Paul Bergson [M...0/3 03 Jun 2010
Hi guys, I'm trying to create AD security groups based on a custom property, say EmployeeType, that property has two values: Employee/Contractor. I want to create one group for Employee, one group for Contractor based on that custom property value, so that all existing users can be put in those two buckets and new added users can be automatically put in the corresponding bucket
Iain Carlin0/1 03 Jun 2010
I have seen reference to ADWS and am wondering whether it works like a regular web service - i.e. can I use it in a .Net application? If so, can I add a web reference as I normally would for other web services? Is there any documentation on ADWS besides the general overview stuff that is available at http://technet.microsoft.com/en-us/library/dd391908(WS.10).aspx? Cheers,
Florian Frommhe...0/8 03 Jun 2010
Hi, Can anyone help with how can I query AD for Account containing specific word in the DisplayName. I am using Custom SSearch in AD and I have to write the LDAP query which needs to display all accounts where DisplayName contains test. Display all Accounts where DisplayName contains (Test) Sorry I'm new to LDAP and I need this to be in AD. Thank you, Lion
Meinolf@UNKNOWN...0/6 02 Jun 2010
Hi all, windows 2008 R2 I tried to add domainadmin group to the local administrators group, it tells me that the group is in the local administratrs group already. But, I ony can see the local administrator is in the administrators group. How shoud I add domain admin group to the local administrators group? thank you.
Meinolf@UNKNOWN...0/5 02 Jun 2010
Hi all, We experience replication or pdc role problem. Those DC split into 2 groups which seems lost the connection. On PDC, it can replicate and query FSMO with 5 DC. From another 5 DC, they can't telnet port 53/389, also fail to query FSMO and replication. I have setup 1 DC which plan to seize the roles from the PDC. DNS/WINS are running normal, but DHCP can't assign IP to client
Meinolf@UNKNOWN...0/4 02 Jun 2010
Hello Everyone, We have introduced a 2008 R2 DC into our environment, migrated all the roles to it, and for now are keeping some 2003 DCs for a mixed mode domain functionality environment.. We do have some older machines (NT) that currently we cannot get rid of and I am seeing some authentication errors on the 08 DC (IDs 5722, 5805). Since we still have 03 DC's, the NT machines
melry880/1 02 Jun 2010
Everyone, I just wanted to add that this is still a highly recommended path from Microsoft. I read above in other posts that it was not so I started to read the Windows 2008 AD Resource Kit. The resource kits states that if you are using a forest with multiple domains that it is "strongly" recommended to also use an empty root. This is listed on page 215 under "Best Practices". I am
Phillip Windell0/5 02 Jun 2010
Hi there. I've got two Win2k domains with trusts setup. How would I go about syncing thw WINS servers? I need to browse between different sites etc from the trusted domains. Also, when I access a resource on the trusted domain (from either domain) I get promted for a username and password - have turned off SID filtering but it still happens, any ideas guys? Cheers.
Florian Frommhe...0/4 02 Jun 2010
What is the difference between Critical Backup & System State backup in Windows Server 2008 and which one is recommended and what are the restoration differences using these two types of backups?
Ace Fekay [MVP ...0/6 02 Jun 2010
Hi, In the disaster recovery plan we want to create a leg site and put a DC in it. Here are some questions on how to achieve this smoothly. 1. Should I create the new site/subnet first and then promote a server in that subnet/site to DC, or should I promote a server in existing site/subnet and then move this DC to the new site/subnet? 2. When promoting a server to DC, should the
Venkat0/1 02 Jun 2010
What is the difference between Critical Backup & System State backup in Windows Server 2008 and which one is recommended and what are the restoration differences using these two types of backups?
Paul Bergson [M...0/2 02 Jun 2010
Hey all, Hope it's okay to post a federation question here becuase I didn't see a better group that fit. I'm hoping I can run the new version of FS on 2k3 and wanted to know if it's possible. If so, has anyone done it and successfully used the SSO scenario to a 3rd party web service and documented it at all? Thanks, D
Meinolf@UNKNOWN...0/6 02 Jun 2010
Hello All, We are running 2003 DC's at a 2003 Domain Functional level with a single parent and child domain (All DC's are GC's) - and are working to introduce 2008 R2 DC's but stay at the existing 2003 Domain functional level - with the idea that we will eventually raise the level to 08. I have already tested all the procedures and introduced an 08 R2 DC into the env - I am now
Meinolf@UNKNOWN...0/2 02 Jun 2010
Attention! Need an excellent event management for your business and home we must do events on your behalf with attractive Fees! Contact us :-) Rtlx Groups 61 PNS Gold Mahal, South Avani Moola Street, Madurai - 625 001, Ph No. 0452-4230735, MBL 9597766651/52 Website: www.rtlxgroups.com Email ID: rtlxgroups@gmail.com moorthy@rtlxgroups.com
Florian Frommhe...0/4 02 Jun 2010
When trying to add a new Windows Vista (hqseven) machine to a Windows 2008 network I get the following error message... "An attempt to resolve the DNS name of a DC in the domain being joined has failed. Please verify this client is configured to reach a DNS server that can resolve DNS names in the target domain." In the past year, I have added two XP, one Windows 7, and another
Miha0/3 02 Jun 2010
Hi, Using ldapsearch on AD 2008 R2 I get the following error: C:\Domino123>ldapsearch -h office-department.company.com (cn=Test*) ldap_search: resultCode 1 (Operations error) ldap_search: errorMessage: 00000000: LdapErr: DSID-0C090627, comment: In order t o perform this operation a successful bind must be completed on the connection., data 0, vece On AD it
Phillip Windell0/8 01 Jun 2010
Guys, I have one specific DC that is loosing time. If I restart the server or the w32time service, the time is correct for the first minute. After that their is a skew of 11 minutes between this DC and the PDC Emulator (and all other DCs) as a result my clients are also being affected. Windows 2003 Sp2 Please Help! Thanks
kj [SBS MVP]0/3 01 Jun 2010
Hey there, Is there a limitation on number of objects that can be added to a AD group? I'm referring to both Security and Distribution group. Thanks, Sleepless in Seattle
drm0/7 01 Jun 2010
I am trying to create a replica of an ADAM instance (Windows 2003 sp2) under AD LDS (Windows 2008 sp1). I am using the same domain account that I used to create the ADAM instance. I can use this account to create a stand alone AD LDS instance and even a replica of another AD LDS instance. When I try to create a replica of the ADAM instance, everything looks good in the wizard but when I
Robert Toms0/1 01 Jun 2010
Greetings all. I was hoping to get some opinions/advice on whether my migration plan below would be technically sufficient from an AD perspective. I'm attempting to migrate users from DomainABC (source) to DomainXYZ (destination) along with their SIDs so that users in the new domain (XYZ) can access resources in the old domain (ABC). I have two domains, DomainABC (original, source
Paul Bergson [M...0/7 01 Jun 2010
Good Day, I am new to the SAN game and have been mulling over the implications of Clones of a DC. We thought that it might be a good idea to clone our DCs at strategic points in our network life cycle as a disaster recovery technique. Then I began to wonder, "What happens in AD if I bring online a clone?" My worries are that the clone will be "DC minus a month" of AD changes.
David0/3 31 May 2010
Can you point to any good article which talks about Windows Server 2008/2008R2 AD backup and restore strategy. Is there any recommendation like weekly full backup and rest everyday systemstate backup??
ZEDA0/2 31 May 2010
Hi, I'm writing a script to move the computer object from the default computer container to the OU which belongs to a particular site where the computer resides. If i run this script as logon script i.e when Domain Admin is logged on the computer objects moves fine . But as a startup script , it doesnt work throws error General Access denied . I know this is a permission
zacaria@UNKNOWN...0/1 30 May 2010
hi, exuz for bad english u most frist calculate the inactive time. In order to determine the period of inactivity, two times are required. The first is the system's up time and the second is the up time when the last user input occurred. If the second value is subtracted from the first, the duration of inactivity is known. Obtaining the first value. The time of the last user input can be
Rahisuddin Shah0/3 29 May 2010
Hello, I am trying to use this script provided by MS to create a site on my windows 2008 DC: However, it does not work. I get an error saying:There is a naming violation for line: Set objSite = objSitesContainer.Create("site", strSiteRDN) objSite.SetInfo Here is the script. Is it not intended to work in windows 2008? Thanks! strSiteRDN = "cn=Ga-Atl-Sales"
Meinolf@UNKNOWN...0/6 29 May 2010
currently i have a 2003 domain controler running all roles, I've added a 2008 ad server have not moved the roles to this server yet, however it is running DNS. I also have a 2000 sp4 server domain controler as our Exchange server which is running Exchange 2003 sp2. Goal here is to add another 2008 server and 2010 Exchange, as your aware I cannot do this with a 2000 domain
kabbott via Win...0/1 29 May 2010
I think I have a fix. But can anyone explain what is happening here? I have found a solution (not mine, from other forums) that, so far, seems to be working for this problem. (refer to thread http://www.winserverkb.com/Uwe/Forums.aspx/windows-server-ad/201003/1 for full problem) I will post it here for other seekers. Also, if anyone (Ace maybe?) can explain what might be going on, I'd
Chris M0/2 28 May 2010
We are currently upgrading all of our users to windows 7. One thing we have noticed is that they are no longer getting alerts to reset their password before it expires. If they log into a Server 2003 or an XP machine, they get the alert. Please let me know if there is a fix for this problem. Thanks.
Meinolf@UNKNOWN...0/12 28 May 2010
Hi all, We have win2k3 DCs and exchange 2003 Sp2 envir. and the functional level is windows 2003. We want to introduce the one windows 2008 R2 domain controller. Is there any problem when windows 2008 R2 domain controller and windows 2003 domain controller exist together? Any cautions? Thank you.
Meinolf@UNKNOWN...0/3 28 May 2010
I am running a server 2003 AD domain, with Vista client computers. I would like to use the folder redirection GP for the vista computers. I only get the options to redirect Application Data, Desktop, My Documents, and Start Menu. How do I get the options for the Vista specific folder redirection GPO. Thanks
Meinolf@UNKNOWN...0/3 28 May 2010
Hi I am trying to log on with terminal services; with administrator. I have active Directory. It was working till i installed ad. I think I need log on locally. Chris -- chrisrob300 ------------------------------------------------------------------------ chrisrob300's Profile: http://forums.techarena.in/members/225233.htm View this thread: http://forums.techarena.
Meinolf@UNKNOWN...0/3 28 May 2010
Hello all, i had two servers with Windows 2003 R2 SP2 One is main Domain Controller and second on is additional server A problem occurred in additional domain controller and ultimately i had to format and i installed windows 2003 OS. Now i'm not able to register this system in network with same host name. ...it shows the user already exists. When i tried to remove the computer name
itdistribuidas0/1 28 May 2010
Our domain with 3 2k3DCs is running at Windows Server 2003 Interim level. We would like to raise the functional level to Native Windows Server 2003, but we are afraid of working problems with our Proxy because it handles NTLM protocol. Does anyone know if there could be any problem? Thanks. Regards.
topokin0/3 27 May 2010
Hi, I have a computer with windows 2003 like terminal server. I would like customize the desktop for groups, how could configure it using GPO? The issue is that I want configure shortcuts for groups, some users will have its shortcuts and another users other shortcuts ... I want that each user has its shortcuts to the applications that they go to use, but it would using groups with
Joe Dunn0/2 27 May 2010
We are a simple single domain using 2003 Server. Our company is now merging with several other companies. Using AD how do I add domains of the other companies and yet have each domain be separate from the others? For example our domain would be xyz.com, now I need to add abc.com to our AD. I don't want to have abc.xyz.com - I want them both to be separate but using the same AD. I'm
Florian Frommhe...0/4 27 May 2010
When i create a snapshot, i cant see it in c:\ until and unless i mount the snapshot. Where is the snapshot located before mounting? snapshot: create Creating snapshot... Snapshot set {1e715787-0c30-441a-ac21-4b96c51849c7} generated successful** snapshot: list all 1: 2010/05/24:11:25 {b93906f4-5ce4-40a1-952f-a638414cd5a9} 2: D: {659fe8aa-c75b-4a79-ab97-cc66d16f907e} 3:
yankz230/3 27 May 2010
Hello, I am using Exchange 2007. I am looking to perform a search in Active Directory for users who are not in specific groups. Is there a way to perform this search with multiple groups in 1 search to see who is not in these groups? Ive been searching the net but haven't really found an answer. Thanks in advance -- yankz23
RC0/3 27 May 2010
Is there a way, other than editing the registry to move the event log (%systemRoot%\system32\winevt\logs\xxx.evtx) from its current location to a secondary drive on the system? Only looking to do this on my domain controllers.
Florian Frommhe...0/2 26 May 2010
Question: I am looking for pull in a new monitoring and auditing system for AD but I am unsure what to use. Any recommendations. Some of the data I absolutely want to pull: User account create/delete Account Lockouts Computer obj join and deletes users/groups/computers being moved from OU's who is logging into domain controllers. System Reboots Group Policy changes I know
thomas0/1 26 May 2010
hi friend, We ensure you 100% Pass guarantee in any IT exams like MCSE CCNA CCNP CCIE WRITTEN CCIE LAB OCP JAVA SUN MCSD CITRIX ETC. NO NEED TO GO ANYWHERE ! IT certifications without exams ! NO RISK, 100% REFUND IF FAILING TO PASS ! WE GUARANTEE YOUR SUCCESS AT THE FIRST ATTEMPT !
Chris M0/5 25 May 2010
What are the benefits of adding subnets under sites and services? I have noticed a few setups were subnets are added and others were they are not added. Can someone explain why I would want to add subnets. -- minor22 ------------------------------------------------------------------------ minor22's Profile: http://forums.techarena.in/members/224544.htm View this thread:
Andrei Ungurean...0/9 25 May 2010
Frustrating issue here: I have a windows server 2003 AD infrastructure. I Windows 7 as my company computers. I have 1 user (user A) that, when logged into the network, loses control of his screen when user B starts typing. I have made sure that IPs are not conflicting. I have created different accounts for both of them but still keep having the same bad luck. It is causing
brianwing0/1 25 May 2010
Piotr wrote on 03/11/2010 11:54 ET : > Hi, > Could you help me to fix following issue please? I
Florian Frommhe...0/3 25 May 2010
How can i confirm that the ADPREP changes have been replicated to all domain controllers in the AD Forest.
Ace Fekay [MVP ...0/10 25 May 2010
Hello, I have a problem with the authentication of users to access services. I have a domain with Windows 2008 R2 and all servers are W2008 R2. I want to add a domain user as local administrator into the server and not appears on the list, but says if it is. If I logon on that server with the domain user works fine but does not have administrator access because some complement
Meinolf@UNKNOWN...0/2 24 May 2010
Got a similar one - One 2003 DC/GC, installing second server -2008 x64. This machine happens to have two NICs - one with static address, the other disconnected but assigned by DHCP. DNS server is pre-installed on the 2008 machine, it resolves via the 2003 machine (i.e. NIC config is like: Address 192.168.1.10, mask 255.255.255.0, primary DNS 192.168.1.17 (the 2003 machine)..
Ace Fekay [MVP ...0/4 24 May 2010
Hi. Is there a way to automate the deployment of Auditing settings to the OU's in AD? I only have a handful so it doesn't have to be TOO efficient. These have to be deployed automatically (via script, command line or whatever) if at all possible. Is this possible? If so, where can I start looking? Thanks!
oilsysit0/1 21 May 2010
njp;1617226 Wrote: > Hello! I had this problem yesterday.. Today i discovered that there is a > newer versjon of ADPREP.EXE in the catalog \CMPNENTS\R2\ADPREP on CD2 of > Win2003 R2! > > The version on CD1 will NOT upgrade the schema to version 31! > > The version on CD2 fixed the problem :) Yes It work, Thank you. There are many ADPREP. but only from CD2 can fix. Thank you
Paul Bergson [M...0/14 21 May 2010
Hi, I have a replication error at one site. As the possible cause might have been a dns problem I decided to have the DC point to another dns server for it's dns information. After that change and a renewed attempt to replicate I got: ----------<quote>--------------------------------- Event Type: Error Event Source: Kerberos Event Category: None Event ID: 4 Date: 17-5-2010 Time:
Meinolf@UNKNOWN...0/2 20 May 2010
On our network, we only want a select group of desktop managers joining PCs to the domain. In addition to that, we want those managers REQUESTING to have those machines joined before they actually do so. This is because we have problems with some desktop managers moving machines around without telling us, losing track of assets, and so on. We're planning on having an automated