Since the previous releases of Windows 10 included only a few new GPO settings, Microsoft has decided to introduce...
Tag Archive for: active directory
4sysops - The online community for SysAdmins and DevOps
Block or force upgrade to Windows 11 with Group Policy

Microsoft has already started rolling out Windows 11 via Windows Update and WSUS. It is not entirely clear when...
Azure AD without on-prem Windows Active Directory?

Azure AD addresses identity management for cloud-based services. Many organizations have extended their on-premises identities to Azure AD for...
Consolidating Group Policy, part 3: Loopback policy processing and folder redirection

GPOZaurr and other tools help you with consolidation in the short-to-medium term, but as you move forward, there are...
Install a secondary domain controller using Install from Media (IFM)

When a new domain controller (DC) is installed remotely, the initial replication traffic for synchronizing all directory objects can...
Consolidating Group Policy, part 2: GPOZaurr

GPOZaurr from Evotec IT is a PowerShell module that is very useful for consolidating and managing Group Policy. In...
Migration from Internet Explorer to Microsoft Edge: Managing GPOs, security baselines, updates, and compatibility

Chromium-based Edge has been part of Windows 10 since 20H2. Internet Explorer (IE) is still on board, but its...
Create and update the Group Policy Central Store for ADMX templates

Each Windows PC contains its own set of administrative templates for group policies. However, they can be better managed...
How to migrate Active Directory Certificate Services to SHA-2 and Key Storage Provider

Businesses need to migrate from the deprecated SHA-1 to SHA-2 to bolster their cybersecurity posture. They may still be...
Deactivate Windows 10 widget “News and interests” with Group Policy

Since Windows 10 1909, Microsoft has displayed a widget in the taskbar that shows content from MSN, such as...
Secure domain controllers with LDAP channel binding and LDAP signing

The use of unencrypted LDAP poses a risk. It allows attackers to exploit a vulnerability to gain elevated privileges....
Migrate AD certificate services to a new server

As businesses look at phasing out legacy Windows Server versions, core services may need to be moved or migrated...
How to install the PowerShell 7 Active Directory module

Officially, the Active Directory module for PowerShell 7 is only supported for Windows 10 and Windows Server 2019. However,...
Conditional Access: Create policies to secure cloud resources using AAD authentication

Microsoft's Conditional Access is an Azure Active Directory (AAD) feature that increases security with remote and "work from anywhere"...
Windows 10 21H1: Ten new GPO settings, ADMX download and security baseline available, no ADK or RSAT

Microsoft has released version 21H1 of Windows 10. This is a small update that is activated via an enablement...
Active Directory Reports Professional: AD auditing made easy

In this review of Active Directory Reports Professional, we take a look at how easy it can be to...
Refresh membership in AD security groups without reboot or logoff

If you add computers or users to a security group in Active Directory, there will be no immediate effect....
Active Directory hybrid of AWS Managed AD and On-Prem AD

This step-by-step guide explains how to integrate AWS Managed AD with On-Prem AD via a trust relationship. A hybrid...
What’s the difference? Azure AD registration vs. Azure AD join

In Microsoft Azure-based endpoint management, when would you choose Azure AD registration versus Azure AD join? Read on and...
How to safely clone a domain controller

Modern Windows versions allow you to safely clone a domain controller and even put it on your production network...