Quantcast
Channel: Directory Services forum
Viewing all 31638 articles
Browse latest View live

outlook authentication Issue

$
0
0

Hi,

we are facing some issue from outlook 2010 and outlook 2007 

its asking password for some of the users only  we are having Exchange 2010 HA 

i have checked the outlook SP also installed properly 

i'm putting outlook log for your reference 

2015.10.30 13:15:42 <<<< Logging Started (level is LTF_TRACE) >>>>

2015.10.30 13:15:42 HELPER::Initialize called
2015.10.30 13:15:42 Initializing: Finding a Transport
2015.10.30 13:15:42 MAPI XP Call: XPProviderInit in EMSMDB.DLL, hr = 0x00000000
2015.10.30 13:15:42 MAPI XP Call: TransportLogon, hr = 0x8004011d
2015.10.30 13:15:42 MAPI XP Call: Shutdown, hr = 0x00000000
2015.10.30 13:15:42 MAPI XP Call: XPProviderInit in EMSMDB.DLL, hr = 0x00000000
2015.10.30 13:15:43 MAPI Status: (-- -- ---/--- -- ---)
2015.10.30 13:15:43 MAPI XP Call: TransportLogon, hr = 0x00000000
2015.10.30 13:15:43 Initializing: Found a transport, Error code = 0x00000000
2015.10.30 13:15:43 MAPI XP Call: AddressTypes, hr = 0x00000000, cAddrs = 3, cUids = 1
2015.10.30 13:15:43 MAPI XP Call: RegisterOptions, hr = 0x00000000, cOptions = 2
2015.10.30 13:15:43 MAPI Status: (IN -- ---/OUT -- ---)
2015.10.30 13:15:43 MAPI XP Call: TransportNotify(BEGIN_IN|BEGIN_OUT), hr = 0x00000000
2015.10.30 13:15:43 HELPER::Initialize done, Error code = 0x00000000
2015.10.30 13:15:43 HELPER::GetCapabilities called, Error code = 0x00000000
2015.10.30 13:16:55 sdas2@domain.in: Synch operation started (flags = 00002030)
2015.10.30 13:16:55 sdas2@domain.in: StartImport(flags = 00000010, max msg = ffffffff): full items
2015.10.30 13:16:55 sdas2@domain.in: Synch operation started (flags = 00000031)
2015.10.30 13:16:55 sdas2@domain.in: StartImport(flags = 00000000, max msg = ffffffff): full items
2015.10.30 13:16:55 sdas2@domain.in: UploadItems: 0 messages to send
2015.10.30 13:16:56 Starting the Spooling Cycle
2015.10.30 13:16:56 MAPI Status: (IN fl ---/OUT -- ---)
2015.10.30 13:16:56 MAPI XP Call: FlushQueues, hr = 0x00000000, ulFlushFlags = 0x0000001c
2015.10.30 13:16:56 MAPI XP Call: Poll, hr = 0x00000000, cPollCount = 0
2015.10.30 13:16:56 Progress: Receiving message (message 1 out of 1, size unknown)
2015.10.30 13:16:56 Downloading one message
2015.10.30 13:16:56 MAPI XP Call: StartMessage, hr = 0x00000000
2015.10.30 13:16:56 Downloading: False alarm, no message
2015.10.30 13:16:56 Downloading done, Error code = 0x00000000
2015.10.30 13:16:56 MAPI Status: (IN -- ---/OUT -- ---)
2015.10.30 13:16:56 FINISHED MAPI TASK
2015.10.30 13:16:56 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:16:56 Finishing the Spooling Cycle, Error code = 0x00000000
2015.10.30 13:16:56 FINISHED MAPI TASK
2015.10.30 13:16:56 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:16:56 EXECUTING EndSession MAPI TASK
2015.10.30 13:16:56 EXECUTING EndSession MAPI TASK
2015.10.30 13:16:56 Starting the Simplified Transfer Cycle
2015.10.30 13:16:56 MAPI XP Call: Poll, hr = 0x00000000, iMsgsReceived = 0, cPollCount = 0
2015.10.30 13:16:56 Finishing the Spooling Cycle, Error code = 0x00000000
2015.10.30 13:16:56 FINISHED MAPI TASK
2015.10.30 13:16:56 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:16:56 sdas2@domain.in: Synch operation completed
2015.10.30 13:16:56 FINISHED MAPI TASK
2015.10.30 13:16:56 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:16:56 sdas2@domain.in: Synch operation completed
2015.10.30 13:18:06 sdas2@domain.in: Synch operation started (flags = 00002030)
2015.10.30 13:18:06 sdas2@domain.in: StartImport(flags = 00000010, max msg = ffffffff): full items
2015.10.30 13:18:06 sdas2@domain.in: Synch operation started (flags = 00000031)
2015.10.30 13:18:06 sdas2@domain.in: StartImport(flags = 00000000, max msg = ffffffff): full items
2015.10.30 13:18:06 sdas2@domain.in: UploadItems: 0 messages to send
2015.10.30 13:18:06 Starting the Spooling Cycle
2015.10.30 13:18:06 MAPI Status: (IN fl ---/OUT -- ---)
2015.10.30 13:18:06 MAPI XP Call: FlushQueues, hr = 0x00000000, ulFlushFlags = 0x0000001c
2015.10.30 13:18:06 MAPI XP Call: Poll, hr = 0x00000000, cPollCount = 0
2015.10.30 13:18:06 Progress: Receiving message (message 1 out of 1, size unknown)
2015.10.30 13:18:06 Downloading one message
2015.10.30 13:18:06 MAPI XP Call: StartMessage, hr = 0x00000000
2015.10.30 13:18:06 Downloading: False alarm, no message
2015.10.30 13:18:06 Downloading done, Error code = 0x00000000
2015.10.30 13:18:06 MAPI Status: (IN -- ---/OUT -- ---)
2015.10.30 13:18:06 FINISHED MAPI TASK
2015.10.30 13:18:06 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:18:06 Finishing the Spooling Cycle, Error code = 0x00000000
2015.10.30 13:18:06 FINISHED MAPI TASK
2015.10.30 13:18:06 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:18:06 EXECUTING EndSession MAPI TASK
2015.10.30 13:18:06 EXECUTING EndSession MAPI TASK
2015.10.30 13:18:06 Starting the Simplified Transfer Cycle
2015.10.30 13:18:06 MAPI XP Call: Poll, hr = 0x00000000, iMsgsReceived = 0, cPollCount = 0
2015.10.30 13:18:06 Finishing the Spooling Cycle, Error code = 0x00000000
2015.10.30 13:18:06 FINISHED MAPI TASK
2015.10.30 13:18:06 sdas2@domainr.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:18:06 sdas2@domain.in: Synch operation completed
2015.10.30 13:18:06 FINISHED MAPI TASK
2015.10.30 13:18:06 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:18:06 sdas2@domain.in: Synch operation completed
2015.10.30 13:19:06 sdas2@domain.in: Synch operation started (flags = 00002030)
2015.10.30 13:19:06 sdas2@domain.in: StartImport(flags = 00000010, max msg = ffffffff): full items
2015.10.30 13:19:06 sdas2@domain.in: Synch operation started (flags = 00000031)
2015.10.30 13:19:06 sdas2@domain.in: StartImport(flags = 00000000, max msg = ffffffff): full items
2015.10.30 13:19:06 sdas2@domain.in: UploadItems: 0 messages to send
2015.10.30 13:19:07 Starting the Spooling Cycle
2015.10.30 13:19:07 MAPI Status: (IN fl ---/OUT -- ---)
2015.10.30 13:19:07 MAPI XP Call: FlushQueues, hr = 0x00000000, ulFlushFlags = 0x0000001c
2015.10.30 13:19:07 MAPI XP Call: Poll, hr = 0x00000000, cPollCount = 0
2015.10.30 13:19:07 Progress: Receiving message (message 1 out of 1, size unknown)
2015.10.30 13:19:07 Downloading one message
2015.10.30 13:19:07 MAPI XP Call: StartMessage, hr = 0x00000000
2015.10.30 13:19:07 Downloading: False alarm, no message
2015.10.30 13:19:07 Downloading done, Error code = 0x00000000
2015.10.30 13:19:07 MAPI Status: (IN -- ---/OUT -- ---)
2015.10.30 13:19:07 FINISHED MAPI TASK
2015.10.30 13:19:07 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:19:07 Finishing the Spooling Cycle, Error code = 0x00000000
2015.10.30 13:19:07 FINISHED MAPI TASK
2015.10.30 13:19:07 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:19:07 EXECUTING EndSession MAPI TASK
2015.10.30 13:19:07 EXECUTING EndSession MAPI TASK
2015.10.30 13:19:07 Starting the Simplified Transfer Cycle
2015.10.30 13:19:07 MAPI XP Call: Poll, hr = 0x00000000, iMsgsReceived = 0, cPollCount = 0
2015.10.30 13:19:07 Finishing the Spooling Cycle, Error code = 0x00000000
2015.10.30 13:19:07 FINISHED MAPI TASK
2015.10.30 13:19:07 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:19:07 sdas2@domain.in: Synch operation completed
2015.10.30 13:19:07 FINISHED MAPI TASK
2015.10.30 13:19:07 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:19:07 sdas2@domain.in: Synch operation completed
2015.10.30 13:20:17 sdas2@domain.in: Synch operation started (flags = 00002030)
2015.10.30 13:20:17 sdas2@domain.in: StartImport(flags = 00000010, max msg = ffffffff): full items
2015.10.30 13:20:17 sdas2@domain.in: Synch operation started (flags = 00000031)
2015.10.30 13:20:17 sdas2@domain.in: StartImport(flags = 00000000, max msg = ffffffff): full items
2015.10.30 13:20:17 sdas2@domain.in: UploadItems: 0 messages to send
2015.10.30 13:20:17 Starting the Spooling Cycle
2015.10.30 13:20:17 MAPI Status: (IN fl ---/OUT -- ---)
2015.10.30 13:20:17 MAPI XP Call: FlushQueues, hr = 0x00000000, ulFlushFlags = 0x0000001c
2015.10.30 13:20:17 MAPI XP Call: Poll, hr = 0x00000000, cPollCount = 0
2015.10.30 13:20:17 Progress: Receiving message (message 1 out of 1, size unknown)
2015.10.30 13:20:17 Downloading one message
2015.10.30 13:20:17 MAPI XP Call: StartMessage, hr = 0x00000000
2015.10.30 13:20:17 Downloading: False alarm, no message
2015.10.30 13:20:17 Downloading done, Error code = 0x00000000
2015.10.30 13:20:17 MAPI Status: (IN -- ---/OUT -- ---)
2015.10.30 13:20:17 FINISHED MAPI TASK
2015.10.30 13:20:17 sdas2@domain.in: ReportStatus: RSF_COMPLETED, hr = 0x00000000
2015.10.30 13:20:17 Finishing the Spooling Cycle, Error code = 0x00000000

Kindly help me to resolve the problem


Needing to reset sysvol permissions? Any new GPOs created will not allow me to access their sysvol location

$
0
0

I am running a 2008R2 domain.  This is a weird one, but I have tried creating 4-5 GPOs onmultiple DCs. They create fine, but when I go to edit(as domain admin) them I try to open startup(go into sysvol) and I have permissions problems. I cannot save anything. If I browse to C:\Windows\Sysvol\... on any DC, I also run into security isses. My problem is the same as this

https://technet.microsoft.com/en-us/library/cc816750(v=ws.10).aspx

I just transferred my PDC emulator to another DC and that did not fix it either, but resetting the permissions on sysvol sounds a little scary.  I have not called Microsoft support in 10 years and thinking calling them for this because I need to make sure the permissions from the 250 GPOs I have do not get messed up.  Has anyone done this before?  I did just happen to bring (2)new DCs online last night, but they seem fine. Output from dcdiag looks good, and the MS AD Replication Tool is showing everything in sync. 

Here are the permissions I am seeing on the newly created GPO when logged into a DC as Domain Admin

              CONTOSO\Enterprise Admins:(OI)(CI)(F)

              NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS:(OI)(CI)(RX)

              NT AUTHORITY\SYSTEM:(OI)(CI)(F)

              CREATOR OWNER:(OI)(CI)(IO)(F)

              CONTOSO\domadminuser-da:(OI)(CI)(F)

Here are the permissions I see when logged on a DC and check C:\Windows\Sysvol

c:\windows\SYSVOL NT AUTHORITY\Authenticated Users:(RX)

                 NT AUTHORITY\Authenticated Users:(OI)(CI)(IO)(GR,GE)

                 BUILTIN\Server Operators:(RX)

                 BUILTIN\Server Operators:(OI)(CI)(IO)(GR,GE)

                 BUILTIN\Administrators:(M,WDAC,WO)

                 BUILTIN\Administrators:(OI)(CI)(IO)(F)

                 NT AUTHORITY\SYSTEM:(F)

                 NT AUTHORITY\SYSTEM:(OI)(CI)(IO)(F)

                 BUILTIN\Administrators:(M,WDAC,WO)

                 CREATOR OWNER:(OI)(CI)(IO)(F)

Thanks,


Dave









Active Directory group claims to relaying party trust

$
0
0

Good morning People :),


I will go straight to the problem.

We are trying to create Active Directory groups on which we will limit access to the OWA and MAPI outside company.

There are two groups one with granted permission other one with declined permission.

The problem is as follows:

One of this group is denying access outside company and allowing to access OWA and MAPI inside company. The claim is based on IP addresses that we are using in the company. Unfortunatelly that doesn't work. Rules are below.

exists([Type == "h**p://schemas.microsoft.com/2012/01/requestcontext/claims/x-ms-proxy"]) &&

exists([Type == "h**p://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid", Value =~ "S-1-5-21-1177238915-764733703-1202660629-7711"]) &&

NOT exists([Type == "h**p://schemas.microsoft.com/2012/01/requestcontext/claims/x-ms-forwarded-client-ip",

Value=~"\b10\.68\.([0-9]|[1-9][0-9]|1[0-9][0-9]|2[0-5][0-5])\.([0-9]|[1-9][0-9]|1[0-9][0-9]|2[0-5][0-5])\b"])

=> issue(Type = "h**p://schemas.microsoft.com/authorization/claims/deny", Value = "true");

exists([Type == "h**p://schemas.microsoft.com/2012/01/requestcontext/claims/x-ms-proxy"]) &&

exists([Type == "h**p://schemas.microsoft.com/ws/2008/06/identity/claims/groupsid", Value =~ "S-1-5-21-1177238915-764733703-1202660629-7711"]) &&

NOT exists([Type == "h**p://schemas.microsoft.com/2012/01/requestcontext/claims/x-ms-forwarded-client-ip",

Value=~"\b10\.68\.([0-9]|[1-9][0-9]|1([0-9][0-9])|2([0-4][0-9]|5[0-5]))\.([0-9]|[1-9][0-9]|1([0-9][0-9])|2([0-4][0-9]|5[0-5]))"])

=> issue(Type = "h**p://schemas.microsoft.com/authorization/claims/deny", Value = "true");

 Those rules are in the ADFS Proxy server.


There is a chance that I've made mistake but unfortunatelly I'm not an expert to solve this by my self and I need help.

Thank you.

ADFS - On premises SSO Implementation

$
0
0

Hello,

I have an Asp.Net application that communicate with ADFS(on some other Windows Server) for authentication purpose. Currently, when we navigate to application, it redirects to ADFS SSO authentication page. I followed this blog to implement SSO and have some questions here:

1. Can we change implementation so that it may redirect to authentication page only when I press login button ?
2. Can we change implementation so that only one page/URL of my application can be accessed without any authentication ?
3. What parameters are returned when user is authenticated and redirected back to landing page. How do we get all available parameters ? Can I get email or username ? so that I may link that person to a client in my application.

If anyone of above is possible, how I can get it ?

problem to create vpn connection with gpo

$
0
0

hello

I create vpn connection with gpo like picture. but it dosnt work. it create in client but when i connect to this vpn the tunnel doent connect to 192.168.30.6. I undrestand it when i type tracert 8.8.8.8.

In another picture you can see this.

why?my domain is 2003.

help me

Active Directory Trust

$
0
0

I have a root domain (AUN.local) & a child domain (MUS.AUN.LOCAL) now i am planning to add new tree in this forest (INT.LOCAL) my question is that can INT.LOCAL users can login in (MUS.AUN.LOCAL) and vice-versa, is there any trust created between (MUS.AUN.LOCAL) and (INT.LOCAL) by default.

issues in PDC after patching

$
0
0

Hi,

After patching, I am unable to connect my Prod PDC .Getting an error like below when I am RDP using Host name. But using IP I am able to login to PDC

Issue in one of the prod Domain Controller

$
0
0

Hi, 

Noticed one issue after patching in one of the production domain controller.When tried login with hostname getting below attached error,but we are able to login with IP Address. One important thing is we are not using microsoft DNS, the one we are using is corporate DNS.

Also Dcdiag shows this error.

Testing server: Bangalore\Prod-DC-INC-001
      Starting test: Connectivity
         Both IPV4 and IPV6 channels are disabled on all adapter cards of the
         local server. Hence no connectivity to the server.
         Got error while checking LDAP and RPC connectivity. Please check your
         firewall settings.
         ......................... Prod-DC-INC-001 failed test Connectivity



September Windows Server Gurus Announced! Behold, the cream of the community! Join us!

$
0
0

The results for September's TechNet Guru competition have been posted!

http://blogs.technet.com/b/wikininjas/archive/2015/10/19/the-microsoft-technet-guru-awards-september-2015.aspx

Below is a summary of the medal winners for September. The last column being a few of the comments from the judges.

Unfortunately, runners up and their judge feedback comments had to be trimmed from THIS post, to fit into the forum's 60,000 character limit, however the full version is available on TechNet Wiki.

Some articles only just missed out, so we may be returning to discuss those too, in future blogs.
 

Guru Award BizTalk Technical Guru - September 2015  

Gold Award Winner

Janardhan BikkaBizTalk Server 2013 R2 integration with MS Dynamics CRM 2015Sandro Pereira: "Great topic, great article, well explained, lot of pictures, WOW keep coming! The layout/presentation of the article need to be treated and improved, but that I minor point regarding the quality of the article"
Abhishek Kumar: "Very good Article on CRM integration and well explained . Thanks for your Contribution ."
LG: "Material is interesting, but article content is too long."

Silver Award Winner

Rahul_MadaanPassing a message to BRE using Call Rules ShapeSandro Pereira: "The layout/presentation of the article need to be remade (different types of lettering, pictures could be better, pour layout of headers,…). This is a beginner article and steps explanations should be better detailed. This way the article is difficult to read and understand by their audience."

Guru Award Forefront Identity Manager Technical Guru - September 2015  

Gold Award Winner

Ryan NewingtonTake the guess work out of XPath with the Lithnet FIM Service PowerShell Module

Søren Granfeldt: "Excellent stuff"

Ed Price: "Great use of links for cross referencing!"

Silver Award Winner

Peter Geelen - MSFTFIM 2010: Verifying the Sync Engine Security Groups

Søren Granfeldt  "Nice work Peter"

Ed Price: "Good use of images and great to include the script sample!"

Bronze Award Winner

Wim BeckFIM2010: Localize Self Service Password Reset

Søren Granfeldt: "Thank you for this Wim!"

Ed Price: "Fantastic depth and great to read. Great article!"


Also worth a mention were the other entries this month:

Guru Award Microsoft Azure Technical Guru - September 2015  

Gold Award Winner

Michel JatobaStop and Start VMs with Automation on Microsoft Azure

JH: "Very good article with a detailed step-by-step guide. Love the amount of pictures."

Ed Price: "Great topic and great use of images! What a valuable article!"

Silver Award Winner

Samir FarhatCreate an URL Rewrite service via Azure Web App

JH: "Not an advanced topic, but most people struggle on it. Really good explanation."

Ed Price: "Perfect! I love this direct and thorough how to! Fantastic job on this!"

Bronze Award Winner

Ruud BorstMulti-tenant Azure AD federation with PowerShell

JH: "Interesting article. Would be better to have less text and a more detailed explanation of the script."

Ed Price: "Great scenario with a ton of explanation! More of a breakdown on the script would be good, but I still love the large amount of details here! Great job!"


Also worth a mention were the other entries this month:

Guru Award Miscellaneous Technical Guru - September 2015  

Gold Award Winner

Rishabh BangaFull Home Automation with Azure & Voice Assistance using Intel Galileo Gen 1 & Windows 10Durval Ramos: "This is an inspiring and practical article, which combines multiple platforms and allows you to create a very useful solution."
Richard Mueller: "A very interesting and potentially useful idea. Good detailed steps, with lots of code. Good images and great use of Wiki guidelines."

Silver Award Winner

Pooja BaraskarSmart Baby Monitor with Intel Edison and UbidotsDurval Ramos: "This article is interesting and presents the "simple content". It's very easy to understand what must be done, but need to add "References" section to indicate where his work was inspired."
Richard Mueller: "What a great idea. Very good images and detailed explanation."

Bronze Award Winner

Carmelo La MonicaPart one: tools for debugging in Visual Studio 2015Durval Ramos: "This article presents a resource that can be the difference between a successful solution and a project that should be reformed. Very good"
Richard Mueller: "Good introduction to VS 2015. Good images and explanation. Grammar needs works."


Also worth a mention were the other entries this month:

Guru Award SharePoint 2010 / 2013 Technical Guru - September 2015  

Gold Award Winner

Dan ChristianCloser look at SharePoint Server 2016 PreviewAshutosh Singh: "Thanks Dan"
TN: "A good wrap-up in SharePoint 2016"

Silver Award Winner

Inderjeet Singh JaggiSharePoint 2016 Farm configuration issue on Windows Azure Virtual MachineAshutosh Singh: "This is very good"
TN: "An interesting post"

Bronze Award Winner

Dan ChristianInstalling the Office Online Server PreviewTN: "Great article on how to set up Office Online Server including some common issues"
Ashutosh Singh: "Thanks for this Dan"


Also worth a mention were the other entries this month:

Guru Award Small Basic Technical Guru - September 2015  

Gold Award Winner

Emiliano MussoPrime Number Factorization with Small BasicMichiel Van Hoorn: "Put your math to practice. Great write up. "

Silver Award Winner

Ed Price - MSFTSmall Basic: Automatic Type ConversionMichiel Van Hoorn: "Useful if you are starting juggling with numbers in Small basic"

Guru Award SQL BI and Power BI Technical Guru - September 2015  

Gold Award Winner

Maruthachalam KCreating reports using OData Feed in Power BIRB: "Nice explicative walkthrough."
JS: "Great article, I would want one word concerning security of ODATA feeds in the article as well."
Durval Ramos: "This article is very well illustrated, but need to add the "References" and "See Also" sections to valuable this article. Additional information is needed to validate your content"
PT: "This post demonstrates the ease and utility of Power BI with an OData data source. Thank you for this valuable contribution."


Also worth a mention were the other entries this month:

  • SSRS: Join data from different SSRS data sources into data set by sergey vdovin
    PT: "At first I had mixed feelings about promoting these techniques as a best practice, given the level of complexity. However your approach to this challenging problem well executed and clearly explained. Thank you for posting this useful information."
    RB: "Not much information here, apart from link to github projects"
    OT:"I personally don´t see any greater benefit in writing a separate article and referring an already existing one without pointing out really new stuff. The old one is pretty good and although the author does not get much love updating this, he should in order to have the thing in one place."
    AN: "The content is not complete and the "Solution" section was written in another article. This article's very confused."

Guru Award SQL Server General and Database Engine Technical Guru - September 2015  

Gold Award Winner

Martin SmithClustered and Nonclustered indexesJS: "Instead of "to explicitly include all non key columns" => "to explicitly include one or more non-key columns". Liked the spatial representation!"
AM: "Simple and concise explanation. Great illustration as a plus."
Durval Ramos: "A good presentation about how each index works."

Silver Award Winner

Yashwant VishwakarmaSQL Server Databases: Back To BasicsJS: "Although nothing really leading edge, a good start for new beginners in one place. I would want more references to MSDN articles in order to enable the reader digging in a bit deeper."
Durval Ramos: "This article's a good summary about "some" SQL Server features and has good images, but I believe that can be improved if add more details in each database type"

Guru Award System Center Technical Guru - September 2015  

Gold Award Winner

Adin ECluster Patching Showdown: Comparing SCVMM and SCCM Patching

Peter Laker: "An excellent and in depth article"

Ed Price: "Wow! Fantastic details!"

Silver Award Winner

Foothill1SCSM Data Warehouse Search Tool

Peter Laker: "Thanks for the contribution Foothill1"

Ed Price: "Good topic. The example is helpful."

Guru Award Transact-SQL Technical Guru - September 2015  

Gold Award Winner

Martin SmithUnpivot vs ApplyManoj Pandey: "Very informative post about usage of UNPIVOT and/vs CROSS APPLY. But you could have given more details on the top of what are you covering in your post."
Durval Ramos: "This is a good article, but need add "References" and "See Also" sections to additional content based on their original idea (post or article)."
Richard Mueller: "Good use of Wiki guidelines. I liked the images. A See Also and Other Resources could be useful."

Guru Award Universal Windows Apps Technical Guru - September 2015  

Gold Award Winner

Rishabh BangaFull Home Automation with Azure & Voice Assistance using Intel Galileo Gen 1 & Windows 10

JH: "What an article! Needs just a little formatting. Love the whole IoT stuff."

Ed Price: "This is truly beautiful! The hardware images are helpful, the UI images are great, and the code is formatted very well! Plus the topic is ambitious and fun!"

Silver Award Winner

Afzaal Ahmad ZeeshanBuilding camera app with library in Windows 10

JH: "Very detailed explanations and a lot of code snippets. A good one."

Ed Price: "I love how this is a specific app type. Very useful for developers!"

Bronze Award Winner

SYED SHANUWindows 10 Universal App Development for Name Puzzle Game

JH: "Fun article. Will try this one myself."

Ed Price: "What a fun game! Fantastic execution on this article! Great job!"

Guru Award Visual Basic Technical Guru - September 2015  

Gold Award Winner

Emiliano MussoBasis of Neural Networks in Visual Basic .NETCarmelo La Monica: "Fantastic!!! Perfect article, great code snippet and theory of Neutral Networks. Congrats!"
Richard Mueller: "Very interesting topic and well researched. Would be great to play with this. Grammar could be improved."
MR: "Great article!"

Silver Award Winner

.paul.CheckBoxColumn Select All DemoMR: "Simple but very effective!"
Carmelo La Monica: "Great topic and useful for to extend function on Datagridview."
Richard Mueller: "A well written article. I would like to see more links to other references."

Guru Award Visual C# Technical Guru - September 2015  

Gold Award Winner

SYED SHANUDataGridView Gantt style chart using C# WinformCarmelo La Monica: "Very interesting topics and very and useful for to extend function on Datagridview. Congrats!"
Jaliya Udagedara: "Explains a solution to a specific problem. Love the fact that sample code is available to download. A bit of formatting is needed in the article."

Silver Award Winner

Ken CenerelliUnderstanding the Visual Studio AssemblyInfo ClassJaliya Udagedara: "Well explained the topic for well formatted. It’s just perfect."
Carmelo La Monica: "Congratulations, article very detailed in all parts, useful for to understand AsssemblyInfo Class, good code snippet and images."

Bronze Award Winner

Gaurav Kumar AroraC#: How to check whether API server is up or downJaliya Udagedara: "Little bit of code formatting and a link to download the sample code will help readers a bit more."
Carmelo La Monica: "Great topics and very useful for to understand if api server in up o down. Congrats!"


Also worth a mention were the other entries this month:

  • MVC Web API And AngularJS: Are You Genius Game bySYED SHANU
    Carmelo La Monica: "Interesting, i don't have experience on Asp.Net, but article very interesting, good image and code snippet."
    Jaliya Udagedara: "Explains a specific application. Love the fact that a lot of images is used and sample code is available to download which helps the readers. A bit of article formatting is needed."
  • Little More Information On Casting and Type Checking in C# byIsham Mohamed
    Jaliya Udagedara: "Explains the topic of the article in detail. If we can have little bit of formatting in the article, then it will be perfect."
    Carmelo La Monica: "Sometime is a problem for casting Object, but with this article we can to understand how to convert correctly an object or variable. Congrats!"
  • ASP.NET MVC HangFire - Execute Jobs in Background using SQLServer by João Sousa
    Jaliya Udagedara: "I would rather change the title of the article to “Configure Hangfire in an ASP.NET MVC Application”, because that is what explained in the article. Good job!"
    Carmelo La Monica: "Great content, and useful image and code snippet. Congratulations!"
  • MVC Web API and Angular JS For Word Puzzle Game bySYED SHANU
    Carmelo La Monica: "Same comment for MVC Web API And AngularJS: Are You Genius Game. Congratulations!"
    Jaliya Udagedara: "Explains a specific application. Love the fact that a lot of images is used and sample code is available to download which helps the readers. A bit of article formatting is needed."

Guru Award Wiki and Portals Technical Guru - September 2015  

Gold Award Winner

Ken CenerelliVisual Studio 2015 PortalDurval Ramos: "A great portal. Very useful !!!"
Richard Mueller: "Outstanding example of usage of Wiki Guidelines. And a great collection of links."

Guru Award Windows PowerShell Technical Guru - September 2015  

Gold Award Winner

Curtis SmithPowerShell: Directing DNS with PowerShellJan Egil Ring: "My favorite this month"
Richard Mueller: "A great article with excellent explanations and good use of Wiki guidelines. Good step by step detail. Some of the topics could go in another article, or you could reference existing references. For example, documentation of string methods and explanation of $_."

Silver Award Winner

Peter Geelen - MSFTPowerShell: Event viewer statisticsRichard Mueller: "Lots of code, but also lots of comments. Good use of Wiki guidelines. Great to give credit. Maybe could use some more discussion."
Jan Egil Ring: "Excellent work!"

Bronze Award Winner

Sravan EatoorPowerShell: Dynamic Form - All In One ToolJan Egil Ring: "Thanks Sravan"
Richard Mueller: "An interesting idea that might prove useful where organizations have collected many scripts."

Guru Award Windows Presentation Foundation (WPF) Technical Guru - September 2015  

Gold Award Winner

Andy ONeillMVVM Step by Step 2LL: "Good article!"
Peter Laker: "Nice work as always Andy!"

Silver Award Winner

Tom MohanHierarchical Binding Using HierarchialDataTemplateLL: "Nice 101"
Peter Laker: "Thank you Tom!"

Guru Award Windows Server Technical Guru - September 2015  

Gold Award Winner

Richard MuellerActive Directory: Allow Linked Multi-Valued Attributes to use LVRMark Parris: "Information to show that just by raising the FFL, there is still more work that may need to happen."
JM: "This is an excellent article, thanks for your continued contributions."

Silver Award Winner

Darshana JayathilakeFile Server Migration ToolkitMark Parris: "Useful information now that Windows 2003 is no longer a supported platform."
JM: "This is a great articled that will help admins migrate WS03 file servers, nice work."

Bronze Award Winner

FZBWSUS: the underlying Connection was closed during Server cleanupMark Parris: "Good tidbit of information around WSUS and the command line."
JM: "This is a very good article that will help admins clean up their WSUS databases"

As mentioned above, runners up and comments were removed from this post, to fit into the forum's 60,000 character limit.

You will find the complete post, comments and feedback on the main announcement post.

Please join the discussion, add a comment, or suggest future categories.

If you have not yet contributed an article for this month, and you think you can write a more useful, clever, or better produced wiki article than the winners above, here's your chance! :D

Best regards,
Pete Laker

More about the TechNet Guru Awards:


#PEJL
Got any nice code? If you invest time in coding an elegant, novel or impressive answer on MSDN forums, why not copy it over toTechNet Wiki, for future generations to benefit from! You'll never get archived again, and you could win weekly awards!

Have you got what it takes o become this month's TechNet Technical Guru? Join a long list of well known community big hitters, show your knowledge and prowess in your favoured technologies!


Replication Error to ChildDomain due to Tombstone lifetime

$
0
0

Hi!

I've noticed that I got some replication error within my Active Directory Domain.
My domain consist of a parent domain and a child domain. The parent domain have 2 domain controllers and the child domain got 1 domain controller.

If I look at the eventlog on one of the domain controllers in the parent domain, I've got events like:
DC2    1865    Warning    Microsoft-Windows-ActiveDirectory_DomainService    Directory Service
DC2    1566    Warning    Microsoft-Windows-ActiveDirectory_DomainService    Directory Service
DC2    1311    Error        Microsoft-Windows-ActiveDirectory_DomainService    Directory Service
DC2    2042    Error        Microsoft-Windows-ActiveDirectory_DomainService    Directory Service  

Basically they're saying that connection/repliation to child domain failed.

If I run repladmin /replsummary and repladmin /showrepl I receive the following message:
(8614) The directory service cannot replicate with this server because the time since the last replication with this server has exceeded the tombstone lifetime.

DCDIAG.exe returns errors on the KKC check as well as replications against Child Domain.

I've searched the forum and found a few others with the same issue:

https://social.technet.microsoft.com/Forums/windows/en-US/a5f64f43-c44f-47cd-9bcd-9c3790e0e6ba/receiving-error-in-ad-replication-but-somehow-passed-test-replications-?forum=winserverDS
https://social.technet.microsoft.com/Forums/sharepoint/en-US/9f3919db-ade9-4a36-927c-6853d29e2e4c/the-active-directory-cannot-replicate-with-this-server-because-the-time-since-the-last-replication?forum=winserverDS
https://social.technet.microsoft.com/Forums/windowsserver/en-US/cfb99ad9-562e-4bd5-8514-911db79591ff/active-directory-replication-2042-errors-between-2-dcs-involving-lingering-objects-on-both-possibly?forum=winserverDS
https://social.technet.microsoft.com/Forums/office/en-US/7066bff9-cf19-4698-bf81-9773ecb48130/two-child-domain-controllers-with-replication-errors?forum=winserverDS

So now I'm trying to fix the replication issues as gracefully as possible by demoting the domain controller in the Child Domain with the following code:

Import-Module ADDSDeployment
Uninstall-ADDSDomainController `
-DemoteOperationMasterRole:$true `
-DnsDelegationRemovalCredential (Get-Credential) `
-IgnoreLastDnsServerForZone:$true `
-LastDomainControllerInDomain:$true `
-RemoveDnsDelegation:$true `
-RemoveApplicationPartitions:$true `
-Force:$true

but it fails with the following message:

The operation failed because:
Active Directory Domain Services could not transfer the remaining data in directory partition CN=Schema,CN=Configuration,DC=Parent,DC=local to
Active Directory Domain Controller DC1.Parent.local.

"The directory service cannot replicate with this server because the time since the last replication with this server has exceeded the tombstone lifetime."

So I'm kind of stuck in a Catch-22 scenario and thinking about a "hard" removal with the following code:

Import-Module ADDSDeployment
Uninstall-ADDSDomainController `
-DemoteOperationMasterRole:$true `
-ForceRemoval:$true `
-Force:$true

So my question is:
Is there a better way to fix the issue other then doing a "hard" removal?
What kind of steps do I have to take after the "hard" removal?

PS. This is issue occurs in my home-test lab environment so I do not care too much about the domain. But since I'm studying for MS Exams I would like to know the best way to handle a situation like this.





LDAP Search Failure

$
0
0

Greetings,

When I search for select groups using ldp.exe, some attributes are not returned.

Steps I use:

  1. Open ldp.exe on a domain controller
  2. Connect to the same DC I'm logged in to
  3. Bind as the currently logged on user
  4. Browse menu...Search
  5. Type "DC=mydomain,DC=local" as the base DN (obfuscated of course)
  6. Type "(&(sAMAccountName=WorkingGroup)(objectClass=*))" as the Filter
  7. Set "Subtree" as the scope
  8. Type "objectClass;name;description;canonicalName;MemberOf" as the attributes
  9. Click Run

This correctly returns the attributes requested, including a list of groups "WorkingGroup" is a member of.

My problem comes in where this doesn't work for all groups, of which we have hundreds (about 1.3% don't work).  This, in turn, causes things like ldap_search_s to fail when coming from our Netscaler MPX, which does nested group extractions to determine which Web Interface to send that client to.

Thanks,

Dave

There are no more endpoints available from the endpoint mapper when browsing domain object

$
0
0

I'm facing this issues of migrating a member server from a domain to another domain. When i try to join to the target domain after disjoin from the current ones. It display error "There are no more endpoints available from the endpoint mapper". After I communicate with the security team and remove the object from the DC.

I force replicate the DC so the object removed to be replicated to all DCs. Then i re-try join domain, it was successful. The server was then reboot.The issue now is that want to add an object (eg domain users) to the computer management local admin group, it will display the same error "There are no more endpoints available from the endpoint mapper".

I rebooted the server again and now in the local admin group i can only see those local users, the domain users becomes SID numbers. 

I check the netsetup log 

The NetpDoDomainJoin: status: 0x0

Any idea how to resolve this issues?



 

 

Windows 7 clients are taking long time to login to the AD domain.?

$
0
0

Hi Team,

In our domain, windows 7 machines are taking long time to login with domain user account. But for Windows XP machine has no problem in logging in.

Could anybody suggest, wht will be the root cause for this problem and how to overcome this?

And also, please clarify is there any differences in Logon process between XP and windows 7.

Thanks,

Dev

Unsuccessful AD DS removal and DC demotion. Now the second DC cannot even locate the domain!

$
0
0

Hello,

I tried to remove AD DS from a DC called SERVER. First I introduced a new DC. I called this one TEMP. I let it sit and replicate. Everything was ok. Replication was fine.

So I decided to remove AD DS from SERVER using Server Manager. However I noticed that it was thinking that this was the last DC in the domain, so it tried to remove the DNS zone as well. I realized that this can't be right, so I removed AD DS using PowerShell with the -Force parameter.

Now it's all messed up. TEMP cannot even locate the domain. I cannot open AD users and computers because it says the domain doesn't exist or it can't be contacted.

And from SERVER I cannot rejoin the domain because it says, "Verification of replica failed. An Active Directory for the domain could not be contacted"

When I look in TEMP I see the c:\windows\ntds folder. So the AD database is still there. DNS shows the Primary zone. So my question is, is there any way to save this domain?

Thanks!

Hod

Getting Error while Exporting Data from AD

$
0
0

I am getting while exporting AD Users or Computers information from AD below is the script and error message. Can anyone help me on this. I have user count near about 15000.

Get-ADUser -Filter * -Properties * | Select-Object -Property Name,SamAccountName,Description,EmailAddress,LastLogonDate,Manager,Title,Department,whenCreated,Enabled,Company | Sort-Object -Property Name | Export-Csv -path D:\AlluserfromAD30102015.csv

Get-ADUser : The server has returned the following error: invalid enumeration context.
At line:1 char:11
+ Get-ADUser <<<<  -Filter * -Properties * | Select-Object -Property Name,SamAccountName,Description,EmailAddress,LastLogonDate,Manager,Title,Department,whenCreated,Enabled,Company | S
ort-Object -Property Name | Export-Csv -path D:\AlluserfromAD30102015.csv
    + CategoryInfo          : NotSpecified: (:) [Get-ADUser], ADException
    + FullyQualifiedErrorId : The server has returned the following error: invalid enumeration context.,Microsoft.ActiveDirectory.Management.Commands.GetADUser


Deleted entries in the Microsoft Active Directory

$
0
0
What is the maximum number of deleted entries can the Active Directory store in the CN Deleted Objects?

Server 2008 R2

$
0
0

I am having an issue with a single DC domain where i cannot view any properties of the user accounts in the Users OU- i can see the properties of the groups within though. 

I am not showing any errors in the event log that would point to this, or any errors when trying to access the properties i just get no window popup at all.

Any suggestions would be greatly appreciated.

Nathan

Directory Service log generated Warning Event 2841

$
0
0

Hi,

i found this warning every day on company server but didn't find anything to start troubleshooting from.

Winimage backup says everything is right and backup seems ok.

What couldn i do to stop this? Thanks

Log: Directory Service
Type: Warning
Event: 2841
Alert Time: 2015-10-27 23:08:22Z
Event Time: 03:07:12 AM 28-Oct-2015 UTC
Source: ActiveDirectory_DomainService
Category: Backup
Username: SYSTEM
Computer: SERVER.abcd.local
Description: The Active Directory Domain Services backup will be failed, because the user requested the Active Directory Domain Services stop during the backup process. The invocation ID may be changed on AD DS startu

Both domain controllers rebooted - problems with DNS

$
0
0

Hi

We are currently working on a procedure for restoring our systems further from having a powercut which extends beyond support of our UPS.  We have two domain controllers

DC1 (Physical) - DNS, DHCP. We have configured this server (BIOS) to boot automatically when power is restored. 

DC2 (Virtual) - DNS. When the ESX Host boots (also boots automatically), this server is set to boot first automatically.

Each servers primary DNS is set to point at the other. 

We are trying to get to a point where if we experience a powercut that lasts for a few hours out of hours, once power is restored and DC1 and DC2 have booted, providing all automatic services have started, that we do not need to manually intervene and as both DC's are operational.

At the moment, when we test this process by rebooting both DC's out of hours, after about 10 minutes we are having to restart the DNS service as we are unable to ping servers by hostname and both DC's cannot see each other. 

Should this happen?


DIRSync with adfs

$
0
0

Hi experts,

Can dirsync tool support adfs 3.0?

Appreciate if can point to me the link for such reference.

Thanks.

Regards,

Chun Hai

Viewing all 31638 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>