Welcome to Dirteam.com/ActiveDir.org Blogs Sign in | Join | Help

February 2008 - Posts

Delegating permissions to manage services on servers is not the easiest thing to do. You can do it from the command line or through a GPO in the "System Services" node. Either way you MUST take the current configured permissions into account, otherwise Read More...
Isn't it great when you have created your own delegation model in AD to manage all your stuff in it like creating users, groups, computers, resetting password, unlocking accounts, etc.? That sure is, but things can become not that nice when delegated Read More...
In the blog post about " Showing Last Logon Info at Logon in Windows Server 2008 " I mentioned that the " lastLogonTimeStamp " attribute did not replicate. Unfortunately that was a typo. Sorry for the mistake and thanks to Laura and Dean from making me Read More...
From the WNT4 days it was possible to use the " lastLogon " attribute to determine the last logon time of a user account. This attribute has been available in all OS's until now. The caveat of this attribute is that it does not replicate between DCs and Read More...
Let's say you demote a DC within your AD forest to a member server. Then you go to another DC and execute: REPADMIN /SHOWREPS (or REPADMIN /SHOWREPL) and besides eventual RPC errors you also see something similar to: [RFSRWDC1] C:\>REPADMIN /SHOWREPL Read More...
As soon as I'm back from the Directory Experts Conference in Chicago, the week after I'm going to TechDays 2008 in Belgium for the official launch of Windows Server 2008, SQL Server 2008 and Visual Studio 2008. Microsoft invited me to present at the Dutch Read More...
The beta periods for both Windows Vista SP1 and Windows Server 2008 have closed. Both products are final and have actually RTMed as of today! More information about the RTM can be read here: http://www.microsoft.com/windowsserver2008/default.mspx http://blogs.technet.com/windowsserver/archive/2008/02/04/windows-server-2008-rtm.aspx Read More...