Home All Groups Group Topic Archive Search About

Windows Server Active Directory

microsoft.public.windows.server.active_directory
Score filter out domain user accounts without email addresses
inenewbl - 10 Jul 2009 7:02 AM - 2 messages
Hi all. I would like to know if it is possible to export a list of domain user accounts with no email addresses using csvde. Pls advise. Thks in advance. ...
Score Decommison hub DC
southpaw - 9 Jul 2009 9:41 PM - 3 messages
Hi all, I just decommission one of my hub DCs and I notice my remote sites are still AD connection object is still point to this Dc i removed . How can I force the KCC to rebuild the ADconnection object to point to one of the remaining ...
Score allow iheretable persmission
Rick12001 - 9 Jul 2009 8:57 PM - 4 messages
I am run Windows 2003 server and having issues when changing some of the user accounts to allow iheretable persmission under the security tab. I can check the box but come back in about an hour and the box will be unchecked. This is not on all user accounts and I can have some users in an OU have this happen and the others work fine. ...
Score Active Directory VBScript to get user's OU information
Daniel - 9 Jul 2009 8:34 PM - 3 messages
I am trying to create a vbscript that go through the list of AD2003 users and finds their primary SMTP email addresses and their department value in their accounts.  The problem I'm facing is LDAP ADSI provider needs the exact OU ...
Score DC Replication help
Gonzo - 9 Jul 2009 6:59 PM - 6 messages
Hi, I have 3 DC on our LAN, and one on a remote site with only a 2mb link for DR only.  The servers are Windows 2003 and DNS is integrated. What should my replication settings be and where can I check them?  I looked ...
Score KMS Query
TSAM - 9 Jul 2009 6:40 PM - 2 messages
Hello, I have a KMS server running on Windows 2003 servicing KMS/MAK requests from our Vista clients. I am installing 5+ Windows 2008 servers and I like to use same W2K3 KMS server to process KMS requests for these W2K8 servers. ...
Score Counters and reports for CPU and Memory
Hugo - 9 Jul 2009 6:16 PM - 2 messages
Hi! We have a few sql and windows servers in our environment. My manager wants to know the CPU and Memory utilizations of a couple of SQL and Windows (file server) Servers. Iam aware that windows provides Perfmon tool -  I havent used it earlier and ...
Score PC joining domain
obnetadmin - 9 Jul 2009 3:28 PM - 6 messages
I have a single forest single domain Windows Server 2003 environment. I recently had to remove a DC from the domain "ungracefully". Now when a PC joins the domain, you have to specify the full NETBIOS domain name (i.e. ...
Score Advice wanted on setting user permissions - Group policy etc
eggedd2k - 9 Jul 2009 3:13 PM - 2 messages
I'm just in the process of setting up a couple of shiny new Dell servers for our organisation.  They're going to be replacing our existing Windows 2000 Server infrastructure. I want to get permissions for users correct from the start. ...
Score Add Users to DomainADM Grup in other domain - WP
WildPacket - 9 Jul 2009 3:10 PM - 4 messages
Single forest, multi-domain environment (domain A and B), is there a way to add a user/group from domain B to domain A's domain admins group? It seems the domain admins group in Domain A only accepts contacts or other ...
Score Make client obtain new kerberos key
Chris Dodson - 9 Jul 2009 2:14 PM - 2 messages
Hi all Is it possible to make an XP client obtain a kerberos key? Does the command "netdom reset 'client' /domain:'domain'" do this? I need to ensure KDC is in working order. Thanks ...
Score Phantom AD group called $UJ5000-I64JO6IO1K6I ????
Maurice - 9 Jul 2009 1:40 PM - 6 messages
If I run netuser.exe It shows an AD group with the name - $UJ5000-I64JO6IO1K6I but no users in it. If I open up adsiedit and have a look around I cannot find this phantom group. It doesn't show in ADUC either. ...
Score Domain Controller Problem after force removal
Chris Dodson - 9 Jul 2009 1:16 PM - 4 messages
Hi all I need some help. We had some time issues on the domain the other day, it resulted in the DC's not replicating and thus being tombstoned, a phone call to MS resolved this and the domain is now in working order. ...
Score add another name to domain tree
shrikant - 9 Jul 2009 11:18 AM - 4 messages
i work in in client-server senario as system engineer. i have single domain in forest, domain name is "abc.local" , i want, when user log in domain they see the domain name as "abc-main". i want to do it ...
Score gpo w2k8 for xp sp3
Sylvain Jeanneret - 9 Jul 2009 10:24 AM - 7 messages
Hi, Server : w2k8r2 fr Client : xp pro sp3 fr Deploying soft with gpo, for users and for computers works well, except for adminpack.msi. For this package, deploying with gpo for computers works but not for users. I tried 3 versions of adminpack and always fail. ...
Score DISC SPACE
Eldingo - 9 Jul 2009 12:01 AM - 10 messages
Hello friends: Is there a way to get a report on disc space usage on all the servers in the domain. I need to do report on disc space availability on a monthly basis. Appreciate your help. -ciao ...
Score Changing passwords from the command line
VGE - 8 Jul 2009 9:37 PM - 7 messages
I have tried changing user passwords on a domain using both net user [username] [password] and dsmod [userdn] [password] and both times I get access is denied. The account that I am logged into is a copy of the Administrator account. If I log in using the Administrator account the ...
Score 2008 DC 2003 GPO applied
cptkirkh - 8 Jul 2009 7:01 PM - 3 messages
Well i think i may have made a mistake.  I installed a new 2008 DC in my AD.  Wen thtrough all of the proepr steps.  I had everything working just fine and then for some crazy reason I moved it to the OU ...
Score Migrate users from Existing Windows 2003 Domain to new 2008 Domain
Tom - 8 Jul 2009 5:36 PM - 8 messages
We have users on an existing Windows 2003 Domain, the company would like to move users to a new 2008 Domain (new AD as they want to change the domain name) What is the best way to go about this? ...
Score Group Policy Issues - URGENT
microsoft - 8 Jul 2009 4:05 PM - 4 messages
Hi Is there a tool to identify if multiple group policies are running in your environment.  I have a Windows 2000 DC running SP4.  Currently in my event log I am logging Logon/Logoff and Account Logon Events, however when I check ...
Score Upgrading AD 2003 to AD 2008 In-Place
Luiz - 8 Jul 2009 3:55 PM - 4 messages
Hi, I have a question about Upgrade AD In-Place mode: - I have a DC/AD Windows Server 2003  and my environment has a Exchange Server 2003. I want upgrade my environment to Windows Server 2008 and AD too ...
Score new domain old users
RC - 8 Jul 2009 3:14 PM - 3 messages
I have 1 forest 2 domains. I want to move several users (couple thousdand) from the old domain to the new domain. Is ADMT still the best way to go? forest is 2003 mode. old domain is 2003, new domain is 2008 ...
Score How do I connect a new AD account to a new email address
Linda - 8 Jul 2009 2:12 PM - 4 messages
I have an exchange public folder where the email address was created before the user account.  I need to connect the user account to this email address.  Is this possible or do I need to delete everything and start from scratch?  ...
Score Domain root MX records do not work with DNS STUB zones
Daniel - 8 Jul 2009 1:30 PM - 7 messages
Just observed an interesting issue. On w2k3 server we have created an AD integrated DNS STUB zone for domain-name.com pointing to the other AD 2003 domain where the actual domain-name.com zone is hosted. Upon creation all records can be ...
Score OT: Fastest solution for user data migration to domain. Client side
Todd - 8 Jul 2009 1:21 PM - 3 messages
I've recently built out a shiny new 2008 domain to replace an aging 2000 domain. Most users have been added to the new domain with diffent names and soon it will be time to manually change the domain membership on over 300 ...
Score Command line utility to list groups administrator account is a member of
Mikoyan - 8 Jul 2009 11:08 AM - 4 messages
W2K3 SP1 What Command Line utility can I use to get a list of groups that the administrator group is a member of? Please could someone give me an example of the syntax to use. Thanks, Anastas ...
Score DNS zone disappered
Alberto - 8 Jul 2009 10:26 AM - 7 messages
Dear ALL, I have a problem on a win2000 dns server active directory integrated. Details are: a registerd zone on a secondary dns server suddenly disappear (restart of machine or dns service restart) so I have to re-create and transfer from ...
Score Group policy tatooing with restricted group ? or strange behaviour !
Eric - 8 Jul 2009 10:12 AM - 6 messages
Hello, we have Windows 2000/Xp clients in our Active Directory. Configuration 1 --> We had a GPO applied on computers that defined a restricted group for BUILTIN\Administrators. (So, if a user wanted to add himself to his local administrators group,his user account was ...
Score DNS zone disappearing
Microsoft - 8 Jul 2009 8:35 AM - 2 messages
Dear ALL, I have a problem on a win2000 dns server active directory integrated. Details are: a registerd zone on a secondary dns server suddenly disappear (restart of machine or dns service restart) so I have to re-create and transfer from ...
Score Re: An active directory Domain Controller for the domain could not becontacted in windows vista Busi
ashokaccna - 8 Jul 2009 8:27 AM - 2 messages
I want to join Windows server 2008 to domain which is configured in windows 2003 server I am getting this message ( An active directory Domain Controller for the domain .............. could not be contacted. Ensure that the domain name is typed correctly. If the name is correct, click details ...
Score Server under NO LOAD -> ok for days ... eventually gets slow...
MSUTech - 7 Jul 2009 8:28 PM - 4 messages
We are a little confused as we can not find a reason for this problem.. it always goes away after a restart of the server.... then... after some amount of days and even weeks we will notice that the network drives will be slow or ...
Score Secondary (backup) domain controller not working ?
iautran - 7 Jul 2009 6:05 PM - 13 messages
Hello, we have two DCs in our LAN.(192.168.0.1 and 192.168.0.2). We have configured them in the DNS configuration for each client member of the domain (primary and secondary DNS). Just for the test, I power off the first DC, then I reboot one of my ...
Score Giving rights to a group to reset and unlock users in a AD domain
sqldbaguy - 7 Jul 2009 5:05 PM - 3 messages
Hi guys, Im new here. I have a problem that I hope you guys can help with. Our A.D. guy has quit so they are giving me (the SQL DBA guy) the responsibilities. I am trying to add this group of users, who we are calling the "Account Password Reset group" and I need to give them the right to reset any user password, and also unlock a user in the domain. The only problem is, when I add that group under Account Operators it doesn't work. My users get an Access Denied error or something like that. And they can only reset and unlock users within their own "Account Password Reset group".  It works when I put them under Domain Admin group, but those privileges are too broad, and our director does not want them with all those rights. Is there another built in group I could use, or a way to modify their rights so they can have privileges to unlock and reset user accounts? ...
Score Merge local user and domain user
Cem Sisman - 7 Jul 2009 4:41 PM - 6 messages
Hi all, When a client computer joins a domain, is there any syncronization tool that helps me to merge Local user which previously used and  the domain user's files/programs/all settings etc? what is the best practice? ...
Score rename user account and retain user profile setting
southpaw - 7 Jul 2009 1:15 PM - 2 messages
Hi all, If a user account is renamed (login account) is renamed will it retain the user profile settings ? TIA.. ...
Score Remove an attribute from a objectClass
Pman - 7 Jul 2009 9:21 AM - 4 messages
Hello, I added an attribute to an objectClass with the following command: DN: CN=myObjectClass,CN=Schema,CN=ConfigX changetype: ntdsSchemaModify add: MayContain MayContain: myAttribute Is it possible to remove the attribute "myAttribute" from the object class "myObjectClass"? Thx for help! ...
Score Sezing FSMO roles...
jprstokato - 7 Jul 2009 8:07 AM - 16 messages
We have our DC1 in a sorry state, after unsuccessfully rolling back from an attempt to upgrade it to W2k8 Ent. IT s a Win2k8 Std VM. We need to forcibly remove it from the domain and seize roles to another DC as it is no longer ...
Score Win 2003 ADS users get locked out
DD - 7 Jul 2009 6:37 AM - 10 messages
Hi, We have a Server 2003 network (2 Domain Controllers, 5 member servers, and about 100 Windows XP SP3 clients). Off late  we have  noticed that the random user would get into a lockout problem i.e  all of a sudden their ...
Score Backup of DC - windows 2003
biren - 6 Jul 2009 7:06 PM - 15 messages
Hi, When I am taking a backup of a domain controller, should I also be backing up the windows folder? At the moment I am only taking a back of System State. thanks ...
Score ERROR event ID 3224 SERVER 2003 X64
Ricus - 6 Jul 2009 5:14 PM - 26 messages
I am getting the following eventlog system error reappearing around every 5 hours on my first DC on my child domain. ERROR event ID 3224 "Changing machine account password for account ELLJHB$ failed with the following error: There are currently no logon servers available to service the logon request. " ...
Score AD question
dkblee - 6 Jul 2009 4:56 PM - 3 messages
hi! Here's the scenario: The HQ has just configured a one way trust (they trusted us, they created outgoing trust and we created incoming trust) with our branch domain (HQ and branch in different forest and domain name).The ...
Score Windows Security Log
dontinou - 6 Jul 2009 4:27 PM - 11 messages
Hi, I keep running into this and now its really causing me headaches. When I log into my server, I get the message that "..the Security Log is full".  So I look at my settings, and I have a GPO that enforces ...
Score Can't Install AD on 2003 R2 Server
ChazG - 6 Jul 2009 3:13 PM - 5 messages
All, I have a new Server I need to install AD on but cannot, because, all of the previous Servers are pre- R2 so the version of ADPREP does not match. The other part of the issue is that the older servers are 2003 Enterprise and the ...
Score AD authorisation slow
Gonzo - 6 Jul 2009 2:30 PM - 3 messages
Hello, I'm been told to investigate why our LDAP authorisation is slow, where do I start?  We use AD 2003 and have 3 DC's and one offsite. Authentication is fast, but I'm not even to sure what they mean by ...
Score ISA Server 2006 and Firewall clients
Cem Sisman - 6 Jul 2009 1:29 PM - 3 messages
I have got isa server 2006 installed on a server also Active directory running on it, I have got all clients computer installed firewall client software for ISA. My question is one of my computer im currently using havent been joined to the domain and is using firewall client to use proxy ...
Score Check Folder Size
sharath_bujji - 6 Jul 2009 11:13 AM - 4 messages
Hi, The drives are running out of space on a Server, I would like to know which is the folder taking too much of space. Is there any scripts which help in finding the folder size...rather than clicking on each folder to know the ...
Score e
Sam - 6 Jul 2009 7:43 AM - 3 messages
Hi, We have one active directory forest which is synchronizing time from Unix server. That works fine. Now we have installed w2008 server which doesn't belong to domain. That server gets time from internet and is going to be so called time server. ...
Score Rejoining Computers to domain
Taz1972 - 6 Jul 2009 12:57 AM - 7 messages
Hi, Whenever we move a computer object from one OU to another in AD, we have to rejoin it to the domain. Why is this? We have a fully 2003 .local domain, and having to rejoin any machine we move ...
Next » 2 3 4 5 6 7 8 9 10