SSO for applications between multiple domain
Hi All,One of our customer is having two seperate forests (A & B). Forest A contains applications and 15k users, migrating them forest B is the task going on now. External Trust ( Selective...
View ArticleAD Site Link Creation
Hello Folks,I've started working at a company a little over a month ago and one of my projects is cleaning up Active Directory. I resolved a bunch of replication errors and have managed to get...
View ArticleHow to set the "Manager can update membership list" on an Active Directory...
In Active Directory, you can set a managed by group or user for a group and there is a checkbox in the UI for "Manager can update membership list". I have been able to set a group or user via a Python...
View ArticleSPN HOST/IP overrides
Hi guys,I'm trying to configure additional SPNs leading to the IP address of the server for TERMSRV and HOST. The server is the domain controller.setspn -S TERMSRV/172.29.2.19 Sec-Lab-Win19 setspn -S...
View Articleexports users info
Hi Experts I have display names in CSV file in the below format. Names Tim A Rob V i want to import this csv file and get their userprincipalname,samaccountname, email address, office location and...
View ArticleRackspace VM image windows server 2008 r2 move to Azure
Hello,Any idea how to migrate Rackspace VM image with windows server 2008 r2 with a domain controller installed to Azure possible to a newer version of windows server? Thanks in advanceJohnweb
View ArticleLDAPS with .local domain and 3rd party cert (dns, trusts, crossref, etc)
I've spent countless hours researching, reading, and testing how to make LDAPS work with a .local internal domain and a 3rd party cert. Right now, it does and doesn't work. Let me start with my...
View ArticleStrange "reset password" behavior
Hi there,we have a root domain (i.e. company.de) with some subdomains (i.e. lab.company.de & prod.company.de). Our admins (they are all created in prod.company.de) have the right to reset passwords...
View ArticleDeploying Windows Hello for Business on-premises Device registration not working
Hi, Sorry for the double posting, the original thread had a kind of different question to start with. So, I'm trying to deploy Windows Hello for Business Certificate Trust on-premises in my work place....
View ArticleScript delete AD Computers older than 90 days from multiple OUs and export to...
Hi,I'm trying to put a script together that delete AD computer accounts that haven't logged in for 90 days which sit in a particular OU and then exports a list to CSV that can be emailed out.I've got...
View ArticleDirectory Service Impact if we install Trusted Authority Certificate from...
During the assessment it was found that 1. Certificate chain sent by the remote host is signed by an unknown certificate authority. 2. Self Signed Certificate UsedRemediation Step: Purchase/Generate...
View ArticleNeed help with ADV190023 update
Hello, we are the developers of Passwork. Passwork connects to domain controllers via LDAP using the simple bind method, and can also connect via LDAPS. Soon there will be an update...
View ArticleCan an application always running with different users
Hi,I am having an enterprise application (which can't be stop due to business need), always running on Windows 10. To access the machine our team (10 members) use the single domain account, password of...
View ArticleDFSR not working Event_ID 6104
So setting up a new AD server to replace an existing but having problems getting it to sync so i can turn the old server off. Event viewer has: The DFS Replication service failed to register the WMI...
View ArticleDisplay should be First name + Last name
Hi Guys,I have changed my last names to capitals and its not effecting in display nameI run the below script made the changes in AD lastnames $targetUsers = Get-ADuser -SearchBase...
View ArticleDomain Accounts Are Unable To Access Network PC's via IP Address but Can...
I'm having an interesting issue... As the title states, in File Explorer I am able to access network PCs via ComputerName, but cannot access them via IP Address. This issue only occurs while I'm...
View ArticleSAML token format
I am trying to get a SAML token back from the Active Directory server with a Group claim in this format:<Attribute Name="http://schemas.xmlsoap.org/claims/Group"...
View ArticleIs possible set a multiple users pwdLastSet?
I currently use a script to change the date of users individually, but I need them to be for multiple users, located in different OU. Ideally through a csv file, is this possible? $username = "user"...
View ArticleDNS FORWARDING is FAULTY
When I run nslookup to try to resolve an outside website it works. But when I run DCDIAG /TEST:DNS I get failures on the DNS Servers used and I get a failure on the Forw spot in the summary table.Any...
View ArticleMigrate a domain 2003 to windows2019
Hi,We have a domain with 8 domain controller windows 2003.What's the best practise to migrate this domain to windows 2019?
View Article