Naming ifnormation cannot be located because access is denied
according to my previous question regarding domain admin have full access to its own domain. However, when I open ADUC as domain administrator, I got error:Active directory domain services:Naming...
View ArticleDemoting 2003 Domain controllers and DNS Servers
Hi all,I have introduced three new 2008 r2 domain controllers which currently live with three 2003 sp2 domain controllers. All DNS servers.It has been like this for about 3 weeks. During this time I...
View ArticleFSMO
Actually i didn't do any transferring or seizing operation even though the roles are transferred to ADC. Suppose if that was done by somebody transferring or seizing how to track it down, and after...
View ArticleAD design and consideration
Hi all,One company want to redesign its AD architecture based on locations(us/cn), subcompany(sub1,sub2,sub3,sub4). The subcompany domains(ussub1/cnsub1, ussub2/cnsub2) need trust in US/CN locations....
View ArticleMemberOf attribute missing
I have a LDAP connection (from an application that needs to read the MemberOf attribute in AD to determine group membership. But when I look in my user attributes in ADUC, there is no MemberOf...
View ArticleServer 2k8 dc's at 6 locations, need to (and cannot) authenticate across WAN...
We have 6 locations across north america with a server 2k8 DC in each location. The servers are virtual, and we use a SAN for storage.I cannot currently authenticate using any of the remote DCs, so...
View ArticleWindows 2008 R2 Domain Rename - Clarification on DNS Preparation Step
I have tried searching for the answer to my question, but am not having luck.I am doing a Windows 2008 R2 domain rename. I have ready every thing I can on the process from the MS Technet pages, the MS...
View ArticleW32TM / W32Time & Virtual Domain Controllers
Hello world,I am looking for a simple answer on a question with a million posts...Virtualized DCs NOT holding any FSMO roles - can they serve time to their client PCs?I have 2 physical DCs, one holding...
View ArticleStartup script
Hi, I am from Spain, excuse my bad EnglishI have a startup script to add domain group to the local administrator groupThe script is a vbs script and work fine in the first reboot but in the second...
View ArticleDomain controller crashed - was never demoted.
One of our domain controllers crashed so it was never demoted. I rebuilt the server and promoted it to DC. Ever since then, I've been getting countless NTDS Replication event errors (2023 2042). I...
View ArticleStartup script again
Hi, I am from Spain, excuse my bad EnglishI post recently a question about script but This is a another error in my scriptI have a startup script to add domain group to the local administrator groupI...
View ArticleCross forest trust issues with Winlogon from Win7 via 2008 resource DC in...
ISSUE: Group Policy processing isn't working when using cross forest authentication, works fine with local accounts in Forest B.Implementing a new system in a segregated network with it's own single...
View ArticleServer 2012: Increased LDAP traffic to domain controllers since installed
About three months ago, we installed a new server running Windows Server 2012 (Std.) at a branch office. The server is running the following roles: File Services (including File Server Resource...
View ArticleReplication Failures and NETDOM Reset of PWD Didn't work
I have a small directory where the AD is now failing to replicate. I have checked on KSD1 the dcdiags and things seem fine there. This is the PDC. On the 2 DC KSD2 things aren't repliacating and...
View ArticleDeploy a Print Server on a RODC
Hi everyone,My customer has a Datacenter and many branch offices. On each branch office, there are 2 servers. The first is running AD, DNS, DHCP, Print Server, an application ... and the 2nd is used as...
View ArticleIIS is not reporting last logon date to Active Directory
I am trying to capture the lastlogontimestamp but I having issues with account that authicated theirUsername and password through IIS and I am having issues. We are windows 2003 / 2008 with IIS6. Any...
View Articlecreating a new forest/domain on same network with existing forest/domain
Hi,our company was merged with another firm and the joint entity has a need for a domain name change.I am planning to create a new forest (new parent domain), create forest trusts between the new and...
View ArticleWindows 8 Pro 64
Windows 8 pro 64 will not connect to my server 2003 enterprise. It says welcome to domain then gives an error message after about 30 sec. Error is:Computer Name/Domain Changes Changing the Primary...
View ArticleForest wide Replication Partners - Best Practise
I have recently started with a new employer and have been tasked with looknig through their AD and making any suggestions for changes / improvements.Briefly there is a main head office with 3 DC's and...
View ArticleHow to trace who created the account in active directory
Hi im currently investigating about a account what was removed and recreated in active directory. I was able to confirm that the account was recreted because the whenCreated value of the account in...
View Article