We have started trying to better organise our groups into a more role based system, so that membership of one group is based on a role rather than a person. That way if the person holding a position changes (holiday, retirement, etc) we just make one change and the replacement user gets all the correct [...]
Migrating DHCP reservations from Novell to MicrosoftWe are gradually migrating our core services from Netware to Windows Server 2003 and 2008. As part of this migration we needed to migrate all our DHCP reservations stored on our Novell servers to Windows Servers. |
Renaming Novell user accountsRecently we had to change the login names for around 1200 students. As part of this rename we needed to change their Novell eDirectory account and home directory. We also needed to ensure linked systems such as an LDAP authenticated Moodle site and an IDM linked Active Directory (AD) domain were properly updated. To perform [...] |
|
AD Password Reset and Bulk ModifyThose who in the past have used the Novell Change Pass utility may have been missing it when moving to Active Directory. A great tool is Wisesoft Password Control which allows you to just type in the username, it will display info about the account and give you the option to change the password, enable/disable [...] |
Access-based EnumerationA great new feature in Windows Server 2003 is Access-based Enumeration (ABE). What ABE does is hide any file or folder that a user does not have access to. So for example the folder where you store all your users home drives, would usually appear jam packed with folders, most of which would return an [...] |
Security TemplatesWhen using Group Policies with Zenworks and Windows XP you may find users are able to create folders and files in root of C:. This is due to the change in default security settings for drives on Windows XP from 2000. You need to use the Security Template editor to create a template restricting rights [...] |
AD ExplorerAn LDAP browser for Active Directory. Makes it easy to see all attributes of objects and assists in configuring web applications that authenticate using LDAP. http://www.microsoft.com/technet/sysinternals/Networking/AdExplorer.mspx You can connect to your AD server without knowing any LDAP paths, just use your standard login. Can also take snapshots to allow you to see what effect changes [...] |
