NETLOGON: Cannot change contents via share, but can locally
I'm a Domain Admin on my organisations domain and all DAs are having strange behaviour when trying to amend the contents on NETLOGON If I browse to \<domain>\NETLOGON and attempt to add or change a file, I get a message saying "You need…
Windows 2019/2022 Microsoft Defender Endpoint and Defender for Identity
Hi All, we have Microsoft defender for endpoint onboarded , if we need to deploy defender for identity do we need to install the MDI sensor or in windows 2019/2022 updated with latest patches we just need offboard and onboard again using MDE script. if…

SSO from Intunes Managed to ADDS Joined
Our setup is cloud-only user using domain xxx.com. We setup ADDS with domain dcxxx.com and have express connect connection to our on premise devices. We have server joined to dcxxx.com. How do we SSO from our intunes manages client ? our question seem…
What are the steps and procedure to use gMSA as the Windows Server Service Account?
After creating the gMSA using the below PowerShell, how can I successfully replace the services in all of my Windows Server Application servers? New-ADServiceAccount -Name New-gMSA -DNSHostName Mydomain.com -PrincipalsAllowedToRetrieveManagedPassword…


is disabling "Store passwords using reversible encryption" option convert passwords to unreversible state?
Hi All!! I inherited an AD domain and GPO with "Store passwords using reversible encryption" option enabled. This fact worries me very much, and that is why I want to turn this option to "disabled". My question: after disabling…
Deleting tenant issues
Hello. I've come to an idea to create simple app which will use onedrive API so I needed to use Microsoft Azure and its been a long time since I logged into Microsoft Azure. Noticed I had some tenant already created from that time. Now I am trying to…
When changing from Distribution to Security, what is the impact or consequence?
What is the impact or consequences when changing the group type from Distribution to Security group? From: Into: Is the inbound email flow still working or stopped due to the AD group changes from On-premise AD DS? I cannot select the AD Distribution…

Date & Time Greyed out on Windows server 2022, even if I´m logged in as Domain Admin
I´ve just installed a Domain Controller, now I want to configure Time sync But It´s greyed out Im logged with an account that is both Enterprise Admin and Domain Admin. Login as local Administrator account (that account I used when created the DC) seems…
Can I use personal ID numbers as unique IDs for clients in Azure AD B2C?
I am exploring Azure AD B2C for my business, which requires collecting a client ID number. The object ID is automatically generated when the client signs up, but I would like to assign their personal ID number as an additional unique ID or as the object…
Weird AD User / GPO Problem (Username burnt?)
H Everyone, i am facing a really really strange problem regarding GPO´s and an AD user account. I have several guest user accounts in my domain. (Guest1, Guest2, Guest3...) These users get a share connected via GPO wich works fine for all users except…
Duplicate file in windows app for a game I had installed. is it safe to delete or is it needed?
I was having continuous storage issues so i used treesize to manage my storage n all, so when viewing the windows apps folder i noticed that theres two folders for a game i had installed and while reviewing the contents its exactly the same. Is it an…
"Phantom" user lockouts - Event ID 4771 on DC and Event 14 on Local Machine
Hi everyone BACKGROUND This has perplexed me for a few days now. A user is having 2-3 lockouts a day and they are not putting in their password wrong at all. Our GPO for password policy is 5 bad attempts before lockout with 30 mins to reset this…
System.PlatformNotSupportedException: System.DirectoryServices is not supported
I am building a .net 5 core asp.net app and developing on a windows maching. I am deploying to a Windows 2019 server with IIS. I installed the hosting bundle and the runtime. I can run the app fine until I add in ldap authentication. I normally use…
getting logon failure on Windows server 2016 error 4625
within the last week I am getting error 4625 on my Windows Security event viewer log. This is a on premise server not a VM, 4 workstations joined to the Domain. Here is the information from the event viewer. please let me know what else do you need to…
How to configure auto-login to One drive for users on On-Prem AD joined devices?
Hi All, I have received requests from users to sync their files and folders directly to the OneDrive app. The users want that once they log in to the On-Prem AD joined workstations, they automatically get logged in to the OneDrive Application and their…
In ADUC, what Admin Role is required to install Applications for user system where user does not have ADMIN rights
In Active Directory Users and Computers (ADUC) - Version: 10.0.22621.755, I created normal account in ADUC. Then it showed up in "Microsoft 365 Admin Center" side. Our Users do not have ADMIN Rights. I do not want to use my Global Admin to…
Event 4625 logs continuously in PDC
Hello Team, One of our 2 domain controllers have this security event logged continuously. The forest and domain functional level is 2016. Microsoft Windows security auditing. Event id 4625 Audit Failure An account failed to log on. Subject: Security ID:…
O365 Sync Issues After On-Premises Exchange Decommissioning
In a transition from a Hybrid environment to nearly full cloud usage, the on-premises Exchange was shut down due to security concerns, following documentation and recommendations while leaving the schema intact. Currently facing issues managing user…
How to change "Manage contact information" for a user?
getting this error every time i try to change the information for a users mailbox. Error executing request. The operation on mailbox "User" failed because it's out of the current user's write scope. The action 'Set-Mailbox',…
DSRM password reset issue.
Hi everyone, I am trying to reset the DSRM password, and the command shows that it was successfully set. However, I do not see Event ID 4724 in the event logs for the password reset. Additionally, when I try to log in using .\Administrator, I am unable…