat the logon and pasw is for next schoolyear. if you have one, please post it. Tx ...
Pascal -
2 May 2007 8:40 AM - 5 messages
Hi, do you know any software that will let me centralizing easily my secutity log files (from the event viewer) into a specified location ? Thank you ...
Mr. JYC -
2 May 2007 6:43 AM - 2 messages
Hello, I was trying to force a replication using the following command and the following error message came up. C:\Program Files\Support Tools>repadmin /syncall /A /d /e /P /q Syncing all NC's held on localhost. Syncing partition: DC=ForestDnsZones,DC=Finance,DC=Factors ...
MSExchange2003Student -
2 May 2007 6:27 AM - 6 messages
hi all I want to implement and manage GPO's on my windows 2003/exchange 2003 network. Can anyone advise me a good book that explains the basics and go through to the advance work. i am in South Africa and if i should order it ...
iggie -
2 May 2007 4:29 AM - 2 messages
Hope that some one might be able to help me. I have a 2003 server running active directory and also a pix firewall from Cisco. The problem is the following Inside the office i have the following ip schema 199.48.48.xx ...
Matt -
1 May 2007 10:38 PM - 4 messages
Hello, I am hoping to get some design advice with regard to an upcoming Active Directory deployment into an existing system. We currently have several locations that remain stationary, and each stationary location also has a corresponding mobile location. The vast majority of our users will be ...
nntp.aioe.org -
1 May 2007 9:12 PM - 16 messages
I've got a fairly simple structure and a fairly simple question. I've got contoso.local as the forest root, marketing.contoso.local as a child domain and payroll.contoso.local as another child domain. I want to hide the forest root domain so that users in the child domains ...
Rhea -
1 May 2007 8:35 PM - 4 messages
I have SQL Server 2005 running on Win 2003 Server. I need to connect to the SQL server from a Win 98 workstation through ODBC. I have installed MDAC 2.8 SP1. What else do I need to be able to connect to SQL server? Thanks. ...
Mack -
1 May 2007 8:20 PM - 2 messages
I am wondering what the issues might be if any in upgrading a 2000 forest/domain to 2003 forest/domain that was originally upgraded from NT4. Not sure that I want to tackle a interforrest migration just now. ...
Bad Beagle -
1 May 2007 7:01 PM - 5 messages
Can someone tell me how to create a custom MMC for my helpdesk that will include only my domain OU's and the built in OU of computers? ...
Scott Townsend -
1 May 2007 6:48 PM - 4 messages
So we have a few servers that have local users on them and after upgrading the servers here and there we lose the Local Users and have to re-create them on the new server. All of the Servers are Member servers in an AD ...
Ben Chi -
1 May 2007 6:38 PM - 5 messages
I'm looking for a way to log into each machine over the network so that I don't have to KVM into each machine just to unlock it. Could anyone point me in the right direction please? Thank you, ...
Enrique -
1 May 2007 5:56 PM - 2 messages
I'm trying to install the Java Runtime Enviroment through the software installation option in Active Directory. Once I have it assigned, it will start the install but will eventually time out. If I run the msiexec at at ...
Ampaty -
1 May 2007 5:01 PM - 2 messages
I am login to DOMAINA\USER1 account. Requirement. I need to set DOMAINB\USER4 Profile as my default profile. Please let me know the procedure to do this . Amapaty ...
Jag -
1 May 2007 4:57 PM - 2 messages
I have spent a good bit of time researching the issue with mangled attributes when updating the schema to 2003 and exchange 2000 is installed. The documentation in Q314649 talks about this configuration under scenario 2, however it couldn't be more confusing. ...
John -
1 May 2007 3:34 PM - 2 messages
Hi all, We have two root domain controllers which handle our external DNS (no users are in this domain and all users are in child domain). One of two root domain controllers is dead now and can not bring back online now due to ...
Patrick Adkinson -
1 May 2007 3:02 PM - 2 messages
I am planning to create a student domain for our community college. We already have a Faculty/Staff domain and we want the MIS department to have the same admin rights in the student domain without using two separate ...
pbd22 -
1 May 2007 2:38 PM - 7 messages
Hi. I just configured a DC on my network called "mysite.com". The same box is also configured as a DNS Server. The local domain is the same name as the domain registered at network solutions - "mysite.com". I also have "mysite.net" ...
server21 -
1 May 2007 2:19 PM - 5 messages
I know there is a utility to tell what shares/folders a specific user account or group has access to. I am trying to do some auditing on my network and need to clean up some shares. ...
Profile CHANGE local2 roming -
1 May 2007 11:50 AM - 4 messages
Hi, pls let me know how to change Local Profile to roming profile how to do this one pls help me any one. Thank you.. Ramanaa.SV ...
PBJ -
1 May 2007 11:40 AM - 5 messages
Ok, we have a domain called test.org and we have a trust with sd.test.org and 2 others. Even though we are test.org , we are NOT a parent domain to sd.test.org. We have a two way trust that CAN be validated with no problem. I can login ...
Idris -
1 May 2007 10:01 AM - 3 messages
Hi, I realise this is not an NT section but can't see an NT section - also i'm guessing everyone on here has used NT for years previously. Anyway, if anyone can help that would be great. I've got an NT user whos account keeps locking. I just can't figure out why. ...
Klaas -
1 May 2007 9:25 AM - 2 messages
Hi, We're thinking of running 2 of our three DC's as virtual machines. The remaining "physical" DC would be the only machine to be backed up, the other ones would be recreated from scratch if problems occured. Can anybody comment on this setup (problems, recommendations, do's and/or ...
|
|||||||||||||||||||||||