You are here: Windows OS HubActive Directory (Page 3)

Archive for the 'Active Directory' Category

Additional Account Info Tab in AD Users And Computers Console

Posted on August 13th, 2014 · Posted in Active Directory
Additional Account Info tab on ADUC windows 2012 r2 x64

Many administrators are familiar with Additional Account Info tab since there have been AD domains based on Windows Server 2003. It is to be reminded that the Additional Account Info tab to appear in the User Properties of Active Directory Users and Computers (ADUC) console, you had to download Windows.. read more

Troubleshooting: Identify Source of Active Directory Account Lockouts

Posted on June 25th, 2014 · Posted in Active Directory
Active Directory Account Lockout Policies

An account security policy in most businesses requires mandatory Active Directory user account lockout if the password has been entered incorrectly n times. Usually an account is locked for several minutes (5-30), when a user can’t log in the system. In some time defined by the security policies, the account.. read more

Java Settings Management with Group Policies

Posted on June 20th, 2014 · Posted in Active Directory
java security level: very high

Today we’ll deal with the configuration peculiarities of Java SE centralized security settings on corporate computers using Windows group policies (GPO). These policies should prevent downloading and running untrusted Java applets and ActiveX objects on corporate computers.

Password Security with Group Policy Preferences

Posted on May 14th, 2014 · Posted in Active Directory
32 byte AES key for encrypt passwords in GPP

Group Policy Preferences (GPP) is a powerful Windows group policy extension that makes setting and management of the park of computers easier and is a sort of substitution to different scripts in GPO. One of the GPP opportunities is to manage passwords of local and service accounts widely used by.. read more

Group Policy Filtering Using WMI-Filters

Posted on April 1st, 2014 · Posted in Active Directory
create group policy object with wmi filter

In this article we will talk about WMI (Windows Management Interface) filtering in group policies. This technology allows to create different rules to choose which AD domain objects or OU to apply a group policy to.

Active Directory: Managed Service Accounts

Posted on March 29th, 2014 · Posted in Active Directory

There is an opportunity to get an administrator password if any of the services is run with administrator privileges. The passwords of the accounts, under which Windows services are run, are stored encrypted in the registry (LSA Secrets) at the following path:

Active Directory Recycle Bin in Windows Server 2012

Posted on March 5th, 2014 · Posted in Active Directory
restore deleted object in active directory. Active Directory Recycle Bin

Before Windows Server 2008 R2 release there were only ways to recover the object which had been accidentally deleted from Active Directory. It was possible to perform authoritative restore with a help of  Ntdsutil utility or to use  LDP.exe for recovery of individual deleted objects in Active Directory. Both these methods.. read more

Restore deleted objects in Active Directory (Ldp.exe)

Posted on February 5th, 2014 · Posted in Active Directory
replace DN

In this article we will clear out how to recover individual deleted objects in Active Directory with a help of Ldp.exe utility. This way of recovery can be used when Active Directory Recycle Bin function is disable for some reason or AD scheme is lower than Windows 2008 R2.