Browse by Tags

Tagged Content List
  • Wiki Page: How Do I Synchronize Groups from Active Directory Domain Services to FIM

    One basic requirement for an identity management system is the ability to import and process identity data from an external system. This guide walks you through the main building blocks that are involved in the process of populating Microsoft Forefront™ Identity Manager (FIM) 2010 with group data...
  • Wiki Page: Active Directory Replication Issues – Basic Troubleshooting Steps (Single AD Domain in a Single AD Forest)

    Most of Active Directory Replication issues are usually caused by one of the following: DNS registration / resolution issues Blocked or Filtered Active Directory replication ports Tombstoned Domain Controllers This article describes the basic troubleshooting steps that can be followed to troubleshoot...
  • Wiki Page: Free Active Directory User Maintenance Tool

    LUMAX Type: GUI Create reports of important AD user information like Real Last Last Logon Time, Lockout State, Creation Date, Password Expiry Date, Fine Grained Password Policy State and much more... Convenient ways to highlight, filter, sort and export these information . Lumax is a free...
  • Wiki Page: Windows Server 8 Beta: Installing Active Directory Domain Services Role

    Because Windows Server 8 Beta has a lot of new things in administration interface so you may feel it is quite difficult to initially use. In this article, I will write very basic step-by-step guide in installing Active Directory Domain Services role: In the Server Manager, click Manage > Add...
  • Wiki Page: Extract Members of an AD Group to Excel

    All, My first post on wiki. I have been writing VB for 2 years now and still learning. PowerShell seems lot easier than VB because of inbuilt commandlets. I am posting my favourite VB script that gets group membership of users in excel. This is required for those who are involved in SOX auditing...
  • Wiki Page: "The Parameter Is Incorrect" or "Access Is Denied" Message When You Want To Approve A Computer To Boot From Network

    When you attempt to approve a computer, you will get an access denied message (unless WDS is also a domain controller); the deployment service does not have permissions on the Active Directory where it is attempting to create the object. Look at the following figure: -OR- To resolve...
  • Wiki Page: Time Service Configuration on DC with PDC Emulator FSMO Role

    Table of Contents Scenario How to configure Time service on DC with PDC Emulator Make DC with PDC Emulator to follow its own CMOS Time settings. Configure External Time service on DC holding PDC emulator role Changing the time service configuration on previous DC holding PDC Emulator. ( So that it will...
  • Wiki Page: Active Directory Domain Naming Considerations

    Applies to all versions of Windows Server capable of creating Active Directory Domain Services (AD DS) domains. Note All domain names discussed in this article refer to DNS domain names (hostnames), unless specifically referred to as something else, such as NetBIOS...
  • Wiki Page: Active Directory Federation Services (AD FS) Overview

    Active Directory Federation Services (AD FS) makes it possible for local users and federated users to use claims-based single sign-on (SSO) to Web sites and services. You can use AD FS to enable your organization to collaborate securely across Active Directory domains with other external organizations...
  • Wiki Page: Active Directory On-Premises to Windows Azure Active Directory Windows PowerShell Script

    Summary This script enables you to migrate your enterprise AD from purely an on-premise AD to a federated AD and linking your on-prem AD with the AD in Azure. This script is run on both your ADFS servers, and your ADFS-Proxy servers. The script displays a menu of the tasks needed to install and...
  • Wiki Page: LDAP over SSL (LDAPS) Certificate

    Applies to Windows Server 2003, Windows Server 2003 R2, Windows Server 2008, Windows Server 2008 R2, Windows Server 2012 Table of Contents Reasons for Enabling LDAPS Enabling LDAPS for domain controllers using a single-tier CA hierarchy Enabling LDAPS for domain controllers using a multi-tier CA...
  • Wiki Page: How to Install and Configure Windows Server 2012 for SharePoint 2010

    I am going to explain how to install and configure a Microsoft Server 2012 for a operational SharePoint 2010 server . I already wrote a BlogPost about SP2013 if interessted: Installing Microsoft SharePoint 2010 on Microsoft Windows Server 2012 Configuring Microsoft SharePoint 2010 ...
  • Wiki Page: Quest Powershell for Active Directory

    Guys, Believe me or not? If yes and you are a MS-Directory Professional try it. Benefits: 1. Where WAN connectivity is very slow you can work through command line. 2. Prevent accident deletion until you put exact deletion command. 3. You can automate you’re your AD environment. 4. Commands...
  • Wiki Page: WMI Filter for Windows Operating Systems

    Windows Server 2012 DC select * from Win32_OperatingSystem where Version like "6.2%" and ProductType = "2" Windows Server 2012 select * from Win32_OperatingSystem where Version like "6.2%" and ProductType = "3" Windows 8 select * from Win32_OperatingSystem...
  • Wiki Page: Three Ways for Disabling Server Manager at Start-up for Windows 2012

    Table of Contents 1.Using Server Manager. 2.Using GPEDIT.MSC for local GPO 3. Using GPMC for GPO. 1.Using Server Manager. Go to Manage -> Server Manager Properties -> Do not start Server Manager automatically at logon. 2.Using GPEDIT.MSC for local GPO Computer Conf...
  • Wiki Page: Event IDs when a new user account is created on Active Directory

    Applies to: Windows Server 2008, 2008 R2 and 2012 Requirement: You would like to investigate who has created a new user account on Active Directory. Prerequisite: Auditing has to be configured on Domain controllers, especially, “ Audit account management ” policy must be configured and...
  • Wiki Page: The Fun in DNS Debug Logging - Read the DNS Debug Log

    Table of Contents DNS Debug logging To Read the DNS Debug Logs DNS Debug logging Why would you use DNS' debug logging? The answer is to track down problems with DNS queries, updates or notification errors. In my case we were in a process of transitioning windows 2003 domain controllers...
  • Wiki Page: How to Restrict Enterprise Admins From Child Domain

    Applicable To : Windows Server 2003, 2008, 2008 R2 and 2012. Disclaimer : To know how only ! Setup : AD.TESTLAB.COM and PROJECT.AD.TESTLAB.COM Requirement : Restrict Enterprise Admins from Child Domain ? Details: When child domain is introduced, by default Enterprise Admins...
  • Wiki Page: Active Directory: Active Directory Domain Services (AD DS) Commands and Scripts

    Here are some useful commands and scripts for administering Active Directory. For more information please see Active Directory Domain Services Command Reference . Reference : userAccountControl Table of Contents User Group Computer Site and Subnet Active Directory User Identify...
  • Wiki Page: How to Create Two Way Transitive Trust – Windows Server 2008 R2

    Let’s see how to build a “Two way Transitive Trust“ There are different types of trusts, Am going to explain only about “Two way Transitive Trust“ where both the organizations will have all the permissions over the organizations This will be the Initial Step if your going to do a cross forest migration...
  • Wiki Page: Move (Transfering or Seizing) FSMO Roles with AD-Powershell Command to Another Domain Controller

    Table of Contents Actions Required Resolve the "How-To" Troubleshooting Actions Required Resolve the "How-To" References References Overview / Survival Guide Overview / Survival Guide Media Type/Task/Feature 1 References Troubleshooting Actions Required Resolve the "How-To"...
  • Wiki Page: Event ID when a user is added or removed from security-enabled UNIVERSAL group such as Enterprise Admins

    Applies to: Windows Server 2008, 2008 R2 and 2012 Requirement: You would like to investigate who has added or removed a specific Domain User in Enterprise Admins group Prerequisite: Auditing has to be configured on Domain controllers, especially, “ Audit account management ” policy must be...
  • Wiki Page: Capacity Planning for Active Directory Domain Services

    This topic is originally written by Ken Brumfield, Senior Premier Field Engineer at Microsoft, and published in the TechNet library at http://technet.microsoft.com/en-us/library/jj651019.aspx . This version on the TechNet Wiki allows users to supplement the content with information based on their own...
  • Wiki Page: NETDOM Commands

    NETDOM Commands to query FSMO role holders. 1. How to query FSMO role holders for a forest ? > netdom query fsmo (query results all FSMO role holders PDC\IM\RID\Schema\Domain Naming Master) 2. How to query FSMO for particular domain ? > netdom query /domain:test.com fsmo ...
  • Wiki Page: Create a New Server 2012 AD Forest Using Powershell

    Here are some simple step by step instructions for creating a new Active Directory Forest using Server 2012 and Windows PowerShell. 1. Launch powershell from the server you are setting up as your first DC in the new forest 2. Install the windows roles and features for Active Directory...
Page 4 of 6 (145 items) «23456
Can't find it? Write it!