Eliminated state but no sysvol-dfsr
Can anybody tell me how i can migrate sysvol to sysvol_dfsr while my server 2008 r2 DC is allready in the eliminated state?Kind RegardsGerard Schoenmakers
View Article2008 R2 Domain Controller DNS Event 404 and 408
Ok, so I've read several of the other posts and it sounds like for the majority of users the answers apply.Multi-home dc's with dns not supported pick and interface and ip - not applicableTDI hotfix...
View Articleconnect to AD LD from sql 2008
Hi ,I have questation about access to AD LD from sql server . I am create linked server to AD LD . But after i create select the result is error permission .. :-(((SQL run under system accounout . I...
View ArticleHow to view the value of MaxGroupOrMemberEntries
Due to a provider request I need to confirm that the value of the parameter MaxGroupOrMemberEntries is 5000. The Domain is Win2008 R2.And if is needed, what is the procedure to override this...
View ArticleHow does the computer object location impact enforcement of GPO?
We recently found that a GPO was created with Security Filtering such that certain policies would be applied that are different from the domain policy. For example, this GPO ensured that...
View ArticleSid History with Three domains (user accessing resource domain after user...
I have the Following scenarioDomain A (2003), Resource Domain. (forest trust to domain A)FolderA has a Domain local group FolderAusers used to apply permissionsDomain B (2008 R2), user domain (forest...
View ArticleDetermine length of user passwords?
Hi together,now this is probably a little looking like a request from some hacker on how to do things... it is not! ;-)We are administering several domains in a forest which all have the same pwd-GPO...
View ArticleChanging owner of a group and adding the ACE entry to allow a new owner to...
his is my first post to this forum and trying to figure out a solution to a very puzzling issueUsing WS2008 Active Directory we set up an OU and delegated full control of group objects to a site group...
View ArticleSecurity groups cross forest trust
Hi,I have multiple forests, some of them has forest trust [transitive] and the others are external trust.I created security group A in one of the forest and I want to add [domain users security group]...
View ArticleChild domain users default permissions for parent domain
Can anyone confirm for me what the permissions/abilities child domain users have for the parent domain, by default?A normal user account in the child domain, which is only a member of groups in the...
View ArticleWhat is the difference of altrecipient and altrecipientBL and other * and *BL...
What is the difference of altrecipient and altrecipientBL and other * and *BL attribute in AD ?
View ArticleGlobal Catalog Error
Hi, I have a problem with my AD and I have looked at many sites without finding a solution, I hope you can help methis is the errorActive Directory Domain Services was unable to establish a connection...
View ArticleDelegate permission to remove "prevent object from accidental deletion"
I have a group of users i want to be able to delete a subset of OUs, groups and users. i can delegate them these permissions, but the "protect object from accidental deletion" is ticked and greyed out....
View ArticleQuestion on Two-way forest trust and Group policy
Environment : Forest A/Domain A have two-way transitive trust with Forest B/Domain B.Forest A have some IIS/Sharepoints apps which needs site URL to be added to trusted site, works well as all are...
View ArticleDomain Users not showing up in "memberof"
When I do an LDAP search for my user, why doesn't the "Domain Users" group show up in my users' (or any of our users') "memberof" attribute? I can see the rest of the "plain old AD Security groups"...
View ArticleActive Directory Domain Services Exception
Hello.On several of my Domain Controllers I've started noticing a warning in the Directory Services event log.EventID: 1173Source: ActiveDirectory_DomainService"Internal event: Active Directory Domain...
View ArticleSubnets need to be defined?
Hello, quick question.. we have two DCs in different offices. SITEA DC1 - physcial 192.168.1.x SITEB DC2 - virtual 192.168.2.xThere is a site to site vpn between the two offices. DC1 is being decomm'd...
View ArticleDo domain joined computer have kerberos keytabs installed on them?
I'm reading up on how kerberos works in AD and I know I could find the answer to this question by reading very thorough and large docs on this (which I plan to do), but I have a simple question I am...
View Articlesingle domain across geographically disperesed locations around the globe
Hi,Here is the situation:We have multiple offices in 6 different countries. Is it safe to have a single forest, single domain with multiple sites? would AD replication be affected for things like DNS ,...
View ArticleCross site replication of DCs only happen among sites that is defined in...
Cross site replication of DCs only happen among sites that is defined in sitelink objects ?
View Article