|
server
newsgroups
|
|||||||||||||||||||||||
|
|||||||||||||||||||||||
Windows Server Active Directorymicrosoft.public.windows.server.active_directory
Daniel Loughlin -
24 Feb 2007 8:00 PM - 3 messages
Hi, I'm doing some work for small business and am having problems getting certificate services working correctly in the domain. I've installed it and can request certificates through the web interface, however the Root Cert has not be published to the computers in the domain, so non of them trust the ...
Yobbo -
24 Feb 2007 4:50 PM - 3 messages
Hi All Any ideas on this one: 1) Dell laptop XP Pro SP2 has been added to the domain OK via the My Computer/Computer Name/Change tab. If I go back and look the domain has been accepted correctly. ...
Yann -
24 Feb 2007 10:21 AM - 7 messages
Hello all, I'm facing to a strange thing.. AD2k3 FFL mode with e2k3 sp2. All DNS are integrated to AD. When i add/modify a smtp email adresse with ADU&C, and clic "apply" or "ok", it took more than ~20 to 45 sec to update. ...
Howard Goldstein -
23 Feb 2007 10:19 PM - 2 messages
Is there a utility that will allow me to see what objects a user or security group has rights to in my AD domain? thanks ...
Randy -
23 Feb 2007 9:43 PM - 10 messages
I have inherited a 5 domain forest and the previous owner made all the DC's in 2 of the domains all Global Catalogs. I don't need this many GC's around but I can't find any documentation on how to reset the group membership ...
RickyVene -
23 Feb 2007 8:52 PM - 3 messages
Hi, How do I remove logon username on a client like 2000/XP in an AD 2003 with group policy? Please advise. Ricky ...
RickyVene -
23 Feb 2007 8:43 PM - 8 messages
Hi, I have been to my company only two years and I've discovered that the technicians are using different subnets than the 2003 subnets of 16 bits. They are using 24 bits so that their Siemens software for connecting to the ...
Kurt@AKBible -
23 Feb 2007 8:25 PM - 2 messages
I have a logon script that is assigned to all my users through and Active Directory Group Policy that attempts to setup a network drive mapping. If the drive letter is already mapped to another path it removes the mapping first using RemoveNetworkDrive. It then creates ...
JohnnyO''''Clock@community.nospam -
23 Feb 2007 8:02 PM - 3 messages
I'm looking some the pros/cons of using a FQDN versus using a '.local' naming scheme for an Active Directory. Does anyone have any thoughts, experiences, documentation to share regarding this? We're having a rather heated 'discussion' about an upcoming AD rename (We're still using a single label ...
fitchkd25 -
23 Feb 2007 7:36 PM - 4 messages
I'm working on some Win XP laptops and am new to Active Directory so hopefully whoever may respond will be very concise in explaining the solution. I use Computer Management to make certain Active Directory groups members of the Administrators group. This works great, for a while. ...
James -
23 Feb 2007 4:33 PM - 2 messages
I currently have two Win2kEntSP1R2 DC's (same forest, same domain) located in physically different areas, roughly 300 miles from each other. They are on different networks, but are considered "well connected". They are replicating the default-first-site-name site. Is it necessary to remove the default site ...
Dave -
23 Feb 2007 4:18 PM - 10 messages
Hi All, I am trying to raise my domain and forest functional levels. I cleared up another issue with a stale DC and domain that don't exist, so that should be all set. I have a parent forest root domain with 2 DCs that were upgraded to Server ...
y2k -
23 Feb 2007 4:14 PM - 3 messages
We have some file/folder and registry permissions set through AD. When I run RSOP on a client machine where the policy is applied, the permissions all show as Everyone - Full Control. The permissions are applied correctly to ...
Mike -
23 Feb 2007 3:25 PM - 3 messages
If I need to restore a server (member server or domain controller) from tape(server doesn't boot), does it need to be removed from AD first, then added back ? thanks.. ...
Dave -
23 Feb 2007 3:04 PM - 7 messages
Hi All, I have a problem. Have a Windows 2000 AD running at 2000 Domain and Forest Functional levels. At one time, we had created an additional domain in the forest, we'll call it CONTOSO, with a single windows 2000 server DC...............Since then that ...
Patti -
23 Feb 2007 2:41 PM - 2 messages
Hi, I have migrated about 20 workstations into a new forest using ADMT V3 this was working great. i started another batch of computer about 15 and 2 of these machines after being migrated are extemly slow keeps dropping connection to any network shares or losing connection to the exchange ...
Mike -
23 Feb 2007 2:36 PM - 2 messages
Hi, I'm not sure if this is the right newsgroup to post this question, but here goes. I have a SBS 2003 Server and two Windows 2003 DC's in that domain. I need to remove one of the DC's in order to reuse it for another purpose. ...
Russ Green -
23 Feb 2007 2:32 PM - 3 messages
I have my network setup with an SBS2003 server. I've started using AD to push software out to clients which is great except now I've just added a new laptop to the network and it isn't getting the software. ...
phekkenberg -
23 Feb 2007 2:00 PM - 2 messages
Hello, I'm trying to do the following, but I don't know how to do it. If have an msi package which automatically restarts my machine after it has been installed. I want to distribute it using GPO. My problem ...
SEgerton -
23 Feb 2007 1:42 PM - 5 messages
I just changed over our network from Netware to Active Directory. The Netware was here before i started w/ my company and the groups and rights were a bit of a mess. Now that i've migrated over to Active Directory. Is there a way to ...
Super Boobahlicious -
23 Feb 2007 1:25 PM - 3 messages
Hi Gurus. After extending and upgrading our root domain and child domains frm Win2000 to Win2003 We are planning to upgrade the last DC in our forest root called MainDC1. This maindc1 is the 1.) Operation Master, 2.) replication parner for all ...
CSmart -
23 Feb 2007 1:20 PM - 6 messages
I am upgrading to Win2k3 and changing domain name. As of know, I have both domains in the same network but I cant disconnect the 2000 based domain (source) wich also contains Exchange. Will migrate to Win2k3 with Exchange 2k3 ...
Super Boobahlicious -
23 Feb 2007 1:08 PM - 3 messages
How can I effectively achieve this failover in DNS? If I have two DNS, ns1 and Ns2 let say NS1 is the main DNS and has all the primary zones and including AD Integrated zones. On NS2 it has the secondary copies taken from NS1. ...
Gonzo -
23 Feb 2007 9:44 AM - 8 messages
We have 3 DC's one is sych'd with an atomic clock, I want the other 2 to sync automatically with this server. Should they do this anyway or shoudl I schedule a script to run net time \\dc /set y? ...
David De Smet -
23 Feb 2007 8:58 AM - 4 messages
Hello, I find the following entry in AD when I view it with ADSIEDIT. CN=192.168.20.2 CNF:8ad5fd76-b568-48f4-ae38-f48e21bc7720 It is found following another Entry CN=192.168.20.2 I find it in configuration/services/Netservices. ...
Sainty -
23 Feb 2007 8:19 AM - 2 messages
Hi I do not know how to restrict adult/porn/sex web sites on windows 2003 server.The network in question is for a school computer lab and some kids are very curious.All 20 computers are in the same group "users". ...
Gonzo -
23 Feb 2007 8:04 AM - 7 messages
Wat is the best was to lock a user down in AD. We want a couple of Admins to only be able to add users, groups and and PC's to the Domain, how can I do this? ...
Håkan -
23 Feb 2007 7:11 AM - 6 messages
Hi! I have a customer who has a single active directory domain (only one DC). They have now been bought by another company and they are now supposed to be part of the new owners forest. What is the best way to do this? ...
Ham -
23 Feb 2007 6:30 AM - 6 messages
i have setup active directoy on windows 2003 server. this is single domain controller. after installation, there is no secuirty group "domain users" exist and when i am creating user from command prompt, it gives error " the user does not belong to this group." even after manulayy creating group ...
Jeje -
23 Feb 2007 5:06 AM - 3 messages
Hi, we have a Win 2000 active directory and an NT 4 Domain, there is a trust relationship between the 2 domains. We have an IIS Web server and a back end SQL Database. We use the Kereros delegation system and this works fine for the user in the ...
Pato -
23 Feb 2007 4:01 AM - 2 messages
I have a no. of workstations connected to AD server. For auditing purposes, i want to check how long an active workstation is connected to server from login to logout. Please advice. If I am writing to the wrong discussion group, please direct me to the ...
CarlZ -
23 Feb 2007 2:56 AM - 3 messages
This is what happend. Our AD network has about 60 computers/50 users and about 6 servers. All computers, except DC's are in the computer container/ all users in default user container. I wanted to organize this. I started ...
Will -
23 Feb 2007 2:15 AM - 4 messages
I've got an SFU 3.5 environment on W2K DCs currently, but we're getting ready to complete the migration of that domains DCs to 2003 R2. Any stories, tips, tricks or other items of interest in moving from SFU to ...
Will -
23 Feb 2007 2:03 AM - 6 messages
I've got a scenario in my environment where I have a strong need to provide HA LDAP services. There are about 60+ applications using LDAP lookups in the domain and most of them are in-house and/or were never designed to support ...
Todd Fleenor -
22 Feb 2007 10:43 PM - 3 messages
Source:
[link] I was looking for some documentation to confirm that changes made to the local ADFS system using the ADFS MMC snap in take effect immediately vs. once ...
best@news.postalias -
22 Feb 2007 10:36 PM - 8 messages
Hello Everyone Windows 2003 In AD, if you leave "Password never expires" untick, what does this mean ? Does this mean it will exipre after a certain period of time ? If so, how long ? Many thanks Best ...
David Goldberg -
22 Feb 2007 9:15 PM - 6 messages
I'd like to know if it is possible to prohibit our users from downloading applicaitons like weatherbug and screensaver programs from the internet using group policy. If it is possible how would I do this. Thanks David Goldberg ...
james bondix -
22 Feb 2007 8:40 PM - 2 messages
Hi my problem is when i link a wallpaper policy to an user member of the
advanced users group, the policy not apply i can take of the user of
this group but i need to apply the policy can somebody help me?
--
james bondix
------------------------------------------------------------------------
james bondix's Profile: [link]
View this thread: [link][link] ...
ieraks -
22 Feb 2007 5:42 PM - 4 messages
I have an internet issue I want to allow a site via policy into the pop up blocker any ideas?? thanks a lot ...
Rich L -
22 Feb 2007 4:54 PM - 5 messages
We are going to be using a PC management tool Package. One of the requirements of this package is that all XP clients have "Use Simple File Sharing" unchecked in Tools, Folder Options, View (bottom of list). It ...
Rulo -
22 Feb 2007 1:48 PM - 3 messages
Helo, (problem already opened in general but not answered) The problem is that we have a server (windows 2003 SP1) that sometimes (once each two days aprox) it lose the connection to the DC. When you try to login it say that there is no domain account and you have to restart to fix it. We ...
z7one -
22 Feb 2007 1:30 PM - 6 messages
I have a 2003 active directory domain with 2 dc's. For some reason the dc's are not listed as the domain master browsers. The following key HKEY-LOCAL-MACHINE\SYSTEM\CurrentControlSet\Services\Browser\Parameters \IsDomainMaster is set to False. Should this typically be set to True ...
andyrite -
22 Feb 2007 11:54 AM - 23 messages
I have two domains controllers. I had to restore active directory on the other domain controller. On one domain controller (the one that wasn't restored) im getting these errors:- Event Type: Error Event Source: NtFrs ...
Maverick -
22 Feb 2007 10:59 AM - 4 messages
I have scenario here to search the whole of ADAM to find the people who have an attribute set to true. I just want the count of the people nothing else. I'm able to do it. The search result is quick but when I ...
GRP -
22 Feb 2007 10:58 AM - 3 messages
Is there any third party software that can perform the same tasks as in AD Users and Computers and can record who did what changes in the AD? ...
chriske911 -
22 Feb 2007 9:53 AM - 3 messages
I want to use ADMT to move users from a parent domain to a sub domain in the same forest parent domain is in native win2k, sub domain in native win2k3 do I have to relink users with their own mailbox? ...
kwyap -
22 Feb 2007 6:48 AM - 11 messages
Hi, I have a fresh installted Windows 2003 Server Standard R2, after promote it as a additional DC, the SYSVOL and NETLOGON are not shared. Is this a known issue for Windows R2? Thank you for viewing... much appreciate for any idea. ...
John Sherling -
21 Feb 2007 11:09 PM - 3 messages
Hi all, I've got a few Win XP Pro desktop machines that have local accounts (non-AD domain accounts) on them, that have been in use for a while. We've got a new (to us) AD server (actually Samba running on Unix) ...
Igor -
21 Feb 2007 10:02 PM - 4 messages
Hi, I have a weird problem, I have a windows 2003 SP1 domain. Recently I was forced to install the patch for exchange that breaks BESadmin account. I've followed the instructions on how to add send as rights back to BESadmin. So I ...
Oran Turner -
21 Feb 2007 9:52 PM - 6 messages
I followed "Method 1: Change the time zone settings on multiple networked computers", in [link], but my Windows 2000 systems will only reflect the changes once the time zone is manually changed to a different time zone, then changed back to the original time zone. The ...
Howard Goldstein -
21 Feb 2007 9:14 PM - 5 messages
I've been getting this error messgae on my servers: "The Group Policy client-side extension Internet Explorer zonemapping failed to execute" I've enabled logging to a UserEnv Log and I've found these events being logged: USERENV(179c.1554) 14:52:11:958 ReadGPExtensions: Rsop entry point not found ...
titanic panic -
21 Feb 2007 7:31 PM - 3 messages
Hi, We have 5 offices, all using NT4 domains and trusts. What is the most highly recommended documentation to upgrade everything to Windows 2003 AD. Thanks, t. panic ...
Jeff -
21 Feb 2007 5:23 PM - 5 messages
I am running Windows 2003 server. We have two companies here that do completely different business and use different domains. We have our domain and domain contollers and they have there's. We have one user that needs to be able to access applications from both domains. We have two nic's installed ...
ala -
21 Feb 2007 5:06 PM - 7 messages
DearSir, Is their any limitation in the number of added active directory users?!!, I need to add around 500000 useres in one domain at one server?!! does it need special design and if any please advice me. Sincerely, Ala ...
Shaun EN -
21 Feb 2007 4:55 PM - 7 messages
I'm hoping someone can point me to a document on the steps needed to replace a Windows 2003 DC Server with new hardware. We have two senarios. A single DC replacement and DC replacement with multiple DC's. Could someone let me ...
khaled azzaz -
21 Feb 2007 4:35 PM - 4 messages
Hi I have 3 DC 2003 in one domain, they are all GC, DNS servers. I have an exchange server as a member server. Everything working fine except of some errors in the event viewers that i was not minding because they are the usual ...
dhayes -
21 Feb 2007 4:21 PM - 4 messages
Hello All. When we set up our new Windows 2003 Forest/AD early last year we set it up for OU delegation with a flat domain model. It has worked well but due to some recent political pressure and other issues we ...
jobs -
21 Feb 2007 3:11 PM - 4 messages
We've installed this on a windows 2003 sp1 server running sql server 2005. From windows explorer I can see the unix nfs mount just fine and can map it and open file directly via unc. However I am unable to see it from DOS. I am also unable to see the ...
JonRoderick -
21 Feb 2007 3:04 PM - 3 messages
Since cutting over users to use a new DFS namespace, we have found a number of them are reporting periods of system inactivity (e.g. in the middle of typing into a Word doc, the PC will freeze for 5 or 6 ...
Fabrussio -
21 Feb 2007 2:43 PM - 7 messages
my Win2003 sp1 AD is working fine except i can't create users, it gives a vague message, that a 'system error has occured' when i try to create a user. I have tried: - Copying an existing user - Creating a user in various OU's ...
mikesic -
21 Feb 2007 2:21 PM - 7 messages
In my corporation, we use WSUS and group policy to carefully test and automatically deploy Windows Updates. However, I'm constantly annoyed by users calling me saying Microsoft tells them they need updates, or worse, they run the updates themselves! ...
PS -
21 Feb 2007 2:08 PM - 4 messages
Hi I've just moved from an XP machine to a Vista Business machine. On my XP box I had all the tools to manage AD, DNS, DHCP etc. I can't remember how I set these up but I do remember that it was a bit convoluted. ...
Daniel Oxley -
21 Feb 2007 1:58 PM - 3 messages
Hi all, Does anyone know if it is possible to create the reverse lookup zone in DNS when using an answer file with DCPROMO? I.e. When DCPROMO configures the Forward lookup zone automatically, it creates the reverse zones at the same ...
Ben Bazian -
21 Feb 2007 1:09 PM - 6 messages
Windows 2000 domain with two DC's. Every now and then we have an issue that the main server will lock up. If this happens I am unable to VPN into the network in that I cannot authenticate. The RRAS server is on a different ...
Garry Drinkall -
21 Feb 2007 9:55 AM - 6 messages
I am trying to clear out my active directory of all old computer accounts, is there any way i can find out when a computer account was last used as i know there are a large number of computers that are no longer in use ...
Tayfun Keresteci -
21 Feb 2007 9:16 AM - 4 messages
Hi, I'm looking for a resource or software or script that users can change their password from a simple web form (User Name, Old Password, New Password and the Confirmation ) Also the second isssue is, send notification e-mails to ...
Mike -
21 Feb 2007 8:00 AM - 34 messages
By default, the Domain Admins group is a member of the Administrators group on all computers that have joined a domain, including the domain controllers. Does anyone know how to change this default behaviour? Specifically we would like to add a second security group to the computers administrator group, ...
Aznan -
21 Feb 2007 2:34 AM - 4 messages
Hi, i'm using Windows 2000 server with AD, is there a way for me to be notified by email upon 3 times of failure logon attempt for domain users. Aznan The International School of Penang (Uplands) Malaysia ...
Dan -
20 Feb 2007 11:06 PM - 2 messages
Hey guys, As part of my default domain policy I have a password screen saver timed. Is there a way to exclude an OU or better yet a machine from that? I have a single box I'd like to exclude so even a reg hack on that box would be okay. ...
Laurie -
20 Feb 2007 10:59 PM - 2 messages
I have a client that has been running 2 separate domains (same subnet). An NT4 domain and a W2K3 domain. All clients have been added to the W2k3 domain. The NT domain now consists of a PDC, a BDC and 2 SQL 2000 servers ...
dink337 -
20 Feb 2007 10:53 PM - 5 messages
Is there a list somewhere of all the attributes used in ADSI and a description of each? I'm looking to do some custom filtering for a few apps I'm writing and I'd like to take advantage of 1 (or more) of the un-used attributes to assign a ...
CitizenMundane -
20 Feb 2007 10:14 PM - 6 messages
All, Just wanted to get a few suggestions/reviews from anyone who has used a software package to maintain or store event logs, and also to query the event logs in real time for certain types of events, such as adding a ...
DKMI -
20 Feb 2007 8:56 PM - 5 messages
Several users on the domain can access restricted folder even though they are not part of any group that is allowed access to the folder nor have their accounts been given permissions on this folder. This only is the case for ...
Howard Goldstein -
20 Feb 2007 8:37 PM - 4 messages
The supervisor in charge of our User Services group, pointed out to me that an OU containing all the groups and accounts for one of our business units is missing from AD. When I check AD on my computer, the OU is there. On her ...
wzhen -
20 Feb 2007 8:21 PM - 3 messages
If you are runing DNS installed on a Domain controller, do you still need to create a zone for the domain on DNS? ...
SQL, Access, FrontPage, IIS, ODBC, ASP -
20 Feb 2007 7:55 PM - 4 messages
Hello, I would like to map a network drive vai active directory for all users so that when they log into their computers the drive will be there, versus going around to each individual user and mapping the drive manually. ...
best@news.postalias -
20 Feb 2007 6:10 PM - 12 messages
Hi Everyone Windows Server 2003 AD Exchange Server 2003 Is there any way I can configure AD to automatically send notification to users (for example 2 days) before their passwords expire ? Many thanks Best ...
wzhen -
20 Feb 2007 5:37 PM - 3 messages
Can you run DNS on an Domain controller in windows 2003 AD domain? Do you have to have a DNS server installed before upgrade a nt 4 domain to a windows 2003 AD domain assuming you want to use your own DNS server not the main DNS ...
Matthew M (UK) -
20 Feb 2007 5:36 PM - 5 messages
Hi, Is there a free command line utility to export the active directory ACLs assigned to OUs? Say who can reset passwords/modify objects etc etc. Matthew ...
Charlie Brown -
20 Feb 2007 5:13 PM - 3 messages
I am installing a new application server in my domain, the IWAM accounts are not being generated in Active directory. I have tried rejoining the computer to the domain and reinstalling IIS but still no go. Some of my applications are failing without these accounts. I am ...
Allyn -
20 Feb 2007 4:44 PM - 4 messages
We have a network with one Win2K and one Win2K3 domain controllers. I've run dcdiag /v and netdiag, and no errors are reported on either server. WINS is not configured. The server crashed last weekend, but a reboot brought it back ...
ClubberLane -
20 Feb 2007 3:41 PM - 3 messages
Software Installaion via GPO is logged in Event Viewer. Are there any other log files stored on the server or client? How does AD know if the software has been installed? If the app set to be redeployed how does AD know the if the app has been installed initially? ...
GRP -
20 Feb 2007 10:36 AM - 5 messages
An accident happened in a small IT team: The "Groups" container containing over 100 groups had found deleted! Using some AD object recovery tool all groups had been recovered. And the time the deletion was performed can be identified. However, there is no ...
Simon -
20 Feb 2007 10:01 AM - 8 messages
Hi Last night we done an upgrade on one of our servers from Windows 2K to 2003 R2. Now a Windows NT4 pc cannot get access to that server which has shares on it. The pc normally logs on locally not to the domain as it is a factory pc. ...
infopath -
20 Feb 2007 9:35 AM - 4 messages
In our organization we have 1000 servers that are domain controllers (one server in each branch). All the servers are connected to central HUB (four servers). Servers replicate once per 24 hours (because of large number of servers i.e. optimization). ...
JonRoderick -
20 Feb 2007 9:09 AM - 5 messages
Is it possible to select which AD/AM application partitions are replicated in a replica set between, say, a single AD/AM instance hosted on serverA and replicated to serverB. I don't necessarily want all my application partitions replicated ...
Johnmac -
20 Feb 2007 6:38 AM - 4 messages
Hi everyone, I have an issue, At work I installed active directory, created an OU added users and have GPO running.... I managed to lock down IE6 as much as I can, for example, I have remove access to all the CTRL + options and I went into each user profile to remove ...
Charlie Brown -
19 Feb 2007 11:14 PM - 3 messages
I have a newly installed domain controller running Windows Server 2003 R2. This server took over for a failing pdc. It runs AD (FSMO - All roles), DNS and DHCP for it's site. Whenever the server reboots it ...
Michael -
19 Feb 2007 9:12 PM - 6 messages
I have a user that I want to delegate the ability to create/delete users in his OU, disable his accounts, and unlock user accouonts. I did the delegate wizard in users and computers and the user can create the ...
BW -
19 Feb 2007 7:06 PM - 11 messages
I have established a cross forest trust between the cohovinyard and cohowinery forests in a lab. The cohovinyard forest has two domains: the cohovinyard.com forest root, and dom1.com domain. I can share files properly between the domains in the cohovinyard forest. I can also share ...
p.o -
19 Feb 2007 3:03 PM - 4 messages
Hi I want to migrate user from one to second domain. I use ADMT v3, I've migrated sid history etc, but when I connect computer to new domain and user log in a new profile is created. I want to use old one. ...
Noomilop -
19 Feb 2007 2:35 PM - 4 messages
DFS on Windows 2003 SP1 (NOT R2) - 48 partners 1. We have no filters on DFS today, I have looked at properties on my DFS share: in AD\System\File Replication Service\DFS Volum\Shares\"My shares" In file filter, there is nothing.... ...
greg.drap -
19 Feb 2007 9:25 AM - 8 messages
Hi everybory I'm using an ADAM to store User proxy for an application. Users authenticate on AD with a certificate on a token. I want to keep that way of authentication on ADAM and I need to know if it's possible. ...
Gonzo -
18 Feb 2007 10:02 AM - 14 messages
We have 3 DC with DNS isntalled on both, how should the TCP be configured for DNS on each? Server 1 and 2 are in the same site, server 3 in offsite and replicated every 180 mins. Should all the DC point to them selves for the preferred DNS? ...
|
|||||||||||||||||||||||