New Active Directory Documents for IT Pros
Active Directory Documentation Team - Site Home - TechNet Blogs
Sign in
Active Directory Documentation Team
Information for IT Professionals who work with Active Directory. All blog posts are provided "AS IS" with no warranties, and confer no rights.
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Options
About
Email Blog Author
RSS for posts
Atom
RSS for comments
OK
Search Blogs
Tags
"Active Directory"
"Active Directory" "Active Directory Domain Services"
"Active Directory" PowerShell
Active Directory
Active Directory Certificate Services (AD CS)
Active Directory Domain Services
Active Directory errors
Active Directory PowerShell
Active Directory troubleshooting
Active Directory User Assistance
AD
AD CS
AD DS
certificate services
certification authority
DC
dsforum2wiki
Group Policy
Hyper-V
Limitations
PowerShell
PowerShell Scripting
SPN
Windows Server 2008
Windows Server 2008 R2
Archive
Archives
May 2013
(3)
April 2013
(2)
March 2013
(2)
February 2013
(1)
January 2013
(3)
December 2012
(3)
November 2012
(1)
October 2012
(1)
May 2012
(1)
April 2012
(3)
March 2012
(1)
October 2011
(1)
August 2011
(3)
July 2011
(3)
June 2011
(2)
May 2011
(2)
April 2011
(5)
March 2011
(3)
February 2011
(3)
January 2011
(7)
December 2010
(2)
November 2010
(7)
September 2010
(1)
August 2010
(1)
July 2010
(1)
June 2010
(2)
May 2010
(2)
April 2010
(6)
March 2010
(1)
January 2010
(2)
October 2009
(4)
September 2009
(2)
August 2009
(4)
July 2009
(1)
June 2009
(1)
May 2009
(1)
April 2009
(6)
March 2009
(3)
February 2009
(2)
January 2009
(9)
December 2008
(1)
November 2008
(4)
TechNet Blogs
>
Active Directory Documentation Team
Posts
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Active Directory Documentation Team
A delegation for this DNS server cannot be created because the authoritative parent zone cannot be found or it does not run Windows DNS server.
Posted
over 2 years ago
by
Kurt Hudson
10
Comments
A common warning message for anyone who has installed Active Directory on Windows Server 2008 or Windows 2008 R2, especially on the first domain controller in a forest or domain is: A delegation for this DNS server cannot be created because the authoritative...
Active Directory Documentation Team
DS Forum: How to list Active Directory group members
Posted
over 3 years ago
by
Justin Hall MSFT
0
Comments
In an effort to consolidate the great troubleshooting solutions offered in this thread , we have summarized the information contained here into a TechNet Wiki article at the following location: How to list Active Directory group members Please...
Active Directory Documentation Team
Active Directory Port Requirements
Posted
over 4 years ago
by
Davanand Bahall - MSFT
3
Comments
A few days ago we posted a document to TechNet that outlines some of the various port requirements for Active Directory. We gathered the port information from various KB articles and consolidated them into one document. I think it should serve as a great...
Active Directory Documentation Team
How to start in Directory Service Restore Mode (DSRM) in Windows Server 2008 and Windows Server 2008 R2
Posted
over 5 years ago
by
Kurt Hudson
0
Comments
Here are two methods to enter Directory Services Restore Mode (DSRM) in Windows Server 2008 or Windows Server 2008 R2: From the Desktop use the graphical user interface (GUI) Msconfig tool. Click Start . In Start Search , type msconfig and then...
Active Directory Documentation Team
Active Directory Migration Tool v3.2 (ADMT) and Migration Guide released
Posted
over 3 years ago
by
Justin Hall MSFT
0
Comments
ADMT v3.2 is now available at http://www.microsoft.com/downloads/details.aspx?displaylang=en&FamilyID=20C0DB45-DB16-4D10-99F2-539B7277CCDB The ADMT Migration Guide is also updated to cover ADMT v3.1 and ADMT v3.2 and is available for download at...
Active Directory Documentation Team
Introducing Active Directory Administrative Center
Posted
over 4 years ago
by
gabag
20
Comments
Active Directory Administrative Center provides network administrators with an enhanced Active Directory data management experience and a rich graphical user interface (GUI). Administrators can use Active Directory Administrative Center to perform common...
Active Directory Documentation Team
New topic about upgrading domain controllers to Windows Server 2012: http://technet.microsoft.com/library/hh994618.aspx
Posted
5 months ago
by
Justin Hall MSFT
0
Comments
We have published a topic about upgrading domain controllers to Windows Server 2012: http://technet.microsoft.com/library/hh994618.aspx. It covers a lot of useful background information to help you prepare for an Active Directory upgrade, including...
Active Directory Documentation Team
Introducing AD DS Best Practices Analyzer
Posted
over 4 years ago
by
gabag
3
Comments
Active Directory Domain Services (AD DS) Best Practices Analyzer (BPA) is a server management tool that can help you implement best practices in the configuration of your Active Directory environment. AD DS BPA scans the AD DS server role as it is installed...
Active Directory Documentation Team
Create Managed Service Accounts with PowerShell. Do not create managed service accounts with Active Directory Users and Computers.
Posted
over 4 years ago
by
Kurt Hudson
3
Comments
Although some versions of Active Directory Users and Computers (dsa.msc) may expose a schema option to add Managed Service Accounts (msDS-ManagedServiceAccount). You should not use this option. This option is exposed because it is a schema option, but...
Active Directory Documentation Team
Allow logon locally to a domain controller
Posted
over 3 years ago
by
Kurt Hudson
5
Comments
We finally published the procedures for allowing a user or group to logon locally (at the console) to a domain controller. All the administrative groups, like server operators, backup operations, account operations, and administrators have this right...
Active Directory Documentation Team
Forest schema version 47: Windows Server 2008 R2 Adprep /forestprep
Posted
over 2 years ago
by
Kurt Hudson
3
Comments
When you run adprep /forestprep, you are updating the Active Directory schema forest version. Several people have asked, what is the forest schema version for Windows Server 2008 R2. To learn more about adprep and forestprep and schema versions, read...
Active Directory Documentation Team
Kerberos error: 0x7 KDC_ERR_S_PRINCIPAL_UNKNOWN
Posted
over 2 years ago
by
Kurt Hudson
0
Comments
A TechNet Wiki topic regarding Kerberos error 0x7 has just been posted http://social.technet.microsoft.com/wiki/contents/articles/kerberos-error-code-0x7-kdc-err-s-principal-unknown.aspx based on the popularity of the forum thread http://social.technet...
Active Directory Documentation Team
RSAT for Windows 7 downloads are available
Posted
over 4 years ago
by
Kurt Hudson
1
Comments
While this has been true for a while, I figured that it is worth mentioning that if you are running Windows 7, you can download the Remote Server Administration Tools (RSAT) for Windows 7 . If you’ve used the Administration Tools for Windows XP (Adminpak...
Active Directory Documentation Team
New topic and script about testing for Active Directory schema extension conflicts
Posted
over 3 years ago
by
Justin Hall MSFT
0
Comments
We have published a new topic and script about how to test an Active Directory schema extension for potential conflicts before you apply the extension. The topic is http://technet.microsoft.com/en-us/library/testing-for-active-directory-schema-extension...
Active Directory Documentation Team
Conditions for Kerberos to be used over an External Trust
Posted
over 3 years ago
by
Davanand Bahall - MSFT
6
Comments
We have updated the TechNet article, Technologies for Federating Multiple Forests , to include the prerequisites for employing Kerberos over external trusts. Highlights of the updates from the article are: The trust has to be created using the fully...
Active Directory Documentation Team
Introducing Active Directory Recycle Bin
Posted
over 4 years ago
by
gabag
4
Comments
Accidental deletion of Active Directory objects is a common occurrence for users of Active Directory Domain Services (AD DS) and Active Directory Lightweight Directory Services (AD LDS). In Windows Server 2008 Active Directory domains, you could recover...
Active Directory Documentation Team
New Djoin.exe utility in Windows Server 2008 R2
Posted
over 4 years ago
by
Justin Hall MSFT
10
Comments
Windows Server 2008 R2 domain controllers include a new feature named Offline Domain Join. A new utility named Djoin.exe lets you join a computer to a domain, without contacting a domain controller while completing the domain join operation, by obtaining...
Active Directory Documentation Team
Registering and Troubleshooting Service Principal Names (SPNs)
Posted
over 3 years ago
by
Kurt Hudson
2
Comments
Last night I published an article titled Service Principal Names (SPNs) on the TechNet Wiki. Actually, I've been working on it on and off this entire week. This is something I was asked to do a while ago by Customer Support Services (CSS). The goal of...
Active Directory Documentation Team
Where is SYSPREP in Windows Server 2008 and Windows Server 2008 R2?
Posted
over 4 years ago
by
Kurt Hudson
1
Comments
If you are looking to sysprep your computers to remove the unique information, you can find sysprep in its new location under the %windir%\system32\sysprep folder. There isn’t much to the interface, but if you are just trying to remove the unique information...
Active Directory Documentation Team
DSForum: Event ID 5719 source Netlogon
Posted
over 2 years ago
by
Justin Hall MSFT
1
Comments
The DS forum posts, Netlogon error 5719 and Event 5719 Netlogon Problem , have been consolidated into the following TechNet Wiki article: Event ID 5719 source Netlogon (dsforum2wiki) Please look the article over and let us know what you...
Active Directory Documentation Team
TechNet topic about how to upgrade domain controllers to Windows Server 2008 R2
Posted
over 3 years ago
by
Justin Hall MSFT
0
Comments
We have published a topic that explains how to upgrade domain controllers to Windows Server 2008 and Windows Server 2008 R2. This topic is based on customer experiences that have been resolved by Microsoft Customer Support. It covers how to prepare for...
Active Directory Documentation Team
This condition may be caused by a DNS lookup problem (FWLINK 5171)
Posted
over 4 years ago
by
Kurt Hudson
0
Comments
I was reminded of the infamous forward link 5171 today. We had quite a time figuring out all the circumstances in which people were getting this message with the following words "This condition may be caused by a DNS lookup problem" and then displayed...
Active Directory Documentation Team
Update for SetSPN - Syntax for SetSPN.exe
Posted
over 1 year ago
by
Kurt Hudson
0
Comments
Breaking guidance change: Although you can use Setspn -A , you should use Setspn -S instead because -S will verify that there are no duplicate SPNs. However, if you are using Windows Server 2003 or earlier, you will not be able to use the -S switch because...
Active Directory Documentation Team
Authentication mechanism assurance in Windows Server 2008 R2
Posted
over 5 years ago
by
Kurt Hudson
1
Comments
I've seen several posts on the new "authentication assurance" feature coming in Windows Server 2008 R2. The term we decided to go with is authentication mechanism assurance because it is actually the authentication mechanism that is assured. Authentication...
Active Directory Documentation Team
New location for topic about Active Directory functional levels and features
Posted
over 3 years ago
by
Justin Hall MSFT
2
Comments
TechNet had duplicated content about Active Directory functional levels. The duplication caused inconsistencies as one location got updated but not the other. So the duplication has been eliminated, but I am told it has made it harder to find for some...
Page 1 of 5 (111 items)
1
2
3
4
5