All Questions

Filter by
Sorted by
Tagged with
0 votes
1 answer
823 views

Set folder permission by OU

I'm attempting to setup folder permissions on my DC to a shared desktop. I have an OU containing the users I want to allow to view this folder, and a GPO which handles the permissions linked to the OU....
Thomton's user avatar
  • 13
1 vote
1 answer
257 views

Is it possible to set up an alias on an Active Directory domain controller Linux server? [closed]

We have a Red Hat Enterprise based Linux distro that is the domain controller for a bunch of Win 10 clients. Some clients are not in the right AD domain (they are on a former domain that was used ...
Endre Szatmári's user avatar
3 votes
1 answer
980 views

What does "Promote this server to domain controller" actually mean, when the server is already a DC?

Apologies in advance, I've already Googled this and I keep finding things about domain controllers not promoting, etc. I found one question that was close, but they didn't actually go into depth about ...
perqyt's user avatar
  • 41
0 votes
1 answer
49 views

Windows cannot set folder security by user group

I have create a new user group [Group A] in Windows Server, create a new user [User 1] as member of [Group A]. If I set a folder security to [Allow] by user [User 1], the setting will work, [User 1] ...
ruby.lee's user avatar
0 votes
1 answer
872 views

AD Query for non expiring password but filter only active users

I need to do query which filters users with non expiring password setup. I have something like this: (&(objectCategory=person)(objectClass=user)(userAccountControl:1.2.840.113556.1.4.803:=65536))...
Johny Wave's user avatar
0 votes
1 answer
2k views

Allow one member of a security group to access a folder, deny access to the remaining members of the same security group

I wish to know if the following is possible and how to apply it within AD structure running on windows server 2012R2. I apply folder access using security groups. Example = Agents folder can only be ...
Peter.Boylan's user avatar
2 votes
1 answer
950 views

Get a list of all users whose email address begins with sh followed by any 6 characters

I want to lost down all users whose email addresses begins with sh followed by any other 6 characters. Sh******@abc.com How can I achieve that using active directory users and computers or Get-...
Jdoe's user avatar
  • 21
-1 votes
1 answer
169 views

Windows Server on domain, log on with domain user or local server account?

I have two servers set up, one is as active directory, and the other I am still configuring. On the server that is connected to the domain controller, should I be logging in as the local Administrator ...
Auborey's user avatar
1 vote
2 answers
2k views

Configure Azure AD Connect

I'm trying to set up an domain in Azure AD Connect on a Workgroup computer. The challenge that we have is, we have a dedicated domain controller for the purpose of Azure AD Connect and the other ...
mutukrp's user avatar
  • 31
0 votes
0 answers
46 views

Nested Active Directory Groups causes user unable to authenticate against application

User is placed in a global group called site.gg1 site.gg1 is a member of a global group called region.gg1 region1 has been added to the server local group, which is mapped to the application role. ...
Fahmy Aziz's user avatar
3 votes
1 answer
179 views

In the context of Active Directory, what does "single schema" mean and why is this an advantage?

in my learning of AD DS Ecosystem I came across with this definition [link]: By using the Windows Server® 2008 Active Directory® Lightweight Directory Services (AD LDS) role, formerly known as ...
Noob_Number_1's user avatar
0 votes
2 answers
628 views

Active Directory Users Delegated Permissions

This is probably a dumb question, but how does the delegated user access ad to make these changes? I have set this up but a user cannot launch the active directory users and groups tool. Only admins ...
QuestionMannn's user avatar
2 votes
1 answer
482 views

Windows 7 / 2008 connect to VPN at login with Group Policy

I am trying to find a way to have windows 7 VPN clients connect to the VPN server automatically via Group Policy. I tried using a login script but it looks like the scripts are shared from sysvol and ...
TriadicTech's user avatar
1 vote
1 answer
2k views

Apache 2.2 LDAP Authentication Error 500 - AuthLDAPURL

I have an Apache server on RHEL 6 that uses our active directory for authentication and when we added a new "LocationMatch" AuthLDAPURL ldap://ad.company.com/DC=ad,DC=company,DC=com?samaccountname?...
Eran Chetzroni's user avatar
2 votes
1 answer
1k views

Full Permissions on Shared Folders for Local Administrators

I am not sure if this is normal or not, however it seems network shares on our domain are given full access to users that are admins on their local machine if the server\Administrators security ...
Daniel's user avatar
  • 107
2 votes
1 answer
378 views

Storing user profile in a corporate environment. Where, how and why?

I'm a programmer and don't know much about Active Directory, LDAP, etc. What I'm trying to build is some kind of profile web page for each employee where I work. Something similar to this : http://...
Philippe's user avatar
  • 191
4 votes
1 answer
4k views

Hide Total Size and Free Space on Network Drives

I would like to know if there is a way, preferably through Group Policy, that one can hide the total size listing and the free space listing on network drives. We have an active directory environment ...
John's user avatar
  • 2,276
0 votes
4 answers
4k views

Active Directory Folder Effective Permissions of all users

I know that is easy to get the effective permissions of one group or user over a folder, but I want to know if it is possible to get the effective permissions for all users on my shared folder. There ...
Santiago's user avatar
  • 254
4 votes
4 answers
35k views

Who joined a computer to a domain

Is there an easy way to determine what user account was used to join a computer to a domain?
AndyM's user avatar
  • 141
0 votes
2 answers
161 views

how to add contact to DL

any one can help me to add a contact to Distributin list in Active directory.
user avatar