Jump to content

Firefox

Members
  • Posts

    388
  • Joined

  • Last visited

Reputation

260 Excellent

About Firefox

  1. Crete a replica OU structure in your existing domain and spend some time working out what policies are required and linking them into this structure. Then gradually migrate users\computers over For the hardcoded profile paths....going forwards you are problably going to need to tackle this with DFS. A script can be run across AD to change paths easy enough Slow logons - Possibly caused by the incorrect GPO config
  2. From memory you add this key via the toolkit, but it never actually appears in the VAMT gui. On our estate it does still license correctly, and from the gui when we do an update license status it does report correct
  3. Hello, Hopefully a quick question for anyone running a multi domain forest. In your parent domain do you have a stub zone for the child domain? (as I'm guessing you should) is this zone set to replicate to just DNS servers in that domain or to all DNS servers in the forest? Also if you have multiple child domains, how do they also replicate stub zones? domain or Forest wide?
  4. I assume like the OP you're using Windows 10? and that you are also using MBAM 2.5 with the new MBAM 2.5 client on the device?
  5. What version of Outlook and what OS are you running on? We had something similar when our mailbox was in the cloud, running on Windows 10 and Outlook 2016. The problem for us was an IE issue with the proxy.pac file. IE 11 has deprecated the use of a proxy.pac file://C:\Windows\proxy.pac location, instead replacing this with HTTP or HTTPS https://blogs.msdn.microsoft.com/ieinternals/2013/10/11/understanding-web-proxy-configuration/ There is a reg "workaround" on Windows 7 to allow the deprecated feature to still function, but this doesn't work for Windows 10. The symptoms were experienced as a result were much like yours, and were resolved when changing th file to being hosted on a HTTP site
  6. No, they remain exactly where they were
  7. That's what we're looking at having to do, but I hate leaving inactive accounts still enabled This is how we'd like it to work. But If I disable the account in AD, after the next Dirsync, the account disappears from shared mailboxes, and when I look under deleted mailboxes, there it is :-/
  8. Hello, Wondering if anyone else has a different way of getting round the disabled accounts and mailbox issue in O365? Scenario: Create Account in AD with Mailbox Dirsync runs to sync the user to O365 Migrate Mailbox to the cloud User leaves, account is disabled, mailbox automatically deletes What if once a user has left you want this mailbox to be available to other users for a period of time? I see an article about converting the mailbox to a shared mailbox first, but disabling the account still deletes this. This seems to leave me with the options of A) leaving users that have left the organisation enabled in AD (Not great for security) B) (Guessing as have not tried) Altering the filtering of the Dirsync AD MA to also sync disabled accounts C) Dumping all the mail of of the mailbox to another location (Not ideal) This also presents the issue for shared mailboxes, previously on a prem, we could disable the AD account for a shared mailbox, and it could be accessed without issue. We are now having to enable all out shared mailbox accounts (Again not great from a security point of view)
  9. I have downloaded the GPO templates, but the objects that can be changed are fairly high level. I'm looking to control settings within the Skype Client itself. For instance: Under Tools and Options Personal - Save IM Conversations in my email Conversation History folder Personal - Save call logs in my email Conversation History folder File Saving - Default location I'd like to be able to set something then prevent the setting being changed......anyone done something similar yet?
  10. Have you clicked on each user to confirm they don't have a license? as unselecting the license on this page then refreshing normally makes them disappear
  11. Looks like something has gone a bit screwy with the promotion, you might have to demote and try again. On DC 2 I would also set the primary DNS to be DC 1 (at least initially, but ideally the DC won't point at itself for primary.)
  12. [HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum] Create a Dword of {F02C1A0D-BE21-4350-88B0-7367FC96EF3C} with a value of 1 (Obviously try this in a test environment\target a test device first)
  13. Consolidation where possible is always good practice. Although from a practical point of view I wouldn't expect to see a great jump in performance unless you were applying hundreds previously. If you suspect GPO maybe causing issues, then the eventviewer might be the best place to start, to see if any of the GPO's are "getting stuck" trying to apply. You could even see some services failing, which could be disabled, improving speed.
  14. Well I'm pleased to hear it's not just me it's not working for lol At least it appears to be working, just means I'll have to alter my documentation for other people to follow
  15. This is where I'm trying to add the key
×
×
  • Create New...