adding windows 2000+ username
on testing our smoothwall with staff for the first time, I notice something quite worrying.
The vast majority of them have no windows 2000+ username (eg: firstname.lastname@example.org), which is a kicker, becuase NTLM in smoothwall requires this.
A quick search shows that this is from when the domain was upgraded from NT, the existing user accounts aren't automatically updated with one. So anyone who was here more than 5 years ago doesn't have one.
I want to know if anyone knows of a way to add them to a whole group of people at a time - as I really don't want to have to dig through AD to try to find them.
We have just had exactly the same problem...
However we have a util called AD Infinitum.
Found at New FAWM
Wasn't too expensive...
Go down to manage object, then select export radio button.
Click on the OU and highlight the users.
Select "logon name" from the properties list and add it to the 'to be exported list' TWICE
Untick the "include header row" box.
Click the export button and then goto the Import properties radio button.
Click open import file..
You should get two columns of user names in the grid.
Click on the blank grey heading at the top of the grid, change the first to "logon name"
and the second to userPrincipalName
Then click Set Properties button.
Finally, go into AD and set the upn suffix (this can be done en-mass)