|
server
newsgroups
|
|||||||||||||||||||||||
|
|||||||||||||||||||||||
Windows Server Active Directorymicrosoft.public.windows.server.active_directory
Trust No One® -
20 Dec 2008 5:47 AM - 7 messages
Hi Folks, Hoping one of your knowledgeable people can set my mind at rest on this one. The AD intersite replication interval has a minimum value of 15 minutes. However I'd like to create a new site that enjoys the benefits of intra-site ...
Chris -
20 Dec 2008 4:36 AM - 3 messages
Suddenly all our user's XP desktop got backupground option greyed out. I want to check if there is a GPO could cuase that. Where could it be? Thanks. ...
Mygposts -
19 Dec 2008 11:39 PM - 2 messages
I tried using it and it works fine for unlocking accounts, but it will not reset a domain password. No matter what you put in as a password it says it doesn't meet complexity requirements. If you use the exact same password elsewhere, it works fine. ...
S H A R I Q U E -
19 Dec 2008 6:54 PM - 3 messages
I am running Exchange 2003 Ent. Edition SP2 on member server. I have one DC holding all five operation master roles and other ADC holding GC role. Both DC and ADC hold GC role. In ReplMon, it shows successfull status of replication and also in Active ...
Mike -
19 Dec 2008 5:41 PM - 7 messages
Hi, I have several migration questions for a NT 4 migration: I plan to migrate to AD 2003 in the following way: -Add BDC to NT 4 domain, remove from production network and promote as PDC. -Upgrade PDC to Win2003R2. ...
Diane Walker -
19 Dec 2008 5:09 PM - 8 messages
We are running Active Directory on Windows 2003 server. Is there a way to copy all the users in one group to another existing group or a new group? This one particular group has more than 50 users and I don't want to ...
DD -
19 Dec 2008 11:43 AM - 8 messages
HI, Due o some windows 2003 upgrade issue, I demote one AD serverB to member server, this server previously hold the schema ower and domain role owner.server A hold another 3 roles. I sieze the schema owner for server A. ...
Geoffrey -
19 Dec 2008 9:19 AM - 4 messages
Hello, I have a AD on my site with 3 DC. (name it srv1,srv2,srv3) I have another site with one DC. (srv4) I tried to reuse a very old computer with windows XP. So I plug it to my network, install the soft I need ... and name it "testpc" ...
Job -
19 Dec 2008 8:03 AM - 6 messages
Dear all, first, I have in productive environment, 3 DCs which owns each one, one or more AD roles. My intention is to create a lab bases on my productive environement. Following steps are planed : I will create a new DC on my productive environment, replicate AD objects ...
GalNitzan -
19 Dec 2008 7:37 AM - 6 messages
Hello, I'm trying to find a way to allow password change on our dev windows server 2003 AD over unsecured connection from LDAP, like in ADAM and 2008 (DS-BEHAVIOR). I searched the web for two whole days and came out short . ...
Pat -
19 Dec 2008 4:19 AM - 9 messages
Hello, We have a external trust 2 way set up on a 2003 AD domain. Are users need access to a proxy server in the other domain. We add the users to a global group in AD and it takes serveral hours before ...
Jeff -
18 Dec 2008 11:24 PM - 6 messages
I have a program that can access AD, so I would like to set up security groups for different access levels. I have already created the security groups and have added the appropriate domain groups/users. To test this, before I test the program, I have created a folder and set the ...
frank -
18 Dec 2008 4:31 PM - 12 messages
Is there a way to join a computer to a domain from the active directory if so how thanks ...
Brian -
18 Dec 2008 4:04 PM - 5 messages
Hi, we just gave each teacher a laptop. 90% of them chose mac, but those 10% that are using Windows are causing problems. We are allowing them to be administrators of their machine, but still want them to be restricted on all ...
Darrell -
18 Dec 2008 3:41 PM - 5 messages
Hi I am synching users and groups between an app and AD (2003 functional
level) and I have run into an issue where the uSNChanged attribute is
not updating as I would (possibly incorrectly) expect. The app in question checks the uSNChanged attribute and makes changes
as required whenever the value has been incremented. If I manually
remove a user from a Group the uSNChanged value is incremented as
expected for the group. However if I delete a user it is removed from
the group but the uSNChanged value is not incremented. Is this expected
behavior? ...
burgessb -
18 Dec 2008 3:11 PM - 2 messages
This question pertains to Windows Server 2003 Active Directory (SP2/R2) I need to start auditing changes to the WMI filters that are applied to group policies. I cannot find what might be a file associated with a WMI ...
elibbis -
18 Dec 2008 12:35 PM - 4 messages
Hi, I am resetting up my ADAM and have trouble getting SSL to work on
ADAM. My enterprise CA/Sub CA is in the AD-domain - xxx.com. My ADAM is in a separate AD-forest, partners.xxx.com. Somehow when
requesting certificate, the certificate always gets install in the
Current User\Certificates store. ...
mrbchn -
18 Dec 2008 11:51 AM - 6 messages
Hi, Why domain naming master cannot runs on a Global catalogue .... or Domain Naming Master and Global Catalogue are not placed in
same............???? Please provide the Reason..... Thanks Basha
--
mrbchn
------------------------------------------------------------------------
mrbchn's Profile: [link]
View this thread: [link][link] ...
chua -
18 Dec 2008 8:58 AM - 3 messages
Hi, i have a NT4 domain called "ABC". i plan to upgrade to Win2008 domain, FQDN name will be "ABC.com" and Netbios domain to retain as "ABC". However, we have a another single forest, single domain called as "ABC" too ...
Max2006 -
18 Dec 2008 12:22 AM - 2 messages
Hi, What options do we have for ADAM load balancing and redundancy? Thank you, Max ...
Clubsprint -
18 Dec 2008 12:05 AM - 3 messages
I have a directory tree that has had specific permissions applied bya user and I'm trying to fix it but I can't get the new permissions to propogate and wipe the user from the sub directories. I go into "advanced" ...
2008 ts user -
17 Dec 2008 8:37 PM - 3 messages
Do i need to extend my Schema in My Active Directory 2008 Domain to use all functionalities of the advanced Grou Policy Management? btw: I am really really Sick if the New Groups of Microsoft! The people are geving good and Helpful feedback and my questions were ...
Scott Townsend -
17 Dec 2008 4:48 PM - 5 messages
So I had a DC in a network that lost connectivity to the rest of the network. I didn't have time to fix the network issue in a timely fashion. (Several Months) and the DC now contains Old data. I've since reconnected ...
EddieF -
17 Dec 2008 3:46 PM - 5 messages
We're trying to make sure passwords are encrypted on all of our systems. Just want to verify that passwords are automatically encrypted in Active Directory and on the domain controllers. Also, are the local account passwords encrypted on file servers? If not are there any suggestions on how ...
Paul Smith -
17 Dec 2008 3:38 PM - 6 messages
Network Load Balance problem Hi all I am trying to use load balancing between two windows 2003 servers and a windows xp client and all three are running IIS. The following is the config: SERVER-A : 192.168.2.1 - leasing DHCP IP from 192.168.2.5-100 ...
abckid -
17 Dec 2008 3:34 PM - 10 messages
Hi, We have a Win2K3 Domain, Single Forest & Domain. We also have secondary DC for backup in case the primary fails. The first DC holds all the FSMO roles and is also a DHCP server. It is installed in a high-end server hardware. We want to transfer this DC to a ...
Bad Beagle -
17 Dec 2008 3:22 PM - 5 messages
I have just added 2 new WIndows 2008 domain controllers and retired 2 WIndows 2003 domain controllers. All my clients are WIndows xp and they all seem to be logging into 1 domain controller - all workstations are showing this as the logon server. How do the clients decide which DC to ...
Fabio Martins -
17 Dec 2008 2:13 PM - 13 messages
Hi! I have a question about DNS and Active Directory The scenary is: Im the company i work to, we use mainly a Novell Network. We are migrating to Active Directory little by little. Since we deployed our DC, we are using it as the internal primary DNS Server ...
Ralf -
17 Dec 2008 1:34 PM - 6 messages
Hi, I have come accross a problem with the "Account Expiration Date" and I am seeking clarification on how the "Account Expiration Date" is evaluated when a user account logs on to our domain. From previous reading, I learned that "Account Expiration Date" is stored in ...
delta78 via WinServerKB.com -
17 Dec 2008 12:03 PM - 8 messages
I have a security group for internet users from various OU and sites. I want to extract user list who are member of a specific site / group. The following command I have used to display list of users from the security group ...
Max2006 -
17 Dec 2008 4:23 AM - 3 messages
Hi, I created a new role in CN=Roles called Writers (CN=Writers, CN=Roles). I want the role be able to read and write into all items within the ADAM instance. I added all possible ACL rights through Dsacls.exe to the new role. Dsacls ...
Max2006 -
17 Dec 2008 4:23 AM - 2 messages
Hi, I made a local machine user part of ADAM's Reader role; however, the user cannot login through ADSIEdit. Basically I found that unless a windows user is not part of local admins, it cannot login into ADAM. Not sure what I am missing here. Is there any procedure explains how to add ...
Max2006 -
17 Dec 2008 4:19 AM - 3 messages
Hi, I created a new role in CN=Roles called Writers (CN=Writers, CN=Roles). I want the role be able to read and write into all items within the ADAM instance. I added all possible ACL rights through Dsacls.exe to the new role. Dsacls ...
Max2006 -
17 Dec 2008 4:11 AM - 2 messages
Hi, I made a local machine user part of ADAM's Reader role; however, the user cannot login through ADSIEdit. Basically I found that unless a windows user is not part of local admins, it cannot login into ADAM. Not sure what I am missing here. Is there any procedure explains how to add ...
sepster -
17 Dec 2008 12:33 AM - 6 messages
Hi All, Sorry if this question has been answered previously, but I couldn't
find this anywhere on these forums (or in a straight-forward form
anywhere on the 'net). One of our customers has an ADAM instance set up on a server, and the
instance's administrative account was set to the "Currently logged on
user: <Domain>\<user>". ...
Pat -
16 Dec 2008 9:37 PM - 4 messages
Hello, We just upgraded to AD 2003 functional level and when I look at a the last logon time stamp it shows diffrent times on 4 diffrent domain controlers. I thought with the new 2003 functional level they would replicate and match ...
Costas Karatzanos -
16 Dec 2008 8:54 PM - 4 messages
Hi, we use windows XP with active directory and Windows Server 2003. I am looking to find a way to force users to save their data in one folder only (whatever folder local or network) for backup reasons. I searched through ...
ME -
16 Dec 2008 7:54 PM - 8 messages
I posted this on a forum but no anser after half day so I posted here. Hope you guys can give me feedback. I have a domain controller having a bad backplane. This is a DL360 G4 with drive C on a RAID 1. HP will replace the backplane but there is a change ...
SEgerton -
16 Dec 2008 7:10 PM - 5 messages
We would like to upgrade our servers from Windows 2003 Standard SP2 to Windows 2003 Standard R2. The reason for the upgrade is to take advantage of the management features in R2. I have a few questions but let me first ...
MSUTech -
16 Dec 2008 6:53 PM - 4 messages
Is there a way to view the members of active directory security groups from a XP workstation? ...
frank -
16 Dec 2008 6:21 PM - 3 messages
I have one machine keeps tell me it is duplicate name when its down I can not ping it I tryed remove the pc from domain and dns clear it flush and rejoin but it keeps tell me there a duplicate name every time I join it to the domain ...
Cyborg -
16 Dec 2008 3:29 PM - 10 messages
Hi, I have 2 DHCP servers they are also our Windows 2003 domain controllers. Thing is DC1 seems to service all the DHCP reqests, but why? DC1 has all the FSMO roles, so could that be it? Both servers are on the same subnet too, DC2 has have 100's of discoveries ...
VV -
16 Dec 2008 3:08 PM - 2 messages
Hi, Pls let me know if there is a way to remove programs from Add/Remove programs list in multiple machines?? Thanks, Vibhu ...
eivkectisn -
16 Dec 2008 2:58 PM - 6 messages
1. I am running Windows XP Professional SP3 on a standalone system (not part of a Domain) 2. I have installed ADAMSP1MUI_x86.exe 3. I created an instance named Test and kept all the other defaults for ...
Yotafan -
16 Dec 2008 2:09 PM - 3 messages
My question is, is it possible to change "Interactive logon: Prompt the user to change password before expiration" if yes how. I am talking about the screen that prompts you that your password is about to expire in (x) days. ...
Gunter Eife -
16 Dec 2008 12:36 PM - 6 messages
Hello, we have some external user, they works only over vpn. I have create a useraccount with default password. But the user have not a computeraccount. How can this user change his password in acrtive directory? many thanks ...
sunil kumar verma -
16 Dec 2008 12:32 PM - 7 messages
Sir One more thing i want to know that if we have two Dcs (Dc1, Dc2) in a
single domain forest. Dc1 have all five (FSMO) roles and another Dc2
have not any role but both Dcs are Global catalog and both Dcs have
active directory integrated Dns. Then suddenly our Dc1 goes down and
that is not recoverable, then how many changes require making the Dc2
like as Dc1. ...
Sukhwinder Singh -
16 Dec 2008 11:22 AM - 8 messages
Dear All, I need the information as to how the Active Directory "logon to" property works for the users. What exactly happens at the background because we are facing a problem in our infrastructure. We have a central domain which is used by all the users for authentication ...
elibbis -
16 Dec 2008 9:45 AM - 4 messages
I have an external facing AD. When my ADAM instance was created, I made
use of a AD group to be ADAM's Administrator. This AD group contains
the AD-administrator. Now my DC experience hardware failure, the AD is lost. Unable to
authenticate as administrator, I cannot connect to the ADAM
Configuration Set. ...
ambujnema -
16 Dec 2008 6:37 AM - 2 messages
we have to Convert a String Formatted GUID to that of the actual GUID
datatype appropriate to be Form For Use When Querying the Active
Directory I am using the filter like search.Filter = String.Format(CultureInfo.InvariantCulture, "(&(GUID= ...
al -
16 Dec 2008 3:17 AM - 5 messages
I am going to be making the following change in a GPO to empty the temp internet files when the browser is closed: Computer configuration/admin templates/windows components/Internet Explorer/Internet Control Panel/Advanced Page -->Empty Temporary Internet Files Folder when browser is closed - Enabled. ...
Saqib Ali -
16 Dec 2008 12:36 AM - 10 messages
I am trying to use the AzMan.msc to assign Roles to users/groups from a trusted domain. But it is not working. There are no error messages. I can add users from the current domain but not from the trusted ...
Brandon McCombs -
16 Dec 2008 12:27 AM - 3 messages
I posted this problem a few days ago and nobody responded but today I have some interesting information. To recap, some NTFRS errors were showing up and machine account passwords weren't replicationg. GPO updates were not working for the ...
MyGposts -
15 Dec 2008 10:46 PM - 4 messages
There was a similar post here, but it seems to have disappeared. We just installed Server 2003 Standard SP2 on a member server, added DNS and Domain Controller roles and then installed antivirus. The security log then started filling with event 861 failure audits. ...
Don -
15 Dec 2008 10:32 PM - 4 messages
OK, one mystery solved, I setup a spare PC with W2K3 Server, which contains a 3Com NIC, used a PC with a Broadcom NIC (instead of the 3Com NIC) as the client, and I get to the "There are no images available" screen. ...
MyGposts -
15 Dec 2008 10:17 PM - 9 messages
He just built a new Server 2003 member server, made it a DNS server, promoted it to a domain controller, then installed antivirus. Shortly after promoting it to a domain controller, the log started filling up with event 861. It says:Event Type: Failure Audit ...
Bre-x -
15 Dec 2008 8:56 PM - 4 messages
If you use dir/s/q > c:\test\fileinfo.txt You will get a nice text file with the all the file under that directory and it's file ownership. Is there a way to get File Security info? who was access to that ...
Thewienerman -
15 Dec 2008 8:49 PM - 4 messages
I have been tasked with removing the only 2 DCs from a 1500 users site to reduce administrative overhead. The site in question has excellent Bandwidth and redundancy to the Datacenter where we want those site users to authenticate. I need some suggestion for a plan to test the impact of ...
gnhopson -
15 Dec 2008 8:33 PM - 5 messages
Our administrator left a couple of months ago and I have inherited responsibility for all adiminstration duties. We're a small company, so I'm it for everything. I have had some training on Windows Server 2003, but everything was set up before I got here and now I have my first change. ...
Diane Walker -
15 Dec 2008 6:59 PM - 10 messages
We are running Active Directory on Windows 2003 server. When we setup a new user account, we also setup so that the users are required to change the password at the next logon. We also have a policy for password change every ...
MyGposts -
15 Dec 2008 4:51 PM - 5 messages
We have a domain controller that is also a file controller and hosts domain DFS. We are planning to demote it to a member server soon. Will demoting it break the DFS? I'm wondering if domain DFS has to ...
Ben Cooper -
15 Dec 2008 4:50 PM - 3 messages
Is there a way to batch remove users from a specific group? Something similar to the AD Users & Computers "Add members to a group..." function, but to remove the users. We have roughly 2000 user accounts. Individually clicking each account to ...
Cyborg -
15 Dec 2008 3:57 PM - 4 messages
Hi, We have 5 DC's, 4 on our LAN in our HQ and one offsite at our distaster recovery site. Eventually we will have 3 at our HQ as I have just installed 2 new DC's and we decommission the other 2 over the coming months. ...
Bad Beagle -
15 Dec 2008 3:57 PM - 5 messages
I have added 2 new WIndows 2008 domain controllers to an existing 2003 domain. It appears that I no longer have full permissions to the 2008 domain controllers. I am a member of domain admins which is a member of ...
Maida -
15 Dec 2008 12:39 PM - 13 messages
We have two Sites - G and H - Site G has two DC's that holds the FSMO's, DNS, and GC's. We at Site H also have two DC's that holds DNS and GC's. Why when Site G took their two DC's down did we Site H have problems getting to our ...
Joe -
15 Dec 2008 2:35 AM - 8 messages
Newbie question: the first hub in a forest has been configured as sub.domain.com rather than domain.com, no others have been installed yet. Should we start from scratch, maybe reinstalling OS, or is there a way to change the server so that it is domain.com? ...
BZP -
14 Dec 2008 10:42 PM - 5 messages
Hello, I don't manage to find relevant information on the technet. I wonder if I can manage Windows 2008 servers with GPO (and ADMX) on an AD 2003 (functionnal level domain/forest 2003). Are there some limitations ? Where can I found info about that ? Thanks for your ...
dtts -
14 Dec 2008 1:40 PM - 4 messages
Hello, i tried to make a new GPO to allow my normal Vista User (UAC activated, no admin-account) to create new file shares and to deactivate and activate the network-interface-card. Environment: Windows Server 2008 and Vista 32 and 64-bit, both in German. ...
sunil kumar verma -
14 Dec 2008 7:10 AM - 5 messages
hi friends i have a single domain controller in my organization that is a global
catalog also and i want to create the secoundry domain controller ( for
backup purpose).so i want to know that what i should make the change on
the primary domain controller to create the new secondry domain
controller . ...
|
|||||||||||||||||||||||