Extending the schema – notes from the field

Reading Time: 6 minutes Now … the day had come, your forest schema has to be extended with some new attributes and classes. You are sweating, You are feeling dizziness (…) my goosh, my precious schema (…). That’s the case with many people – need to extend the Active Directory schema makes them ill or in best case not … Continue reading "Extending the schema – notes from the field"

.local namespace in mixed environments

Reading Time: 2 minutes Some posts on ActiveDir.org mailing list reminds me about a topic I discussed some time ago with few peoples regarding using .local DNS suffix in AD domain environment. In fact there is nothing wrong with this particular suffix, it can be used and it is widely used in examples, and as far as I know … Continue reading ".local namespace in mixed environments"

Confidential bit follow-up

Reading Time: < 1 minute After my previous post about confidential bit I received great feedback through blog comment system (Thanks Jorge and Lee) and in off-line conversation on newsgroup. I’ve decided to gather this additional information in next post as an update to my original one. First of all when You want to use confidential bit for some attribute … Continue reading "Confidential bit follow-up"

How to create and use confidential attributes

Reading Time: 4 minutes Lately I have to explain to one of our customers how to create attribute in Active Directory which can be protected with additional permissions from reading its content. Such possibility was introduced in Windows 2003 SP1 but when I looked for some information to point our customer to I didn’t found much documentation so I … Continue reading "How to create and use confidential attributes"

[R] Using LDAP search filter to query attributes without value

Reading Time: 2 minutes When it comes to searching for an object in the LDAP directory (like Active Directory) most of us will use a LDAP filter to display the objects we are looking for. An LDAP filter is a quick and easy way to construct queries that will be excecuted against the target directory service. Most of the … Continue reading "[R] Using LDAP search filter to query attributes without value"