ADRMS Application servers and Database Servers IP Address change
Hi,Thank you for reading my question.I have ADRMS Application servers and seperate ADRMS SQL DB servers. I have to change the network segment of these RMS and DB servers and assign new Hostname and IP...
View ArticleKB3081320 - affect on domain clients Schannel negotiation
Hi.KB3081320 - https://support.microsoft.com/en-us/kb/3081320In the known issues for this update it is advised that:This update makes changes that are required for the Extended Master Secret Transport...
View ArticleService Account Management in Windows 2012 AD Environment
Hello There,We are in the process of deploying an EndPoint Detection & Response product across the whole Windows Domain with more than 1,000 endpoints.This solution requires a service account with...
View ArticleWindows 2012 R2 Domain controller, dcdiag error, dsbindwithspnex() failed...
Hi,I have 3 sites linked over a VPN tunnel. In one of the remote site DC, I am getting the error "dsbindwithspnex() failed with error 1727" when I run DCDIAG. Basically the remote site DC with the...
View ArticleNeed to restart the DC remotely
Hi allWe are not able to login to the PDC, its about to get freezed, So i need restart it,Please let me know how to restart it from other DC.I found some thing called cmd shutdown -i and shut down...
View ArticleTimeout issue in multiple Domain Controller
Hi,When I run test for Netlogons Test,Replication Test,Advertising Test,FSMOCheck Test,KCCCheck Test,FRSCheck Test all these test are getting timeout. When checked all 4 DC, I could not see...
View ArticleWho will be crowned the last Windows Server Guru of 2015!!
Here it is folks!THE FINAL CHALLENGE OF 2015!!Step up all known Gurus currently active!Let us see the year out in style, with some final thoughts and knowledge from everyone we love and follow in the...
View ArticleMandatory Profiles in Windows 10
Good evening.I am deploying an Active Directory domain for a lab, using Windows Server 2012 R2 as a DC and Windows 10 Pro 64-bits (build 10586) for the clients. After the configuration of the server...
View ArticleConfiguring DNS for Across Forest Resolution
We've setup a new forest and want to enable DNS across both. Our current domain (2008 R2) has DNS configured at Active Directory-Integrated and replication is configured to "All DNS servers in this...
View ArticleDeny based on claim in ADFS 3.0
I have setup an ADFS 3.0 environment with 2 ADFS servers and 2 WAP servers to authenticate to O365 and now I would like to prohibit employees from using O365 from home unless they are in a particular...
View Article_msdcs and TAP3 Directory questions - Migrating to 2012R2 DC/ DNS.
Hi,I am looking at an AD environment that is as follows:Domain Level: 2003Forest Level: 20032 AD sites:Site 1:DC1.mydomain.local (Server 2003 DC/DNS) IP 192.168.5.1DC2.mydomain.local (Server 2003...
View Articlespecify address lookup behaviour for DC locator ping
Hi , Can anyone tell me what exactly happens when we install the hotfix 2922852 ? the one thing i noticed is this is creating a Gruop policy entry "specify address lookup behaviour for DC locator...
View ArticleDCDIAG * Missing SPN
When running DCDIAG /e from a domain controller, I get an error saying * Missing SPN :LDAP/a3fc27e1-8772-485f-8dbc-2d5d47b500c5._msdcs.contoso.com Failed check MachineAccount. (I changed our actual...
View ArticleAD NetBIOS domain name rename - reboots question
I’m working on a domain rename plan – but just the NetBIOS domain name. There are lots of caveats and warnings out there about being really careful and maybe it’s better to just migrate etc. However,...
View ArticleSysvol/netlogon not replicating between DCs - Windows Server 2012
Summary of issue My main FSMO DC (DC1) crashed recently so I forced the roles over to DC2. The thing I found was that the replication wasn't working between DC1/DC2 so as a quick fix the sysvol folder...
View ArticleGroup Policy's Not being Applied to Computer Objects
Hello Everyone,It has been brought to my attention that none of our group policies are being applied to computer objects. I have verified that all GPO's targeting User objects are being applied...
View ArticleHow to remove properly replication link between ADAM and ADLDS Replica ?
Hello, I need to migrate the content of ADAM instance to ADLDS instance. To do this I create a replica of my ADAM instance on my ADLDS instance. After that the synchronization is ok, I want to remove...
View ArticleAuthentication access to only 2 applications
We have a new set of users, who should not to be authenticated in any domain joined machines. They don't get exchange account and they should not be able to login in to any application except a couple....
View ArticleBest way to secure a two way forest trust
Hi all, we are looking to establish a forest trust with another company (they will create a new forest, lets say - their.domain.com )what is the best way to secure access to resources in our domain ,...
View ArticleDefault ADFS User-Agent Strings
Does anyone have the default list of user-agent strings that get set with ADFS v3.0?
View Article