active directory

  1. W

    Windows Server 2019 CA registry value

    I'm learning window ad-certificate using some document but that is change the Validity Period Units value so I search the that but I couldn't found what is that value. The document is change the value "4" from "2". It is have some mean ? I found the what is Validity Period but, I didn't find the...
  2. O

    Windows 10 windows server 2012

    Hi All, This is not anymore a new question here but it seems others do have different issues on arriving to this problem. I installed AD before and everything worked out fine until i decided to demote the DC and remove and reinstall AD and DNS. After reinstalling again the AD and DNS, and...
  3. Active Directory Domain Services wont install and shows error 0x80073701

    When I go into "Server Manager" in windows server 2016 then click "Manage" then click "Add role or Feature" I click "Active Directory Domain Services" (ADDS) then I click "Install" after some time later it says "The request to add or remove features on the specified server failed. Installation...
  4. 4056318 - Guidance for securing AD DS account used by Azure AD Connect for directory synchronization - Version: 1.0

    Revision Note: V1.0 (December 12, 2017): Advisory published. Summary: Microsoft is releasing this security advisory to provide information regarding security settings for the AD DS (Active Directory Domain Services) account used by Azure AD Connect for directory synchronization. This advisory...
  5. 4033453 - Vulnerability in Azure AD Connect Could Allow Elevation of Privilege - Version: 1.0

    Revision Note: V1.0 (June 27, 2017): Advisory published. Summary: Microsoft is releasing this security advisory to inform customers that a new version of Azure Active Directory (AD) Connect is available that addresses an Important security vulnerability. Continue reading...
  6. S

    Restrict local admin rights

    Hi, Wonder if this is possible. Currently GPO is used to push out policy to allow an AD group local admin rights on PC's. The requirement is to further restrict access by using GPO (and possibly restricted groups) so that only the owner of the laptop has local admins to their PC. This needs to...
  7. Read Only Domain Controller , How to prevent add and modify users & GPO

    Dear at Microsoft Answers ,,, I have created RODC in my office connected to my PDC , the installation steps i took from Microsoft docs and Alternetive Websites ... The issue is that the RODC can Add/Modify/Delete Users & Groups , how to prevent that ? i want the RODS be able to read only . HINT...
  8. F

    Windows Server 2016

    Hello, how to block the installation of programs in AD?
  9. J

    Domain functional level

    I work for a large agency spanning metropolitan area. AD has 1 forest with multiple domains with trusts. I am working on upgrading our domain to W2016 The current AD servers are W2008, functional level windows2008R2forest Q. I was told we can't upgrade our domain to windows 2016 servers until...
  10. SAMBA traffic encryption works

    I am glad to see that encryption finally works between SAMBA file server on a Linux machine and Windows client. It did not work with Windows 7 clients. It definitely works with Windows 10 clients. Here is the proof: In case you don't know, SAMBA can also be used as Active Directory Domain...
  11. Should You Send Your Pen Test Report to the MSRC?

    Every day, the Microsoft Security Response Center (MSRC) receives vulnerability reports from security researchers, technology/industry partners, and customers. We want those reports, because they help us make our products and services more secure. High-quality reports that include proof of...
  12. T

    Server Migration

    Hi Guys I’m doing my first solo migration (sbs to server 2016). I’ve seen it done a while back and half been involved so I just need some clarification. Of course there are guides online to follow which ill do, however they don’t specify one key thing - at which point does the old server in my...
  13. S

    Windows Server 2016 - Remote Access Solution

    Hi! Good day, We have a server with windows server 2016 standard with AD, DHCP and DNS roles installed in our main office and acting as a File server, our problem is how we can connect or link multiple branch office and client workstation from remote location to our main office network? (I have...
  14. Announcing Windows Server 2019 Insider Preview Build 17677

    Hello Windows Insiders! Today we are pleased to release a new build of the Windows Server vNext Long-Term Servicing Channel (LTSC) release that contains both the Desktop Experience and Server Core in all 18 server languages, as well as a new build of the next Windows Server Semi-Annual Channel...
  15. L

    DFSR Not Replicating

    Hi All, I have this issue with a farm of 5 Domain Controllers (Windows server 2012 and 2016). DFSR is not replicating SYSVOL folder to any of the of the domain controllers. Here is a quick topology of the servers. DC01 - Primary Domain Controller DC02 - Child Domain Controller DC03 - Child...
  16. Announcing Windows Server 2019 Insider Preview Build 17623

    Hello Windows Insiders! Today we are pleased to release the first build of the Windows Server 2019 Long-Term Servicing Channel (LTSC) release that contains both the Desktop Experience as well as Server Core in all 18 server languages, as well as the first build of the next Windows Server...
  17. 4056318 - Guidance for securing AD DS account used by Azure AD Connect for directory synchronization - Version: 1.0

    Revision Note: V1.0 (December 12, 2017): Advisory published. Summary: Microsoft is releasing this security advisory to provide information regarding security settings for the AD DS (Active Directory Domain Services) account used by Azure AD Connect for directory synchronization. This advisory...
  18. 4056318 - Guidance for securing AD DS account used by Azure AD Connect for directory synchronization - Version: 1.0

    Revision Note: V1.0 (December 12, 2017): Advisory published. Summary: Microsoft is releasing this security advisory to provide information regarding security settings for the AD DS (Active Directory Domain Services) account used by Azure AD Connect for directory synchronization. This advisory...
  19. 4033453 - Vulnerability in Azure AD Connect Could Allow Elevation of Privilege - Version: 1.0

    Revision Note: V1.0 (June 27, 2017): Advisory published. Summary: Microsoft is releasing this security advisory to inform customers that a new version of Azure Active Directory (AD) Connect is available that addresses an Important security vulnerability. Continue reading...
  20. Windows 10 Hiding an active user account in Windows 10?

    I am trying to hide an active user account from sight in:: Desktop> Right-click This PC> Manage> Local Users and Groups> Users> Q. Is there a way to make one of these user accounts hidden from sight without the account itself being disabled? (Tried to add an image but this site apparently...