2012 Domain Controller showing that it's not syncing group policies
I'm a little stuck on why this is happening. Brand new Server 2012 Domain Controllers (they are virtual) and this never changes. I turned off the firewall on all three to see if that would help but no...
View Article(domain) computer object set as local administrator
I am trying to find out why an AD computer object would be a member of the local administrators group. This is obviously populated via GPO because the AD administrator removes the account, but it...
View ArticleUnable to import the organisation and when I click on manual user mappings...
I'm getting an error like below when importing the Organization
View ArticleServer 2012: Increased LDAP traffic to domain controllers since installed
About three months ago, we installed a new server running Windows Server 2012 (Std.) at a branch office. The server is running the following roles: File Services (including File Server Resource...
View ArticleWindows 2012 automatique schema upgrade function
Hi everyone, I am wondering about the automatique schema upgrade function in Windows 2012. The fact is I have a simple AD domain with two DC 2003 R2, functionall domain and forest level 2003. I want...
View ArticleModifying the DDCP best practices
Looking for people's thoughts on when to create a new GPO and link to domain controllers OU rather than modify the DDCP assuming all DCs need to be targeted.
View ArticleActive Directory trust issue? unable to access the users for folder...
Hi Team,I have a single forest single domain environment.2008 - Active directory , Forest and domain FL - 2003we have forest transitive trust established across different domains across globe. Trust we...
View ArticleAD Replication Error
I am getting ad replication error when I run the Status Tool and also with dcdiag. I can't tell which DC is actually causing the issue.I have two DCs, 1 at each site. Site connectivity is not an issue...
View ArticleLinux Servers in AD DNS - Linux servers are getting an age in AD DNS
My environment is: 2003 Functional level Domain and ForestDomain controllers are a mix of 2008 R2 and 2003 (Mostly 2008 R2)Client servers are a mix of 2003, 2008 R2, and a mix of Linux flavors.Zone is...
View ArticleTLS 1.0 connection request, none of the cipher suites supported by the client...
Hi All,I have an APP published on Windows 2008 R2(IIS). I create a custom request for a certificate with multiple names for this apps on port 444.Windows 7 can Access...
View ArticleEvent ID 13 on primary Domain Controller!
Hello All,I am working with a new company where there are 2 domain controllers. The primary DC is Win 2k3 sp2 X64 and additional DC2 is Win 2k8 R2, things are already built as it is.I am getting event...
View ArticleChange AD domain name
I want to change the domain name of an AD domain that has only two servers and no users associated with it. The servers only perform DNS and DHCP.I have a Novell network based on the domain name...
View ArticleAD physical or virtual?
Hello,What is the best practice, create a virtual or physical AD?if somebody can give me advantages and disadvantages it will be greatthanks
View ArticleFine Grained Account Lockout Policy
Greetings,In native mode, does Windows Server 2008 fine-grained password policies have the following capability?- After 5 failed login attempts within a 5 minute period disable (lock) account for 15...
View ArticleWindows Server 2003 Standard Ed, Problem After DCPromo as Secondary DC for...
Hello, I am hoping not needing to demote our DC2 to go back as member server then promoting it back up again, but following is the situation.We have an integrated active directory network with one DC...
View ArticleMinimum Privilege to run ADAMSync
Hi all, I'm trying to find out the actual minimum required privilege to run ADAMSync for a standalone (no-replication) LDS instance (Win 2008 R2). According to technet library, Administrators group...
View ArticleHow can get the machines list which are communicated with AD in last 30 days
HiHow can get the list of all machines communicated with AD in last 30 days?
View ArticleDomain Trust problems
Hello,is it possible to create a trust between the following domains? mydomain-bank.local (Windows 2003) and mydomain.bank (Windows 2008) I have all DNS configured properly, I can ping between domains...
View ArticleWINRM and duplicate SPNs
I currently get a duplicate SPN error when attempting to Remote Powershell into another server on the domain. I've narrowed it down to the service account running a SharePoint app on that server. I'm...
View ArticleQuery Active Directory for group membership on a different domain from IIS
Hi,We have an application that needs to query for group membership in a second domain. This works fine from our thick client, but not from IIS using identical code.Basically our client's setup is that...
View Article