Hi,
Thanks for the replies.
birthDate already exists - can you take advantage of it?
Where would I find this? If it already exists I think I'd be better off
using that one.
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Sr. Consultant for Student Technology Fee
website: http://techfee.ewu.edu
I can't seem to find the birthDate attribute in any of my classes.
Looking in MMC-ActiveDirectorySchema.
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Sr. Consultant for Student Technology Fee
website: http://techfee.ewu.edu/
+--+
| 509.359.6972 ph. - 509.359.7087
it
yet). but is that the best way to do it?
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Sr. Consultant for Student Technology Fee
website: http://techfee.ewu.edu/
+--+
| 509.359.6972 ph. - 509.359.7087 fx
| 307 MONROE HALL | Cheney, WA 99004
, is this possible
and if so, How?
What I'm trying to do is set it up so that if somebody try's to authenticate
to the ADAM LDAP it passes authentication to the Active Directory Servers.
Thanks,
--
Matt Brown
Information Technology System Specialist V
Eastern Washington University
List info : http
How does ADAM integrate with a domain? Will they be completely separate
directories or can they somehow be joined together?
I'm wanting to use an X.500 name for the ADAM instance.
Thanks in advanced for the help provided,
--
Matt Brown
IT System Specialist
Eastern Washington University
List
change the DN
on them. Although I'm sure some of the things may change.
Thanks,
--
Matt Brown
Information Technology System Specialist V
Eastern Washington University
List info : http://www.activedir.org/List.aspx
List FAQ: http://www.activedir.org/ListFAQ.aspx
List archive: http
Anybody seen any good resources or info on converting OpenLDAP to Active
Directory?
Thanks,
--
Matt Brown
Information Technology System Specialist V
Eastern Washington University
List info : http://www.activedir.org/List.aspx
List FAQ: http://www.activedir.org/ListFAQ.aspx
List archive
with
repadmin, etc.
Thanks,--Matt Brown[ SELECT * FROM IT WHERE
EyeContact=True ]Information Technology
System SpecialistEastern Washington
University
wlink/events.asp.Data::
8b 01 00
c0
..À
Thanks,
--
Matt
Brown [EMAIL PROTECTED]Consultant for Student Technology
Feewebsite: http://techfee.ewu.edu/+--+|
509.359.6972 ph. - 509.359.7087 fx| 307 MONROE HALL | C
considered it. Since it's a single domain server I just take ghost
snapshots of the domain and then backup the files.
Seems to work pretty good, as it's been running solid for
about a year now.
Thanks,
--
Matt
Brown [EMAIL PROTECTED]Consultant for Student Technology
Feewebsite: http
ware... although I
considered it. Since it's a single domain server I just take ghost
snapshots of the domain and then backup the files.
Seems to work pretty good, as it's been running solid for
about a year now.
Thanks,
--
Matt
Brown [EMAIL PROTECTED]Consultant for Student Technology
not really a programmer and learned python just for this
project, had the scripts working in less than a week. If you want some info
or code samples just let me know.
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Consultant for Student Technology Fee
website: http://techfee.ewu.edu
Anybody used the security config agent and had any issues with it on Domain
Controllers... Or any recommendations?
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Consultant for Student Technology Fee
website: http://techfee.ewu.edu/
+--+
| 509.359.6972 ph
Ya, I mean the security config wizard. I've normally never had any firewall
stuff on my domain controllers... But was thinking it might be possible with
2003 SP1.
Anybody have any recommendations?
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Consultant for Student Technology Fee
website: http
on the PCs, but for some reason the
Mac's can still login. Anybody know how to stop this besides disabling the
account?
Thanks,
--
Matt
Brown [EMAIL PROTECTED]Consultant for Student Technology
Feewebsite: http://techfee.ewu.edu/+--+|
509.359.6972 ph
Worked perfectly, thanks.
Thanks,
--
Matt
Brown [EMAIL PROTECTED]Consultant for Student Technology
Feewebsite: http://techfee.ewu.edu/+--+|
509.359.6972 ph. - 509.359.7087 fx| 307 MONROE HALL | Cheney, WA
99004
the modification.
Any
ideas?
Thanks,
--
Matt
Brown [EMAIL PROTECTED]Consultant for Student Technology
Feewebsite: http://techfee.ewu.edu/+--+|
509.359.6972 ph. - 509.359.7087 fx| 307 MONROE HALL | Cheney, WA
99004+--+
Lets' say I do this... put all drives in Raid 5 or Raid 1
with the hot spare.
Any recommendations on how to partition it out.
Domain has about 25 - 30K accounts in it... so it's relatively
small.
Thanks,
--
Matt
Brown [EMAIL PROTECTED]Consultant for Student Technology
Feewebsite: http
, etc.
Will be my new
main Active Directory Server.
Thanks,
--
Matt
Brown [EMAIL PROTECTED]Consultant for Student Technology
Feewebsite: http://techfee.ewu.edu/+--+|
509.359.6972 ph. - 509.359.7087 fx| 307 MONROE HALL | Cheney, WA
99004+--+
the INTERACTIVE
group in the local workstations Administrators group.
Thanks,
--
Matt Brown
Information Technology System Specialist
Eastern Washington University
List info : http://www.activedir.org/List.aspx
List FAQ: http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail-archive.com
Honestly, not really. I know how to DCpromo the bad machine out of the
domain, but I haven't been able to figure out which DC that is. I have 4 of
them.
Thanks,
--
Matt Brown
[ SELECT * FROM IT WHERE EyeContact=True ]
Information Technology System Specialist
Eastern Washington University
Anybody have any recommended training on Active Directory? already taken
the Microsoft Windows 2003 Configuring Active Directory Services from
Global Knowledge, but am looking for the next step I guess.
Thanks,
--
Matt Brown
[ SELECT * FROM IT WHERE EyeContact=True ]
Information Technology
Title: RE: [ActiveDir] DC's not communicating with each other
Yes, I now realize that I should Never Do
that.
Thanks,--Matt Brown[ SELECT * FROM IT WHERE
EyeContact=True ]Information Technology
System SpecialistEastern Washington
University
From: [EMAIL PROTECTED]
[mailto:[EMAIL
) can connect to each other just fine.
I'm pretty sure I'm going to need to remove 1 or more of the DC's from the
domain and re-introduce them. I'm just trying to figure out if I should
remove the PDC or remove the other 3 DCs.
Thanks,
--
Matt Brown
[ SELECT * FROM IT WHERE EyeContact=True
with
doing a master reset of all passwords.
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Consultant for Student Technology Fee
website: http://techfee.ewu.edu/
+--+
| 509.359.6972 ph. - 509.359.7087 fx
| 307 MONROE HALL | Cheney, WA 99004
accounts so I can re-sync them
up also.
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Consultant for Student Technology Fee
website: http://techfee.ewu.edu/
+--+
| 509.359.6972 ph. - 509.359.7087 fx
| 307 MONROE HALL | Cheney, WA 99004
Hi,
My PDC just started acting up and is showing an error in the PDC box under
Operations Master.
The only recent change that I can think of to the server was I uninstalled
re-installed the Certificate Authority 3 or 4 times, which was installed on
the PDC.
Thanks,
--
Matt Brown
[ SELECT
to have amnesia and doesn't seem to remember that
it's the PDC
Thanks,
--
Matt Brown
[ SELECT * FROM IT WHERE EyeContact=True ]
Information Technology System Specialist
Eastern Washington University
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Dean Wells
passed replications
- They do all show in the DC diag the following:
DC=domain,DC=ewu,DC=edu
Last replication recieved from DC2 at 2005-03-23 02:00:40.
WARNING: This latency is over the Tombstone Lifetime of 60
days!
Thanks,
--
Matt Brown
[ SELECT * FROM
Because I believe my errant DC to by my PDC will that be a problem demoting
it and then re-introducing it to the domain?
Here is a screen shot of my Operations Masters...
http://www.mjbdesignz.com/temp/OM.htm
Thanks,
--
Matt Brown
[ SELECT * FROM IT WHERE EyeContact=True ]
Information
reason it's only letting me add them to the domain using a Domain
Admin account unless I pre-create the computer account in Active Directory.
I'd like to allow a group to add them, so my lab managers can add and remove
them on there own.
Thanks,
--
Matt Brown
[ SELECT * FROM IT WHERE EyeContact
.
Anybody seen this or
know of a privilege I need to set? All of my lab managers on campus have are in
the group that can add computers to the domain and it works fine for the PCs.
Thanks,
--
Matt Brown
[ SELECT * FROM IT
WHERE EyeContact=True ]
Information
Technology System Specialist
Eastern
Anybody have a script that can check the time on client machines and auto
sync them with the Domain Controller?
Thanks,
--
Matt Brown
[ SELECT * FROM IT WHERE EyeContact=True ]
Information Technology System Specialist
Eastern Washington University
List info : http://www.activedir.org
That worked great!
Thanks,
--
Matt Brown
[ SELECT * FROM IT WHERE EyeContact=True ]
Information Technology System Specialist
Eastern Washington University
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Stelley, Douglas
Sent: Tuesday, April 05, 2005
All 3 of my sites (A,B,C) have GC in them and at least 1 DC in them. All
DC's have DNS running on them.
By taking Site A down I was meaning shutting the machines off.
Thanks,
--
Matt Brown
[ SELECT * FROM directories WHERE AD OpenLDAP ]
Information Technology System Specialist
Eastern
I have 3 sites, site A has 2 DC's and site B C each have 1 DC.
When I take down site A (both DC's), the clients in Site A cannot log in.
Shouldn't they be able to log in using site B or C?
Thanks,
--
Matt Brown
Information Technology System Specialist
Eastern Washington University
List info
All DC's in all sites are GCs.
Windows 2003 Domain, all clients are Windows XP Pro SP2
Thanks,
--
Matt Brown
Information Technology System Specialist
Eastern Washington University
-Original Message-
From: John Singler [mailto:[EMAIL PROTECTED]
Sent: Monday, March 28, 2005 1:16 PM
Ok, that's my problem.. I have DNS on all DC's but only have DNS configured
to point to site A. So I really should add all sites in the DNS or have
them grab dns automatically?
Thanks,
--
Matt Brown
Information Technology System Specialist
Eastern Washington University
-Original Message
Do any of you run the windows firewall on your Domain Controllers?
If so where would I find what ports need to be open for Active Directory
DNS?
Thanks,
--
Matt Brown
[ SELECT * FROM LDAP_Servers WHERE AD OpenLDAP ]
Information Technology System Specialist
Eastern Washington University
that day as it reloads the profile from the server. Is there a
policy setting to have it synchronize the newest files / changes or something?
Thanks,
--
Matt Brown
[ SELECT * FROM
computers WHERE OS MS ]
Information
Technology System Specialist
Eastern Washington University
,
--
Matt Brown
[ SELECT * FROM computers WHERE OS M$ ]
Information Technology System Specialist
Eastern Washington University
List info : http://www.activedir.org/List.aspx
List FAQ: http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
students
Thanks,
--
Matt Brown
[ SELECT * FROM
computers WHERE OS MS ]
Information
Technology System Specialist
Eastern Washington University
Isn't that link from the Beta? There is no information on Microsoft's site
regarding the product other than through the Beta Site.
You can find the beast here:
http://download.microsoft.com/download/f/d/0/fd05def7-68a1-4f7
1-8546-25c359cc0842/limitlogin.exe
Thanks,
--
Matt Brown
[ SELECT
to be as automated as
possible to keep from doing it full time.
Thanks,
--
Matt Brown
[ SELECT * FROM active_directory WHERE userPassword = '' ]
Information Technology System Specialist
Eastern Washington University
+--+
List info : http://www.activedir.org/List.aspx
the lanman hash for OpenLDAP.
Thanks,
--
Matt Brown
[ SELECT * FROM users WHERE clue 0 ]
Information Technology System Specialist Eastern Washington University
List info : http://www.activedir.org/List.aspx
List FAQ: http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail
Title: backup script
Anybody heard anything on LimitLogon and
when it may be released?
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Consultant for Student Technology Fee
website: http://techfee.ewu.edu/
+--+
| 509.359.6972 ph. - 509.359.7087 fx
| 307
Does DNS need to be setup with Active Directory? My DNS isn't showing any
of the LDAP ports or standard stuff that shows when you have an AD
Integrated DNS. I tried deleting all the Zones and re-creating them... but
it doesn't seem to help.
Thanks,
--
Matt Brown
[ SELECT * FROM users WHERE clue
I installed it as a separate DNS first and then changed it to active
directory integrated after the domain was setup... so I'm assuming they
don't just automagically appear.
Thanks,
--
Matt Brown
[ SELECT * FROM users WHERE clue 0 ]
Information Technology System Specialist
Eastern Washington
I believe it has something to do with the NetBIOS settings on the machine
you are connecting from.
Thanks,
--
Matt Brown
[ SELECT * FROM users WHERE clue 0 ]
Information Technology System Specialist
Eastern Washington University
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL
I ended up creating a Python script that checks both directories and keeps
them in sync, including name changes, enabled / disabled accounts, ou
changes, new accounts, and account deletes.
Took me about 3 days with the first day learning Python. Seems to work
pretty good.
Thanks,
--
Matt Brown
Will send to you directly
Thanks,
--
Matt Brown
[ SELECT * FROM users WHERE clue 0 ]
Information Technology System Specialist
Eastern Washington University
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Hutchins, Mike
Sent: Thursday, December 02, 2004
You can use a program called Rhacker to
modify the Gina, then rename it, change the reg key and reboot. All there
is too it.
We use it for our computer labs on
campus to replace the Microsoft logos with our own and to add an appropriate use
alert.
Thanks,
--
Matt Brown [Matt
DCs in
our domain within 3 sites.
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Consultant for Student Technology Fee
website: http://techfee.ewu.edu/
+--+
| 509.359.6972 ph. - 509.359.7087 fx
| 307 MONROE HALL | Cheney, WA 99004
Anybody know what group I need to assign
a user so they can log on locally to a single Domain Controller and start /
stop services on the machine without being able to modify any part of active
directory?
Thanks,
--
Matt Brown
[ SELECT * FROM users WHERE clue 0 ]
Information
,
--
Matt Brown
Information Technology System Specialist
Eastern Washington University
List info : http://www.activedir.org/mail_list.htm
List FAQ: http://www.activedir.org/list_faq.htm
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
this, but its a cumbersome process and Im curious
what others are doing and how they are getting the job done.
Thanks,
--
Matt Brown
Information Technology
System Specialist
Eastern Washington
University
files and import them into AD using LDIFDE.
All passwords are handled separately
through a web page I have programmed (php/asp) that sets both OpenLDAP password
and the AD password whenever a user changes their password.
Thanks,
--
Matt Brown
Information Technology
System Specialist
csvde -r (objectClass=person) -d dc=,dc=
-f allusers.csv -l cn
This should get you all user accounts giving
you:
dn,cn
Thanks,
--
Matt Brown
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On
Behalf Of Harding, Devon
Sent: Wednesday,
November
be
done.
Thanks,
--
Matt Brown [EMAIL PROTECTED]
Consultant for Student Technology Fee
website: http://techfee.ewu.edu/
+--+
| 509.359.6972 ph. - 509.359.7087 fx
| 307 MONROE HALL | Cheney, WA 99004
+--+
-Original
Anybody here
actually Syncing OpenLDAP with Active Directory using MIIS?
Thanks,
--
Matt Brown
Information Technology System Specialist
Eastern Washington
University
60 matches
Mail list logo