[NTSysADM] Question regarding how AD is evaluating account lockout status

2018-01-04 Thread Christopher Bodnar
o 0, not back to NULL. Also I'm very familiar with Richard Mueller's article on this topic: https://social.technet.microsoft.com/wiki/contents/articles/32490.active-directory-bad-passwords-and-account-lockout.aspx Appreciate any input. Thanks Christopher Bodnar Enterprise Architec

RE: [NTSysADM] Advice: RAID-1 with SSD for home use?

2017-12-28 Thread Christopher Bodnar
It's all relative. Is it worth ~$200 of extra hardware and the time it takes you to set this up, if it saves you some time when one of the drives goes bad. Try to factor how much time it will take you to rebuild/restore from backup if a single drive dies. YMMV Christopher Bodnar Enterprise

[NTSysADM] AD CS Web Enrollment site in IIS

2017-06-23 Thread Christopher Bodnar
pulled into this project, so I didn't build any of it. So not sure of a how all this was built. From what I'm seeing everything else seems be correct, but I'm still getting up to speed. Appreciate any help. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office

[NTSysADM] TIL: Interesting PowerShell item regarding CIM and WMI CMDLets

2017-06-16 Thread Christopher Bodnar
't available on the object. " YMMV Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com [cid:image001.png@01D1326B.600058E0] The Gu

[NTSysADM] Question about automatic site coverage

2017-06-12 Thread Christopher Bodnar
controllers: https://technet.microsoft.com/en-us/library/cc978016.aspx [cid:image001.jpg@01D2E362.A1E9CD00] Anyone know for sure? Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess

RE: [NTSysADM] Is 9389 required for External Trust?

2017-05-25 Thread Christopher Bodnar
requirements: https://technet.microsoft.com/en-us/library/dd772723%28v=ws.10%29.aspx -- Espi On Wed, May 24, 2017 at 8:50 AM, Christopher Bodnar <christopher_bod...@glic.com<mailto:christopher_bod...@glic.com>> wrote: I’m setting up an external trust between two forests. There are firew

[NTSysADM] Is 9389 required for External Trust?

2017-05-24 Thread Christopher Bodnar
, which is currently blocked. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com [cid:image001.png@01D1326B.600058E0

[NTSysADM] OT: Excel macro

2017-02-23 Thread Christopher Bodnar
End If Next count End Sub ********* Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com

[NTSysADM] AWS RDS and AD

2017-02-13 Thread Christopher Bodnar
always been a no from our security guys. Wondered if anyone else had run into this. Thanks, Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod

[NTSysADM] DDI in public cloud?

2017-02-09 Thread Christopher Bodnar
and DDI overlay (InfoBlox, BlueCat, SolarWinds) Appreciate input from those who have run through this already. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA

RE: [NTSysADM] DHCP 2012 R2 failover

2017-02-06 Thread Christopher Bodnar
x.com/api/track/v2/e3lTCWYAXtsehyK7e/gIt92YuwWah12ZAVmbvpnYzFmI/i02bj5Sb1J3bmRXa51mLzR3cpxGQtRWYzl3c05mI] On Mon, Feb 6, 2017 12:58 PM, Christopher Bodnar christopher_bod...@glic.com<mailto:christopher_bod...@glic.com> wrote: Does this require 2012 DFL or FFL? Or will it work on 2008 R2 DFL/FFL?

[NTSysADM] DHCP 2012 R2 failover

2017-02-06 Thread Christopher Bodnar
Does this require 2012 DFL or FFL? Or will it work on 2008 R2 DFL/FFL? Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com

RE: [NTSysADM] Question re job interview

2017-02-02 Thread Christopher Bodnar
Just curious, what is the title of the position you are being interviewed for? Consulting? Or internal direct hire? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Graeme Carstairs Sent: Thursday, February 02, 2017 10:09 AM To:

RE: [NTSysADM] Disable TLS 1.0 on ADFS 3.0

2017-01-13 Thread Christopher Bodnar
adfs as part of a sso solution for Exchange, it would also apply there. From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Christopher Bodnar Sent: Friday, January 13, 2017 12:48 PM To: ntsysadm@lists.myitfor

RE: [NTSysADM] Disable TLS 1.0 on ADFS 3.0

2017-01-13 Thread Christopher Bodnar
://support.microsoft.com/en-us/kb/245030 Nathan Shelby ntshe...@gmail.com<mailto:ntshe...@gmail.com> 425-205-9047 On Fri, Jan 13, 2017 at 8:36 AM, Christopher Bodnar <christopher_bod...@glic.com<mailto:christopher_bod...@glic.com>> wrote: Can anyone point me to some documentat

[NTSysADM] Disable TLS 1.0 on ADFS 3.0

2017-01-13 Thread Christopher Bodnar
, I'm not sure where that is configured. Can't find any references to this. Thank you, Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com

[NTSysADM] FindTime

2017-01-05 Thread Christopher Bodnar
Just curious, we just heard about this and are looking at rolling this out to our user population. Looks perfect for scheduling meetings with outside resources. Just surprised that I had never heard about it before. https://findtime.microsoft.com/ Anyone out there using this? Christopher

[NTSysADM] RE: TestUser2 Group Membership

2016-12-20 Thread Christopher Bodnar
: TestUser2 Group Membership No Primary account should be Domain Users. Some admin just clicked through things I think From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Christopher Bodnar Sent: Tuesday, December 20, 201

[NTSysADM] RE: TestUser2 Group Membership

2016-12-20 Thread Christopher Bodnar
Are you using POSIX applications? Was there a reason that the Primary Group was changed for this account? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of David McSpadden Sent: Tuesday, December 20, 2016 1:24 PM To: ntsysadm@lists.myitforum.com Subject:

RE: [NTSysADM] External trust issue

2016-12-08 Thread Christopher Bodnar
You should be able to limit the traffic to only domain controllers talking back and forth. My guess is that you have the Corpcompany.corp users being directly added to the ACLs on the resources in server1. Try this: Create a Corpcompany.corp global group and add users to it Create a

[NTSysADM] Active Directory Based Activation with Windows 10 clients

2016-11-23 Thread Christopher Bodnar
results in this: 0xC004F056 I'll do a /DLV next to see if that provides any useful information, but so far I can't find anything that talks about this. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807

[NTSysADM] ADFS question: missing namespace prefix on elements

2016-11-18 Thread Christopher Bodnar
* http://sts.acme.com/adfs/services/trust So far my Google search has turned up a few things related to this, but nothing that talks about ADFS. Has anyone run into this before? Is there a way to get ADFS to add the namespace prefix to the elements? Thanks Christopher Bodnar Enterprise Ar

[NTSysADM] Volume activation in AWS

2016-11-16 Thread Christopher Bodnar
, will that override the registry entry that AWS puts in the instances? Was hoping someone else had run into this and found a solution. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900

RE: [NTSysADM] Kerberos over UDP on Windows 10 and Server 2012 R2

2016-11-15 Thread Christopher Bodnar
. Thanks, Brian Desmond w – 312.625.1438 | c – 312.731.3132 From: listsad...@lists.myitforum.com<mailto:listsad...@lists.myitforum.com> [mailto:listsad...@lists.myitforum.com] On Behalf Of Christopher Bodnar Sent: Thursday, November 10, 2016 1:40 PM To: ntsysadm@lists.myitforum.com<mailto

RE: [NTSysADM] Kerberos over UDP on Windows 10 and Server 2012 R2

2016-11-10 Thread Christopher Bodnar
esting, even if unrelated: http://blogs.msmvps.com/acefekay/2016/11/01/active-directory-flexible-authentication-secure-tunneling-fast/ Kurt On Thu, Nov 10, 2016 at 6:29 AM, Christopher Bodnar <christopher_bod...@glic.com<mailto:christopher_bod...@glic.com>> wrote: A colleague told me th

[NTSysADM] Kerberos over UDP on Windows 10 and Server 2012 R2

2016-11-10 Thread Christopher Bodnar
: https://support.microsoft.com/en-us/kb/244474 But that isn't what he is talking about. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod

RE: [NTSysADM] LDAP Ping question

2016-11-08 Thread Christopher Bodnar
estion, but I suspect you'll get a much better response on the Active Directory list at activedir.org<http://activedir.org> Kurt On Fri, Nov 4, 2016 at 8:57 AM, Christopher Bodnar <christopher_bod...@glic.com<mailto:christopher_bod...@glic.com>> wrote: OK, I’ve done some more tes

[NTSysADM] RE: Windows AD DNS

2016-11-08 Thread Christopher Bodnar
Did you see this yet? https://support.microsoft.com/en-us/kb/282826 Seems to indicate that SOA serial numbers on AD integrated zones will vary between DNS servers. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Gavin Wilby Sent: Tuesday, November

RE: [NTSysADM] LDAP Ping question

2016-11-04 Thread Christopher Bodnar
, but not in the new domain I just stood up. In Wireshark the UDP request is received by the DC, but it never responds. From: Christopher Bodnar Sent: Friday, November 04, 2016 10:14 AM To: ntsysadm@lists.myitforum.com Subject: RE: [NTSysADM] LDAP Ping question Now I’m really confused. After doing some more

RE: [NTSysADM] LDAP Ping question

2016-11-04 Thread Christopher Bodnar
r Sent: Thursday, November 03, 2016 9:19 PM To: ntsysadm@lists.myitforum.com Subject: Re: [NTSysADM] LDAP Ping question As I understand it, LDAP Ping is more of a handshake test - not an open port check. -- Espi On Thu, Nov 3, 2016 at 2:56 PM, Christopher Bodnar <christopher_bod...@gl

[NTSysADM] LDAP Ping question

2016-11-03 Thread Christopher Bodnar
requests and tested this. Is Portqry not a real test of this function? My next step will be to run a WireShark trace on a DC to look for this traffic. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807

[NTSysADM] AAD Connect question

2016-10-14 Thread Christopher Bodnar
-to-sql-server.aspx But I can't find anything about this on AAD Connect, which makes me think it's not supported. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem

RE: [NTSysADM] remote mgmnt of core

2016-09-09 Thread Christopher Bodnar
To verify that this is the case, do you have a full GUI 2012 R2 box that you can use to try and manage the Core server? That should tell you if it is an issue with the OS version, or version of the tools. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf

[NTSysADM] Access Management in a hybrid environment

2016-08-25 Thread Christopher Bodnar
to the appropriate cloud? Or are you doing all authentication and authorization at a primary site and then routing to the appropriate cloud? Thanks, Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459

[NTSysADM] OT: WAM replacement

2016-07-26 Thread Christopher Bodnar
has gone through this in the last year or so. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com [cid:image001.png@01D1326B

RE: [NTSysADM] Create random password

2016-06-28 Thread Christopher Bodnar
Are you looking to programmatically auto generate those passwords? Or just a way to get 300 at a time that you manually add to the CSV file? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of geoff_taylor geoff_taylor Sent: Tuesday, June 28, 2016 11:29 AM

RE: [NTSysADM] RE: PowerShell weaknesses

2016-06-27 Thread Christopher Bodnar
Something like this? Set ADSysInfo = CreateObject("ADSystemInfo") Set CurrentUser = GetObject("LDAP://" & ADSysInfo.UserName) strMail = CurrentUser.Mail strDisplayName = CurrentUser.DisplayName strUserPrincipalName = CurrentUser.userPrincipalName strSamAccountName = CurrentUser.samAccountName

[NTSysADM] RE: PowerShell weaknesses

2016-06-27 Thread Christopher Bodnar
get-aduser jdoe -Properties mail|select mail From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of James Rankin Sent: Monday, June 27, 2016 10:40 AM To: ntsysadm@lists.myitforum.com Subject: [NTSysADM] PowerShell weaknesses How can I used Get-ADUser to

[NTSysADM] OT: WAM replacement

2016-06-16 Thread Christopher Bodnar
if any openSource solutions fall into this category. Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com [cid:image001.png

[NTSysADM] RE: net use error 53

2016-06-10 Thread Christopher Bodnar
I agree with Matthew, it sounds like a name resolution issue. Have you tried mapping using the following: NetBIOS name FQDN IP address If all of those fail, it's probably not name resolution. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Matthew

[NTSysADM] RE: Domain controller updates

2016-05-20 Thread Christopher Bodnar
How long do you have to keep the 2003 boxes around? What does the end state look like from a DC perspective? How big is the environment? Multiple sites? Single forest? Single domain? From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Kennedy, Jim Sent:

RE: [NTSysADM] badPwdCount clarification

2016-05-17 Thread Christopher Bodnar
o:listsad...@lists.myitforum.com>] On Behalf Of Christopher Bodnar Sent: Tuesday, May 17, 2016 10:21 AM To: ntsysadm@lists.myitforum.com<mailto:ntsysadm@lists.myitforum.com> Subject: RE: [NTSysADM] badPwdCount clarification Hey Michael, this is great, thank you. One thing I still don’t get. According to

RE: [NTSysADM] badPwdCount clarification

2016-05-17 Thread Christopher Bodnar
article breaks it down granularly enough to answer your questions: http://social.technet.microsoft.com/wiki/contents/articles/32490.active-directory-bad-passwords-and-account-lockout.aspx -- Espi On Mon, May 16, 2016 at 12:04 PM, Christopher Bodnar <christopher_bod...@glic.

[NTSysADM] badPwdCount clarification

2016-05-16 Thread Christopher Bodnar
, at the next attempt the account enters a valid password, again to DC2, the new values will be: PDCe1=0 DC2=0 DC3=0 DC4=0 Or will they be: PDCe1=0 DC2=0 DC3=1 DC4=1 So should the value get reset on all domain controllers, or just the PDCE and the DC servicing the request? Thank you, Christopher

RE: [NTSysADM] OT: Home network issue

2015-04-02 Thread Christopher Bodnar
it, not that big a deal. But I'd love to figure this out if possible. Any thoughts? Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod

[NTSysADM] OT: Home network issue

2015-04-01 Thread Christopher Bodnar
love to figure this out if possible. Any thoughts? Thanks Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.commailto: [cid:image001

[NTSysADM] RE: Demote a DC

2015-03-17 Thread Christopher Bodnar
You say it's a DNS server as well. Just make sure you move everything that is pointing to it for DNS to another server. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Gavin Wilby Sent: Tuesday, March 17, 2015 7:24 AM To: 'ntsysadm@lists.myitforum.com'

[NTSysADM] OT: QoS for voice on home network

2015-02-23 Thread Christopher Bodnar
-quality-of-service-on-your-home-router/ Just wondered if anyone else can relay their experiences. Thanks, Christopher Bodnar Enterprise Architect II, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017

RE: [NTSysADM] Dynamic Access control in Windows Server 2012 R2 question

2015-01-05 Thread Christopher Bodnar
...@lists.myitforum.com] On Behalf Of Christopher Bodnar Sent: Friday, January 2, 2015 10:45 AM To: ntsysadm@lists.myitforum.commailto:ntsysadm@lists.myitforum.com Subject: [NTSysADM] Dynamic Access control in Windows Server 2012 R2 question Just got around to playing with this in a Dev environment

[NTSysADM] Dynamic Access control in Windows Server 2012 R2 question

2015-01-02 Thread Christopher Bodnar
a Windows 7 client should work with this. So far I've only tested with a 2012 R2 client. Can anyone confirm that? Thanks Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem

[NTSysADM] FGPP question

2014-12-30 Thread Christopher Bodnar
, it correctly shows me PPO that is directly associated to it: [cid:image004.png@01D0241A.4016A580] Is this feature only available in 2012 DFL/FFL? Thanks, Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900

RE: [NTSysADM] FGPP question

2014-12-30 Thread Christopher Bodnar
...@lists.myitforum.com [mailto:listsad...@lists.myitforum.commailto:listsad...@lists.myitforum.com] On Behalf Of Christopher Bodnar Sent: Tuesday, December 30, 2014 10:21 AM To: ntsysadm@lists.myitforum.commailto:ntsysadm@lists.myitforum.com Subject: [NTSysADM] FGPP question We finally have a use case where we

RE: [NTSysADM] drive recovery services recommendations?

2014-11-21 Thread Christopher Bodnar
http://www.krollontrack.com/data-recovery/ Nathan Shelby Lead Systems Engineer – Quote Wizardhttps://quotewizard.com/ nshe...@qw-corp.commailto:nshe...@qw-corp.com / 206-753-2626 Malo Periculosam Libertatem Quam Quietum Servitium On Thu, Nov 20, 2014 at 2:17 PM, Christopher Bodnar

[NTSysADM] drive recovery services recommendations?

2014-11-20 Thread Christopher Bodnar
Anyone got a recommendation on this? Personal use , not business. 500G SATA Seagate, looking to recover about 20G of data files (Word, Excel, pictures, etc.). No luck on my own with various methods (UBCD, GParted, Acronis, etc). Thanks Christopher Bodnar Enterprise Architect I

[NTSysADM] RE: drive recovery services recommendations?

2014-11-20 Thread Christopher Bodnar
...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Christopher Bodnar Sent: Thursday, November 20, 2014 2:17 PM To: ntsysadm@lists.myitforum.commailto:ntsysadm@lists.myitforum.com Subject: [NTSysADM] drive recovery services recommendations? Anyone got a recommendation on this? Personal

[NTSysADM] partition or data recovery?

2014-11-18 Thread Christopher Bodnar
test files, they were corrupt. I'm hoping that maybe a better took (GParted ?) might help? Thoughts? Thanks Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017

RE: [NTSysADM] Looking for inventorying system

2014-10-06 Thread Christopher Bodnar
I know SpiceWorks has this functionality. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Tom Miller Sent: Sunday, October 05, 2014 10:19 AM To: NTSysADM@lists.myitforum.com Subject: [NTSysADM] Looking for inventorying system We use a

RE: [NTSysADM] Powershell - getting details of GPO settings (folder redirection)

2014-10-06 Thread Christopher Bodnar
If you are looking for a 3rd party utility for this SDM software makes some pretty nice PowerShell CMDLets for GPO that would do this. From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Michael Leone Sent: Monday, October 06, 2014 10:10 AM To:

[NTSysADM] RE: need a Powershell script to resolve a campus student email problem

2014-09-12 Thread Christopher Bodnar
Something like this? get-qadUser -searchRoot OU=GMailUsers,dc=widgets,dc=com|move-qadobject -NewParentContainer OU=TempOU,dc=widgets,dc=com From: listsad...@lists.myitforum.com [mailto:listsad...@lists.myitforum.com] On Behalf Of Dave Hardyman Sent: Friday, September 12, 2014 9:51 AM To:

[NTSysADM] deny logon locally

2014-08-28 Thread Christopher Bodnar
but the maintenance will be significantly higher than the GPO approach. Wondering if anyone else out there has had to go through this. Thanks Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900

[NTSysADM] Fw: -FilterXpath help

2014-08-14 Thread Christopher Bodnar
={$_.properties[9].value}} But none of the other values for LogonProcessName work (NTLM, Advapi, NtLmSsp). I still get: No events were found that match the specified selection criteria Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering

[NTSysADM] -FilterXpath help

2014-08-12 Thread Christopher Bodnar
by the value of the LogonProcessName if possible. Thanks Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life Insurance

Re: [NTSysADM] LDAP Administrator question

2014-08-11 Thread Christopher Bodnar
Yes,... the first thing I found when I started looking into this. Since the post is 12 years old and LDAP Administrator has gone through a number of updates since then, trying to find out if it has overcome this issue, as other tools have. Christopher Bodnar Enterprise Architect I

RE: [NTSysADM] LDAP Administrator question

2014-08-09 Thread Christopher Bodnar
Thanks Michael... I'm aware of the other options. What I would like is a single pane of glass into all our directories (Domino LDAP, AD, ITAM, etc) This would something like LDAP Administrator will give me that type of view. Christopher Bodnar Enterprise Architect I, Corporate Office

[NTSysADM] LDAP Administrator question

2014-08-08 Thread Christopher Bodnar
have this limitation. I've already tried LDAP Admin Tool by LDAPSoft,which does not have this limitation, and like it but prefer the Softerra one. Thanks Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459

[NTSysADM] AUTO: Christopher Bodnar is out of the office. (returning 08/04/2014)

2014-07-25 Thread Christopher Bodnar
I am out of the office until 08/04/2014. I will respond to your message when I return. If you need immediate assistance please contact the following: For Office 365 related issues (Jeff Adolph) For Active Directory related issues (Earl Lewis) For PING related issues (Matt Schwartz or Vikas

RE: [NTSysADM] service account question

2014-07-11 Thread Christopher Bodnar
Thanks Brian. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life Insurance Company of America

[NTSysADM] service account question

2014-07-10 Thread Christopher Bodnar
Explorer show me this? Thanks Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life Insurance Company of America

Re: [NTSysADM] DHCP server security

2014-06-19 Thread Christopher Bodnar
Yes there are some concerns regarding secure dynamic updates if the DHCP/DC are on the same host: http://technet.microsoft.com/en-us/library/cc961412.aspx Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807

RE: [NTSysADM] OT: LDAP attribute in Domino

2014-05-30 Thread Christopher Bodnar
to be added to the schema. He showed me examples of both. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life

RE: [NTSysADM] OT: LDAP attribute in Domino

2014-05-30 Thread Christopher Bodnar
Thanks Michael my question is not about the attribute in AD, but about an attribute that was created in Domino LDAP Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem

[NTSysADM] OT: LDAP attribute in Domino

2014-05-29 Thread Christopher Bodnar
this attribute, but when I say find in Schema (I use Softerra LDAP Browser) it says it doesn't exist, which corresponds to what I see in the schema, attribute isn't there. So where exactly does domino store this? It's not a big deal, just never saw this before. Thanks, Christopher Bodnar

Re: [NTSysADM] Adding a 2012 R2 DC issue

2014-05-15 Thread Christopher Bodnar
Must be a member of : Domain Admins Enterprise Admins Schema Admins Verify that the account you are running this with, is in those groups. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900

RE: [NTSysADM] splunk question

2014-05-13 Thread Christopher Bodnar
Thank you. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life Insurance Company of America

Re: [NTSysADM] Security groups in AD

2014-05-13 Thread Christopher Bodnar
Did you see this? http://support.microsoft.com/kb/2830145 Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life

[NTSysADM] FGPP question

2014-05-01 Thread Christopher Bodnar
Can you manage FGPP of a 2008 FFL domain from an Active Directory Administrative Center on a Windows 2012 server? Or do I still have to do it through ADSI edit? Thank you, Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering

RE: [NTSysADM] OT: Microsoft Bing in the classroom

2014-04-25 Thread Christopher Bodnar
Bill and Alice, LODPC Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life Insurance Company of America

Re: [NTSysADM] Win 2003 DC

2014-04-11 Thread Christopher Bodnar
If the only DC is 2003, that means the DFL/FFL is at most 2003, so adding another 2003 DC is fine. You will have no issues. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place

[NTSysADM] KMS question

2014-04-04 Thread Christopher Bodnar
Can anyone tell me if I can add an Office 2013 KMS key to an existing Windows Server 2008 (not R2) KMS host ? Everything I'm reading specifically states that 2008 R2 is supported as a KMS host for this, but nothing I found so far says that 2008 (not R2) isn't. Thanks Christopher Bodnar

Re: [NTSysADM] unable to join domain

2014-03-13 Thread Christopher Bodnar
getting the right SRV records for the domain controllers. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life

RE: [NTSysADM] RE: One of those dumb things...

2014-03-10 Thread Christopher Bodnar
RACF Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life Insurance Company of America www.guardianlife.com

Re: [NTSysADM] who and when an AD user account disabled

2014-02-20 Thread Christopher Bodnar
If auditing of that is enabled, not sure what the default is... .yes. Event ID 4725 for user accounts in 2008. On 2003 it was 629. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess

RE: [NTSysADM] who and when an AD user account disabled

2014-02-20 Thread Christopher Bodnar
Also might want to take a look at this: http://technet.microsoft.com/en-us/library/cc731607(v=ws.10).aspx Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017

Re: [NTSysADM] strange network issue

2014-02-20 Thread Christopher Bodnar
It sounds like DHCPRELAY is enabled on the inside interfaces of the cisco firewalls, which is not what you want. It's allowing the packets to get to the opposite side of the tunnel. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture

RE: [NTSysADM] strange network issue

2014-02-20 Thread Christopher Bodnar
You can access the opposite side with the VPN tunnel disconnected? Do a traceroute and find what it's going through to get there. If you pull the plug on the cable modem, does it fail? Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture

RE: [NTSysADM] strange network issue

2014-02-20 Thread Christopher Bodnar
If you are able to get from site A to site B with the cable modem disconnected, then there is some other route to the remote site. Wi-Fi Hot-spot.rouge router direct cable access run you are not aware of. Christopher Bodnar Enterprise Architect I, Corporate Office

Re: [NTSysADM] RE: 20 years of Microsoft's homepage

2014-02-13 Thread Christopher Bodnar
Really? That would have been in 2005 (2003 R2 ). I find it really hard to believe that MS had servers outside of a data center at that time period. I could believe it back in the 90's. This just seems a little far fetched to me. Christopher Bodnar Enterprise Architect I, Corporate Office

[NTSysADM] OT: NE snow

2014-02-13 Thread Christopher Bodnar
Anyone else getting hit right now? All of our NE offices are essential personnel only, all else WFH. Latest prediction or our area is 12-16, which is a lot for here. Of course my 7 year old couldn't be happier. Christopher Bodnar Enterprise Architect I, Corporate Office

Re: [NTSysADM] Optimize all of your storage into one

2014-02-12 Thread Christopher Bodnar
. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life Insurance Company of America www.guardianlife.com From

Re: [NTSysADM] DCOM

2014-02-05 Thread Christopher Bodnar
Do those machines have BESR or SSR installed on them? Take a look at this: http://www.symantec.com/business/support/index?page=contentid=TECH125800 http://www.symantec.com/business/support/index?page=contentid=TECH69112 Christopher Bodnar Enterprise Architect I, Corporate Office

[NTSysADM] AD FS question

2014-02-03 Thread Christopher Bodnar
this with AD FS? Can the front end authentication be LDAP, not AD? Since the IdP system isn't doing the authentication anyway, I don't think it should matter. Anyone else doing something similar with it? Thanks Christopher Bodnar Enterprise Architect I, Corporate Office

Re: [NTSysADM] Virtual machines

2014-01-28 Thread Christopher Bodnar
thought would be to get volume licenses and setup KMS. I believe this would solve the whole problem. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017

Re: [NTSysADM] IT resumes?

2014-01-23 Thread Christopher Bodnar
prefer to see something like this: Developed SCCM Task Sequences to update system files across 15 sites. Instead of this: Managed SCCM Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess

Re: [NTSysADM] Computer Group Policy not applied to XP

2014-01-08 Thread Christopher Bodnar
What does the forest hierarchy look like? Any trusts here? Are any of the XP machines showing global security group membership in any other groups? Or don't they show membership in any global groups? How many machines exhibit this behavior? When did it start? Christopher Bodnar Enterprise

Re: [NTSysADM] Happy Holidays y'all

2013-12-24 Thread Christopher Bodnar
Just watched the first showing of A Christmas Story on TBS. I love that movie. Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com

Re: [NTSysADM] SQL Gurus - migrate to a lower version

2013-12-13 Thread Christopher Bodnar
How about this? http://yrushka.com/index.php/database-recovery/restore-sql-2008-r2-database-on-sql-2008-sp1-instance/ Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem

Re: [NTSysADM] PowerShell is my weakness....

2013-12-10 Thread Christopher Bodnar
get-childitem c:\temp\* |select -expandproperty lastAccessTime|get-date -Format g Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com

[NTSysADM] AUTO: Christopher Bodnar is out of the office. (returning 12/09/2013)

2013-12-06 Thread Christopher Bodnar
I am out of the office until 12/09/2013. I will respond to your message when I return. If you need immediate assistance please contact the following: For Active Directory related issues (Earl Lewis) For PING related issues (Matt Schwartz or Vikas Nanda) For SCCM related issues (Jeremy Stevens)

Re: [NTSysADM] R.I.P. postini

2013-12-05 Thread Christopher Bodnar
Just curious...what is the reason for not transitioning to Google Apps. Are there specific Postini features that aren't being migrated that you need? http://postini-transition.googleapps.com/features-not-included Christopher Bodnar Enterprise Architect I, Corporate Office

[NTSysADM] problem with IE 10 and 11 on home machine

2013-11-26 Thread Christopher Bodnar
Combofix.exe Anyone ever see something like this? Christopher Bodnar Enterprise Architect I, Corporate Office of Technology:Enterprise Architecture and Engineering Services Tel 610-807-6459 3900 Burgess Place, Bethlehem, PA 18017 christopher_bod...@glic.com The Guardian Life Insurance

  1   2   >