Disable AD User after period of inactivity?
Hi everyone- how can you implement a GPO setting that disables an AD user after a period of inactivity or a period during which they have not logged on? Thanks!
View ArticleEvent ID 4740 User Account Management Account Locked Out but Audit Success
Hi Anyone can advice me on this?One of my user keep getting account locked out, however it keep on locked even after I unlock them.I checked the event viewer, it shows that account locked out but the...
View ArticleDC information
Hi ExpertsI am logged in one of the jumpserver, i want to pull how many domain controllers are there in my domain. please help me with powershell syntax
View ArticleChange the maximum password age to just a group
Hello,I have created a group in active directory (password group) I'm trying to set 182 days maximum password age for this one group. I put only the office staff into this group and now looking to...
View ArticleHow to properly remove empty OUs
We have many OUs in ADUC thing is I can run the below and find out empty OUs no problem but how would I incorporate any delegation, last used, or gpo associations? Import-Module ActiveDirectory # Get...
View ArticleDCDiag: DC failed test VerifyEnterpriseReferences
I am working on a network that used to have several DCs. Some of those were demoted gracefully and some failed and were demoted forcefully. The only remaining DC runs Windows Server 2008 R2. When I...
View ArticleI cannot join new machines to the AD "Network Path not found"
After having demoted and removed one of two domain controllers I cannot add any new servers to the AD. Both the DC and the server I am trying to add is running Server 2016. I have enabled netbios over...
View ArticleExisting Fileservers and DFS
Hello,When installing DFS at existing fileservers with real folders/data, how can i add the already existing folders. Do i need to add a folder from server A and it will auto sync to server B with the...
View ArticleWho enabled or changed DNS scavenging configuration
Hi,We have DNS scavenging enabled for some time now and has been working fine. Last week, someone changed the scavenging Refresh and Non-refresh interval on a zone to 9 hours each and it ended up...
View ArticleAD Replication issue - not creating replication partner with WS2016 DCs
We are having WS2008R2/2012R2 DCs, and in the process of upgrading to WS2016 DCs (13 WS 2016 DCs upgraded till yet).Our older version DCs has inter-site replication partners with other AD sites, and we...
View ArticleError when copying user - The name reference is invalid.
I have windows server 2016 and was using exchange 2013 and about a year ago migrated to office365 Since then I have copied several users not sure why I am encountering this issue now (probably due to...
View ArticleWhat are the 'side effects' of changing a user's network login name in AD...
We have a number of users whose original AD login names were set up as 'first name' only (i.e. Tom). We have since standardized on all user names being 'first initial, last name' (i.e. TSmith). If I...
View Articleadmt error updating already migrated user passwords
hiwe prepare a admt migration atm (server 2012r2), all user accounts are premigrated and mailenabled the initial password sync 6 months ago went fine...now we want to do the final password sync before...
View ArticleForum FAQ: How is user password of user objects stored in Active Directory?...
Question Some customers would like to know how the user password is stored in Active Directory and how to view and modify it. Answer The users' password hash is stored in the Active Directory on a...
View ArticleOne profile, multiple simultaneous logins, broken search
I have this issue cropping up at multiple unique locations. At each location I have a single Server 2016 Standard (STD) acting as the AD DS with DHCP and DNS, the client workstations are Windows 10 Pro...
View ArticleGPO to delet a local profile
Would anyone happen to know if there is a GPO that I could setup in AD on Server 2012 that I can use to delete one specific local profile off of about 200 machines?Support analyst
View ArticleError on get-ADPrincipalGroupMembership for groupnames with \
We have a windows 2003 domain with 3 windows 2003 DC's. On one of them we installed Active Directory Management gateway service.When I use get-ADPrincipalGroupMembership on users who are member of a...
View ArticleHelp with Windows 2008 SP2 Certificate Servers Upgrade/Migrate
I have inherited these systemsThere is a root CA which is ONLINE and a Sub CA. It is using SHA1. This month we are hit with the google chrome 72 update whereby users are getting the privacy...
View ArticleADUC MMC Crash
Have an odd situation. I have a Win10 build 1809 MMC version 3.0 and a Windows Server 2012 R2 build 9600 MMC version 3.0.My issue is that when in ADUC on the Win10 pc and the ADUC mmc open (it opens...
View Article[urgent] error FSMO role in my AD
Hello and sorry for my English,I try do depromote domain controler but i have one error, i can't. So i checked and i found this error :If i do : "netdom query FSMO", i have :schema master...
View Article