Domain Controller that is also Entra Sync Server permanently offline - How to reconnect On-premises AD to Azure / Entra
We are a small business, and have two Active Directory Domain Controllers, both running Windows Server 2022 [PENTAGRAM-1] [PENTAGRAM-2] PENTAGRAM-1 is the Primary Domain Controller. It also has Entra Connect installed and syncing to our Azure/Entra…
How do I limit the size of Sysmon folder content?
We have sysmon configured in our servers C:\Sysmon. There is no quota or limit on this folder set, so it keep inclreasing and we get the high disk volume alerts in odd hours, then we have to delete the files manually. Is there any option to capping the…
The Remote Desktop license server could not be registered as a service connection point in Active Directory Domain Services (AD DS).
I have a RDS Windows Server DC 2022, which I add all the CAL and I am getting the below ERR The Remote Desktop license server could not be registered as a service connection point in Active Directory Domain Services (AD DS). Ensure that there is network…
Password hash synchronization is not working
I am switching from ADFS authentication to Password Hash Synchronization. I have enable the PHS successfully on AAD Connect sync and it was successful. I have changed the authentication method to PHS. However, when I tried to login to M365 portal, I get…
How to configure multiple group based filtering in Azure AD connect sync
I have configured Azure AD connect sync using group based filtering so only member of a group Azure-Sync are synchronized to AAD. However, there is biz demand that we should add one more group for filtering group name is Azure-Sync-IT. Member of either…
GPO vs WMI Filter Processing
Hi MSFT, If i have the same WMI filter applying to 10x individual GPOs, does Windows evaluate that filter once or 10 times?
Microsoft Defender for Identity required licenses and scope?
Before I turn on everything under the Microsoft Defender for Identity from the https://security.microsoft.com/ portal. I wanted to know if I must enable or purchase licenses like Sentinel and Defender ATP or some other licenses I may have missed here.All…
![](https://techprofile.blob.core.windows.net/images/WsWYoGdWukeBW66msAr6qQ.png?8D8128)
![](https://techprofile.blob.core.windows.net/images/j3TRd_rFC0qCFnQYRqJCAA.png?8D83E6)
WIndows hello registration disappears.
I have a domain joined Thinkpad 14 gen 1 with windows hello enabled via GPO on in our AD. The user has successfully set up their fingerprint and facial recognition to unlock or login to windows. They've reported the windows hello randomly stops working.…
Cache manager :getidtoken token not found issue
When refreshing application using browser refresh getting token not found plz find the logs using msal-anhular^2.2.1 msal-browser ^2.22.0 Mon, 29 Jul 2024 17:24:48 GMT] : @azure/msal-common@13.3.3 : Info - CacheManager:getIdToken - No token…
An error occurred executing Configure AAD Sync task: An error occurred while sending the request.
Hello, I have installed the Microsoft Azure AD Connect V2 and trying to perform sync. However, getting error message "An error occurred executing Configure AAD Sync task: An error occurred while sending the request." On azure i can see the…
AD user takes forever to sign in to AD computer and reboot
Dear Experts, I have lenovo L380 L390 that were deployed with Windows 11, and everything works just fine if we used a local admin account, these are AD computers but if we used the domain user account trying to sign in, it takes a very long time like…
![](https://techprofile.blob.core.windows.net/images/72HU1RH-WEGeY0-fx2oe9g.png?8DBBA8)
How to check the password policy in our org?
Dear Experts, I've checked https://learn.microsoft.com/en-us/entra/identity/authentication/concept-sspr-policy#password-policies-that-only-apply-to-cloud-user-accounts?WT.mc_id=365AdminCSH_SupportCentral to understand how to confirm what is the password…
![](https://techprofile.blob.core.windows.net/images/72HU1RH-WEGeY0-fx2oe9g.png?8DBBA8)
![](https://techprofile.blob.core.windows.net/images/72HU1RH-WEGeY0-fx2oe9g.png?8DBBA8)
How can I delete old Windows event logs
Hi Experts, Windows server run out of space on C drive due to GPO that doesn't delete old event logs. Could someone please let me know how to delete old event logs via GPO I am looking forward to hearing from you Regards Leo
Perform Domain Rename
Hi Everyone, I had performed a domain rename earlier but the DNS Zone name and the Domain name are different. Now the DCs are not pinging each other and are neither replicating amongst themselves. When running repadmin /replsum, it gives error 58 in the…
Roaming profiles: System Icons disappear when user change computer from Window 11 to Windows 10 (icons for clock, network, battery)
Hello, I have troubles in company with 200 computers. We have mixed operation system Windows 10 and Windows 11. We are using Active directory with roaming profiles. A problem occurs when user logoff from Windows 11 and then log to Windows 10…
The default app settings for "http" and "https" are not being saved; after rebooting or logging off, the settings disappear.
The default app settings for "http" and "https" are not being saved; after rebooting or logging off, the settings disappear, and the user has to set the default browser again. We have GPOs and SCCM clients in our environment. I have…
![](https://techprofile.blob.core.windows.net/images/8ybLs5RE9UWDR9-ZNFtTRQ.png?8DB6AE)
admins are unable to reset user´s passwords, how can I resolve it?
Hello dears, I have 2 admin users that are not able to reset user´s password even though they have been granted the roles of helpdesk administrator/password administrator. After looking at the logs on Microsoft Entra ID>Audit Logs, I have seen the…
prevent user from using the computer while UWF servicing updates
I'm checking the UWF feature in VM (hyper-V specifically) and I'm testing the update process. it runs the updates, but instead of blocking user input - it's showing the lock screen, on the UWF-Servicing account. The users can just log into their accounts…
Azure AD Connect - Enable single sign-on -> Error "Cannot retrieve single sign-on status"
I have a Windows 2023 Server with an existing Azure AD Connect installation. Everything is syncing correctly. We're currently using "Password Hash Synchronization" and want to enable "Enable single sign-on." I've confirmed all the…
Azure Hybrid join failes
ObjectGUID in Active Directory: bde852fd-48b6-4600-a8a2-4a596bc1989a PS C:\Users\A_KallehaveI> Get-ADComputer -filter {ObjectGUID -eq "bde852fd-48b6-4600-a8a2-4a596bc1989a"} DistinguishedName :…