Things to check when you receive this error:
■The account you are using in the target domain to run ADMT needs to be in the source domain “Administrators” group.
■The {SOURCEDOMAIN}$$$ group exists in the source domain, if you have to create it, don’t add any members to it or it will fail.
■Ensure you have enabled auditing of account management in the source domain:
■Open domain controllers security policy
■Expand Local Policies -> Audit Policies
■Double-click “Audit account managment”, put a check in “Define these policy settings”, “Success”, & “Failure”
http://elderec.org/2011/06/admt-could-not-verify-auditing-and-tcpipclientsupport-on-domains/
Thursday, January 19, 2012
Wednesday, January 11, 2012
(VZMutex lock failed. (Failed to acquire vm lock /vmfs/volumes/xxx/.vzmutex due to an SSH connection issue.))
(VZMutex lock failed. (Failed to acquire vm lock /vmfs/volumes/xxx/.vzmutex due to an SSH connection issue.))
http://www.blogger.com/img/blank.gif
http://www.blogger.com/img/blank.gif
Tuesday, February 1, 2011
Delegate the enable/disable accounts permission in Active Directory
To delegate the ability to enable and disable user accounts in Active Directory:
Launch Active Directory Users and Computers with adminsitrative credentials
Right click on the OU where you want to delegate the ability to enable and disable user accounts
Select the Active Directory security group that you want to delegate the ability to and press Next
Select Create Custom Task to Delegate and press Next
Under Delegate Control Of select the Only the following objects in the folder radio button
Select the User objects check box and press Next
Under Show these permissions uncheck General and select Property-specific
Select the Read userAccountControl and Write userAccountControl check boxes and press Next and Finish
Launch Active Directory Users and Computers with adminsitrative credentials
Right click on the OU where you want to delegate the ability to enable and disable user accounts
Select the Active Directory security group that you want to delegate the ability to and press Next
Select Create Custom Task to Delegate and press Next
Under Delegate Control Of select the Only the following objects in the folder radio button
Select the User objects check box and press Next
Under Show these permissions uncheck General and select Property-specific
Select the Read userAccountControl and Write userAccountControl check boxes and press Next and Finish
Hoe to convert a a mailbot to a shared mailbox
Set-Mailbox ConfRoom1 -Type Shared
http://technet.microsoft.com/en-us/library/bb201749.aspx
http://technet.microsoft.com/en-us/library/bb201749.aspx
Tuesday, January 25, 2011
Step-by-step Microsoft Lync 2010 Consolidated Standard Server Install Guide
I use the following link , and it worked like a charm.
http://imaucblog.com/archive/2010/09/15/step-by-step-microsoft-lync-2010-consolidated-standard-server-install-guide/
http://imaucblog.com/archive/2010/09/15/step-by-step-microsoft-lync-2010-consolidated-standard-server-install-guide/
Delegate permission let one user to join pc to a domain
1. Click Start, click Run, type dsa.msc, and then click OK.
2. In the task pane, expand the domain node.
3. Locate and right-click the OU that you want to modify, and then click
Delegate Control.
4. In the Delegation of Control Wizard, click Next.
5. Click Add to add a specific user or a specific group to the Selected users
and groups list, and then click Next.
6. In the Tasks to Delegate page, click Create a custom task to delegate,
and then click Next.
7. Click Only the following objects in the folder, and then from the list,
click to select the following check boxes: . Computer objects
. Create selected objects in this folder
. Delete selected objects in this folder
8. Click Next.
9. In the Permissions list, click to select the following check boxes:. Reset
Password
. Validated write to DNS host name
. Read and write Account Restrictions
. Validated write to service principal name
10. Click Next, and then click Finish.
11. Close the "Active Directory Users and Computers" MMC snap-in.
2. In the task pane, expand the domain node.
3. Locate and right-click the OU that you want to modify, and then click
Delegate Control.
4. In the Delegation of Control Wizard, click Next.
5. Click Add to add a specific user or a specific group to the Selected users
and groups list, and then click Next.
6. In the Tasks to Delegate page, click Create a custom task to delegate,
and then click Next.
7. Click Only the following objects in the folder, and then from the list,
click to select the following check boxes: . Computer objects
. Create selected objects in this folder
. Delete selected objects in this folder
8. Click Next.
9. In the Permissions list, click to select the following check boxes:. Reset
Password
. Validated write to DNS host name
. Read and write Account Restrictions
. Validated write to service principal name
10. Click Next, and then click Finish.
11. Close the "Active Directory Users and Computers" MMC snap-in.
Wednesday, December 15, 2010
good tool for Bulk Changes
ADModify.NET is a tool primarily utilized by Exchange and Active Directory administrators to facilitate bulk user attribute modifications. See http://blogs.technet.com/exchange/archive/2004/08/04/208045.aspx for launch details
Subscribe to:
Posts (Atom)