Re: [ActiveDir] dynamic disks

2003-04-01 Thread John Hicks/MIS/HQ/KEMET/US
Partition Magic has worked well for me in the past John Hicks | KEMET Electronics Corporation | Network Engineer Phone: 864-228-4473 | E-mail: [EMAIL PROTECTED] | AOL IM: ipaq1978 [ Mailing: 2835 KEMET Way  Simpsonville, SC 29681 USA ] "Pelle, Joe" <[EMAIL PROTECTED]> Sent by: [EMAIL

RE: [ActiveDir] Synchronization with Unix and Oracle

2003-03-27 Thread John Hicks/MIS/HQ/KEMET/US
I believe Microsoft MetaDirectory should handle this Amit Zinman <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 03/27/2003 10:02 AM Please respond to [EMAIL PROTECTED] To [EMAIL PROTECTED] cc Subject RE: [ActiveDir] Synchronization with Unix and

RE: [ActiveDir] Port Numbers

2003-03-24 Thread John Hicks/MIS/HQ/KEMET/US
It is listed towards the middle of the page, 3389 "Salandra, Justin A." <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 03/24/2003 10:35 AM Please respond to [EMAIL PROTECTED] To "'[EMAIL PROTECTED]'" <[EMAIL PROTECTED]> cc Subject RE: [ActiveDir] Port Numbers Plus I don

RE: [ActiveDir] Port Numbers

2003-03-24 Thread John Hicks/MIS/HQ/KEMET/US
Yes this is true, here is a good article that discusses AD replication over firewalls, gives you port numbers for everything you will need http://www.microsoft.com/technet/ittasks/tasks/adrepfir.asp?frame=true "Salandra, Justin A." <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 03/24/2003

Re: [ActiveDir] Port Numbers

2003-03-24 Thread John Hicks/MIS/HQ/KEMET/US
Terminal Services: port 3389 VPN: Port 1723 for PPTP, 46 for GRE, 1701 for L2TP "Salandra, Justin A." <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 03/24/2003 10:07 AM Please respond to [EMAIL PROTECTED] To "ActiveDir (E-mail)" <[EMAIL PROTECTED]> cc Subject [ActiveDir] Port

Re: [ActiveDir] DNS replication question

2003-03-10 Thread John Hicks/MIS/HQ/KEMET/US
Are you running AD integrated zones or standard? If you are running standard you would setup a secondary zone in the child domain that pulls from the Primary in the root domain. If you go into the properties of the zone on each server you can set the zone transfer properties. Put in the names and

RE: [ActiveDir] Remove a Local Security Template

2003-03-07 Thread John Hicks/MIS/HQ/KEMET/US
ed?  I don't think this would get it  Thanks though -Original Message- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED] Sent: Friday, March 07, 2003 3:26 PM To: [EMAIL PROTECTED] Subject: Re: [ActiveDir] Remove a Local Security Template You can delete the security.sdb fi

Re: [ActiveDir] Remove a Local Security Template

2003-03-07 Thread John Hicks/MIS/HQ/KEMET/US
You can delete the security.sdb file out of \\Winnt\security\database directory. You then run secedit /refreshpolicy  {policy type}. We had good luck using this on Win2000 workstations to flush a local policy that had been created on them. <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 03/

[ActiveDir] Single domain in separate sites

2003-01-31 Thread John Hicks/MIS/HQ/KEMET/US
I have a test network that consists of the following Site 1 (Connected to internet via Linksys Router) DC1 = Win2k DC, GC, IIS, DHCP, DNS(Standard Primary), SQL 2000, Exchange 2000, holds all FSMO roles VPN-1 = Win2k member server, vpn server DC2 = .Net 2003, IIS 6, DNS LAP2 =  WinXP LAP3 =

RE: [ActiveDir] Internet Locator Server???????????????????

2003-01-27 Thread John Hicks/MIS/HQ/KEMET/US
There is an option for the internet locator service under add remove windows components on Win2K server. We use it here for Netmeeting. I believe the component is listed with DHCP, DNS. etc. Hope this helps Amit Zinman <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 01/27/2003 11:24 AM

RE: [ActiveDir] OT: Exchange 2000

2003-01-22 Thread John Hicks/MIS/HQ/KEMET/US
r you install Exchange, BEFORE the initial reboot.  I hope this helps with your problem.  As a side note, I did NOT install Exchange on a DC, it was a member server.     Travis Riddle   -Original Message----- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED]] Sent: Tuesday, Januar

RE: [ActiveDir] VNC and Terminal Services

2003-01-21 Thread John Hicks/MIS/HQ/KEMET/US
Does anyone know of any big security issues with Ultra VNC or any other VNC products. Ultra VNC looks like a good product. We currently use PCAnywhere 10.5 and it is not cheap. I am trying to find ways to save my org some software costs. Thanks John Hicks | KEMET Electronics Corporation | Net

RE: [ActiveDir] OT: Exchange 2000

2003-01-21 Thread John Hicks/MIS/HQ/KEMET/US
ur problem.  As a side note, I did NOT install Exchange on a DC, it was a member server.     Travis Riddle   -Original Message----- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED]] Sent: Tuesday, January 21, 2003 7:58 AM To: [EMAIL PROTECTED] Subject: [ActiveDir] OT: Exchange

RE: [ActiveDir] OT: Exchange 2000

2003-01-21 Thread John Hicks/MIS/HQ/KEMET/US
0 First of all - out of personal preference - -I would NOT put Exch on a DC in AD. Just my preference - but I wouldn't do it. Too much going on --- on both the DC and on the mail server                 -Original Message-----                 From: John Hicks/MIS/HQ/

[ActiveDir] OT: Exchange 2000

2003-01-21 Thread John Hicks/MIS/HQ/KEMET/US
I am in the process of setting up Exchange 2000 on one of our DC's and when I finish the install and reboot, I receive an error that a service failed to load. The Exchange information store is the service that will not start. I did some searches on the error and found little info. I tried uninstal

[ActiveDir] AD Security

2002-12-30 Thread John Hicks/MIS/HQ/KEMET/US
I am in the process of testing rights for our remote LAN Admins and have a couple questions. I have created an OU for the MFG plant, created a local security group in the OU and created a user that is a member of that group in the OU. I added all but full control on the OU for the group I created.

Re: [ActiveDir] GPO Content list

2002-12-20 Thread John Hicks/MIS/HQ/KEMET/US
I have a great Excel spreadsheet that contains all the settings, we used it for our GPO deployment. Let me know if you would like a copy. John Hicks | KEMET Electronics Corporation | Network Engineer Phone: 864-228-4473 | E-mail: [EMAIL PROTECTED] | AOL IM: ipaq1978 [ Mailing: 2835 KEMET Way  

RE: [ActiveDir] AD attributes

2002-12-20 Thread John Hicks/MIS/HQ/KEMET/US
inal Message- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED]] Sent: Friday, December 20, 2002 9:17 AM To: [EMAIL PROTECTED] Subject: [ActiveDir] AD attributes I am trying to change the way accounts in AD are displayed after creation. Currently the display name automatically us

[ActiveDir] AD attributes

2002-12-20 Thread John Hicks/MIS/HQ/KEMET/US
I am trying to change the way accounts in AD are displayed after creation. Currently the display name automatically uses the First,Initial, Last name. I am trying to set the property to make it use the logon name by default and am having some problems. I can make it use only the first name or only

[ActiveDir] AD attributes

2002-12-16 Thread John Hicks/MIS/HQ/KEMET/US
Can someone tell me what Attribute value I can set for the CN=User Display/createDialog to have the full name of a user populated with the User Logon name instead of a combination of "First, last, initials" during new user creation. I have been able to make this value populate with just first, or

[ActiveDir] AD display specifier

2002-12-12 Thread John Hicks/MIS/HQ/KEMET/US
I am working on an AD/NDS project and have run into a problem. We are using MSDSS to sync AD and NDS. When I create an ID in the AD side it constructs the display name as the full name of the account. I am trying to find the displaySpecifier that will enable me to have the display name use the log

Re: [ActiveDir] Moving users between domains within same forest VIASCRIPTING

2002-12-10 Thread John Hicks/MIS/HQ/KEMET/US
You have the webadmin tool from Microsoft. Best part is that it is free. Here is a URL to a group that focuses on it.  http://groups.msn.com/WebAdminToolUpdate/_homepage.msnw?pgmarket=en-us John Hicks | KEMET Electronics Corporation | Network Engineer Phone: 864-228-4473 | E-mail: [EMAIL PRO

Re: [ActiveDir] Folder Redirection

2002-11-21 Thread John Hicks/MIS/HQ/KEMET/US
You can write a VB script to do reg writes to the keys that control this. We had to do this with our deployment, I will try to find the script that we used. John Hicks | KEMET Electronics Corporation | Network Engineer Phone: 864-228-4473 | E-mail: [EMAIL PROTECTED] | AOL IM: ipaq1978 [ Mailin

[ActiveDir] AD Replication

2002-11-21 Thread John Hicks/MIS/HQ/KEMET/US
Is there a way to change the default intrasite replication of AD? Thanks John Hicks | KEMET Electronics Corporation | Network Engineer Phone: 864-228-4473 | E-mail: [EMAIL PROTECTED] | AOL IM: ipaq1978 [ Mailing: 2835 KEMET Way  Simpsonville, SC 29681 USA ]

[ActiveDir] MSDSS problem

2002-11-20 Thread John Hicks/MIS/HQ/KEMET/US
I have a test AD network that is being used to get ready for our AD deployment. I installed MSDSS on main DC, the install went fine, but for some reason when I try to create a new session to sync with NDS it fails to find the NDS tree. I made the needed DNS entries for the netware server. Has anyo

RE: [ActiveDir] AD Move Users script

2002-11-15 Thread John Hicks/MIS/HQ/KEMET/US
quot;;   # Bind to the TARGET Container (OU) my $Container = Win32::OLE->GetObject($TargetContainer); # "pull" the object from where it is to where I'm at... $Container->MoveHere($UserObject,$RelativeName); -Original Message- From: John Hicks/MIS/HQ/KEMET/US

RE: [ActiveDir] AD Move Users script

2002-11-15 Thread John Hicks/MIS/HQ/KEMET/US
Object($TargetContainer); # "pull" the object from where it is to where I'm at... $Container->MoveHere($UserObject,$RelativeName); -Original Message- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED]] Sent: Wednesday, November 13, 2002 1:49 PM To: [EMAIL PROTE

RE: [ActiveDir] AD Move Users script

2002-11-13 Thread John Hicks/MIS/HQ/KEMET/US
  Rick J. Jones -(NDE) National Desktop Engineering - -Headquarters RTC4 LAB 2461D -Exchange IM ID:[EMAIL PROTECTED] -Phone 425-580-8061   -Original Message- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED]] Sent: Wednesday, November 13, 2002 8:22 AM To: [EMAIL PROTECTED] Subject:

[ActiveDir] AD Move Users script

2002-11-13 Thread John Hicks/MIS/HQ/KEMET/US
I am working on a script to move users from the default users container to OU's that we specify. The goal is to be able to run an nlist from Novell to a text file and then have the script move the users in each text file to their designated OU's. I have looked around at a couple different places a

[ActiveDir] AD interoperability with NDS

2002-11-12 Thread John Hicks/MIS/HQ/KEMET/US
Looking for anyone who has implemented AD and NDS together. We are currently working on this in our test network. Our test network consists of 2 Win2k servers and 1 Netware 5.1 server. We are also running Edir 8.6.2 and Account Manager. I have a few questions on how the interoperability works betw

RE: [ActiveDir] OT: DMZ server security

2002-10-24 Thread John Hicks/MIS/HQ/KEMET/US
rom magic."  ---  Arthur C. Clarke -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of John Hicks/MIS/HQ/KEMET/US Sent: Thursday, October 24, 2002 8:46 AM To: [EMAIL PROTECTED] Subject: [ActiveDir] OT: DMZ server security Hello All, I have been put

[ActiveDir] OT: DMZ server security

2002-10-24 Thread John Hicks/MIS/HQ/KEMET/US
Hello All, I have been put in charge of developing security policies for all of our DMZ servers. I am fairly new to constructing security policies, I have been reading through mainly SANS and Microsoft security documents. They have yielded good things to consider, but I was wondering if anyone he

RE: [ActiveDir] OT:RIS and Servers

2002-10-21 Thread John Hicks/MIS/HQ/KEMET/US
at yet, though.   If anybody else has some insight into cloning DCs whole, I'm all ears - always interesting to hear what works for other folks.   Dave -----Original Message- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED]] Sent: Monday, October 21, 2002 2:53 PM To: [EMAIL PROTECTE

[ActiveDir] OT:RIS and Servers

2002-10-21 Thread John Hicks/MIS/HQ/KEMET/US
We are getting ready to upgrade to AD in the next couple of months and we have to build 15 new DC's. Does anyone know if there are any problems creating a ghost or sysprep image on one machine and then dumping to the 14 other DC's without causing chaos. Thanks John Hicks | KEMET Electronics

RE: [ActiveDir] Disable IE via GPO

2002-10-16 Thread John Hicks/MIS/HQ/KEMET/US
A copy of that would be great. Thanks John Hicks | KEMET Electronics Corporation | Network Engineer Phone: 864-228-4473 | E-mail: [EMAIL PROTECTED] | AOL IM: ipaq1978 [ Mailing: 2835 KEMET Way  Simpsonville, SC 29681 USA ] "Rick Kingslan" <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED

Re: [ActiveDir] AD and NDS

2002-10-04 Thread John Hicks/MIS/HQ/KEMET/US
Thanks for the feedback. That reconfirms my thoughts on the product. The 8.6.2 version has the same problems that we were having with 8.5.2. I am glad to see that we are not the only ones having problems with this sorry product. Thanks David Adner <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECT

RE: [ActiveDir] AD and NDS

2002-10-04 Thread John Hicks/MIS/HQ/KEMET/US
pretty straight forward. I have also done a few larger Netware 5.1 à AD migrations where we used MSDSS and then used Aelita’s (my company) Domain Migration Wizard to manage the enterprise project.   Any specific questions about MSDSS?   Kevin   -----Original Message- From: John Hick

[ActiveDir] AD and NDS

2002-10-04 Thread John Hicks/MIS/HQ/KEMET/US
We are working on deploying active directory in our environment. We currently use Netware 5.1 and NDS. We are trying to use Novell account management and Edir 8.6.2 in conjunction with AD. We are having a ton of problems getting this setup to work in our test lab. Has anyone else had any experienc

RE: [ActiveDir] OT: Security Template Docs

2002-10-03 Thread John Hicks/MIS/HQ/KEMET/US
s are applied in order of appearance in the file. Have a play, and see what happens! I!/d guess that the !.do not allow permissions to be replaced!/ would override the !.replace existing permissions!/ at a higher level.   Darren.       -Original Message----- From: John Hicks/MIS/HQ/K

RE: [ActiveDir] OT: Security Template Docs

2002-10-03 Thread John Hicks/MIS/HQ/KEMET/US
!/t you? When looking at file/registry permissions the option regarding propagation of settings is on the first page, before you have the opportunity to modify the DACL.   Darren.     -Original Message- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED]] Sent: 03 October 2002

[ActiveDir] OT: Security Template Docs

2002-10-03 Thread John Hicks/MIS/HQ/KEMET/US
I posted a message earlier about a security template that I am working on. I am going by a article on the SANS site and it is based on manually applying NTFS and registry permission's on each machine. I am trying to accomplish the same thing through a security template. I looked through the basicd

RE: [ActiveDir] OT: Security Templates

2002-10-03 Thread John Hicks/MIS/HQ/KEMET/US
er machine without any problems.   Darren.     -Original Message----- From: John Hicks/MIS/HQ/KEMET/US [mailto:[EMAIL PROTECTED]] Sent: 03 October 2002 15:54 To: [EMAIL PROTECTED] Subject: [ActiveDir] OT: Security Templates   I am in the process of creating a baseline security template for our Win2k

[ActiveDir] OT: Security Templates

2002-10-03 Thread John Hicks/MIS/HQ/KEMET/US
I am in the process of creating a baseline security template for our Win2k servers based off of a SANS guideline. We do not have AD in place yet, so the templates will be applied to each server after it is built. I am setting NTFS permission's on the root of the C: drive and in the doc I am going

RE: [ActiveDir] OT: Utilities needed

2002-09-20 Thread John Hicks/MIS/HQ/KEMET/US
ipt.Echo objService.TargetInstance.Name _            &  " is " & objService.TargetInstance.State _                & ". The service previously was " & objService.PreviousInstance.State & "."    End If Loop   Regards, Richard     -Original Message- From: John Hicks/MIS/HQ/

RE: [ActiveDir] OT: Utilities needed

2002-09-20 Thread John Hicks/MIS/HQ/KEMET/US
rom: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of John Hicks/MIS/HQ/KEMET/US Sent: Friday, September 20, 2002 7:52 AM To: [EMAIL PROTECTED] Subject: RE: [ActiveDir] OT: Utilities needed I did not think that I could use perfmon to monitor services. How would you use it to monitor service

RE: [ActiveDir] OT: Utilities needed

2002-09-20 Thread John Hicks/MIS/HQ/KEMET/US
ctiveDir] OT: Utilities needed You should be able to monitor the Elapsed time and CPU use of any process - Elapsed time isn't pretty (seconds it's been running for) but may do the job...   They're both under the Process counter   dave -----Original Message- From: John H

RE: [ActiveDir] OT: Utilities needed

2002-09-20 Thread John Hicks/MIS/HQ/KEMET/US
rtified Trainer  MCSE+I on Windows NT 4.0  MCSE on Windows 2000  MVP [Windows NT/2000 Server] "Any sufficiently advanced technology is indistinguishable from magic."  ---  Arthur C. Clarke -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Beha

[ActiveDir] OT: Utilities needed

2002-09-19 Thread John Hicks/MIS/HQ/KEMET/US
I have been having problems with our Lotus Notes administrators making claims of services not running and using extremely high cpu. Of course I am never able to see the problem happening because they will kill the service. Sorry had to vent. I am looking for a utility that I can monitor the uptime

RE: [ActiveDir] Service Pack 3

2002-09-17 Thread John Hicks/MIS/HQ/KEMET/US
I have been running SP3 on 15 Production Lotus Notes servers and have seen no problems as of yet. Only problem I am aware of is a problem with local installs of Dell's ITAssistant. Hope this helps "Connelly, Cliff" <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 09/17/2002 05:23 PM Please

Re: [ActiveDir] AD and NDS

2002-07-19 Thread John Hicks/MIS/HQ/KEMET/US
lease respond to ActiveDir                 To:        <[EMAIL PROTECTED]>         cc:        (bcc: John Hicks/MIS/HQ/KEMET/US)         Subject:        Re: [ActiveDir] AD and NDS What DS level are you at on NDS. I did what you are doing and had problems with certains E-directory levels.  

[ActiveDir] AD and NDS

2002-07-18 Thread John Hicks/MIS/HQ/KEMET/US
We are in the process of migrating our NT 4 domain to AD. We currently use NDS as our primary directory service. We are using Account Manager to migrate our users and computer accounts into the AD domain form the NT 4 domain. We experienced problems getting IDs created in Novell Console 1 and MMC

Re: [ActiveDir] Logon scripts

2002-07-18 Thread John Hicks/MIS/HQ/KEMET/US
Yes, I beleive that you would have to run it with Elevated priveleges. Charlie Hope-Lang <[EMAIL PROTECTED]> Sent by: [EMAIL PROTECTED] 07/18/2002 04:16 AM Please respond to ActiveDir                 To:        [EMAIL PROTECTED]         cc:        (bcc: John Hicks/MIS/HQ/KE