Active Directory

Print
PDF
 

See also:

User Acccount Management

Computer Account Management

When a secure channel fails, don't simply remove/rejoin the computer to the domain. Use netdom or nltest to reset the secure channel.

Use redircmp to redirect the default computer container to an OU. By default the Computers container allows anyone to join a PC to a domain. Syntax:

redircmp "DN of OU for new computer objects"

FSMO Roles

Global Catalog

To check if GC has replicated, install the Server 2003 Support Tools, and run: dcdiag /s:servername /v | find /I "gc"

If it says "The DS servername is advertising as a GC" then replication has finished.

Certificate Authority

DNS

Logon Scripts

Misc

Check Out

Resources

Tools

Scoping

  • Rule of thumb - two GCs per site, or if it's a one-site, one-domain enterprise, according to a Microsoft AD expert, every DC should be a GC. (source: Mastering Server 2003)
Trackback(0)
Comments (0)Add Comment

Write comment

busy