Sign in
TechNet Blogs
Technet Blog Images
More ...
Browse by Tags
TechNet Blogs
>
Ask the Directory Services Team
>
All Tags
>
jonathan stephens
Server & Tools Blogs
>
Server & Management Blogs
>
Ask the Directory Services Team
All About Windows Server
Windows Server
Windows Server Essentials Blog
Building Clouds
Partner & Customer Solutions
Server & Cloud
Ask The
Performance Team
Ask Premier Field Engineering
Ask the Core Team
Cloud & Datacenter Management
The System Center Team Blog
System Center Virtual Machine Manager
System Center Service Manager
System Center Operations Manager
System Center Data Protection Manager
System Center Orchestrator
Partner & Customer Solutions
Client Management
System Center Configuration Manager
System Center Service Manager
MDOP
Malware Protection Center
Windows Intune
SUS
Partner and Customer Solutions
Virtualization, VDI & Remote Desktop
Virtualization Team Blog
Ben Armstrong’s Virtualization Blog
Jose Barreto Blog on Hyper-V
Partner & Customer Solutions
Remote Desktop Services
Windows Multipoint Server
Ask the Core Team on Hyper-V
File & Storage & High Availability
File & Storage
Jose Barreto
Partner & Customer Solutions
Ask the Core Team on Failover Cluster
Clustering & High Availability
Windows Server Management
PowerShell
Hey Scripting Guy (PowerShell)
Server Manager
Group Policy
Networking
Identity & Access
Ask Directory Services
Active Directory
Microsoft Leadership
Brad Anderson - In the Cloud
Ask the Directory Services Team
Microsoft's official enterprise support blog for AD DS and more
Live Now on Server & Tools Blogs
Subscribe
Comments
Contact
Menu
Blog Home
Atom
Translate this page
Powered by
Microsoft® Translator
Recent Posts
We're back. Did you miss us?
Posted
3 days ago
by
David Beach - MSFT
17
Comments
AD FS 2.0 Claims Rule Language Part 2
Posted
13 days ago
by
Jonathan Stephens, MSFT
0
Comments
Circle Back to Loopback
Posted
3 months ago
by
Jonathan Stephens, MSFT
23
Comments
Distributed File System Consolidation of a Standalone Namespace to a Domain-Based Namespace
Posted
3 months ago
by
Jonathan Stephens, MSFT
1
Comments
Tags
Authentication
Certificates
certification authority
David Beach
DFSR
Kerberos
LDAP
Mail Sack
Mike Stephens
Ned Pyle
NTLM
Other Blogs
PKI
PowerShell
Rob Greene
Security
Silly Rabbit
USMT
USMT Behaviors
Warren Williams
Windows 7
Windows 8
Windows Server 2008 R2
windows server 2012
WMI
Archives
Archives
May 2013
(2)
February 2013
(2)
January 2013
(3)
November 2012
(2)
October 2012
(3)
September 2012
(7)
August 2012
(8)
July 2012
(8)
June 2012
(5)
May 2012
(6)
April 2012
(8)
March 2012
(3)
February 2012
(4)
January 2012
(8)
December 2011
(5)
November 2011
(2)
October 2011
(4)
September 2011
(10)
August 2011
(30)
July 2011
(9)
June 2011
(11)
May 2011
(12)
April 2011
(18)
March 2011
(7)
February 2011
(14)
January 2011
(10)
December 2010
(2)
November 2010
(11)
October 2010
(10)
September 2010
(16)
August 2010
(17)
July 2010
(10)
June 2010
(12)
May 2010
(14)
April 2010
(15)
March 2010
(16)
February 2010
(18)
January 2010
(9)
December 2009
(11)
November 2009
(9)
October 2009
(19)
September 2009
(16)
August 2009
(17)
July 2009
(11)
June 2009
(25)
May 2009
(15)
April 2009
(37)
March 2009
(22)
February 2009
(14)
January 2009
(19)
December 2008
(9)
November 2008
(18)
October 2008
(15)
September 2008
(12)
August 2008
(7)
July 2008
(7)
June 2008
(7)
May 2008
(7)
April 2008
(10)
March 2008
(11)
February 2008
(7)
January 2008
(12)
December 2007
(2)
November 2007
(5)
October 2007
(4)
September 2007
(2)
August 2007
(6)
More
▼
Less
▲
Tagged Content List
Blog Post:
Intermittent Mail Sack: Must Remember to Write 2013 Edition
Jonathan Stephens, MSFT
Hi all, Jonathan here again with the latest edition of the Intermittent Mail Sack. We've had some great questions over the last few weeks so I've got a lot of material to cover. This sack, we answer questions on: Issues upgrading DFSR hub servers to Windows Server 2012 AD FS Sign-out behavior...
on
7 Jan 2013
Blog Post:
Revenge of Y2K and Other News
Jonathan Stephens, MSFT
Hello sports fans! So this has been a bit of a hectic time for us, as I'm sure you can imagine. Here's just some of the things that have been going on around here. Last week, thanks to a failure on the time servers at USNO.NAVY.MIL, many customers experienced a time rollback to CY 2000 on their...
on
27 Nov 2012
Blog Post:
....And knowing is half the battle!
Jonathan Stephens, MSFT
Jonathan here. Chuck Timon over on the AskCore blog has a new post that you folks testing with Windows Server 2012 should know about. If you're playing around with Hyper-V, do yourself a favor and have a read before you call Support. Logon Failures Involving Virtual Machines in Windows Server 2012...
on
31 Oct 2012
Blog Post:
RSA Key Blocking is Here!
Jonathan Stephens, MSFT
Hello everyone. Jonathan here again with another Public Service Announcement post. Today, Microsoft has published a new Security Advisory: Microsoft Security Advisory (2661254): Update For Minimum Certificate Key Length The Security Advisory and the accompanying KB article have complete information...
on
14 Aug 2012
Blog Post:
Important Information about Remote Desktop Licensing and Security Advisory 2718704
Jonathan Stephens, MSFT
Hi folks, Jonathan here. Dave and I wanted to share some important information with you. By now you’ve all been made aware of the Microsoft Security Advisory that was published this past Sunday. If you are a Terminal Services or Remote Desktop Services administrator then we have some information...
on
5 Jun 2012
Blog Post:
The Mouse Will Play
NedPyle [MSFT]
Hey all, Ned here. Mike and I start teaching Windows Server 2012 and Windows 8 DS internals this month in the US and UK and won’t be back until July. Until then, Jonathan is – I can’t believe I’m saying this – in charge of AskDS. He’ll field your questions and publish… stuff. We’ll make sure he takes...
on
1 Jun 2012
Blog Post:
Friday Mail Sack: Mothers day pfffft… when is son’s day?
NedPyle [MSFT]
Hi folks, Ned here again. It’s been a little while since the last sack, but I have a good excuse: I just finished writing a poop ton of Windows Server 2012 depth training that our support folks around the world will use to make your lives easier (someday). If I ever open MS Word again it will be...
on
11 May 2012
Blog Post:
Saturday Mail Sack: Because it turns out, Friday night was alright for fighting edition
NedPyle [MSFT]
Hello all, Ned here again with our first mail sack in a couple months. I have enough content built up here that I actually created multiple posts, which means I can personally guarantee there will be another one next week. Unless there isn't! Today we answer your questions around: Detecting...
on
14 Apr 2012
Blog Post:
Friday Mail Sack: Get Off My Lawn Edition
NedPyle [MSFT]
Hi folks, Ned here again. I know this is supposed to be the Friday Mail Sack but things got a little hectic and... ah heck, it doesn't need explaining, you're in IT. This week - with help from the ever-crotchety Jonathan Stephens - we talk about: Multiple WMI Filters LDAP MaxPoolThreads Many...
on
11 Feb 2012
Blog Post:
Purging Old NT Security Protocols
NedPyle [MSFT]
Hi folks, Ned here again (with some friends ). Everyone knows that Kerberos is Microsoft’s preeminent security protocol and that NTLM is both inefficient and, in some iterations, not strong enough to avoid concerted attack. NTLM V2 using complex passwords stands up well to common hash cracking tools...
on
2 Feb 2012
Blog Post:
Friday Mail Sack: Carl Sandburg Edition
Jonathan Stephens, MSFT
Hi folks, Jonathan again. Ned is taking some time off visiting his old stomping grounds – the land of Mother-in-Laws and heart-breaking baseball. Or, as Sandburg put it: “ Hog Butcher for the World , Tool Maker, Stacker of Wheat, Player with Railroads and the Nation's Freight Handler;...
on
28 Jan 2012
Blog Post:
Friday Mail Sack: It’s a Dog’s Life Edition
NedPyle [MSFT]
Hi folks, Ned here again with some possibly interesting, occasionally entertaining, and always unsolicited Friday mail sack. This week we talk some: DNS partition absence Controlling DCDIAG event messaging Inventorying SYSVOL replication architecture Weird WMI DFSR volume paths Tightening...
on
20 Jan 2012
Blog Post:
Friday Mail Sack: Best Post This Year Edition
NedPyle [MSFT]
Hi folks, Ned here and welcoming you to 2012 with a new Friday Mail Sack. Catching up from our holiday hiatus, today we talk about: Disabling Administrative Shares Making Get-ADDomainController useful’er Kerberos group bloat USMT moving profiles back from other disks The DFSR...
on
6 Jan 2012
Blog Post:
Friday Mail Sack: Guest Reply Edition
NedPyle [MSFT]
Hi folks, Ned here again. This week we talk: CA migration from 1 to 2 tier ADAM/ADLDS P2V ABC 123 Managing AGPM security filters Multiple IIS App pools and Kerberos AGPM multi-domain comparison ADUC domain password weirdness DFSR deletion conflict handling Stale account deletion...
on
11 Nov 2011
Blog Post:
Friday Mail Sack: Super Slo-Mo Edition
NedPyle [MSFT]
Hello folks, Ned here again with another Mail Sack. Before I get rolling though, a quick public service announcement: Plenty of you have downloaded the Windows 8 Developer Preview and are knee-deep in the new goo . We really want your feedback, so if you have comments, please use one of the following...
on
30 Sep 2011
Blog Post:
AskDS is 12,614,400,000,000,000 shakes old
NedPyle [MSFT]
It’s been four years and 591 posts since AskDS reached critical mass. You’d hope our party would look like this: But it’s more likely to be: Without you, we’d be another of those sites that glow red hot, go supernova, then collapse into a white dwarf . We really appreciate your comments, questions...
on
9 Aug 2011
Blog Post:
What is the Impact of Upgrading the Domain or Forest Functional Level?
NedPyle [MSFT]
Hello all, Jonathan here again. Today, I want to address a question that we see regularly. As customers upgrade Active Directory, and they inevitably reach the point where they are ready to change the Domain or Forest Functional Level, they sometimes become fraught. Why is this necessary? What does this...
on
14 Jun 2011
Blog Post:
Friday Mail Sack: LeBron is not Jordan Edition
NedPyle [MSFT]
Hi folks, Ned here again. Today we discuss trusts rules around domain names, attribute uniqueness, the fattest domains we’ve ever seen, USMT data-only migrations, kicking FRS while it’s down, and a few amusing side topics. Scottie, don’t be that way. Go Mavs. Creating trusts...
on
10 Jun 2011
Blog Post:
The Case of the Enormous CA Database
NedPyle [MSFT]
Hello, faithful readers! Jonathan here again. Today I want to talk a little about Certification Authority monitoring and maintenance. This topic was brought to my attention by a recent case that I had where a customer’s CA database had grown to rather elephantine proportions over the course of...
on
31 Aug 2010
Blog Post:
Moving Your Organization from a Single Microsoft CA to a Microsoft Recommended PKI
NedPyle [MSFT]
Hi, folks! Jonathan here again, and today I want to talk about what appears to be an increasingly common topic: migrating from a single Windows Certification Authority (CA) to a multi-tier hierarchy. I’m going to assume that you already have a basic understanding of Public Key Infrastructure (PKI...
on
23 Aug 2010
Blog Post:
AskDS is 0.03 Centuries Old Today
NedPyle [MSFT]
Three years ago today the AskDS site published its first post and had its first commenter . In the meantime we’ve created 455 articles and we’re now ranked 6th in all of TechNet’s blogs, behind AskPerf , Office2010 , MarkRussinovich , SBS , and HeyScriptingGuy . That’s a pretty amazing group to be lumped...
on
9 Aug 2010
Blog Post:
Blog Platform Migration Complete
Jonathan Stephens, MSFT
Hello, Internetz. Jonathan here again. Ned didn’t tell you the whole story. Not only did I have to wait for the truth serum to wear off; I also had to chew my way out the straps. Nevertheless, I’ve emerged victorious and have again successfully stormed the AskDS gates and vanquished Ned....
on
24 May 2010
Blog Post:
Friday Mail Sack – While the Ned’s Away Edition
Jonathan Stephens, MSFT
Hello Internet! Last week, Ned said there wouldn’t be a Mail Sack this week because he was going to be out of town. Well, the DS team was sitting around during our “Ned is out of our hair for a few days” party and we decided that since this is a Team Blog after all, we’d go ahead...
on
9 Apr 2010
Blog Post:
Windows Server 2008 R2 CAPolicy.inf Syntax
NedPyle [MSFT]
Greetings! This is Jonathan again. I was reviewing Chris’ excellent blog post series on designing and implementing a PKI when I realized that it would be helpful to better document the CAPolicy.inf file. The information in this post relies heavily on the information published in the Windows Server...
on
15 Oct 2009
Blog Post:
SSL/TLS Record Fragmentation Support
NedPyle [MSFT]
This is Jonathan Stephens from the Directory Services team, and I wanted to share with you a recent interoperability issue I encountered. An admin had set up an Apache web server with the OpenSSL mod for SSL/TLS support. Users were able to connect to the secure web site using Firefox, but when they tried...
on
27 Oct 2008
Page 1 of 2 (26 items)
1
2