event id 4776
Hi,since several months, we have a lot of event id 4776, locked account,in the workstation source field, there is some exotical computers names (names that doesn't belong to our AD domain). associated...
View ArticleSHA1 CA Server
How many auto enrollment certificate request a SHA1 Certificate Authority server can process/ per second under below written hardware configuration.Processor: Quad CoreRAM: 8GBWe need to renew approx...
View ArticleKDC Certificate Could Not Be Validated Error
I think this is the right forum for this question, but please feel free to redirect me if it is not. We are using Windows Hello for Business for users to sign into their computers with a PIN or...
View ArticleSchannel error 36874
Hi We have getting error in our VDI infrastructure and it will encountered on RD gateway and RD web server ? Can i just ignore the error. Is this impacting the production ? Homer Sibayan
View ArticleCA custom template with issuance requirements
Hey!I'm having some issues configuring my PKI environment.Im trying to make custom template in the CA that has issuance requirements with 2 different issuance policies OID's.The goal is that the signer...
View ArticleTLS 1.0 default setting in 2019
I have been scavaging the internet and various articles to find out what the default setting is for TLS 1.0 is in server 2019. I cannot find any official documentation about this. Can someone please...
View ArticleSecurity does not work
Someone knows why once you enter a network folder that asks me for credentials and I don't check the checkbox remember the credentials. After I close that folder and go back in, it doesn't ask me for...
View ArticleSecurity and Updates Time
For our 2019 server, I know how to set the active hours for downloading and installed updates. But is there a way to tell the server to do updates ONLY on a Saturday at a certain time?
View ArticleActive Directory Account - User Login not allowed
We have recently implemented SharePoint workflows in O365, using AD to select user accounts. This changed our internal processes to have AD account created for all company employee's regardless of...
View ArticleLDAPS mandatory patch in March 2020
Hi, I need some clarification regarding the mandatory LDAP signing update in March 2020 that will disable LDAP non-secure and require a valid...
View ArticleWired 802.1x CRL checking error (0x80092013)
Hello.We use two-tier PKI infrastructure and now we're trying to deploy 802.1x wired computer authentication. NPS and intermediate CA are located on the same server. PKI insfrastructure is working...
View ArticleRedirected folder issue after exactly 10 hours
Hive mind,I ave an issue whereby users are running inside a Citrix session hosted on Windows Server 2016. Redirected folders are being used, set by GPO and everything is working fine for exactly 10...
View ArticleEventviewer custom view and modified XML to many hits
Hello,I have made a custom view in Eventviewer with a modified XML file. I get to many hits on the query when I use != it works with = Here is my XML<QueryList> <Query Id="0"...
View ArticleNo Audit logs 4768 generated
Hi Guys,Hope someone can answer this for me.I have 3 windows 2008 R2 DC, running on a Windows 2003 domain, 2000 Forest level. I am using a firewall authentication client that is looking for event logs...
View Articlecertificate
Hi i wrote microsoft exam windows server 2016 MCSA and the name on my certificate there was some error on the name so please i need help so that my name on the certificate can corrected and any body...
View Article.jar file block
dear all. we use AppLocker and successfully applied to all computer. now we want block jar executable file. but I couldn't find a way to do that using AppLocker. is there any other way to block jar...
View ArticleKey Recovery Agent installation issue
In my two-tier enterprise PKI, I am trying to install a Key Recovery Agent into my second-level, issuing CA. I am running CA on Windows 2012 R2. In templates, I copied the "Key Recovery Agent" and...
View ArticleWindows Server 2019 ADCS - Unable to Install Subordinate CA Certificate
I am setting up a two tier Active Directory Certificate Services PKI hierarchy with an offline standalone Root CA (Server 2019) and an online Enterprise Subordinate CA (also Server 2019). I've...
View ArticleMicrosoft Edge (Chromium engine) WIP support
Hello, I am an engineer in company that provide MDM solutions for clients (MobileIron in my case), I was trying to configure WIP in new Microsoft Edge on Chromium engine. I have added EXE/WIN32 Equals...
View ArticleNot able to edit Certificate Authority security permission
Hi everyone,The setup of my intermediate certificate authority (ICA) was having the role separation enabled where 4 respective AD groups each will have different security permission (Issue and Manage...
View Article