Restrict pc join to domain by defined computer name
Hi, I want to restrict join computer to domain by defined computer name, like I want to manually create 50 computers account in my domain such as pc-1, pc-2, pc-3 etc. when a IT person join a pc to my...
View Articlefailed to authenticate to DC (event ID 3210)
I´m troubleshooting different Workstation slowness scenarios, and one of the conserning event ID is 3210 which indicates some authorization issues between Client Computer and Domain. Also group policy...
View ArticleSysprep.exe with or without "Generalized"?
Can anyone tell me what the difference between sysprep.exe with or without "Generalized" Option?Another question is, is it possible to join a computer to domain contorller if they have the same SID (I...
View ArticleLDAPS not working with IP Address
We just brought up a new domain controller that is running Server 2012 R2. I am having a bit of trouble with LDAPS though. If I use the LDP utility to connect to the server using it's FQDN everything...
View Article"Cold Feet" in raising domain and forest levels to 2008r2
Hi all,I have two domain controllers in our network. The primary one is a 2008r2 DC with all the FSMO roles. The second is a server 2012r2 running on as a VM in hyper-v. I had migrated a server...
View ArticleRemoving a computer from a domain does not deletes the computer object fom...
I know that that removing a computer from a domain (adding the computer to a workgroup) does not deletes the computer object fom active directory.For that two happen will be just enough to use a local...
View ArticleAD Service account, logon on to item set, logon blocked.
I have 3 service accounts, they are local administrators on the member servers they are to provide service for. I set the log on to... tab to the member server they are local admins on. when the logon...
View ArticleNtFrs Error 13568 Server 2003
I was going through the server events and noticed this error has been happening on the domain controller for some time (years). I have researched this and I can't seem to figure out the best way to...
View ArticleActive Directory Multiple Domain Configuration
Hi I'm new to this form and please let me know if I posted a wrong request in this form.This is regarding Active Directory Multiple Domain Configuration. I have configured Active Directory Multiple...
View ArticleService Accounts for server 2012 R2
Is all of the content common between Server 2008 R2 and Server 2012 R2 regarding service accounts and more specifically app pool identity accounts?If anyone has a link on app pool identity accounts or...
View ArticleAllocating static ports & restricting RPC port range
I want to allocate static ports for Netlogon and FRS, but also want to allow for administrator-defined static ports for other apps running on domain controllers. If we allocate a random high port to be...
View ArticleActive Directory Multiple Domain Configuration
Hi I'm new to this form and please let me know if I posted a wrong request in this form.This is regarding Active Directory Multiple Domain Configuration. I have configured Active Directory Multiple...
View ArticleI need to migrate my Users,Computers, OUs & GPOs from my child DC to parent DC.
Hi,Can I use ADMT to do this task? What will be the user impact? Will it affect/impact my Main DC performance? Can I save/migrate User Profile on their laptop/desktop? This migration is within a...
View ArticleRisks of raising domain/forest functional level from 2003 mixed to 2008 native
We are just about to complete the process of replacing all of our Windows 2003 domain controllers with Windows 2008 R2 domain controllers. Once completed, we would then like to raise the domain...
View ArticleUsing Microsoft LAPS and Deep Freeze
Hi,I have a question about using Microsoft LAPS in an environment where Deep Freeze is in use on 250+ Windows 7 clients. Is it possible to allow LAPS to only update the password during the thawed...
View ArticleAD Powershell suggestion required with DSMOD command
I am researching on converting approx 500 security groups to distribution group, for an individual account command below works:dsmod group "CN=testsecgroup1,OU=secgroup,DC=domain,DC=com" -secgrp noI...
View ArticleActive directory web service not available
In my windows server that runs windows server 2008 r2 in the roles tab there is no active directory web service option is there a fix for this?
View ArticleQuestions about KMS and AD-based activation in the same domain
1. It's not a problem to use KMS to activate my < Windows 8 clients, and also have AD based activation deployed in the same domain to activate my >= Windows 8 clients, right?2. So I use a Windows...
View ArticleSafari 8.0 (Yosemite) and ADFS 3.0 Support
We have several users that are now running the latest version of Safari 8.0 (Yosemite Release) on their Macs. When they try to login to Office 365 and they are redirected to our ADFS 3.0 portal the...
View Article