Category Archives: Active Directory

ADMT and FSMO roles

I recently ran a cross forest ADMT migration, because of subnetting conflicts between the two companies, not all domain controllers were accessible. In order to migrate SID history, the ADMT migration server must contact the FSMO master of the source … Continue reading

Posted in Active Directory, Migration | Leave a comment

Check for existing user in active directory

This powershell script below allows me to take an input file that looks like this (input-users.csv) SamAccountName ksk34 xyz444 jsmith bjones and make an output file that will look like this (out.csv) ksk34,yes xyz444,no jsmith,no bjones,yes The client I was … Continue reading

Posted in Active Directory, PowerShell | Leave a comment

Deployment of Certificates to Workstations for Wireless Authentication

There are three things to do… 1. Setup Group Policy to auto enroll workstations and servers with certificates 2. Install Enterprise Certificate Authority 3. Setup NPS to allows devices that have certificates issued by the CA to be allowed to … Continue reading

Posted in Active Directory, PKI, Windows Server | Tagged , | Leave a comment

ICANN Board Votes to Launch New Generic Top-Level Domains

What does this mean to my active directory installation? Well if you have installed your active directory domain with an internal dns name of .local, as many of us have, then you will want to purchase this domain when/if a … Continue reading

Posted in Active Directory, PKI | Leave a comment

2008 R2 Domain Controllers unable to communicate to root DNS servers

I upgraded a domain with two local domain controllers from 2003 to 2008 R2. I installed two new dcs, then moved the fsmo roles over and flipped ip addresses. That way i did not have to deal with issues of … Continue reading

Posted in Active Directory, Windows Server | Leave a comment

Set Inheritable Permissions on user accounts

This script (I put in a pdf format, click here set-inheritance ) I put on a temp folder on a admin machines, and ran it. I called it set-inheritance.vbs Note the line: strOU = “OU=TestOU,” All the users in this ou have … Continue reading

Posted in Active Directory, Exchange, VBScript | Leave a comment

PowerShell set the manager on users

I came up with the idea that if we set the “manager” on a user in AD, the users can look at resources, and see who the owner is. The manager seems like a natural attribute to look at….. In … Continue reading

Posted in Active Directory, PowerShell | 1 Comment