Browse by Tags

Tagged Content List
  • Wiki Page: Interforest Migration with ADMT 3.2 - Part 3

    Table of Contents Configuring the Contoso.com and Wiki.com Domains for sIDHistory Migration Disabling Firewall User Account Migration 1-Normal Way 2- Read Users from a file 3- Merging Users Group Account Migration Security Translation - Local Profiles 1- Normal Way 2- Read Local Profiles from a file...
  • Wiki Page: Active Directory: Get-ADUser Default and Extended Properties

    The PowerShell Get-ADUser AD Module cmdlet supports the default and extended properties in the following table. Many can be assigned values with the Set-ADUser cmdlet. In the table, default properties are shown with the property name highlighted in cyan . Extended properties are highlighted in pink...
  • Wiki Page: Active Directory Administration One Liners

    Table of Contents 1.DCDIAG 2. NSLOOKUP 3. Repadmin 4. W32TM 5. NLTEST 6. PortQuery 7.How to check the delegation 8. DNSlint 9.RUNAS 1.DCDIAG To deploy an additional domain controller: Dcdiag /test:dcpromo /DnsDomain:domain_name.com /ReplicaDC To deploy a child domain: Dcdiag /test...
  • Wiki Page: AD FS 2.0: How to Set the Primary Federation Server in a WID Farm

    Summary When you deploy an Active Directory Federation Services ( AD FS) 2.0 Federation Server farm, you have the option of choosing Windows Internal Database (WID) or SQL to store the configuration information. When you select WID, which is the default in the Initial Configuration Wizard GUI...
  • Wiki Page: AD FS: How to Invoke a WS-Federation Sign-Out

    Summary In Active Directory Federation Services (AD FS), we support a WS-Federation passive sign-out request to the relying party security token service ( RP-STS ) which invokes a sign-out from each web application accessed during the current browser session. The identity provider security token...
  • Wiki Page: AD CS Step by Step Guide: Two Tier PKI Hierarchy Deployment

    This step-by-step guide describes the steps needed to set up a basic configuration of Active Directory® Certificate Services (AD CS) in a lab environment. AD CS in Windows Server® 2008 R2 provides customizable services for creating and managing public key certificates used in software security systems...
  • Wiki Page: AD FS 2.0: Migrate Your AD FS Configuration Database to SQL Server

    The AD FS configuration database stores all the configuration data that represents a single instance of AD FS 2.0 (also known as the Federation Service). You can store this configuration data in either a Microsoft SQL Server® database or using the Windows Internal Database. The Windows Internal Database...
  • Wiki Page: Active Directory Certificate Services (AD CS) Public Key Infrastructure (PKI) Frequently Asked Questions (FAQ)

    AD CS PKI FAQ Table of Contents AD CS PKI FAQ Where should I post my AD CS questions? Which blogs should I follow for AD CS? Where can I find more information about AD CS Events in the Event Viewer? What are the changes for AD CS between Windows Server 2008 and Windows Server 2008 R2? Will you post...
  • Wiki Page: Reduce the Operational Risk When Defending the Open Network with Microsoft PKI

    Table of Contents Introduction Protecting an Open Network Limitations of Traditional Network Security Security Solution Requirements Solution: Microsoft PKI How Microsoft PKI Works Certificate services IPSec support Encrypted e-mail communication Wireless security Centralized management features Scenarios...
  • Wiki Page: Active Directory: Active Directory Domain Services (AD DS) Commands and Scripts

    Here are some useful commands and scripts for administering Active Directory. For more information please see Active Directory Domain Services Command Reference . Reference : userAccountControl Table of Contents User Group Computer Site and Subnet Active Directory User Identify...
  • Wiki Page: Design Considerations for Delegation of Administration in Active Directory

    T his article is based on an article in the Microsoft TechNet Library and is presented here to enable those outside of Microsoft who are interested and knowledgeable on this topic to improve it. To read the official Microsoft topic on this subject, see Design Considerations for Delegation of Administration...
  • Wiki Page: Troubleshooting slow operating system boot times and slow user logons (sbsl)

    Table of Contents Overview Costs of boot and logon delays Defining the problem This article describes Microsoft Support experiences in troubleshooting boot and logon delays. The goal of this content is to create awareness among IT administrators, support professionals, and consultants, about the...
  • Wiki Page: Troubleshooting Certificate Autoenrollment in Active Directory Certificate Services (AD CS)

    These are the steps to troubleshoot autoenrollment problems. The basis for this article was produced by a veteran field troubleshooting engineer, Roger Grimes. The article assumes that certificates that a user or machine should be receiving automatically from an issuing CA server on the network are...
  • Wiki Page: How to View or Delete Active Directory Delegated Permissions

    Table of Contents Active Directory Users and Computers console Dsrevoke Tool LIZA Active Directory Security, Permission and ACL Analysis Delegate Batch File LDP.exe ACLDiag.exe command AdFind Tool Dsacls Tool QUEST PowerShell Commands for Active Directory AD ACL Scanner 1.2 Active Directory Users...
  • Wiki Page: Active Directory: Requirements For Creating Objects

    Certain requirements must be met when creating objects in Active Directory. These can be user accounts, groups, computers, or other classes of objects. This article documents some of these requirements. Errors will be raised if any of these requirements are not met. You can use this article to troubleshoot...
  • Wiki Page: Upgrade to Active directory 2012

    1. The minimum functional level must be at least Windows Server 2003:- 2. No more DCPROMO:- After installing the AD DS server role on Windows Server 2012, where is the option to configure the DC? http://blogs.technet.com/b/activedirectoryua/archive/2013/01/28/after-installing-the-ad-ds...
  • Wiki Page: Réplication d'Active Directory avec des pare-feux (fr-FR)

    Table of Contents Introduction RPC dynamique complet Comment fonctionne le RPC RPC limitée Pare-feu de filtrage UUID RPC Encapsulation IPSec Promotion de contrôleur de domaine avec des Tunnels PPTP Promotion de contrôleur de domaine avec IPSec et les certificats d'ordinateur Comparaison des deux...
  • Wiki Page: Active Directory Replication Over Firewalls

    Table of Contents Introduction Full Dynamic RPC How RPC Works Limited RPC RPC UUID filtering firewalls Encapsulating Inside IPSec Domain Controller Promotion with PPTP Tunnels Domain Controller Promotion with IPSec and Machine Certificates Comparison of the Two Methods of Promotion PPTP tunnels IPSec...
  • Wiki Page: Troubleshooting Domain Join Error Messages

    This article describes some of the common domain join error messages and possible steps that need to be performed when you encounter these errors joining a client machine (server or workstation) to a domain. In the table below, you will find error messages associated with domain join and possible...
  • Wiki Page: My TechNet WIKI@Biswajit

    Table of Contents DNS Group Policy Object Domain Controller Migration TRUST Windows Time LDAP Account Locked out Netsh Registry DSQUERY Quest Powershell DHCP Radius/NPS My Forums Treads DNS 1. Dns-design-dns-zones-for-organization-units 2. Dns-read-only-console-on-2003 3 ...
  • Wiki Page: Difference Between Forwarder and Stub Zone

    Both the zones are used for name resolution but when we are used stub and when we are used forwarder. I am trying to say as small as possible. Ex: We need a trust between domain A and domain B and am a system admin of domain A and in future any changes happen in domain B, we may not get those update...
  • Wiki Page: Working with Active Directory using PowerShell ADSI adapter

    Introduction PowerShell is very useful for automating Active Directory. It allows to quickly and relatively easy automate mundane actions or perform same operations with many objects. PowerShell provides very broad set of methods to work with Active Directory. There is some of them: Microsoft...
  • Wiki Page: How to Create Two Way Transitive Trust – Windows Server 2008 R2

    Let’s see how to build a “Two way Transitive Trust“ There are different types of trusts, Am going to explain only about “Two way Transitive Trust“ where both the organizations will have all the permissions over the organizations This will be the Initial Step if your going to do a cross forest migration...
  • Wiki Page: Active Directory: DSQUERY Commands

    DSQUERY Commands to query AD objects:- 1. How to find all members for a particular group. dsget group "<DN of the group>" -members 1a. How to find all groups for a particular member (including nested groups) dsget user "<DN of the user>" -memberof -expand...
  • Wiki Page: Best practices for Hardening Windows Domain Controllers

    Best practices for Hardening Windows Domain Controllers 1.Decrease the Domain Controller Attack Surface. You can use the SCW ( http://technet.microsoft.com/en-us/magazine/2008.03.securitywatch.aspx ). 2. Enable auditing. By auditing changes made on domain controllers, you can identify who...
Page 1 of 23 (558 items) 12345»
Can't find it? Write it!