=====Links===== [[http://support.microsoft.com/kb/260575|Netdom.exe gebruiken om wachtwoorden van computeraccounts van een Windows 2000-domeincontroller opnieuw in te stellen (kb260575)]] \\ [[http://support.microsoft.com/kb/216393|Resetting computer accounts in Windows 2000 and Windows XP (kb216393]] \\ [[http://support.microsoft.com/kb/325850|How to use Netdom.exe to reset machine account passwords of a Windows Server 2003 domain controller(kb325850)]] \\ [[http://www.rlmueller.net/MoveOldComputers.htm|Move Old Computers]] \\ [[http://directoryprogramming.net/|Directory Programming .NET]] \\ [[http://support.microsoft.com/kb/555040/en-us|Common Mistakes When Upgrading a Windows 2000 Domain To a Windows 2003 Domain]] \\ [[http://support.microsoft.com/kb/325379|Windows 2000-domeincontrollers bijwerken naar Windows Server 2003]] \\ [[http://www.microsoft.com/downloads/details.aspx?FamilyID=61acb9b9-c354-4f98-a823-24cc0da73b50&DisplayLang=en|Ultrasound - Monitoring and Troubleshooting Tool for File Replication Service (FRS)]] \\ [[http://www.microsoft.com/downloads/details.aspx?FamilyID=64DB845D-F7A3-4209-8ED2-E261A117FC6B&displaylang=en|Running Domain Controllers in Virtual Server 2005]] \\ [[http://www.computerperformance.co.uk/Logon/LDAP_attributes_active_directory.htm|Research LDAP* Properties for the User object]], zie ook [[http://www.rlmueller.net/Name_Attributes.htm|Names for Objects in Active Directory]]\\ =====Restore van Active Directory objecten===== [[http://support.microsoft.com/?kbid=840001|How to restore deleted user accounts and their group memberships in Active Directory]] \\ [[http://www.microsoft.com/technet/technetmag/issues/2007/09/Tombstones/default.aspx|Reanimating Active Directory Tombstone Objects]] \\ [[http://technet.microsoft.com/en-us/sysinternals/bb963906.aspx|AdRestore]] \\ =====Disable machine account password change (voor VM)===== Voor VM's die lid zijn van het domein komt het voor dat bij het resetten van de VM naar een bepaalde snapshot het wachtwoord voor de computer account in AD voor opbouwen van de secure channel niet meer klopt omdat deze gewijzigd is in AD door de VM nadat de snapshot is gemaakt. Hier kan de het volgende tegen gedaan worden: * Maak of edit een GPO. * Ga naar Computer Configuration->Windows Settings->Security Settings->Local Policies->Security Options. * Enable Domain member: Disable machine account password changes. * Zorg dat de snapshot van de VM deze instelling toegepast heeft. Dit kan ook via de registry: Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters] "DisablePasswordChange"=dword:00000001 "Machine account passwords are changed every seven days automatically." - Bron:[[http://www.windowsnetworking.com/nt/registry/rtips164.shtml|Machine Account Password Changes]] \\ Zie ook:[[http://support.microsoft.com/kb/154501/en-US|How to disable automatic machine account password changes]] \\ =====Tools===== [[http://www.codeplex.com/admodify|ADModify.NET]] zie ook: [[http://msexchangeteam.com/archive/2004/08/04/208045.aspx|Microsoft Exchange Team Blog - ADModify.NET is here!]] \\ =====Troubleshooting===== [[http://www.microsoft.com/technet/technetmag/issues/2007/09/tombstones/default.aspx|Reanimating Active Directory Tombstone Objects]] \\ ====Groepsleden in global group hebben grijs ipv zwart haar==== [[http://support.microsoft.com/?kbid=281923|Hair color of the "person" icon for a user group becomes gray if the group contains more than 500 users]] \\ [[http://forums.serverwatch.com/showthread.php?t=17831|Grey haired user icons in MEMBERS tab of GROUP properties]] \\ [[http://www.windowsitpro.com/Articles/ArticleID/21073/21073.html?Ad=1|Why has my user group person icon's hair gone gray?]] \\