Newest 'domain-controller' Questions

Q&A for system and network administrators

Adding a physical secondary domain controller backup to our virtual engineering environment

Here's a fun one. I have a secondary domain controller that I have taken a backup of and converted to a virtual machine. I've added this to our cloud engineering environment (an exact mirror of the ...

There is no Domain Controller in Add/Remove role

Recently i faced a very strange problem with my Active directory (Windows server 2003) and i asked a question here but nobody could help: Domain Controller not working till i make a ipconfig /renew ...

Exchange - use all domain controller servers

We have an environment with 3 domain controllers (let’s call them DC1, DC2 and DC3). DC1 and DC2 are Windows 2008r2, DC3 is a Windows 2016. Lately I realized that my Exchange 2010 doesn’t work when I ...

Backup, Modify and Restore of Active Directory

Is there an easy way to do a backup, modify and restore of an active directory instance? More specifically, I'm looking to do a backup, then change all references of DC=foo,DC=com to DC=foo,DC=dev so ...

Can Alfresco join a domain (or use cifs without typing passwords)?

I have a windows 2012 domain. I am trying Alfresco 5.1 COMMUNITY that should be able to show windows servers a passwordless cifs share. I first would like to ask if it is really possible. Then I would ...

Domain Controller not working till i make a ipconfig /renew

I have a strange problem that i can't undrestand why it is happening, the problem is my Domain Controller doesn't response and i can't access the host by local domain for example: nagios.amd.local ...

Can a workstation be added to a domain without granting local administrator rights?

The question is specifically about whether a domain admin can be restricted by local system security policy. We've been asked by a client if our closed systems (Windows 10 Pro) can be added to their ...

Can't shutdown on UPS Power

I have very strange problem. I can't shutdown, pm-suspend, reboot my computer on UPS power. It just freeze, when I am executing these commands. Computer continue working, I can close programs. UPS ...

No internet connection on Synology DSM and no connection between diskstations (using active directory)

I have connected our new Synology Diskstation to our active directory according to the FAQ/tutorial. It gets connected and seems to work fine. I can ping the machine in the network and I can see the ...

Windows 2008 AD DC across two subnets

I have two private subnets 10.9.1.0/24 10.9.137.0/24 The 10.9.1.0/24 was there at first and I created an Active Directory Domain Controller using MS Windows 2008R2 with the IP 10.9.1.10. The router ...

authenticate external DC with two way trust using local DC, using asp.net ActiveDirectoryMembershipProvider

I am trying to authenticate users from two DCs ( there are a two way trust between them) by using one DC connection. Details our local DC is 2way trusted with external DC, all our applications are ...

Domain Controller was not recognized when trying demote another domain controller

When I try show the domain controllers with the command: nltest /dclist:domain.local I'm getting the following in the command prompt: DC1.domain.local [DS] Site: .... DC2.domain.local ...

Samba primary domain controller issues with migrated system

I have a server running Ubuntu 16 at home. It has been with me a while and started out at the time of Ubuntu 12. It has been migrated by simply moving the drives to a new server hardware setup a ...

Giving permissions to Virtual Service Accounts on domain controllers

The service I'm implementing will run on a domain controller, so I'd like it to have minimal privileges. Ideally, it would simply run as Local Service. However, it needs to be able to: monitor ...

User GPO not showing in gpresult

I have a GPO that maps a drive for users. I have tested it and it works for a newly created test user. Settings are: User Configurations > Pref > Windows Settings > Drive Maps : SETTINGS The issue: ...

How to share a folder on windows server 2008?

I have a Windows Server 2008 on my virtual machine. I created a domain controller and want to share one folder with one user. If I try to connect to the folder, I should enter the Username, Password ...

In-bound traffic dropped to domain controller after RDP connection attempt on Azure

Using Azure IaaS (via ARM) I have a configuration which has some non-domain authenticated RDP gateways. These devices are used as a stepping stone onto the virtual network, which then allows onward ...

kinit: Cannot find KDC for realm

I'm trying config samba4 as domain controller following samba wiki /etc/resolv.conf : domain transbekk.lan nameserver 192.168.1.1 nameserver 192.168.1.254 /etc/hostname : domain.transbekk.lan /...

Putting a backup AD domain controller as a VM on a workstation

As a small shop (~10 PCs), we have only one physical server machine. This physical server machine runs the following two virtual machines: one AD domain controller and one "production server" (file ...

Samba4 - Active Directory Domain Controller: migrate to a lower version of Samba4?

I have Samba 4.5.1 running as an Active Directory Domain Controller. To date I have been manually compiling the latest version of Samba to keep getting the latest AD features, however it appears ...

Domain computers read policies from different domain controllers

While performing gpresult /r from command line I have noticed that the computer domain labs read policies from 2 domain controllers . The computer configuration is being read from the DC1 which is a ...

Samba AD: Bind9 won't load DLZ library anymore

I currently got a Problem with the Bind9 Backend on my Samba Domain Controller. Bind refuses to open the library Samba provides. But i can't figure out how to resolv this issu. Here is the SysLog: ...

MS DNS permissions on zones script add/remove/query

Anyone know an easy way to modify security across many zones? For example I have a hundred or so reverse pointer zones and I want to make sure a group has certain permission level on all zones. Is ...

Which Ports need to be accessible on a Domain Controller for Clients to logon? continued

With reference to one of the questions asked "Which Ports need to be accessible on a Domain Controller for Clients to logon?" I have a aligned issue being faced. Please see the following ports which ...

Setting Up multiple domain in LDAP server

I am trying to setup an LDAP server from scratch on a CENTOS 7 server. I was able to install it properly, but when it came to configuring it I am a bit stuck on the initial part. The thing is the ...

Recover from accidental Sysprep on only AD DC

Being total "genius" on newly deployed environment I ran: sysprep /oobe /generalize /mode:vm /shutdown on the wrong VM during creation of a new AD environment. To make matters worse it was run on ...

Unable to ping domain name without FQDN

The domain name consists of numbers only, example 300010100. If I try pinging the name only without FQDN, it responds back with a very odd IP address, 0.154.29.62 and giving transmit failed errors. If ...

Altaro backup warning

I have a VM, which was originally running on Windows Server 2008 R2 with the Hyper-V role. The guest was a Server 2012 which was just serving as a domain controller (a backup one to the SBS 2011 ...

Virtualization, DC,Exchange and RDS Advise

We currently have two servers which we are looking to upgrade, one is Small business server, runs exchange and hosts all our files, and the second server is a remote desktop services machine which ...

Samba Active Directory: restricting domain user access to specfic linux servers

Environment: Samba 4.5.1 active directory domain controller CentOS 7 Linux servers that are members of the domain We use the Microsoft Active Directory Users and Computers (MADUC) snap-in to ...

Windows Server 2012 R2/Hyper-V - Restoring virtualized domain controllers

It appears as if there is a large amount of conflicting or old (pertaining to Server 2008) information regarding backing up and restoring domain controllers hosted in Hyper-V. I have two domain ...

How to prevent Users in Domain installing and removing software?

I am using ADDS in my Company, using Windows server 2012 r2. Like the tittle, how to prevent instaling, removing any software for my users in their computer? I want to protect company's computers. ...

Azure active directory integration with azure app services.

I am not a Azure and Microsoft guy but there is a friend of mine who is stuck in a situation where he need user attributes like, phone, email, address, etc from Azure active directory for his ...

Domain controller not able to join client to domain

This is my environment: DC1 (PDC) - IP: 192.168.1.11/24 DC2 - IP 192.168.1.12/24 DC3 - IP 192.168.2.10/24 Subnet 192.168.1.x/24 is connected to subnet 192.168.2.x/24, and domain controllers are ...

LmCompatibilityLevel to be applied to client, domain controller or both?

I'd like to apply LmCompatibilityLevel = 5 to my domain but I am not sure if this is to be applied to all clients (via GPO), domain controllers only or to both. I am a little confused as the TechNet ...

Domain users cannot change password if domain name is written before username

we have multiple sites every site has RODC and Headoffice has two RWDC 2008 r2 and 2012 std . clients are win 7 and win 10 . domain users cannot change their domain password error the security ...

Server 2012 R2 DC promotion fails with NTDS Replication

I am in process of trying to promote a Member server as a DC in a remote site. there is a firewall between the sites that has all the correct rules in place according to How to configure a firewall ...

Tips on setting up AD Infrastructure for two disjoint networks for a classroom environment

I'm doing a class which involves security\malware testing and therefore want to isolate my labs to their own network with no routing to the main site. I want to be able to set policies, create users, ...

How does Windows decide which IP address to use with AD DC communication?

I have a weird problem. I am working on setting up "Sites and Subnets" properly, so that my AD clients connect to proper DC (instead of one on opposite side of the globe). To do this, I started ...

Cannot Join to AD DC via samba

I'm trying to join my CentOS 7,64 bit server to an AD DC and I'm using the following command: # net ads join -U <username> -S <target server> Enter <username's> password: But after ...

Win Server 2012 - Backup Domain Controller Failure

Recently our PDC, which was windows server 2003, failed. The backup dc was possibly not setup correctly before this failure happened. The backup dc, which is now our PDC is not functioning correctly ...

How to assign user is a local admin of corresponding computer through GPO?

I'm trying to assign user is a local admin of corresponding computer through GPO. My case is I have 3 computers: A, B, C. And 3 users : a, b, c. I need assign a, b, c is local admin of corresponding ...

How to allow an user to modify any system settings in Domain with Windows Server 2012?

I created a domain with windows server 2012. I logged in with an user account. And with default, this account cant access to Remote Desktop setting, LAN setting, ... and any system settings. I don'...

Is it possible to change the NetBIOS Uppercase and Lowercase letters?

During the domain setup process we accidentally put the NetNIOS as OURCOMPANY. the management requested us to make it as OurCompany instead. is that possible or we need to reinstall everything again!...

Can't join AD Domain, DCs DNS entries faulty

I have a AD-DC (Windows 2012 R2, 172.16.4.1/21), which manages a local domain. I've tried joining that domain with a client (Windows Server 2012 R2, 172.16.5.130), but get the following error message (...

Error recovering Local SID

What is fine : LDAP is alright, and can be accessed with phpLdapadmin without problem. LDAP hybris95home.local contains "dn=admin,dc=hybris95home,dc=local" value. What is wrong: Using net ...

Start (spare) stand alone Windows 2012 R2 Essentials after long offline period

A stand alone windows 2012 R2 essentials server was used to control a technical installation. Essentials was used (afaik) because of license reasons. The server is its own domain controller (and is an ...

DC Stuck in Promotion Limbo

I have a Windows Server 2012 R2 Standard box that I was trying to set as a second domain controller, but ran into some problem and now it's stuck in promotion limbo. I cannot promote it because I get ...

Moved DC Server and all FSMO Roles, Demoted old DC, but now it can't connect

I moved the DC FSMO roles to a new DC (2012 R2) server, seemed like everything was fine, then I demoted the old one as I was having issues. Then once it was demoted, I can no longer connect to the AD ...

Both Domain Controllers believe that they are the PDC and FSMO owners

We have 2 DC's in the environment, 1 VM in Hyper-V and 1 Physical Server for redundancy and backup fail over. Last week the (C:) OS HDD in the Physical Server just died and the Server crashed. The ...
Translating... 0%