Welcome to Dirteam.com/ActiveDir.org Blogs Sign in | Join | Help

14 result(s) were found in 0,004 milliseconds

This is the 1 st part of "DC Locator Process in W2K, W2K3(R2) and W2K8" By default a client that knows in what AD site it is in, will ask for a DC in that same site by querying DNS with: _ldap._tcp.<SITE>._sites.dc._msdcs.<DOMAIN>.<TLD> Read More...
This is the 2 nd part of "DC Locator Process in W2K, W2K3(R2) and W2K8" Looking at this all, the DC locator process as explained above still applies to Windows Vista and to Windows Server 2008 and later. Are there any differences or additions? Yes, there Read More...
In the case of locating a DC to access the SYSVOL/NETLOGON, the authN DC creates two referral lists. The first list contains the DCs (in random order) from the same AD site of the AD client. The second list contains all the other DCs outside the AD site Read More...
Windows Server 2008 R2, among other changes, brings a new interface to access directory services – the Active Directory Web Service (ADWS) . It is also available for older systems – Windows 2003 and 2008 – as Active Directory Management Gateway (available Read More...
Domain Controller Stickiness is a problem which prevents Active Directory clients to be connected to the best Domain Controller they can be. The root cause of this problem is once an Active Directory client found a Domain Controller (using DNS) it would Read More...
This is the 3 rd and last part of "DC Locator Process in W2K, W2K3(R2) and W2K8" Until now I talked about locating a DC for authentication. What I did not talk about yet is locating the SYSVOL to apply GPOs and to use the legacy NETLOGON share. Let's Read More...
Ever have a Branch Office or Site that has clients that doesn't authenticate to the local dc? Adminstrators get confused and start looking at the client to try and figure out what is wrong, when it is most likely and incorrectly configured Sites and Services Read More...
Yes, it's that time of the year again! TEC 2010 USA is coming and is planned for the last week of April 2010. It is not is Las Vegas and it is not in Chicago. It is in Los Angeles this time. I'll be delivering two pre-conference workshops this year about Read More...
Few days ago my colleague at work pointed me out that I had not created a follow-up to my article about site location which was requested by some users in comments on my Polish blog . When one started this whole blogging thing one has to deal with consequences Read More...
If you are using writable DCs (RWDCs) in Branch Offices you want to optimize authentication as best as possible by: Allowing HUB DCs (DCs in datacenters) to register ALL possible service records (domain-wide and site wide) and therefore service whatever Read More...
It is common knowledge that in AD environment client (like workstation) will always (at least it should) try to connect to most optimal domain controller. Optimal from network and AD infrastructure configuration standpoint. This process is based on DNS Read More...
A while back there was a thread on ActiveDir about Restricted Group policy--the security policy feature in GP that lets you manage group membership. Someone had suggested using Restricted Groups to manage AD group membership and I mentioned that it was Read More...
When running DCPROMO on a server to promote it to DC two possibilities exist what query is used by the server to locate a DC... --> The server is a STAND ALONE SERVER and is going to be promoted to a DC: In this case the server does not know to which Read More...
Well … at least in Poland we are saying that what happens once can happen again … like in Battlestar Galactica world. In last days it turned out that the same saying is true for network protocols. At least for one of them some time ago well known as Finger Read More...