How to manage machines in a workgroup If you have machines in a domain, it is easy to execute remote administration (through gpo, script,…). Regarding the positions in workgroup, the task turns out to be more complex. Indeed, the latter only contain their own GPOs and their account base.Thus it is possible to use winrm to perform remote administration. In order to secure the communications betweens the two computers (or computer and server) it is possible to encrypt exchanges using…
Why manually delete a PKI? When you remove a pki since the wizards Windows will scavenge records in Active Directory. However if the server is reinstalled or the VM deleted unless the certification authority role is deleted beforehand, these records remain present in the Active Directory directory. It is therefore necessary to carry out the cleaning of it before any new installation of an enterprise certification authority. This article details the different steps for cleaning of the Active Directory.
Fix KB3148812 problem The KB3148812 update installation problems. In fact after installing the administration console WSUS becomes inaccessible. Moreover customers no longer have the opportunities to contact the WSUS server. Initially Microsoft recommended not to install or remove it for those who carry out the installation of the update.
Licensing Server 2016 Windows Server 2016 will consist of two editions as Windows Server 2012 and 2012 R2. Standard Edition: Concerns them little or no virtualized environments. Datacenter editions: Used for private and hybrid cloud environments.
Manage Local Account Password An element that is rarely changed it’s the password of local accounts. It is common to put the same password for a local administrator on all workstations and servers. This has created an impact of a security breach.
Problem Bitlocker During a Bitlocker project at a customer I had a problem with the storage of bitlocker recovery key in Active DirectoryAfter you set up group policy which configured the desktop and laptop client (store in AD the recovery key, use tpm,…), I launched the script which enabled BitLocker on the system partition or opther partition.
Problem Active Directory Migrating Active Directory at one of my clients, it seems interesting to share a solution to a problem. When you update the schema to add the RODC objetcts (adprep /rodcprep), an error 0x3 appears. At the time of depromote domain controller, the error messages appear informing me of a problem.
During the AD audit at a client’s site, I encountered the following problem: The gpo tool command does not raise replication issues at GPO levels. However, when preparing a Group Strategy Result report, a warning appears: AD/SYSVOL version Mismatch.
Create PSO An AD domain contains a password policy that is applied to all users. However, in some cases, it is necessary to apply a different policy to one or more users.
Deploy MBAM MBAM (microsoft bitlocker administration and monitoring) permit to secure and protect your desktop and laptop. You can deploy it from operating system and store key on Active Directory. However, if you have MBAM licenses, you will be able to implement it. This product allows you to implement portals for the management of these recovery keys. Thus it is no longer necessary to have domain administrator rights to have the bitlocker recovery key. Deployment Guide for MBAM 2.0 Deployment…