|
server
newsgroups
|
|||||||||||||||||||||||
|
|||||||||||||||||||||||
Windows Server Active Directorymicrosoft.public.windows.server.active_directory
DD -
28 Feb 2009 4:50 AM - 10 messages
Refer to my previous port on this event id 13508. i demote the dc and check the primary DC with dcdiag and netdiag ensure that no any errors and then i do the promote again but I still getting the same ...
Ondrej Sevecek -
28 Feb 2009 12:22 AM - 5 messages
Hello, is there any difference between two snapshots created by using DISKSHADOW SET CONTEXT PERSISTENT and NTDSUTIL SNAPSHOT ? Thank you very much. ondra. ...
BigSam -
27 Feb 2009 8:36 PM - 4 messages
Hope I'm in the right forum - if not please advise. I created a web site with the ASP.Net 2.0 ChangePasswordControl, so that my remote users could change their passwords. They are connecting through an SSL-VPN device that requires they login and present a client certificate in ...
TomandJerry -
27 Feb 2009 7:50 PM - 7 messages
I will make this as simple as possible. We are running Windows 2003 Server SP2. We have 2 web sites set up for file upload and download that are secured via ssl. We also use Outlook Web Access to get to email running on 2 ...
skip -
27 Feb 2009 4:57 PM - 5 messages
Hello I am noticing something strange on my 2008 DC's. When i look at the properties of a user account there doesnt appear to be an option to "lock out" a user account. I can disable a user account but i cant lock it out. ...
Cindy B -
27 Feb 2009 2:22 PM - 6 messages
Hi- I am adding 2-2008 AD servers to a 2003 environment. All servers are 32bit. In preparing the network to add the 2008 DCs, I am suppose to run adprep on the 2003 DC - However, I have some TechNet instructions that say IF running ...
JJP -
27 Feb 2009 2:02 PM - 5 messages
Hi, I am trying to set some permissions on a folder, its subfolders and files and I am not getting the results I expect. My manager had me create a folder and a bunch of subfolders. We created a AD group and put the needed users in it and added them to ...
Gert Albertse -
27 Feb 2009 1:15 PM - 3 messages
We have 2 DC’s running Windows 2008 64bit. When changing the password of a user using web interface/ldap, the password is successfully changed on one DC. When the user tries to open Outlook Web Access, authentication fails. ...
berni -
27 Feb 2009 9:48 AM - 5 messages
Hi, I am currently installing System Center Configuration Manager and I found a description where they suggested to add the SCCM_Server to the Active Directory "Domain Admins" group. I am wondering about which effects in generall this activity has? Are all the local users on this computer then domain admins? ...
Marcel -
27 Feb 2009 9:28 AM - 15 messages
Hello, I would like to downgrade the schema version 44 to 31. Is it possible? How can I do that? Thanks Marcel ...
hasnain -
27 Feb 2009 8:26 AM - 9 messages
Greetings i have an Active Directory Installed on the network but i am getting
problems to share files as i cannot share any files on the network. For instance i have shared a folder in one of the users pc and given
rights to all the rest of the users in the domain but still if i try to
access it from another pc it tells me i don have permission to use it ...
DavidDDDDD -
27 Feb 2009 6:17 AM - 2 messages
I am running ADMTv3.1 on Windows Server 2008. Using the sample scripts, it bombs out almost immediately on creating the ADMT object, with error: Error: ActiveX component can't create object: 'ADMT.Migration' Code: 800A01AD Source: Microsoft VBScript runtime error ...
Mygposts -
27 Feb 2009 12:22 AM - 13 messages
We are considering running this command so new machines will automatically go into an ou with special policies if the tech forgets to precreate the computer account in the correct OU. However, we are concerned about side effects because we are using the ...
ikaikaokaina -
26 Feb 2009 10:41 PM - 2 messages
I've recently run into a permissions issue with having a computer object as a member of a security group which has NTFS access to a share. Here's what's going on... I've got a share that group XYZ has read/write access to. ...
mkroska -
26 Feb 2009 10:29 PM - 3 messages
Hi all-- I'm on a team for developing a solution for a new AD implementation and need help with a few planning questions. Background: This is a green-field: this will be rolled out from the ground up. ...
Altria -
26 Feb 2009 9:51 PM - 4 messages
Hello All, I seem to have a wierd issue with home folder for users. In ADUC, the user's home folder is specified under \\servername\share\user and when they login into thier workstations they are able to connect to the ...
Steve Richter -
26 Feb 2009 7:20 PM - 4 messages
In Event viewer, security I am not seeing any invalid login attempt messages. I think I have enabled account logon event logging. On the ActiveDirectory, domain controller server, in admin tools, domain security policy, local policies, audit policy : audit account logon ...
Laurie -
26 Feb 2009 5:48 PM - 2 messages
Hi, I have just setup AD in a Linux environment. We will be adding Linux servers and workstations to the domain but I am wondering for transition purposes if I can set the secondary DNS to be the BindDNS server? I tried ...
BrianMultiLanguage -
26 Feb 2009 5:22 PM - 3 messages
Heres the layout of the GPO. SCREEN SAVER ENABLED SCREEN SAVER EXECUTABLE NAME ENABLED SCREEN SAVER EXECUTABLE NAME (file path to winexit.scr) SCREEN SAVER TIMEOUT 600 However when I look the users pc, the screen saver is set to none and greyed ...
Steve Richter -
26 Feb 2009 4:33 PM - 6 messages
I have a user who is being locked out of the system every day. I unlock them by logging onto the active directory server, users, right click the user, properties, account and unclick the "account is locked out" box. Using event viewer on the w2k3 active directory server, in the ...
Marc S -
26 Feb 2009 3:41 PM - 2 messages
I am an IT Director that has taken over a pre-existing Windows 2003 network. One Manager who recently received a new Windows XP Pro PC, states that she can no longer access Active Directory Users and Computers to reset passwords ...
Jeff P -
26 Feb 2009 2:30 PM - 8 messages
I'm running Server 2003 SP2 in a domain. I have created several OUs to organize my users and computers. Our main user OU (Staff Users)(users) has a GPO with user-defined logon script. I have another OU (External ...
Sneakie -
26 Feb 2009 1:12 PM - 9 messages
Our 1 DC (we have 3 others) that was serving as operations master crashed due to a hardware problem and we had to repair it using the server 2003 cd and now we cannot get to transfer the role to another DC If I go to the ...
supersonic_oasis -
26 Feb 2009 12:57 PM - 4 messages
Hi all, We have an AD consisting of Win 2003 servers. I always log into them as the original Domain Administrator I created. We are about to add some more DCs and I need some other co-workers to be able to log into them and have ...
Ronnie -
26 Feb 2009 11:47 AM - 8 messages
Hi, I've been trying to extract the usernames for member of a group using this: DSGET GROUP "cn=HER-GBS-DAT-ADM,ou=security groups,ou=groups,ou=locations,dc=domain name,dc=com" -members However this extracts everything including OU and DC for each user. How can ...
Babu VT -
26 Feb 2009 10:24 AM - 4 messages
Hi, Can someone point me to a code snippet which will list 'both' security and Distribution group membership of a Active Directory User. cheers Babu ...
DKB -
26 Feb 2009 7:16 AM - 18 messages
Hi, I'm replacing servers on my network with with new servers running server 2008. I'm removing the 2 old server 2003 domain controllers. One of them crashed and I I seized all rolls and removed all records of that server with ...
pass4surenl1 -
26 Feb 2009 5:54 AM - 3 messages
Hello, i am a Microsoft software project developer serving in a software company in Seattle. I have a "Microsoft Certified Application Developer" certification title as well. But among furious competition within softwear industry, i decided to promote my career path with ...
lp0219 -
26 Feb 2009 2:19 AM - 7 messages
Hi, I have two separate domains (xxx.com and xxx.local). Each server as a domain controller within their geographical location. What's the best way to share resources within these two domains, and also manage resources? Thanks. ...
southpaw -
25 Feb 2009 11:21 PM - 7 messages
We are restructuring our WAN links, and moving to an MPLS network. We have a single Win2003 forest , single domain AD infrastructure with 3 main sites in the US and a number of small remote offices in the US, ASIA ...
nevyn -
25 Feb 2009 9:22 PM - 8 messages
I'm needing to have a way for one domain to be able to manage another domain. More specific, I need to be able to install/push applications and updates from one domain to another. I've made a one way trust between the domains, ...
broonie27@hotmail.com -
25 Feb 2009 8:53 PM - 9 messages
HI There, I have a smallish domain with 3 DCs running Server 2003 (although the functional level is still 2000). We have no roaming profiles but when a user logs onto some machines for the first time the logon process ...
James -
25 Feb 2009 7:44 PM - 10 messages
I will have a handful of sites geographically spread out across the globe... this active directory deployment is only to support a deployment system, which is using WDS and DFS-R, both of which require active directory. There is really only a couple of user accounts that will be used (by many users ...
skip -
25 Feb 2009 5:08 PM - 8 messages
Hello all The AD forest and domain are at windows 2003 native mode. The SQL DBA's are being asked to change all SQL service accounts from local system to a domain user account. My question is and if this is not the correct forum for this ...
AMMN -
25 Feb 2009 2:48 PM - 2 messages
I search all over Technet but I havent seen anything definite for checking version of ADM files for Server 2003 Standard R2 with SP2. I seen where you can download IE7 ADM files. Is there anything within MS sites that can point me to a standard on ADM ...
Scott -
25 Feb 2009 12:58 PM - 3 messages
I note within the DHCP MMC console that there are several leases with duplicate names. I traced the issue to an administrator who images computers after they have been repaired. Ultimately they are renamed to conform to a naming convention, but occasionally a number of them can be present ...
Mick -
25 Feb 2009 12:47 PM - 4 messages
I create a top level OU called Test. I create a user account called user1 in the Test OU. I create a sub OU called Staff and I create a user account called User2 in the Staff OU. I create a disable Control Panel group policy and link it to the staff OU. ...
sekhar -
25 Feb 2009 11:41 AM - 5 messages
Hello! If RID is failed in a DC then what will be happend? which type problems will uccred ...
NGReader -
25 Feb 2009 3:56 AM - 5 messages
I have 3 DCs in this single forest domain all on same network. Is there a method to force the preference of logon server? Carl ...
pass4surenl -
25 Feb 2009 3:15 AM - 7 messages
How I Can Pass Microsoft Certificaton Exams in my first try ! As a professional Microsoft sofrware engineer working in Seattle, I get MCP and MCSE.NET certification just in my first try. But why I can do that? The answer is that i have used Pass4suer.nl Microsoft ...
tree leafs -
24 Feb 2009 11:26 PM - 9 messages
We recently reset the domain administrator's password. After that I went through all servers and re-enter the new password for services that run on domain administrator's credential, and all scheduled tasks that run under domain administrator's password. ...
el -
24 Feb 2009 9:51 PM - 10 messages
Hi all, Our company started to have a new office in Australia. The management decided to have the staff in Aust to buy their own laptops and build the laptops in there. However, we have no idea on how to join those laptops back to our domain. Can I start the joining process from main office? Can anyone tell me how to do it? ...
AMMN -
24 Feb 2009 3:21 PM - 8 messages
I have about 200 PCs in a clinic that should utilize a default domain user account that will have the same profile. How many times can one user account get logged in? I am hoping for this scenario that I can have one login for all clnical PCs ...
Taz1972 -
24 Feb 2009 1:45 PM - 5 messages
Hi, My company will soon be adding subdomains because this is necessary for different domain security requirements per region. Current we have one domain company.local, and this will then have subdomain below it ie na.company.local and emea.company.local etc. We are in 2003 domain/forest functional level and ...
Vellu Martikainen -
24 Feb 2009 1:20 PM - 5 messages
A company is moving to new premises. Currently running 2003 AD with two DCs, DC1 and DC2. They need to prepare some new servers and infrastructure on the new premises. There is absolutely no chance to have any network connection ...
John -
24 Feb 2009 11:44 AM - 3 messages
At the morning, I see my server (Windows Server 2003 Standard Edition) had been frozen. When I restarted it, displayed the following error: Security Accounts Manager initialization failed because of the following error: Directory Service cannot start. Error Status: 0xc00002e1. Please click ...
Tony L -
24 Feb 2009 10:21 AM - 4 messages
As an administrator in a school, the one thing that would be nice is to be able to reset the student passwords at the beginning of the term, is there a simple script that i could use or could you point me in the right direstion ...
William Stokes -
24 Feb 2009 7:54 AM - 13 messages
Hello, In the last few weeks we have been experiencing some very slow network logons. When a user boots his desktop and logs on to our AD it might take something between 20 seconds to 13 minutes after credentials input that his computer has ...
Marks70 -
24 Feb 2009 6:23 AM - 7 messages
I started working for a new company, and they're looking to have their AD structure reorganized. One item I'm looking at is AD Sites and Services. Currently they have three locations connected via gigabit fiber across the WAN. Given this connection speed, is there any purpose to creating separate ...
bawalker -
24 Feb 2009 4:55 AM - 5 messages
Hello all, I have been wracking my brain at this for several days now. Currently I have an in home/business with a Windows Server 2003 setup with Active Directory and several XP Pro workstations attached to it. I ...
NoOneUKnow -
24 Feb 2009 2:50 AM - 6 messages
Please forgive my ignorance with w2k3 server as I'm a linux guy for servers. OS: Windows Server 2003 Standard Edition SP2 New installation Fully updated with all patches Essentially I am trying to install and setup Exchange 2007. To install ...
chakotay2 -
24 Feb 2009 12:33 AM - 5 messages
Ok, I can see restrictive groups for the whole domain but how do I get
to the one in OU? (Using server 2008) I used gpedit.msc and can't see restrictive groups when I go in
there... Please help, I think I understand the rest, I am just not sure
which restrictive groups to put it in...
--
chakotay2
------------------------------------------------------------------------
chakotay2's Profile: [link]
View this thread: [link][link] ...
MarkN -
24 Feb 2009 12:23 AM - 4 messages
Scenario: In an empty ADAM instance I create a container. Using ldp.exe I can confirm that only 2 ACE exist, both inherited (CN=Readers and CN=Administrators). I then use the schema editor to create customContainer using container as the ...
Matt -
23 Feb 2009 11:15 PM - 3 messages
Hi, I apologize if theis isn't the appropriate place to post this but I thought I'd start hrere. I have a SQL script that was written to run on my Server, it does a comparison between I need for a software i'm running. The script works fine ...
AMMN -
23 Feb 2009 9:42 PM - 2 messages
IS there a good site to reference for sample GPOs. I want to test some IE restrictions for a web based client app we run. ...
AMMN -
23 Feb 2009 9:33 PM - 2 messages
Is there any guidelines or ways to restrict a user so they can only reset passwords. I dont want my techs to have much access to the domain. Any help is appreciated. ...
Jeff Clegg -
23 Feb 2009 8:19 PM - 7 messages
Hi there. I'm trying upload the newer inetres.adm template to begin setting IE7 settings for our company. Problem is, the inetres.adm (1,692KB) in our AD/Sysvol is dated 2/17/2007, but the IE7 inetres.adm is dated 10/3/2006 (2,347KB). Even if I copy the ...
James -
23 Feb 2009 8:04 PM - 5 messages
Hello, I have never had to add a domain controller to an existing domain that was not already on the same LAN as the other domain controllers. What do I need to know? If the existing DC is accessible, although on another subnet, are ...
jskalicky -
23 Feb 2009 6:45 PM - 2 messages
We may have to impleent our own password filter for AD. How hard/easy is it to install and run your own password filter for AD? ...
jmDesktop -
23 Feb 2009 5:56 PM - 2 messages
Is it possible to give someone the permissions to only create new Active Directory accounts with Exchange email mailboxes? For example, if I have part-time person that only needs that capability. Thank you for any help. I'm not sure what groups they would be in. ...
fshguo -
23 Feb 2009 5:00 PM - 3 messages
Hello...can I assign a read/write permission on a file share or sharepoint site for a user belongs to another domain? do I need to create some sort of trust relationship between domains first or I can assign the permission directly for the user? ...
John -
23 Feb 2009 4:46 PM - 8 messages
Hi all, I am going to introduce the windows 2008 DC to the existing windows 2003 envir. Should I turn off one domain controller or disable the outboud replication during the extending schema operation? What's the safe way to ...
fshguo -
23 Feb 2009 4:10 PM - 4 messages
Hello...As part of the security clean up, we would like to remove any domain or local users from Local Administrators group from all corp desktops/laptops, is there a way to push over GPO? and of cause, we can add the authorized account ( i.e. OU admin) into local ...
Alexander Thomas -
23 Feb 2009 3:44 PM - 16 messages
Hi, I have a serious problem with Kerberos service/host authentification on AD. A short description of the situation: There are one AD-Server (more Backupserver in the future) storing the users, some Linux-file servers and thousends of Linux clients and ...
Gio -
23 Feb 2009 10:10 AM - 6 messages
Hello everyone, this is my problem. Win2003 Active Directory. I have to setup roaming profile for remote desktop users that are logging on from a trusted domain. How can I do that? The goal is create a roaming profile share in the trusting domain (domain A) and set a policy (don't know ...
John -
23 Feb 2009 9:56 AM - 3 messages
Good morning, Situation is one domain, several DC's and member servers (all W2K3). I want to start automatically a program when a member of a certain group makes connection via RDP to a server which is a domain member. ...
pass4surenl -
23 Feb 2009 6:05 AM - 2 messages
Best Microsoft Certification Exams Training Materials & Study Guide With the growing attention of candidates upon Microsoft Certification, tons of Microsoft certification practice exams spring up in the IT market. Faced with so many Microsoft study bibles, many candidates get ...
Xanadu 819 -
22 Feb 2009 8:14 PM - 3 messages
Hi, as part of a new build script I want to search AD to see whether a computer name is in use prior to adding it to the domain. Therefore the computer is in a workgroup and I'll need to hardcode a user ...
daveAdmin -
22 Feb 2009 6:21 PM - 5 messages
The AD network I inherited had two Server2000 DCs. We properly added two Server2003 machines and I transferred the FSMO roles to one of the new Ser2003 machines. Then I tried to establish the new PDC as the time server ...
Ryan Laurie -
22 Feb 2009 5:01 PM - 2 messages
Hi everyone, I have 2 Windows 2008 Servers and 1 Windows 2003 Server, the one Windows 2008 server and the 2003 are domain controllers and the second Windows 2008 is an Exchange 2007 member server. I have followed the KB935834 ...
|
|||||||||||||||||||||||