ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login
    1. Topics
    2. Tags
    3. active directory
    Log in to post
    • All categories
    • wrx7mW

      Any Way to Automate Adding a New Computer to an AD Group?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion windows 10 windows server ad active directory gpo mdt powershell ps pdq deploy ou task sequence
      32
      0 Votes
      32 Posts
      9k Views
      F

      @marcinozga said in Any Way to Automate Adding a New Computer to an AD Group?:

      @flaxking said in Any Way to Automate Adding a New Computer to an AD Group?:

      @marcinozga said in Any Way to Automate Adding a New Computer to an AD Group?:

      Ansible can do that. https://docs.ansible.com/ansible/latest/modules/win_domain_group_membership_module.html#win-domain-group-membership-module
      You can add new PCs to domain, and change their group membership, you just need to know computer names in advance.

      Which is just a layer on top of Powershell. The Active Directory Powershell module is still required.

      It's not required, or that module is included already in Windows 10 by default. Because I haven't had to install it on any machine I managed with Ansible.

      "win_domain_group_membership requires the ActiveDirectory PS module to be installed"
      https://github.com/ansible/ansible/blob/devel/lib/ansible/modules/windows/win_domain_group_membership.ps1

      They have it in the documentation as well "This must be run on a host that has the ActiveDirectory powershell module installed."
      https://docs.ansible.com/ansible/latest/modules/win_domain_group_module.html

    • zachary715Z

      How to authenticate via AD to non-domain server

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion bookstack active directory ldap
      26
      0 Votes
      26 Posts
      2k Views
      wirestyle22W

      @black3dynamite He shouldn't need to. I'm running it on 16.04 and what he is trying to do works for me.

    • 1

      How long does it take for clients to resolve new IP from DNS on LAN?

      Watching Ignoring Scheduled Pinned Locked Moved Solved IT Discussion microsoft active directory dns
      13
      0 Votes
      13 Posts
      595 Views
      1

      @Dashrender I just checked a couple of clients and Time To Live where set to 3600 at most and counting down.

      @Obsolesce If it's default then one hour it is.

    • steveS

      Windows HomeGroups, WorkGroups, and Domains - CompTIA A+ 220-1002 Prof Messer

      Watching Ignoring Scheduled Pinned Locked Moved IT Careers a+ comptia certification prof messer active directory windows windows system administration it training video training it career youtube
      8
      2 Votes
      8 Posts
      1k Views
      JaredBuschJ

      @mary said in Windows HomeGroups, WorkGroups, and Domains - CompTIA A+ 220-1002 Prof Messer:

      Is there any alternative to home group now that it isn't available on Windows 10? Also why would you use workgroup instead of Windows Domain? Is it a cost issue?

      "Home Group" was just a fancy name for network sharing without AD on Windows computers.

    • EddieJenningsE

      Deploy Active Directory via PowerShell

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion server 2019 windows administration active directory powershell
      3
      5 Votes
      3 Posts
      559 Views
      EddieJenningsE

      @Romo said in Deploy Active Directory via PowerShell:

      Great Job @EddieJennings !!, Really liked the flow and tempo of the video 馃槂

      Thanks 馃槃

    • scottalanmillerS

      Server Losing Connection to AD DC Intermittently

      Watching Ignoring Scheduled Pinned Locked Moved Solved IT Discussion active directory windows windows server 2012 r2 hyper-v hyper-v 2012 r2 networking ad dc
      3
      0 Votes
      3 Posts
      2k Views
      wrx7mW

      Good find.

    • SuyeinsS

      Estaci贸n de trabajo con 10 segundos de atraso en el reloj

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion windows time synchronization active directory ntp sntp
      15
      2 Votes
      15 Posts
      1k Views
      dbeatoD

      @scottalanmiller said in Estaci贸n de trabajo con 10 segundos de atraso en el reloj:

      @dbeato said in Estaci贸n de trabajo con 10 segundos de atraso en el reloj:

      @scottalanmiller said in Estaci贸n de trabajo con 10 segundos de atraso en el reloj:

      Anyone know what the normal variance on Windows boxes is when not using a local time source? How close in seconds would we even expect a site to be able to be?

      You can have it up to 5 minutes from the Domain Controller Servers time.

      No DCs. No AD.

      Gotcha, I am still trying to see what is the issue. 10 seconds is almost unnoticeable. What is the purpose?

    • wrx7mW

      PowerShell - Off-boarding Script

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion powershell windows server active directory ad script scripting office 365 microsoft password password reset
      12
      1 Votes
      12 Posts
      3k Views
      dafyreD

      @wrx7m said in PowerShell - Off-boarding Script:

      @dafyre said in PowerShell - Off-boarding Script:

      @wrx7m said in PowerShell - Off-boarding Script:

      @dafyre I think I found where you got it - https://www.powershelladmin.com/wiki/Powershell_prompt_for_password_convert_securestring_to_plain_text

      Anyway, I am not sure where, in my script, I should place that function.

      You'd put the actual function at the top of your script, and then just

      $myPassword=convertFrom-SecureToPlain -securepassword $MySecurePassword

      Wherever you need the password in plain text form.

      Thanks. It mostly works. The only problem is that it isn't actually using the password I specify at the top. It is somehow generating its own and then writing it at the end. I put in

      write-host "Plain Text Says: $plainText"

      and it shows the password that I typed in for the secure variable at the beginning, followed by the one that it generated.

      Plain Text Says: $#@%4#@177 Jof91348

      Works fine for me here.... Check and make sure you don't have an extra write-host or anything somewhere.

      4a0db1d0-785c-4771-9ad2-9cec6cb0434a-image.png

    • wrx7mW

      Nomad - Manage Mac OS in Windows/AD Environment - Anyone Used It?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion mac os osx bind active directory nomad
      3
      1 Votes
      3 Posts
      537 Views
      wrx7mW

      @DustinB3403 said in Nomad - Manage Mac OS in Windows/AD Environment - Anyone Used It?:

      I've heard of it, and it's supposedly a really good product, the issue with it is the cost. At least at the time.

      The product now is JAMF Connect. So it looks to be a dead product that was replaced.

      Interesting. I'll look into that. I didn't see any mention of jamf.

    • scottalanmillerS

      Need to Join Windows XP Clients to a 2016 Domain

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion active directory ad dc windows server 2016 windows xp 2016 domain
      30
      0 Votes
      30 Posts
      13k Views
      scottalanmillerS

      @Dashrender said in Need to Join Windows XP Clients to a 2016 Domain:

      @scottalanmiller said in Need to Join Windows XP Clients to a 2016 Domain:

      @Dashrender said in Need to Join Windows XP Clients to a 2016 Domain:

      @scottalanmiller said in Need to Join Windows XP Clients to a 2016 Domain:

      @Dashrender said in Need to Join Windows XP Clients to a 2016 Domain:

      Does the XP machine need to be part of the domain? What about working around that issue?

      We removed the domain completely.

      So now you're what - trying to use a 2019 SMB file share or something?

      What does file share have to do with AD? Completely disconnected concepts.

      True - I was making my own leap -

      So - where does this stand now then??

      We removed AD. It turned out that it had been installed without evaluation and was serving no real purpose, but was posing a significant risk.

    • DustinB3403D

      OSX 10.14.X Bug - Roaming AD Accounts unable to login when Off Network

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion osx active directory mobile accounts apple bug 10.14
      4
      2 Votes
      4 Posts
      555 Views
      DustinB3403D

      @wrx7m said in OSX 10.14.X Bug - Roaming AD Accounts unable to login when Off Network:

      @DustinB3403 said in OSX 10.14.X Bug - Roaming AD Accounts unable to login when Off Network:

      My co-worker thinks he may have a workaround, which involves backing up the user profile, deleting the existing one and restoring the files for the user.

      We're testing this currently to see if this actually "sticks".

      Did it work?

      Waiting to hear back

    • scottalanmillerS

      Restoring 2012 R2 AD DC: This server is the owner of the following FSMO role, but does not consider it valid.

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion active directory fsmo windows 2012 r2
      18
      0 Votes
      18 Posts
      3k Views
      scottalanmillerS

      So we did an older restore and the issue was resolved. This error was caused by ransomware.

    • vhinzsanchezV

      Question about AWS

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion cloud aws lightsail active directory domain controller file server
      93
      1 Votes
      93 Posts
      8k Views
      scottalanmillerS

      It is because of this licensing discrepency that we know that CloudAtCost was running a scam. They advertised Windows servers that were unlicensed, and unlicensable.

    • s.hacklemanS

      Help with Active Directory Terminology

      Watching Ignoring Scheduled Pinned Locked Moved Developer Discussion azure azure ad active directory ldap kerberos saml oauth
      16
      1 Votes
      16 Posts
      2k Views
      Reid CooperR

      Azure AD's Use of SAML Protocol

    • JoelJ

      Migrating AD Users to a brand new server

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion active directory admt
      3
      2 Votes
      3 Posts
      414 Views
      scottalanmillerS

      Tags added.

    • scottalanmillerS

      Windows Server 2012 Essentials Cannot Find Login Server for AD

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion active directory domain controller windows windows server windows server 2012 windows server 2012 essentials
      78
      0 Votes
      78 Posts
      5k Views
      scottalanmillerS

      @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

      That's rough.

      Very

    • JaredBuschJ

      Where do I start with replacing the whole MS AD stack

      Watching Ignoring Scheduled Pinned Locked Moved Water Closet microsoft active directory ad dhcp dns
      104
      3 Votes
      104 Posts
      13k Views
      Emad RE

      @Donahue said in Where do I start with replacing the whole MS AD stack:

      sing reservations.

      I think your knowledge of FG is not allowing you to do this, just create a new interface with the desired subnet and leave or tick DHCP option. And they you can do it what you want with it. Create an IPv4 policy to give access to internet to the new interface.

    • M

      RocketChat LDAP

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion rocketchat snap ldap active directory
      4
      1 Votes
      4 Posts
      1k Views
      scottalanmillerS

      @mattbagan said in RocketChat LDAP:

      @scottalanmiller Do you know where the snap version of mongodb is installed? I can't find it.

      Under /var/lib/snapd/snap/rocketchat-server/current/bin/

      But what you want to do I assume is use Compass and just attach to it remotely. It's on port 27017 as usual.

    • wirestyle22W

      DNS Update Issue

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion windows server 2012 r2 dns active directory
      267
      0 Votes
      267 Posts
      48k Views
      scottalanmillerS

      @JaredBusch said in DNS Update Issue:

      @scottalanmiller the issue with nslookup being useless is stupid though.

      Agreed, that's really messed up.

    • scottalanmillerS

      Error This Operation is only allowed for the Primary Domain Controller of the domain with Add-Computer

      Watching Ignoring Scheduled Pinned Locked Moved Solved IT Discussion powershell add-computer active directory
      2
      0 Votes
      2 Posts
      2k Views
      scottalanmillerS

      Turns out that it needed the -Credential flag, which Microsoft doesn't document as a requirement. This worked find...

      Add-Computer -DomainName "mydomain" -Credential mydomain\myusername
    • 1
    • 2
    • 3
    • 4
    • 5
    • 6
    • 7
    • 8
    • 3 / 8