Reason for domain join and dis join
Hi,As part of troubleshooting activity, we normally disjoin and join the pc in the active directory domain.without knowing the proper reason we are not suppose remove the pc from the domain.I am...
View ArticleHow to verify the KDS Root Key is replicated successful amongst DCs and using...
Hello all;this is my first time to setup AD FS, because one of my new cloud solution require AD FS for my users to sign on to their service with AD account. I have one CA server installed. I would...
View Articleobject list in active directory
Dear Forum expert usrs, i would like to give my one of none domain admin active directory user permission so he may be able to set or apply or run the following command. dsacls.exe...
View Articlepermision Restore Deleted Active Directory computer?
hello,Peace I have a script I wrote for computer recovery that is removed from the domain by the following command: Get-ADObject -Filter 'samaccountname -eq $comp' -IncludeDeletedObjects |...
View ArticleActive directory design and SD-WAN- Windows 2016 or above
We need to work out active design considerations for new setup where in Company wants to have DC and ADC in DataCenter and implementing SD/WAN to connect across branch...
View ArticleError - UNWILLING_TO_PERFORM - while change user password in AD ldap using...
I am creating a simple python function to change the user password. I have tested my AD set up, able to search the user and get correct response but when try to run l.modify_s, I get the below error....
View ArticleADMT 3.2 User Migration issue
I am using ADMT 3.2 inter-domain user Migration with in the forest.After the migration below issues are occurring:1. UPN suffix is getting changed- I know this is common but its not setting it to the...
View Articlewindows 2019 Domain controller
Hello All,i need some advise here, we are currently have win2012 r2 dc, and planning to upgrade to win 2019 DC.Please let us know if we have to extend the schema or just get new server with 2019 OS and...
View ArticleTrusting AD CS CA issued SSL in another AD Domain that has no trust relationship
Trusting AD CS CA issued SSL in another AD Domain that has no trust relationshipHello - We have two 2016 level AD domains. They are not in a forest and there's no trust relationship.One domains...
View ArticleWays to seamlessly migrate an existing DC (windows server 2012) to a new...
I have an existing domain - but I was given a task to reconfigure a new one.I have zero experience in this field some maybe some/all of my questions may sound stupid for you guru.1) How do I create a...
View ArticleComputer restarts A critical system process, "failed with status code...
Hello, My computer is automatically restarting, when I consulted the event viewer, the error was as follows:"A critical system process, C: \ WINDOWS \ system32 \ lsass.exe, failed with status code...
View ArticleActive Directory Domain services monitoring
Hello, I'm using Active Directory on Windows server 2016, other application in my company which works on linux, is connected to my DC. Sometimes this application couldn't synchronize users from my DC....
View ArticleUser certificates not auto enroling
Help! I'm really pulling my hair out with this one.I have duplicated the user template on my CA and added an AD user group with the autoenrol permission. This template has been published and I have a...
View ArticleWhy do I get inconsistent results from AD-User?
I have 2 custom attributes created by a script with exactly the same values. Except of course name and number.But, the output is different. Look at this output. How can it be? Set-ADUser...
View ArticleWindows failed to apply the group policy registry settings. Group policy...
Hi Experts!We have some issue with GPO in active directory 2016. The issue was occurred when we upgrade the AD 2008R2 to windows 2016 using clean installation method. Background of the issue : 2008R2...
View Articleadding second adfs server
I like to confirm below steps as we are planning to add second adfs server and create a farm. Currently we have adfs running on server 2012r2 ... with adfs1 yourdomain name and dns entry as adfs...
View ArticleGroup Naming Conventions
HiI am just trying to come up with a good naming convention for my groups in AD but i am struggling to think if my "components" of the group name are sensible or not, could do with some examples really...
View ArticleConditional Forwarder
Hi,Do we still need to have a conditional forwarders between two domain having a forest level trust over internet connected with ipsec vpn tunnel. If not then how to configure the DNS properly to let...
View Articleis there any script for finding out the inactive AD user for more then 45...
Hello All,I am looking for script for finding out the inactive AD user for more then 45 days and sending an email to respective users managerThanks
View ArticleWindows cannot move object error...
Hi everyone! May someone help me with this error when i try to move a user object to another OU?Doria
View Article