Questions tagged [domain-controller]

A domain controller is a server in a Microsoft Active Directory or NT4 domain that is responsible for central authentication.

In Microsoft Active Directory and NT4 domains, a domain controller is the central repository for all of the user account authorization information. It allows a person to sign on once and be allowed access to many different resources.

1589 questions
0
votes
0 answers

Error promoting Windows Server 2022 to Domain Controller

I have a virtual Windows 2022 Server in a VMWare ESXi environment, and a WS2019 virtual in another host, which is my Active Directory Domain Controller. I've been trying to promote the WS2022 to domain controller, but it fails during the process…
0
votes
0 answers

Deleting all dynamic DNS records from AD-Integrated DNS server? What can go wrong?

[1 Forest, 1 Domain, 2 DCs and nothing more - nothing special] Is it OK, to remove all dynamic records from DNS. If I decide to do so, should I do the same on the second Domain Controller? Beside one result - that those records would not be…
0
votes
0 answers

ADO on premise recovery scenario (domain controller, app tier + db tier)

We are thinking about disaster recovery scenarios of one of our services and I am currently lacking some knowledge or sources to further investigate. We have an Azure DevOps On Premise server that has its application tier on a different machine than…
0
votes
0 answers

I can't PING to my Cisco router when I try to access the domain server

I have this network image I tried to connect the pc1 to the domain (in Windows Server 2012). To do that I tried to PING from pc1 to the server and that works. After that I go the pc1(Windows 7) and I change it from workgroup to domain, I inserted…
0
votes
0 answers

Kerberos Errors in Azure Event ID 5

Hi there we have a file server and DC. Sometimes connections to the file server are failing, and looking through the event viewer errors I am seeing lots of Kerberos errors. The Kerberos client received a KRB_AP_ERR_TKT_NYV error from the server .…
cybernull
  • 1
  • 1
0
votes
1 answer

How many Domain Controllers might a Windows Client send LDAP Ping to when trying to locate a DC for Authentication?

I'm a cybersecurity researcher, studying netflow patterns to learn about reflective DDoS events that leverage CLDAP as a UDP reflection vector. I need to be able to distinguish between a windows client legitimately using the LDAP Ping to discover…
chad
  • 439
  • 1
  • 4
  • 8
0
votes
0 answers

Domain Controller Upgrade 2019 to 2022

I have 3 Domain controller in my environment Windows Server 2019 Standard. Primary DC : On-prem (FSMO role) Secondary DC : On-prem Tertiary DC : Cloud I want to upgrade my domain environment to windows server 2022.I tried to direct upgrade from…
0
votes
1 answer

Readonly Domain Controller for Remote Office

We have two locations, one in Miami (192.168.3.0/24) and the other in New York (192.168.5.0/24). The two locations are linked via VPN. I wanted to set up an Read-only Domain Controller (RODC) in New York, with servers and PCs running in that…
user1913559
  • 219
  • 2
  • 12
0
votes
1 answer

Firewall Ports Domain Controller to Clients

I am working on the segmentation of a network. Domain controllers and clients are located in different VLANs and are separated by a hardware firewall. Many ports must be opened for communication in the domain. In my opinion, most of the required…
Mia
  • 3
  • 2
0
votes
0 answers

Leaving Windows Servers out of a domain

I'm not much used to running Windows Servers and need ground to either defend or withdraw from this idea and have found nothing on Google. The company I work for recently suffered a ransomware attack. Sufice to say they gained access to all our…
0
votes
0 answers

retrieve computer name on domain controller

Good morning. I currently have a domain controller (Windows server 2019) where there are approximately 500 users and computers. when a computer x is damaged, it reinstalls the operating system. The question is, how can I return to the same name that…
0
votes
2 answers

Changing an AD account password - what services will it break?

we have a bunch of AD accounts that are used for various purposes (allows scanners to save a file on a network folder, or it runs a service or scheduled task). Is there a quick way of seeing where the account is being used (even just hostname/ IP…
0
votes
1 answer

Domain Member Servers - Accessing Certificate Revocation List (CRL)

In my environment I have a Enterprise Root CA installed on a domain controller and a separate domain controller configured as a Subordinate CA - I know this isn't recommended for security reasons but it's what I inherited. The Certificate Enrollment…
0
votes
1 answer

How to correctly sync time of an Hyper-V host which is member of a domain?

There are many posts concerning issues when dealing with time synchronisation over a domain which holds virtualised PDC Emulators (see this article). As a result our PDC Emulator time (and domain time), although configured to sync from an…
Riccardo
  • 253
  • 1
  • 3
  • 13
0
votes
1 answer

PDCe time won't sync

I'm encountering a very strange situation where the time on my VM-hosted PDCe is reported as synced, but the actual time doesn't sync. The server's running about an hour fast. Here's what I've got: I'm unable to update the time at the command…
InteXX
  • 753
  • 2
  • 15
  • 33