Quantcast
Channel: Directory Services forum
Browsing all 31638 articles
Browse latest View live

Directory Synchronization tool not initiating Bind Request

In our environment, we have 5 domains as followsa.abc.com1.a.abc.com2.a.abc.com3.a.abc.comb.abc.com (Forest root domain)all DC's are windows server 2008 r2We have installed Directory Synchronization...

View Article



User Password Change via LDAP Commands

Once a user's password has expired, or if they are set to force a password change on next logon, what's the appropriate way via LDAP to change their password?I know that I can bind and replace...

View Article

Domain Joining PC using RODC

Hi to all I have problem with RODC and Perimeter Network.Here is my situation I've got Network 192.168.1.0/24 that has two (2) Writable Domain Controllers based on Windows 2008 R2I'd created second...

View Article

Adding Second Domain to Single Domain Forest

I have been asked to add another domain to our Forest (we are currently single-forest. Here are some of the requirements below:1. Cannot be a child domain - They want it to have its own domain...

View Article

NTDS ISAM 508 and 509

Hi All,I have a single-domain forest with 3 DCs spread across 3 seperate hypervisors (all DCs are hypervisors).I am getting two errors, which I think are related. Error #1NTDS ISAM 508 and...

View Article


AD Account Management Audit and DS Access enabled security log doesn't log...

Hello,this is something I stumbled on and haven't been able to find the solution so far.Followedhttp://technet.microsoft.com/en-us/library/cc731607%28WS.10%29.aspx and many other similar threads which...

View Article

Machine Authentication Script

Dear all,we are using Cisco ISE to authenticate users on Network against Active Directory.With this solution ISE requires machine authentication and user authentication against the active directory.The...

View Article

Active Directory Migration 2012 to 2012 due to Normal to RAID

Please provided me complete details for immigration Server 2012 AD to another server with different hardware and RAID on server 2012.thanks in advance.

View Article


Bridgehead Server Selection in 2008 R2

HelloI am looking for a quick answer to the question on load balancing the Bridgehead role on DCs running 2008 R2 or greater.In the scenario where you have 2 sites with 3 DCs in each site running 2008...

View Article


Change file security level for parent folder, without inheriting downwards

Do i have to manually remove inherit from parent on all files to avoid files and folders changing permissions when changing parent?The problem is that parent folder has Everyone set to allow edit and...

View Article

Ad recycle bin not listing the deleted object

Hi Team,Active directory (Windows 2008 r2) recycles bin not able to find the deleted object more than 60 days old . The current Tombstone lifetime setting is 180 days. Please let me know what action...

View Article

is it possible to add a new AD Server 2008 R2 with a different domain name to...

I have existing Domain1.com that has 1-Server 2000 AD, 1-Server 2000 Act! apps server and 1-Server 2008 R2 member server (Also file APPS server). This domain needs to be decommissioned and all users...

View Article

change build-in group from domain local to universal

I have changed the built-in security group such as "DHCP users" from domain local to universal.does it will affect anything or can we change it back as original status.Please advice.

View Article


Minimum Rights in Active Directory for users who are administrators of...

What is the minimum AD rights required for an Exchange Administrator and a Sharepoint Administrator to do their roles without them having Domain\Enterprise Administrator rights to Active Directory?

View Article

Removing old exchange AD object

The old IT staff at my workplace improperly demoted domain controllers and an old Exchange server. We were able to cleanup the remnants of the old DCs and promote new ones, however parts of the old...

View Article


How to force the FQDN name to appear at logon screen (vs NetBIOS name)

By default the NetBIOS domain name appears on the domain drop-down box at login.  We would prefer for branding reasons that the FQDN appear instead.Question:  Can you force the FQDN to display instead...

View Article

Windows 2003 AD DC going to transfer roles to 2008 R2 - Revision,...

I am a new Admin for the network at my company.We have a single DC currently running Windows 2003 R2 SP2.The prior admin appears to have been messing around with Server 2012:CN=ForestUpdates,...

View Article


Uncheck "User must change password at next logon"

Hey guys,How can I disable "User must change password at next logon" on testAccount1, testAccount2 and testAccount3 in AD? Which attribute can I modify to disable this in ADSI Edit?Here are the...

View Article

Forest Trust verifies but ADUC does not find other forest

We have two forests.Each side has DNS stub zones configured for the other DNS zone.   nslookup -type=srv _ldap._tcp.dc._msdcs.otherdomain returns the expected entries.Two-way forest trust is created...

View Article

Need to create a trust but same NetBIOS names

I have 2 domains over an IPsec tunnel, the FQDN names are:DogWater.localDOG.localBoth have the "Domain name (pre-Windows 2000)/NetBIOS name of "DOG". I would like to change the NetBIOS names to DOG-SM...

View Article
Browsing all 31638 articles
Browse latest View live




Latest Images