Windows 10: Domain

Discus and support Domain in AntiVirus, Firewalls and System Security to solve the problem; You have all lost any sense of right and wrong, moving to completely control eveypect of good peoples computers , removing controls and options from... Discussion in 'AntiVirus, Firewalls and System Security' started by Stubby Stumps, May 30, 2022.

  1. Domain


    You have all lost any sense of right and wrong, moving to completely control eveypect of good peoples computers , removing controls and options from the end user and demanding ever increasing control over what their computers can and are used for. Pulling EVERY BYTE OF PERSONAL INFORMATIN ABOUT EVERY USER and using it for nefarious purposes.Its time for us to have a go at you in court.

    :)
     
    Stubby Stumps, May 30, 2022
    #1
  2. bdanmo Win User

    UnattendedJoin error: failed to find the domain data (0x6e)

    Thanks for the suggestion! I don't want to add a domain account, as this is a generic unattended install that will be used for all company machines. Do you think it's possible that the computer would join the domain if, instead of using UnattendedJoin in specialize, I used your steps but left out the specific account?

    The other thing I was thinking was to use a generic account to allow the domain join during the specialize step. I added a machine password in the UnattendedJoin component, and instead of getting the error listed above, I got an authentication error, which makes me think I could probably do a secure join instead of the unsecure join.

    Thoughts?
     
    bdanmo, May 30, 2022
    #2
  3. changari Win User
    Raising the windows domain and forest issues?


    hi,

    I run a domain that was all 2003 r2 servers. I recently upgraded all my domain controllers to windows 2012 r2.
    That went off without any problems.. Our trust relationships had no issues also.

    My first step was to raise the Domain and Forest levels past 2003 to 2008. This went off without a hitch.
    These are the features for raising the levels to 2008:

    • Features and benefits include all default Active Directory features, all features from the Windows Server 2003 domain functional level, plus:
    • Read-Only Domain Controllers – Allows implementation of domain controllers that only host read-only copy of NTDS database.
    • Advanced Encryption Services – (AES 128 and 256) support for the Kerberos protocol.
    • Distributed File System Replication (DFSR) – Allows SYSVOL to replicate using DFSR instead of older File Replication Service (FRS). It provides more robust and detailed replication of SYSVOL contents.

    Forest Level Windows Server 2008

    • Features and benefits include all of the features that are available at the Windows Server 2003 forest functional level, but no additional features. All domains that are subsequently added to the forest will operate at the Windows Server 2008 domain functional level by default.


    My next step is to raise the domain and forest to 2008 r2, then 2012, and finally 2012 r2. I have been trying to find out exactly what I could expect from raising the Domain and Forest for each step.

    The step involving 2008 r2 seems relatively a non issue. But getting the couple of new features seem very nice

    Domain Level Windows Server 2008 R2

    • All default Active Directory features, all features from the Windows Server 2008 domain functional level, plus 2 new features

    Forest Level Windows Server 2008 R2

    • All of the features that are available at the Windows Server 2003 forest functional level, plus the following features:


    • Active Directory Recycle Bin, which provides the ability to restore deleted objects in their entirety while AD DS is running. <== New Feature very cool
    • All domains subsequently added to the forest will operate at the Windows Server 2008 R2 domain functional level by default.

    Here is my big concerns for the next raising of domain and forest to 2012.

    Forest Level Windows Server 2012:

    • All of the features that are available at the Windows Server 2008 R2 forest functional level, but no additional features.
    • All domains subsequently added to the forest will operate at the Windows Server 2012 domain functional level by default.

    Domain Level Windows Server 2012 R2: <=====
    Need to investigate more and why this post

    • DC-side protections for Protected Users. Protected Users authenticating to a Windows Server 2012 R2 domain can no longer:


    • Authenticate with NTLM authentication <==============(what issues may arise)
    • Use DES or RC4 cipher suites in Kerberos pre-authentication
    • Be delegated with unconstrained or constrained delegation
    • Renew user tickets (TGTs) beyond the initial 4-hour lifetime


    Will this affect my exchange anywhere users with remote access authenticating either clear of NTLM???
    and what would/may not to work properly day 1 when I raise the domain and forest to 2012. I cant really find anyone that can answer a straight question.

    Has anyone gone through this? what problems did you have, if any , if a lot???

    Any thoughts and suggestions will be much appreciated??

    thanks


    - - - Updated - - -

    One more point... I am not sure if I posted this to the correct forum.. So if I was wrong and it should be in a different one..
    PLEASE LET ME KNOW
     
    changari, May 30, 2022
    #3
  4. robos Win User

    Domain

    Getting a domain name...

    Just simple 3 steps to make your website glow to millions…
    Step 1: Sign up now and get a FREE domain!
    Step 2: Design your new website in minutes!
    Step 3: You are live! Share your life online!

    Click here…
     
    robos, May 30, 2022
    #4
Thema:

Domain

Loading...
  1. Domain - Similar Threads - Domain

  2. Domain User Permissions Not Working on Windows 11 Home – Shared Printer Access Denied

    in Windows 10 Gaming
    Domain User Permissions Not Working on Windows 11 Home – Shared Printer Access Denied: Hello everyone,I'm experiencing a specific access issue with a new laptop running Windows 11 Home Edition in a domain-managed environment.We have a Windows Server 2019 that manages the domain for an educational institution. Our users students, technicians, and teachers are...
  3. Domain User Permissions Not Working on Windows 11 Home – Shared Printer Access Denied

    in Windows 10 Software and Apps
    Domain User Permissions Not Working on Windows 11 Home – Shared Printer Access Denied: Hello everyone,I'm experiencing a specific access issue with a new laptop running Windows 11 Home Edition in a domain-managed environment.We have a Windows Server 2019 that manages the domain for an educational institution. Our users students, technicians, and teachers are...
  4. AD DNS/DC with workstations unable to join domain

    in Windows 10 Gaming
    AD DNS/DC with workstations unable to join domain: So two DC/DNS servers via site-site VPN with a client in a third location that can ping/see them both..- The client can FQDN and hostname values for the servers..- Dcdiag shows the DNS servers are clean.- The whole _ldap._tcp.dc._msdcs.For example, this is the output of a...
  5. AD DNS/DC with workstations unable to join domain

    in Windows 10 Software and Apps
    AD DNS/DC with workstations unable to join domain: So two DC/DNS servers via site-site VPN with a client in a third location that can ping/see them both..- The client can FQDN and hostname values for the servers..- Dcdiag shows the DNS servers are clean.- The whole _ldap._tcp.dc._msdcs.For example, this is the output of a...
  6. AD DNS/DC with workstations unable to join domain

    in AntiVirus, Firewalls and System Security
    AD DNS/DC with workstations unable to join domain: So two DC/DNS servers via site-site VPN with a client in a third location that can ping/see them both..- The client can FQDN and hostname values for the servers..- Dcdiag shows the DNS servers are clean.- The whole _ldap._tcp.dc._msdcs.For example, this is the output of a...
  7. Auto Login to Domain no longer works after upgrading Windows 11 to 24H2

    in Windows 10 Gaming
    Auto Login to Domain no longer works after upgrading Windows 11 to 24H2: Hello,I work for a school district using that is using smart panels in the classrooms using a windows PC for teachers to use. Since these are big touch screen devices, we have them auto-login to a specific Active Directory account so that the panel can be used without having...
  8. Auto Login to Domain no longer works after upgrading Windows 11 to 24H2

    in Windows 10 Software and Apps
    Auto Login to Domain no longer works after upgrading Windows 11 to 24H2: Hello,I work for a school district using that is using smart panels in the classrooms using a windows PC for teachers to use. Since these are big touch screen devices, we have them auto-login to a specific Active Directory account so that the panel can be used without having...
  9. How to block domain users from installing any apps

    in Windows 10 Gaming
    How to block domain users from installing any apps: Hello Team,We have received a request from the client to ensure that no applications including .msi or .exe files can be installed on PCs unless the user has domain administrator credentials. This measure is intended to mitigate the risk of potential security breaches.So far,...
  10. How to block domain users from installing any apps

    in Windows 10 Software and Apps
    How to block domain users from installing any apps: Hello Team,We have received a request from the client to ensure that no applications including .msi or .exe files can be installed on PCs unless the user has domain administrator credentials. This measure is intended to mitigate the risk of potential security breaches.So far,...