[ActiveDir] ADAM

2006-09-07 Thread James Carter
Hello - I know Microsoft ADAM supports LDAP referrals but I wanted to know if it's possible to create them and if so how.   I'd like to create a container in the directory that returns contents based on a referral to another part of the directory.   Thanks   Jim Do you Yahoo!? Everyone is

[ActiveDir] Active Directory Delegation & Management tools...

2006-08-23 Thread James Carter
  Hi everyone,   Does anyone have any experience with a product called Active Administrator from Scriptlogic?   How does it compare with products such as NetIQ DRA or Quests Active Roles?   What type of questions should I be asking the vendor regarding this product?   thanks   James

RE: [ActiveDir] OT: DNS entry

2006-08-07 Thread James Carter
record for a rough idea of when the deletion occurred and try and move from there by looking at logon events, again if you have auditing enabled.   If you're not using AD-Integrated DNS, then none of the above will really help.    --Paul- Original Message - From: James

RE: [ActiveDir] OT: DNS entry

2006-08-07 Thread James Carter
e whenChanged attribute on the tombstoned record for a rough idea of when the deletion occurred and try and move from there by looking at logon events, again if you have auditing enabled.   If you're not using AD-Integrated DNS, then none of the above will really help.    --Paul--

[ActiveDir] OT: DNS entry

2006-08-04 Thread James Carter
  We had a static Server DNS entry deleted over the weekend.   Is there anyway to find out who deleted this entry? This is a Windows 2003 R2 server/domain   thanks   JAmes Do you Yahoo!? Next-gen email? Have it all with the all-new Yahoo! Mail Beta.

[ActiveDir] DNS Scavenging

2006-08-01 Thread James Carter
Hi,   Windows 2003 R2 Single Domain/ FFL, AD Intergrated DNS   I am thinking about configuring DNS Scavenging, I was reading the AD Cookbook and it mentions 'Configure Non Refresh and Refresh Intervals as necessary'   What does this mean? what do you normally set your environment to?   does

[ActiveDir] OT: HP disk array expansion

2006-07-26 Thread James Carter
Hi,   I have a HP ML370 Proliant Server. It currently has 4 x 36GB in a RAID 5 set.   I want to upgrade the disk capacity of this server. I have bought 4 x 300gb disks as replacements.   At present I have 4 x 36GB disks in the server. I was told I could replace one disk in the RAID with a 300

[ActiveDir] AD Sites Rename

2006-07-13 Thread James Carter
Hi,   I need to rename some of my AD Sites, is this likely to cause any issues I am unaware off?   I use DFS if thats any help.   Windows 2003 Single Domain/Forest FFL.   thanks James Do you Yahoo!? Next-gen email? Have it all with the all-new Yahoo! Mail Beta.

Re: [ActiveDir] DNS reverse lookup problem

2006-06-14 Thread James Carter
nd understand the implications of scavenging before starting down that path.   Al     On 6/14/06, James Carter <[EMAIL PROTECTED]> wrote: Basically, I have a web application which connects to a server outside of our network. This application does a reverse lookup on the client bef

Re: [ActiveDir] DNS reverse lookup problem

2006-06-14 Thread James Carter
f record depending on how the records are created/updated, etc.   What makes you interested in PTR records? Can you shed some light on that?   On 6/13/06, James Carter <[EMAIL PROTECTED]> wrote:   Hi,   Windows 2003, FFL Single Domain, Active Integrated DNS on two DC's  

[ActiveDir] DNS reverse lookup problem

2006-06-13 Thread James Carter
  Hi,   Windows 2003, FFL Single Domain, Active Integrated DNS on two DC's   I have an issue with DNS and the reverse zone. Some computers have multiple PTR records e.g:   Computer1   192.168.6.5 Computer1   192.168.6.66   I don't know why this is happening, I noticed that the DHCP Proper

Re: [ActiveDir] Restricted Groups

2006-06-02 Thread James Carter
delegation.  Can you expand on your requirements? On 5/31/06, James Carter <[EMAIL PROTECTED]> wrote: Sorry I should clarify, by User I mean an IT Helpdesk Account Creator   Single Domain  Windows 2003, FFL. I have delegated rights to various Security Groups for privileges in the

Re: [ActiveDir] Restricted Groups

2006-05-31 Thread James Carter
Sorry I should clarify, by User I mean an IT Helpdesk Account Creator   Single Domain  Windows 2003, FFL. I have delegated rights to various Security Groups for privileges in the domain.   JamesJames Carter <[EMAIL PROTECTED]> wrote:Hi,   I am thinking of making all the builtin groups apa

[ActiveDir] Restricted Groups

2006-05-31 Thread James Carter
Hi,   I am thinking of making all the builtin groups apart from the Administrators group part of the Restricted Groups function.   I don't want any user to add themselves to the Account, Backup,Server, Print Operators group for any length of time.   Or does anyone know of a simpler way to ach

[ActiveDir] OT: Disk Capacity

2006-05-20 Thread James Carter
Hi,   I have a Compaq ML370 Proliant Tower Server, our lab department are creating digital images that are 30mb per pic so I need lots of storage space.   I am thinking of putting in 4x300gb Ulta320 SCSI drives in a RAID5 set, does anyone see any performance problems with this?   Does anyone

[ActiveDir] Delegate Permissions not populating to every object

2006-05-19 Thread James Carter
Hi,   Windows 2003 FFL, Single Domain.   I have an issue whereby I have delegated permissions to the top of an OU Tree with 8 OU's beneath it. There are approx 15 objects.   I delegated these permissions 6 months ago, but our new helpdesk team are complaining now that every so often they

[ActiveDir] Export group membership of particular OU

2006-05-18 Thread James Carter
Hi There,   I have been askedon short notice to provide a list of mail enabled security groups and their members. All the groups are listed in the same OU.   Does anyone have a script which will enable me to do this? or provide me with pointers   J Yahoo! Messenger with Voice. Make PC-to-Ph

RE: [ActiveDir] Query regarding Windows Time Service

2006-05-05 Thread James Carter
thanks joe, that seems like a straightforward command to run.   a lot more simpler than the following kb (I'm looking at the external time source)   http://support.microsoft.com/kb/816042/   Does anyone know why this would be different?joe <[EMAIL PROTECTED]> wrote: I would certainly che

RE: [ActiveDir] Query AD for Smartcard enforced users

2006-05-04 Thread James Carter
Thanks - this worked a treat!Kurzdorfer Michael TSgt 107CF/SCBN <[EMAIL PROTECTED]> wrote: I am using this thru ADUC.  Using  LDIFDE you could use: (Change out the -s and -d to your site) ldifde -f SCLEnabled.ldf -s 107ARW-DC-01 -d "OU=107 ARW,OU=NYNIAG,OU=ANG,DC=ang,DC=ds,DC=af,DC=mil"

RE: [ActiveDir] Query AD for Smartcard enforced users

2006-05-04 Thread James Carter
Wow, thanks joe, I really appreciate the effort you've made to respond.   joe <[EMAIL PROTECTED]> wrote: Two quick items.   First the query can be simplified a little, there is an unneeded level with the & operand in there. You only need something of the format (&(something)(something)).

RE: [ActiveDir] Query AD for Smartcard enforced users

2006-05-04 Thread James Carter
Thanks for responding Michael.   What would be the full command if you don't mind me asking?   JCKurzdorfer Michael TSgt 107CF/SCBN <[EMAIL PROTECTED]> wrote: (&(&(objectCategory=user)(userAccountControl:1.2.840.113556.1.4.803:=262144))) will do the trick    //SIGNED//Michael Kurzdor

[ActiveDir] Query AD for Smartcard enforced users

2006-05-04 Thread James Carter
I would like to find a way to extract all the users who have 'Smart card is required for interactive logon' ticked within their account.   I have looked at LDIFDE and CSVDE but I can't see how I can get retrieve this list   thanks   James Love cheap thrills? Enjoy PC-to-Phone calls to 30

[ActiveDir] Query regarding Windows Time Service

2006-05-03 Thread James Carter
I have a query regarding the Windows Time Service. Our environment is Windows 2003 FFL, Single Domain. We have a Network Time Server which I have configured our PDCe to use. Having read other posts I also configured our Core DC's to use this Time Server so that if the PDCe failed, I could just

RE: [ActiveDir] "No Terminal License Server available"

2006-04-13 Thread James Carter
Thanks for your response,   I think keeping if I keep the old DC as a member server, it will be a pain to have to manually configure every workstation & server to discover the existing license server. Having the TS licensing server on a DC appears to make the discovery alot more automated.   So

[ActiveDir] "No Terminal License Server available"

2006-04-12 Thread James Carter
Hi, Single Windows 2003 domain I demoted our DC to a member server and now we have an issue whereby when I open Terminal Server Licensing manager, I get a message "No Terminal Server License Server is available in the current domain or workgroup" Anyone know why I receive this from demoting a DC

[ActiveDir] R2 Schema..

2006-04-03 Thread James Carter
  Hi,   I have a root domain with 4 child domains. I only want to upgrade the child domain to Windows 2003 R2.   I assume all I need to do is run adprep /forestprep and then adprep /domainprep for each child domain I want upgraded to R2 or does it matter?   thanks   J New Yahoo! Messenge

[ActiveDir] DC Demotion & AD Site Configuration

2006-03-30 Thread James Carter
Hey guys, Single Windows 2003 Domain. I have 5 core sites and 70 branch offices. Each of the core sites host 2 x dc's and each branch office has a DC. The design is legacy from NT4 whereby we had a BDC at each of the branch offices as they had slow WAN links at the time. During the upgrade, eac

[ActiveDir] Renaming RDN & Displayname using ADMOD

2006-03-21 Thread James Carter
  Hi,   I am trying to rename a user's RDN & Displayname.   I have tried using the following command using ADMOD   admod -b "cn=HR Asia Pacific Mailbox,ou=GMail,ou=AP,dc=SUNINT,dc=com" -rename "HRAP IT Mailbox" "displayname::HRAP IT Mailbox"   This renames the RDN, but it does not rename t

[ActiveDir] Configuring PDC Emulator for time source

2006-03-15 Thread James Carter
security risks with the link provided above?   What would the impact be if our PDCe is not already configured?   thanks   James Carter Yahoo! Travel Find great deals to the top 10 hottest destinations!

[ActiveDir] Forest Recovery Question

2006-03-12 Thread James Carter
function be required in a single domain forest recovery? I would thought not.   thanks   James Carter           Yahoo! Mail Bring photos to life! New PhotoMail makes sharing a breeze.