Microsoft Learn Applied Skill - Administer AD DS
Good Day all, I am not sure if this is the right place to ask this question, I am unable to complete the Lab for this applied skill as my PC does not meet the requirements, is it possible for Microsoft to build a sandbox for us to carry out this Lab,…
Get-ADGroupmember
Hi All, In Active Directory, we have security groups, mail-enabled security groups, and distribution groups. I'm not sure if I'm missing any other group types. I would like to export all users from these groups, including those in nested groups, to a CSV…
powershell to get all users and their managers recursively
I am looking to pull all Active Directory users and their managers all the way up to the chain. I get how to do get-aduser -filter * -properties * | select name, manager export-csv -path "csv path" I also get: $Users = Get-ADUser -filter *…
Windows 10/11 outside of the Active directory accessing the Azure VM
i have migrated an on-premise server to the Azure VM using Sonicwall VPN. I am able to connect to the VM from inside the office without any issues. I would like to know if remote users (who have Win 10/11 machines) want to access the VM, how to do they…
Issue accessing file share in different AD forest
Hello, I am having trouble accessing a file share that is located in a different AD forest from my laptop with AlwaysONVPN configured. I am able to access the file share without issue from a servers that are located in AD forest B and AD forest C…
How can I enable and configure Multi-Factor Authentication (MFA) for all users in Microsoft 365, and what are the recommended steps for a smooth rollout?
I’m setting up Multi-Factor Authentication (MFA) for all users in Microsoft 365 through Azure Active Directory, aiming for a smooth rollout. I need guidance on both enabling MFA across the organization and the best way to configure it to avoid…
Multi-Provider Router (MPR) notifications
I need help on two GPOs. If I disable the policy below, will there be any impact besides issues with mapped network drives? Policy: Enable MPR notifications for the system --> Disabled Location: Computer Configuration\Policies\Administrative…
SMB version 1
Hello, I have cctv camera and only can connect to share folder using SMBv1 version. When i try connecting this cctv to standalone windows server, the cctv is able to connect. When i change the connection to windows server which joined to Active…
update DNS.
Hi all, I have 40 domain controllers. When I modify a DNS entry on one domain controller, I want it to replicate immediately across all domain controllers. Is there a way to force sync the DNS update? I need to modify one DNS entry, and users cannot…
Upgrading Domain Controllers
Dear team, I have the following scenario: Domain Controllers running Windows Server 2012, and Domain Functional Level set to 2008. The member servers joined to the domain have different Windows Server versions, 2003, 2008, 2012 and 2016. If I upgrade the…
Joining Azure VMs to On-Premises AD: VPN Requirements with Entra DS and M365 Integration
I am an Azure Cloud Engineer, and I apologize for my limited knowledge regarding M365 and O365. Currently, I have several VMs in Azure Tenant A, and M365 Tenant M is integrated with the on-premises AD server using AD Connector for hybrid connectivity.…
The processing of Group Policy failed. Windows attempted to read the file \\usgwater.net\SysVol\usgwater.net\Policies\{1AC529F8-3D1D-4848-8D7B-4483B11A5324}\gpt.ini from a domain controller and was not successful
The processing of Group Policy failed. Windows attempted to read the file \usgwater.net\SysVol\usgwater.net\Policies{1AC529F8-3D1D-4848-8D7B-4483B11A5324}\gpt.ini from a domain controller and was not successful. Group Policy settings may not be applied…
Azure Active Directory /Entra SSO login throughout all registered apps
I am currently working on a React project for my organization where I need to implement single sign on to get the users email and name. The app is registered under the same subgroup in which all the employees belong to. There are currently multiple apps…
External OIDC Connection SSO in Entra External ID and custom user flow
Hi there, We are currently using B2C with custom policies. Our sign in page, takes in user's email address and based on the email domain, it tries to authenticate with external tenant, if no configured external tenant matches, it asks the user to enter…
Disable Microsoft Login from windows and all apps
Hello, I am using windows machines for cyber cafe, this machine is used by multiple users. I don't want any user to login with their personal/work or school microsoft account in windows or any of the apps like edge or office. I have already made some…
Azure AD Connect
Hi, I'm new to Azure/Entra ID. I've inherited a domain that was syncing on-prem AD to Azure/Entra in it's entirety. I've since cleaned up the local AD and narrowed the sync scope, but users who are no longer in the Azure AD Connect sync scope are not…
I want to show only Child Domain name instead of Main Domain name to Client Systems.
Hello Everyone, I Hope you all doing well.. I need help with my Active Directory Environment, as you all know those employee systems we change from 'Workgroup' to 'Domain' show's Domain full name in 'sysdm.cpl' and If we create a Child Domain and add…
SSO for O365 stopped working with on prem AD and Entra Connect
Hi, we are facing an issue with SSO for O365 since Microsoft implemented the DMA change for the EU region. It woul be fine if user only needed to accept that he wants to be login with a specific account but thats not the case. Instead O365 apps are…
How to Exclude a User from Auditpol - Discovered a possible bug with auditpol.exe
Hello all, I am trying to exclude a user from being audited on a Server 2019 Domain Controller. Using the following: Auditpol /set /user:adm.svc.acc /subcategory:"Logon" /Success:disable Reason for doing so, it's a service account that is…