Computer Account Logon
Hi, i have a quick question. How often does a "computer account" (not to confused with a user logon) logon against a DC? I've been reviewing security logs and i've noticed quite frequent computer account logins (4624). Those logon events do not…
The primary DNS of domain server is configured as local IP, unable to access the website
The domain server is 2012 R2 datacenter The IP of the domain server is 10.10.8.254/24, the gateway is 10.10.8.1, and the primary DNS is set to 127.0.0.1 or 10.10.8.254. Both of them have been tried, but the standby DNS is not configured. In this case,…
migrate-frs-to-dfsr-sysvol
Hi, What's the prerequisite to migrate the FRS to DFSR for sysvol replication? Source link: https://social.technet.microsoft.com/Forums/windowsserver/en-US/432d60fb-db6a-41b7-a2f3-d588d80f16f3/migrate-frs-to-dfsr-sysvol?forum=winserverDS
rename-old-2008r2-dc-and-give-new-2016-dc-the-old-ones-name-certificate
Hello, I am planning to upgrade a domain that has DCs running 2008R2 to 2016 this weekend. One of the DCs has an TLS /SSL certificate and I want to keep using this cert that has the FQDN of the old DC on one of the new 2016 DCs. My plan is to rename…
DNS _sites shows entries of demoted sites and DCs
Hi all, I've demoted several 2003 Servers during the last few months in our customer AD, moved subnets and succesfully deleted sites under ADSS. So far, so good, but in DNS I can still see entries under _sites and nameserver domain properties tab. …
Convert-a-global-group-to-local
Hi, I'm unable to convert a global group to local? Should I create new group? Source link: https://social.technet.microsoft.com/Forums/windowsserver/en-US/e7a8eea2-9611-4b42-adf7-e1c3143c5f95/convert-a-global-group-to-local?forum=winserverDS
Impact in Active Directory Certificate Service - upgrade domain and forest functional level
Hi, May i know if there will be any impact on AD CS (which is installed on a different server, domain joined. Certs are being used for Exchange Server) if i will upgrade the domain and forest functional level? Currently my functional levels are Windows…
removing-write-all-properties-from-ou-security-permissions
Hi all I faced an issue recently which the Domain users on my domain can delete, enable and disable other users when I investigated the issue I found that the authenticated users group on the targeted OU had the following permission: 1: List all…
If there is no bridgehead server
Hello, Let's say we have a site A with 2 domain controllers. There is no specified bridgehead server in this site. This site is a member of a site link. Which server will be used for replication over this site link? Is there any way to show which…
Export Active Directory Security group with Department Name to CSV File
Dears, I have active directory security group name "XXX" it has almost 300 user accounts. I need to export all the users to CSV file and I need AD command to do this job and bring all the user accounts with their department names for each…
upgrade additional 2008 ad server
Hi In our environment we have 2012 r2 DC Server with all the roles in it We also have 2008 r2 server that function as secondary DC , we would like to upgrade it to Server 2012 R2 Is there anything I should do except upgrading OS ? Source…