John Policelli's Blog

Covering Identity and Access Solutions, Unified Communications, Collaboration, and Server Infrastructure.

  • Subscribe
  • SAMS Active Directory Domain Services 2008 How-To

    SAMS Active Directory 20008 How-To

  • MCITP Self-Paced Training Kit (Exam 70-647): Windows Server® Enterprise Administration

    MCITP Self-Paced Training Kit (Exam 70-647): Windows Server® Enterprise Administration

  • Disclaimer

    All data and information provided on this site is for informational purposes only. The author makes no representations as to accuracy, completeness, suitability, or validity of any information on this site and will not be liable for any errors, omissions, or delays in this information or any losses, injuries, or damages arising from its display or use. All information is provided on an as-is basis.

Archive for the 'Publications' Category

TechNet Magazine Article “AdminSDHolder, Protected Groups and SDPROP” Finally Updated

Posted by John Policelli on 5th June 2010

As I’ve mentioned on my blog before, a TechNet Magazine article that I wrote had some errors in it. When I was informed of these errors, I fixed them and asked the TechNet Magazine team to revise the online version of this article. This was a few weeks after it was published. After several repeated attempts, and several months, the online version of this TechNet Magazine article has been updated.

The link to the article is http://technet.microsoft.com/en-us/magazine/2009.09.sdadminholder.aspx.

Some additional information on this subject:

Tags: ,
Posted in Publications | No Comments »

TEC 2010 Presentation: In Depth Look at AdminSDHolder, Protected Objects, and SDPROP

Posted by John Policelli on 1st May 2010

For those of you that are interested, the presentation I gave at The Experts Conference 2010 in L.A. last week can be downloaded from http://policelli.com/Files/TEC2010_John_Policelli_AdminSDHolder_ProtectedObjects_SDPROP.pdf.

You can also find more information on this topic on my blog post: http://policelli.com/blog/?p=136

Tags: , , , ,
Posted in Publications | No Comments »

Thank you Active Directory Documentation Team Blog

Posted by John Policelli on 1st May 2010

The Active Directory Documentation Team blog has a post on it titled Other places to find good information. The post states:

I want to take the opportunity to thank the people who are out there providing information everyday to people using Active Directory. As I say thank you, I will link to their sites, so our readers can find them easily

I was pleased to see Kurt Hudson included me on this ‘thank you.’

Thanks Kurt :)

Tags:
Posted in Publications | No Comments »

Clearing the Air: My TechNet Magazine Article – AdminSDHolder, Protected Groups and SDPROP

Posted by John Policelli on 1st May 2010

As I’ve mentioned on my blog before, a TechNet Magazine article that I wrote had some errors in it. When I was informed of these errors, I fixed them and asked the TechNet Magazine team to revise the online version of this article. This was a few weeks after it was published. However, after repeated attempts, the TechNet Magazine article has not been revised (I sent another request today).

As you may know, I presented at The Experts Conference 2010 a few days back. I came across a recent post on a well known mailing list, where someone that I assume attended my presentation ridiculed me for referencing the TechNet Magazine article. In hindsight, it probably wasn’t a good idea for me to provide a link to the TechNet Magazine article in my TEC presentation when the errors have not been fixed yet.

So, in my effort to clear the air…

Read the rest of this entry »

Posted in Publications | No Comments »

MVP Again for 2010

Posted by John Policelli on 1st April 2010

I found out this morning that I was awarded the Microsoft Most Valuable Professional (MVP) designation for 2010. This is the third year that I have been designated as a Microsoft MVP in the Directory Services expertise. It’s truly humbling!

One of the many perks with the MVP program is the Executive Recognition Letter, which is Microsoft’s way of having MVP’s “expert participation recognized more broadly in the form of a letter from Rich Kaplan, Corporate Vice President of Customer and Partner Advocacy, that outlines the impact of the MVP program and the significance of the MVP Award.”

In previous years, I haven’t shared this letter too much, but I thought I would this time around. The letter is below:

Read the rest of this entry »

Tags:
Posted in Publications | 1 Comment »

I’m presenting at The Experts Conference (TEC) 2010 in Los Angeles

Posted by John Policelli on 3rd January 2010

I was very happy to hear that I was selected to present at TEC 2010 in Los Angeles.

TEC was previously known as DEC (Directory Experts Conference). The conference has been expanded to include training on Exchange and SharePoint, and effectively renamed to TEC. Here’s a snippet for the TEC 2010 Website:

For the 9th consecutive year, the TEC team will deliver expert-led, 400-level training on vital Microsoft technologies. In addition to its highly-acclaimed training on Microsoft Directory & Identity technologies, TEC 2010 will bring back a full agenda of Exchange training, staging the world’s leading authorities on Microsoft’s powerful messaging platform. And, this year, for the first time ever, we are pleased to introduce an entirely new TEC for SharePoint training conference!

I will be presenting in the Directory & Identity track. My session is called An In-Depth Look at AdminSDHolder, Protects Groups, and SDPROP.

Here is the abstract for my session:

Active Directory includes a number of built-in controls, which collectively provide an additional level of security for members of privileged groups. Even though these controls have been in place since the inaugural release of Active Directory a decade ago, administrators are still impacted by this functionality regularly. In this session, John Policelli will dive into the AdminSDHolder object, Protected Groups, and the Security Descriptor Propagator. Real-world examples, demos, and theory will be used to provide you with a comprehensive understanding of how these built-in controls interoperate and how you can use them to further secure members of privileged Active Directory groups.

I’ve attended DEC/TEC for several years, and it has proven invaluable each time. I have yet to find any comparable conferences. For more information on TEC 2010, please go to http://www.theexpertsconference.com/. I hope to see you there!

Tags: , , , ,
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: Windows Server 2008 R2: Introducing the AD Recycle Bin

Posted by John Policelli on 22nd October 2009

The Active Directory Recycle Bin is a handy new feature in Windows Server 2008 R2. Once enabled, it is now easier to recover accidentally deleted Active Directory objects.

Read the rest of this entry »

Tags: ,
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: The New AD Domain Services in Windows Server 2008 R2

Posted by John Policelli on 25th September 2009

Windows Server 2008 R2, released to manufacturing in July, introduces a number of new features, including a host of new Active Directory Domain Services features. We look at the seven that pack the most powerful punch.

Read the rest of this entry »

Tags: ,
Posted in Publications | No Comments »

Windows 7: Will you or won’t you

Posted by John Policelli on 25th September 2009

ITWorldCanada

A Computer World Canada  feature, Windows 7: Will you or won’t you, on Windows 7 adoption in Canada ran today following an interview with me. The story interviews a number of IT Managers across industries and business environments to present an overview of business’ approach to Windows 7.

Tags:
Posted in Publications | No Comments »

“Introducing the Active Directory Recycle Bin in Windows Server 2008 R2” Article Published on informIT.com

Posted by John Policelli on 21st August 2009

One powerful feature in Windows Server 2008 R2 is its ability to recover objects from Active Directory, which is very handy in those "Uh oh" moments. John Policelli, author of Active Directory Domain Services 2008 How-To, explains what the Active Directory Recycle Bin does and how to use it.

Read the online article by going to: http://www.informit.com/articles/article.aspx?p=1374789

Tags: ,
Posted in Publications | No Comments »

AdminSDHolder, Protected Groups and SDPROP Article Published in TechNet Magazine

Posted by John Policelli on 20th August 2009

TNMagSept

Are you having problems with Access Control Lists and permissions? It may be related to AdminSDHolder. Learn exactly what AdminSDHolder is, how it works—and how you can tweak it to better meet your organization’s needs.

Published in the September 2009 issue of Microsoft TechNet Magazine.

Tags: , ,
Posted in Publications | 2 Comments »

Active Directory and Active Directory Domain Services Port Requirements MS Document Published

Posted by John Policelli on 24th June 2009

Does this sound familiar…you need to determine the port requirements for Active Directory and you find yourself having to refer to multiple KB articles. Well I have found myself in this situation many times, and I am happy to report that Microsoft has published a document that covers all Active Directory components (i.e. Replication, Trusts, GCs, RODCs, DNS, User and Computer Authentication, Group Policy, and Active Directory Web Services). I personally requested this whitepaper from MS, and helped the MS documentation team create it. The document can be found here: http://technet.microsoft.com/en-us/library/dd772723(WS.10).aspx.

Tags: , , , , , , , ,
Posted in Publications | No Comments »

How-To Administer Active Directory Domain Services Groups Using Windows PowerShell

Posted by John Policelli on 11th June 2009

Microsoft Subnet I posted an article on the Microsoft Identity and AD blog on Network World’s Microsoft Subnet community.

The blog entry is titled How-To Administer Active Directory Domain Services Groups Using Windows PowerShell and can be read by going to: http://www.networkworld.com/community/node/42601

Tags: , , , ,
Posted in Publications | No Comments »

Using Catch-All Subnets in Active Directory Article Published in TechNet Magazine

Posted by John Policelli on 9th June 2009

TNMagJune

In an ideal world, users are directed to the appropriate domain controller for Active Directory authentication, but this is not necessarily what happens in most organizations due to IP subnet information not being properly defined in Active Directory. This article presents a solution to ensure users locate the appropriate DC for authentication—a catch-all subnet to catch the authentication from clients on subnets are not defined in Active Directory.

Published in the June 2009 issue of Microsoft TechNet Magazine.

Tags: , ,
Posted in Publications | No Comments »

Export, Compare, and Synchronize Active Directory Schemas Article Published in TechNet Magazine

Posted by John Policelli on 9th June 2009

TNMagApril

If your organization has multiple Active Directory forests, you need to manage multiple Active Directory schemas and ensure consistency between schemas. Check out our step-by-step guide to comparing and synchronizing Active Directory schemas in multi-forest environments.

Published in the April 2009 issue of Microsoft TechNet Magazine.

Tags: , ,
Posted in Publications | No Comments »

Win a Free Copy of Active Directory Domain Services 2008 How-To Book

Posted by John Policelli on 9th June 2009

microsoft-inside-banner

 

 

 

 

index_image385

In conjunction with Pearson Education, Microsoft Subnet is giving away 15 copies of the hot title "Microsoft Active Directory Domain Services 2008 How-To" by John Policelli and published by Sams (a $39.99 value). Deadline for entries is June 30, 2009.

How to enter to win: 

Read the rest of this entry »

Tags: , ,
Posted in Publications | No Comments »

Active Directory Domain Services 2008 How-To – Free Chapter Posted on IT Bookworm Blog

Posted by John Policelli on 9th June 2009

The folks over at IT Knowledge Exchange have been kind enough to post a chapter of my Active Directory Domain Services 2008 How-To book on their IT Bookworm Blog.

The free chapter is Chapter 11: Manage Fine-Grained Password and Account Lockout Policies. You can also click here to download the PDF for this chapter.

Tags: , ,
Posted in Publications | No Comments »

How-To Search Active Directory Domain Services Password and Account Settings Using Windows PowerShell

Posted by John Policelli on 1st June 2009

Microsoft Subnet I posted an article on the Microsoft Identity and AD blog on Network World’s Microsoft Subnet community.

The blog entry is titled How-To Search Active Directory Domain Services Password and Account Settings Using Windows PowerShell and can be read by going to: http://www.networkworld.com/community/node/42303

Tags: , , , ,
Posted in Publications | No Comments »

How-To Administer Active Directory Domain Services User Accounts Using Windows PowerShell

Posted by John Policelli on 28th May 2009

Microsoft SubnetI posted an article on the Microsoft Identity and AD blog on Network World’s Microsoft Subnet community.

The blog entry is titled How-To Administer Active Directory Domain Services User Accounts Using Windows PowerShell and can be read by going to: http://www.networkworld.com/community/node/42218

Tags: , , , ,
Posted in Publications | No Comments »

Introducing the Active Directory Module for Windows PowerShell

Posted by John Policelli on 26th May 2009

Microsoft Subnet

I posted an article on the Microsoft Identity and AD blog on Network World’s Microsoft Subnet community.

The blog entry is titled Introducing the Active Directory Module for Windows PowerShell and can be read by going to: http://www.networkworld.com/community/node/42157

Tags: , , , ,
Posted in Publications | No Comments »

SAMS Active Directory Domain Services How-To Chapter Available Online

Posted by John Policelli on 22nd May 2009

Network World’s Microsoft Subnet site has posted Chapter 1: Introduction to Active Directory Domain Services of the SAMS Active Directory Domain Services 2008 How-To on their Website.

SAMSADDSCover

Tags: , ,
Posted in Publications | No Comments »

Introducing the New Active Directory Domain Services in Windows Server 2008 R2

Posted by John Policelli on 21st May 2009

ms-subnet-590x100-bnrI have been asked to blog for Network World’s Microsoft Subnet community. The Network World blog I will be posting on is called Microsoft Identity and AD, and can be found here.

I added my first post on this blog, which is titled Introducing the New Active Directory Domain Services in Windows Server 2008 R2.

Here’s an excerpt from the post:

Windows Server 2008 introduced the most significant changes to Active Directory Domain Services (AD DS) since its inaugural release in Windows 2000 Server. Microsoft has continued along this path with Windows Server 2008 R2, making it the most noteworthy interim release of Windows Server.

AD DS in Windows Server 2008 R2 includes a number of important new features, including:

  • Active Directory Recycle Bin
  • Active Directory Module for Windows PowerShell
  • Active Directory Administrative Center
  • Active Directory Best Practices Analyzer
  • Active Directory Web Services
  • Authentication Mechanism Assurance
  • Offline Domain Join
  • Managed Service Accounts

Let’s take a closer look at each of these new features

The rest the post can be read here: http://www.networkworld.com/community/node/42051.

Tags: , , ,
Posted in Publications | No Comments »

Interview for YouShapeIT with John Policelli Posted on Microsoft TechNet

Posted by John Policelli on 30th April 2009

YouShapeITLogo

 

 

Microsoft has a website called YouShapeIT, which I’ve been featured in this month.

The YouShapeIT TechNet website includes a significant amount of product information, presentations, podcasts, and resources for the theme of the month. For this month, the theme is Windows Server with a focus on Windows Server 2008 and Windows Server 2008 R2 (Beta).

I did an interview for YouShapeIT. The transcript and the MP3 audio file of the interview can be downloaded from http://www.microsoft.com/youshapeit/technet/Podcasts/2009-05/interview_johnpolicelli.aspx

Tags: , , , ,
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: Win Server 2008 Active Directory Interface Improvements

Posted by John Policelli on 30th April 2009

Discover the most recent Active Directory Domain Services user interface improvements.

Read the rest of this entry »

Tags: , ,
Posted in Publications | No Comments »

Active Directory Domain Services 2008 How-To

Posted by John Policelli on 28th April 2009

My second book, Active Directory Domain Services 2008 How-To, is nearing publication. Below are some details on this publication:

SAMSADDSCover

Specifics:

  • Author: John Policelli
  • Published May 18, 2009 by Sams.
  • Copyright 2009
  • Dimensions 5-3/8 X 8-1/4
  • Pages: 528
  • Edition: 1st.
  • ISBN-10: 0-672-33045-8
  • ISBN-13: 978-0-672-33045-2

Read the rest of this entry »

Tags: , , , ,
Posted in Publications | No Comments »

Stephen Ibaraki Exclusive Interview with John Policelli

Posted by John Policelli on 17th April 2009

International Authority in Windows Technologies, Widely Acknowledged Networking Expert, Best-selling Author and Certification Exam Contributor, Microsoft Most Valuable Professional.

This interview was subsequently featured on a number of websites, including:

Read the rest of this entry »

Tags: , , ,
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: Win Server 2008: Restartable Active Directory Domain Services Explained

Posted by John Policelli on 8th April 2009

This new feature in Windows Server 2008 allows you to start, stop, and restart Active Directory Domain Services on a domain controller, thus facilitating more streamlined operations for performing offline tasks on a domain controller.

Read the rest of this entry »

Tags: , , ,
Posted in Publications | No Comments »

MVP Again for 2009

Posted by John Policelli on 1st April 2009

I found out this morning that I was awarded the Microsoft Most Valuable Professional (MVP) designation for 2009. This is the second year that I have been designated as a Microsoft MVP in the Directory Services expertise. It’s truly humbling!

Below is an extract of the note that I got from the MVP program:

Read the rest of this entry »

Tags:
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: Windows Server 2008 Active Directory Database Mounting Tool

Posted by John Policelli on 25th March 2009

Recovery processes for Active Directory Domain Service and Active Directory Lightweight Directory Services have been revamped in Windows Server 2008. Major new feature include point-in-time snapshots and stored data database mounting.

To read the article, please go to http://www.enterpriseitplanet.com/networking/features/article.php/3812086.

Tags: , , ,
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: Windows Server 2008 Read-Only Domain Controller Benefits

Posted by John Policelli on 18th February 2009

Discover how read-only domain controllers provide improved security, faster logon times and an expanded set of administrative roles.

To read the article, please go to http://www.enterpriseitplanet.com/networking/features/article.php/3803831

Tags: , , ,
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: Active Directory Domain Services Fine-Grained Password and Account Lockout Policies

Posted by John Policelli on 3rd February 2009

With the advent of Windows Server 2008, password management made a substantial leap. Learn how to improve security and craft policies for just about any situation.

To read the article, please go to http://www.enterpriseitplanet.com/networking/features/article.php/3800436.

Tags: , , ,
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: Windows Server 2008: Active Directory Domain Services Auditing Capabilities Explained

Posted by John Policelli on 22nd January 2009

Learn how the expanded auditing options offer new levels of insight, granularity and control.

To read the article, please go to http://www.enterpriseitplanet.com/networking/features/article.php/3797931

Tags: , , ,
Posted in Publications | No Comments »

Canadian MVP Insider Interview

Posted by John Policelli on 19th January 2009

 MVPInsider

I am profiled in the Canadian MVP Insider for the month of January.

The article is posted on the Canadian IT Pro Connection’s blog and can be read here: http://blogs.technet.com/canitpro/archive/2009/01/16/mvp-profile-john-policelli.aspx

Tags:
Posted in Publications | No Comments »

Enterprise IT Planet Article Published: Windows Server 2008: Discover the New Active Directory Domain Services

Posted by John Policelli on 15th January 2009

There are a number of new Active Directory Domain Services features in Windows Server 2008. These new features improve auditing, security, and the management of Active Directory Domain Services and show Microsoft’s commitment to evolving Active Directory Domain Services. The following is an overview of the new Active Directory Domain Services features that are in Windows Server 2008.

To read the article, please go to http://www.enterpriseitplanet.com/networking/features/article.php/3796561

Tags: , , ,
Posted in Publications | No Comments »