Posts

Featured post

Change home folder default permission?

i have searched on , can't seem find similar trying do. using windows server 2003 active directory. when create new user account on domain, use profile tab specify home directory user. when user logs in first time, active directory creates folder in specified path. working correctly. problem gives user full control on folder. has caused lot of problems because "clever" users have discovered thay can change permission on folder or subfolders beneath it. because don't want staff looking @ "sensitive" files. of course doesn't work since can take ownership of file , give myself permissions. causes trouble failed backups, inability scan these folders viruses, migration new storage etc. on occasion 1 of these users call me , ask file or folder restored, , @ point discover not have backup of files , cannot restore them. give them lecture, have on 2500 users, , can't talk them all. right have create account , login teh folder created, go take away full contr

How do I bypass the secpol.msc "Wizard" and set up IPsec state (esp, spi, enc, auth-trunc) and policy (src, dst, in, out, fwd) directly as in the Linux ip-xfrm command?

i had question redirected here microsoft community, although more general microsoft server: right off bat, wizard tells me can't use multicast address, when destination i'm interested in securing.  here want do--no more, no less (although may use transport mode instead of tunnel @ point): #!/bin/bash echo 2 > /proc/sys/net/ipv4/conf/eth0/force_igmp_version # note: avoid possibility of breaking igmpv2 snooping, src should defined senders, not receivers!  otherwise, joins compromised ipsec encryption, , switch not detect them. ip xfrm state flush; ip xfrm policy flush ip xfrm state add src 10.0.2.15 dst 239.192.1.1 proto esp spi 0x54c1859e mode tunnel reqid 0x67cea4aa auth-trunc hmac\(sha256\) 0xc8a8bf5ce6330699c3500bd8d2637bc1fa26929bab747d5ff2a1c4dddc7ce7ff 128 enc cbc\(aes\) 0xfdce8eaf81e3da02fa67e07df975c0111ecfa906561e762e5f3e78dfe106498e # aead rfc4106\(gcm\(aes\)\) 0x123456789abcdef0baddeed0deadbeeffeedface900df00d0fedcba987654321 128 #error: duplicate &

licence

 hi have 80 clint pcs &  want purchase server is(clint access license) compulsary each clint pc add in active directory domain controller 2012 ? is(clint access license) compulsary each clint pc add in active directory domain controller 2012 ? generally, yes. some references: http://www.microsoft.com/licensing/about-licensing/client-access-license.aspx http://www.microsoft.com/licensing/about-licensing/windowsserver2012-r2.aspx (read datasheet) http://blogs.technet.com/b/volume-licensing/archive/2014/03/10/licensing-how-to-when-do-i-need-a-client-access-license-cal.aspx there various options choose from, should consult reputable reseller/partner, various options considered, depending on current investments, , future plans. don (please take moment "vote helpful" and/or "mark answer", applicable. helps community, keeps forums tidy, , recognises useful contributions. thanks!)

Where are "Monitoring Reports and Alerting"?

in server 2003 sbs, there feature called "monitoring reports , alerts" configure server send me daily reports of warnings , alerts event log.  equivalent feature in server 2012? if there no equivalent, there recommended additional microsoft or third party product can same thing?  i'm talking about: https://technet.microsoft.com/en-us/library/cc707952%28v=ws.10%29.aspx it known event log subscription - https://technet.microsoft.com/en-us/library/cc748890.aspx?f=255&mspperror=-2147217396 . : | : . : | : . tim Windows Server  >  Windows Server 2012 Setup

PowerShell 2 Error Handling

i scripting active directory membership. but, whenever user happens in group, 4 line error. need ps ignore these errors, want told of more critical ones (i.e. user account not exist). possible suppress errors, while displaying more simplified customer error message? thinking might have using -erroraction cilentlycontinue if statement, uncertain.... well, makes me sad. installed quest ad snapin , works beautifully. why can't native cmdlets work 3rd party ones? going move forward initial answer , hope using 3rd party stuff not come , bite later. thanks help! Windows Server  >  Windows PowerShell

DNS highjacked?

hello everyone, i have problem on our 2012 server. outbound server traffic pegged , coming dns. here screen shot. <a href=" http://s1265.photobucket.com/user/pbohrer/media/dns.png.html " target="_blank"><img src=" http://i1265.photobucket.com/albums/jj504/pbohrer/dns.png " border="0" alt=" photo dns.png"/></a> our symantec software has found nothing. advice helpful. hello, this forum directory services, networking please ask in http://social.technet.microsoft.com/forums/windowsserver/en-us/home?forum=winservernis&filter=alltypes&sort=lastpostdesc and describe in detail how network built , post unedited ipconfig /all in other forum. best regards meinolf weber mvp, mcp, mcts microsoft mvp - directory services my blog : http://msmvps.com/blogs/mweber/ disclaimer: posting provided no warranties or guarantees , confers no rights.

When logging in or Off terminal services on windows 2008 R2 session pauses or freezes

i have problem server if user logs on or off through rdp or rdweb sessions freezes 30-60 seconds , if in freeze well. ive tried kinds of things avail. found out if disable print spooler problem goes away cannot figure out how resolve issue. server running in vmware environment.   thanks hi,   we need check following steps:   1.        whether of printer installed on server, if yes, please update latest version or uninstall of printer driver. 2.        are there anti-virus software installed on server , doing real-time scanning? if yes, please close , try use rdp log in server whether problem exists. 3.        to ensure client computer using latest remote desktop connection connect rds server. http://support.microsoft.com/kb/969084/en-us   more information: terminal server , connected terminal services clients pause when terminal services client logs on or logs off: http://support.microsoft.com/kb/324446/en-us support policy microsoft software runnin