Single domain controller in Azure with multiple AD sites
We are in the process of collapsing multiple AD domains into a single AD domain. we have 5 locations. My plan was to have a multi-site setup with a DC at each site. However, I now need to pivot to a single Azure VM Domain Controller and no on-premises…
API-driven provisioning to on-premises Active Directory - Provisioning Failure
Hi. Hoping someone can help with this. I have a logic app that handles multiple user remediations, and one of those is to disable accounts. This works fine in a cloud only environment, however; I want to extend the disable account element to on-prem…
"error code 0x0000251D DNS_INFO_NO_RECORDS
Good morning everyone, Happy New Year! So I am completely new to the IT field, and was following along via YouTube series. I have created a VM, in this VM I created a Domain (which I may add is not a real one, I just made something up for the exercise.…
Active Directory Administrative Center connection error: How to fix "Cannot connect to any domain" issue?
Hello, I am having trouble opening the Active Directory Administrative Center due to the error message "Cannot connect to any domain. Refresh or try again when connection is available." My network has two servers and two domain controllers with…
Mobile Number not syncing in Hybrid AD
Hybrid AD setup and everything except for Mobile Number is syncing. In Microsoft Admin center the field for Mobile Number is editable, but it isn't saving changes and just says "Retry not possible" Any idea what is causing this?
SSPR Writeback Issue: "A call to SSPI failed" Error with CommunicationException
Hello Community, I am facing an issue with SSPR (Self-Service Password Reset) writeback functionality. The error log indicates a problem with the communication between the client and the server, stating they "do not possess a common algorithm."…
Fetching All Directory Roles Assigned to Users Using PowerShell
Hi, I am developing a function to retrieve directory roles assigned to a user and get details based on the user ID, including whether the roles are assigned as eligible or active. I have been using, which provides the information in the format I need,…
How to Check if Migration from MFA and SSPR was Sucessful
My Migration shows complete but MFA is still showing with one users, How can I Test that the Migration was completed sccessfully,
Implementing Cloud Kerberos Trust with Multiple On-premises AD Forests
I have a question about setting up Cloud Kerberos trust in an environment with multiple on-premises Active Directory (AD) forests that are configured with domain trusts between them. Is it sufficient to configure Cloud Kerberos trust for only one…
Another NTP Sync to PDC problem
Hello guys, Sorry to open yet another problem about syncing such a basic thing as time, but i haven't been able to fix my problem despite the dozens articles i've read here and there : I've got about 50 W10/W11 desktops in an AD environment. My WS 2022…
Restrict the simultaneous entry of a user in Active Directory
** Hello Is it possible in AD to prevent a person from logging in at the same time with a user & password? I want to prevent 1 person from logging in to 2 systems in Active Directory at the same time. I want to log out of the previous system and…
Error When Switching User Flow from User Sign-In to Vendor Sign-Up in Azure AD B2C
Hi Azure Team, I have implemented two separate user flows in Azure AD B2C for my application: User Sign-In (User Login Flow) Vendor Sign-Up (Vendor Registration Flow) When a user is already logged in through the User Sign-In flow and attempts to…
I would like to block the URL /owa/auth/logon.aspx from IIS
Dear All. If any url matches hhtps://abc.com/owa/auth/logon.aspx it has to be blocked How do I do ti I tried multiple steps on IIS but no luck
MSAL JS support for ADFS 2016 on prem deployment
We have a customer using ADFS 2016 . We are using MSAL JS at present on the UI, But I see there are some issues around integration (I think MSAL supports only ADFS >= 2019? ). We need some urgent assistance around this if you can. One option I see is…
Impacts on CIFS server after November 2022 cumulative updates and CVE-2022-38023 on Active Directory
Hi all We need to understand what the impacts on CIFS server are after applying the November 2022 cumulative updates on AD…
DC connection reset
Hi All, One of my Linux VMs is using the kinit command to connect to one of my Domain Controllers. The kinit command, I believe, sends Kerberos requests to the Domain Controller on port 88. Currently, port 88 is allowed between the Linux VM and the…
Domain netbios rename of empty root domain
We have a forest with an empty root domain and a child domain containing users, exchange,... We would like to change the netbios name of the root domain. Is it supported? As this domain doesn't have any service bound to it , I suppose that the answer…
Active Directory Replication Status Tool 1.1 Download page offers wrong file version
Hi, the 1.1 version of the Active Directory Replication Status Tool is supposed to be available here: https://www.microsoft.com/en-us/download/details.aspx?id=30005 However the adreplstatusInstaller.msi is actually version 1.0. So there is no way to…
Get Directory roles which assigned to users (Eligible or active both)
Hi, I am working on to collect details of directory roles which are assigned on user and get that details by powershell cli and mggraph api. I have "Get-MgUserTransitiveMemberOfAsDirectoryRole -UserId " but that is providing me only roles…
Have to remove/disable the firewall rules in GPO and gpupdate /force successfully without any error.
Hi Experts, We are creating firewall rules in GPO, and we are applying firewall rules from GPO to all the member servers. Now we wanted to remove all the firewall rules which we created from GPO. If you are removing the rules and trying to update the…