No Image

SDPROP troubleshooting

12.02.2021 Evgenij Smirnov 0

SDPROP run frequency: HKLM:\SYSTEM\CurrentControlSet\Services\NTDS\Parameters\AdminSDProtectFrequency REG_DWORD default 600 SDPROP scope: 16th char (dwAdminSDExMask) of dsHeuristics (https://docs.microsoft.com/en-us/previous-versions/technet-magazine/ee361593(v=msdn.10)?redirectedfrom=MSDN) interpreted as Hex CN=Directory Service,CN=Windows NT,CN=Services,CN=Configuration,DC=xxx,DC=yyy,DC=zzz Force SDPROP to run […]

No Image

Read JIT group memberships

14.04.2019 Evgenij Smirnov 0

LDP.EXE with Custom Control 1.2.840.113556.1.4.2309 (LDAP_SERVER_LINK_TTL_OID) (based on https://secureidentity.se/msds-shadowprincipal/) Works with expanding tree or “Advanced” or “Asynchronous” searches: $dc = “devdc01.esmobile.metabpa.org” $rootDN = “OU=ESMOBILE,DC=esmobile,DC=metabpa,DC=org” $filter […]

No Image

Site Link Options

03.11.2018 Evgenij Smirnov 0

The options attribute of a site link (CN=[Site Link Name],CN={IP|SMTP},CN=Inter-Site Transports,CN=Sites,CN=Configuration,DC=dom,DC=ain,DC=tld) is interpreted as follows: 0 (or missing) = respect schedule / one way sync […]

No Image

Site Link Transport Options

03.11.2018 Evgenij Smirnov 0

The options attribute of a site link transport (CN={IP|SMTP},CN=Inter-Site Transports,CN=Sites,CN=Configuration,DC=dom,DC=ain,DC=tld) is interpreted as follows: 0 (or missing) = respect schedule / bridge all 1 = […]