Backing up and Restoring GPOs using the GPMC

Without the Group Policy Management Console (GPMC) administration of Group Policy takes patience, imagination, and thorough understanding of the property sheets within the Active Directory Users and Computers. The GPMC solves these problems by providing a very intuitive interface for managing all aspects of Group Policy. This article will discuss the finer points of how…

Read More

Accessing resources across forests

ccessing resources across forests When two Windows Server 2003 forests are connected by a forest trust, authentication requests made using the Kerberos V5 or NTLM protocols can be routed between forests to provide access to resources in both forests. For more information about routing authentication requests across forests, see Routing name suffixes across forests. Before authentication protocols can…

Read More

Provide SharePoint Single Sign-On with Active Directory Federation Services

Organizations around the world have been adopting SharePoint rapidly as their collaboration platform of choice. In fact, SharePoint usually becomes so popular that organizations quickly want to expand its use beyond the corporate firewall. Typical extranet SharePoint deployments involve deploying SharePoint in an Active Directory (AD) forest on a perimeter network, or DMZ (see Figure…

Read More

RESTORING ACTIVE DIRECTORY USING WBADMIN AND NTDSUTIL

You can use wbadmin, which is the command-line component of the WindowsServer Backup snap-in, to perform a nonauthoritative restore of Active Directory, which restores a single Active Directory domain controller to its state before the backupwbadmin start sysstaterecovery -version:MM/DD/YYYY-HH:MM-backuptarget:targetDrive:-machine: BackupComputerName-quiet Rebooted your domain controller intoDirectory Services Restore Mode, and that you have already performed a nonauthoritativerestore using wbadmin.1….

Read More

Windows 2008 backup with wbadmin & ntdsutil

Open the command prompt: C: ntdsutilntdsutil: help -> to access the help filesntdsutil: IFMntdsutil: Activate Instance NTDSntdsutil: IFMifm: help -> to access the help filesifm: Create Full %s(the backup folder name) C: wbadmin start systemstatebackup -backupTarget:d(the backup drive): wbadmin restoreC: wbadmin get versionsC: wbadmin start systemstaterecovery version: (location)C: ntdsutil ntdsutil: activate instance ntdsntdsutil: authoritative restoreauthoritative restore:…

Read More

How the Global Catalog Works

Applies To: Windows Server 2003, Windows Server 2003 R2, Windows Server 2003 with SP1, Windows Server 2003 with SP2, Windows Server 2008, Windows Server 2008 R2 In a multidomain Active Directory® Domain Services (AD DS) forest, the global catalog provides a central repository of domain information for the forest by storing partial replicas of all domain…

Read More

Transferring FSMO Roles in Windows Server 2008

The five FSMO roles are: Schema Master Domain Naming Master Infrastructure Master Relative ID (RID) Master PDC Emulator The FSMO roles are going to be transferred, using the following three MMC snap-ins : Active Directory Schema snap-in : Will be used to transfer the Schema Master role Active Directory Domains and Trusts snap-in : Will be used…

Read More

Using Ntdsutil.exe to transfer or seize FSMO roles to a domain controller

Certain domain and enterprise-wide operations that are not good for multi-master updates are performed by a single domain controller in an Active Directory domain or forest. The domain controllers that are assigned to perform these unique operations are called operations masters or FSMO role holders. The following list describes the 5 unique FSMO roles in…

Read More

Do Not Display Last User Name

Windows Server 2008 and SBS 2008 can be configured using a Group Policy (GPO) to clear the last user name from the log on screen. In an environment where there is a lot of computer sharing, “hot desking” or you are just security conscious you may want to clear the previous user name from the…

Read More

force background colour with GPO centred wallpaper

The background image is an option already User->Policies->Admin Templates->Desktop->Desktop->Desktop Wallpaper. The desktop color is not however, you’ll need to create an ADM file an import it. Here’s the file I use: CLASS USER CATEGORY “Desktop” CATEGORY “Custom” KEYNAME “Control PanelColors” POLICY “Background color” EXPLAIN “Allow you to control the background color of the user’s desktop.” PART…

Read More