Two Domains with intertwining DNS and DHCP servers.... HELP
So I have a strange AD structure and it seems to cause some very strange issues. Here is what it looks like.So the issue is that sometimes computers on floor 2 get new IP addresses but the DNS will not...
View ArticleExport AD user proprties mentioned in Arabic
HiWe are trying to export AD (2008 R2) user information using CSVDE / LDFIDE to modify some extension attributes which are mentioned in Arabic, but the exported data is not showing in Arabic, expect...
View ArticleOffline Domain Controller
I have a 2003 domain. 4 Domain Controllers are 2003, 1 is 2008. One of the 2003 DCs is offline and I cannot access it to run DCPromo.Can I use GUI (Active Directory Users and Computers and Sites and...
View ArticleisMemberOfPartialAttributeSet & FLAG_ATTR_REQ_PARTIAL_SET_MEMBER in systemFlags.
I haven't got a problem, this is more about exploration on how things work.According to http://msdn.microsoft.com/en-gb/library/cc220038.aspx isMemberOfPartialAttributeSet specifies whether an...
View ArticleEvent IDs 1645, 1168, and 1125 on 2008 R2 Server during DCPROMO
Hi,I have the following AD infrastructure Single domain / forest (2003 Native with mix 2003R2 and 2008R2 DCs) around 75+ DC around the globe. Recently I have started to see dcpromo failures with Event...
View ArticleActive Directory Federation Services : License Requirements
Hello,We are planning to install ADFS to help with SSO for a web application. We have 1000 internal users in AD so i wanted to know if there are license requirements to install ADFS in our current...
View ArticleUser Account is getting locked with NETBIOS_HOSTNAME as source computer name....
Hi Gurus,one of our Users is getting locked every day between 07:30-08:30. If we analyze the netlogon or security events on the DC we can see that the following event are registered.4776,AUDIT...
View ArticleToken size calculation and maximum group membership
As I'm sure we all know, there are problems with logons once a user is a member of 1015+ groups. This is the famous "token bloat" problem that lots of organizations have. Thankfully, we have cleared...
View Article8453 Replication access was denied
Hi,I have two 2008 R2 DC's at Headquaters and one 2008 R2 RODC (with DNS, File (DFS), Print, DHCP) at our branch office.After the installing the RODC we are having constant DS erros (1699, 2883) on...
View ArticleInplace Domain controller upgrade from windows 2003 EE + SP1 to windows 2008...
hi, need your inputs on domain controller upgrade pre and post tasks my set-up has PDC and has windows 2003 EE with SP1 installed and ADC with windows 2008 Entp. Exchange server 2003 with SP2. so can...
View ArticleDo Windows Server 2003 r2 x64 DC can work with Server 08 R2 or 12 x64 DC...
Hi all,I had two HP ML 350 G5 this running the Server 03 R2 x64 SP2,This both 2 server are running 3 thing in it.1. AD DS + DNS (Yes I do AD + DNS integration, so auto copy on both DC) 2. DFS Name +...
View Articledfsr migration after forest/domain functionality increase
I recently raised the domain and forest functionality to 2008R2 (from 2000). Dcdiag is now giving an error for the attribute msDFSR-ComputerReferenceBL because SYSVOL replication is still using FRS...
View ArticleI promote a Windows server 2003 as domain controller, but I cannot view the...
First of all, my DC is a virtual machine at an ESX Host.I don't know whether the template I got from my IS colleague is broken, but when I promoted it as the unique DC in my test environment, I...
View ArticleHow to check list users in my AD configured with "password never expires"?
How to check list of users in my AD configured with "password never expires"?
View ArticleADAM to AD LDS migration
We are planning to migrate from ADAM (windows 2003 32 bit) to ADLDS (windows 2008 64 bit) . In my case both the ADAM and AD LDS server will be in same domain. In one of the MSDN post replication was...
View ArticleAfter Demote Addition DC and Re-Promote, Sysvol and Netlogon missing
Hi everyone,i have a problem with my addition domain controller, my version OS in all server is windows server 2012 Standard.My system have 2 DC, a named Svr-AD01 ( holds FSMO ) and Svr-AD02 ( as a...
View ArticleIf PDC emulator is down , any user in that domain can not change their...
We use win2003AD.If PDC emulator is down , any user in that domain can not change their passowrd ?
View ArticleCan Active Directory access be compartmentalized to a particular branch?
Hi,My server is Windows Server 2008 R2 Enterprise. It is not a domain controller. The only roles currently configured are File Services and Remote Desktop Services.I'm trying to setup access controls...
View ArticleSysvol folder contents are missing
Sysvol and netlogon folder contents are missing in all DC servers. Either it may be deleted by some one or corrupted. Is there any way to find the root cause of the contents missing?DC OS: windows...
View ArticleExpiry time on first time logon.
I'm just wondering if it´s possible to set the expiry time the first time a user log on to his account? For example i have 10 enabled accounts with unlimited expiry time and the _first_ time a user...
View Article