<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for Adventures in Technobabble</title>
	<atom:link href="http://blog.christophermichaelwebb.com/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.christophermichaelwebb.com</link>
	<description>Journeys Through an Unending Sea of Crap</description>
	<lastBuildDate>Fri, 10 Feb 2012 14:00:08 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>Comment on Bulk Add of Users to Active Directory &#8211; vbscript by bhaskar</title>
		<link>http://blog.christophermichaelwebb.com/windows/bulk-add-of-users-to-active-directory-vbscript/139/comment-page-1/#comment-1196</link>
		<dc:creator>bhaskar</dc:creator>
		<pubDate>Fri, 10 Feb 2012 14:00:08 +0000</pubDate>
		<guid isPermaLink="false">http://technobabbleindy.wordpress.com/?p=139#comment-1196</guid>
		<description>Hi Christopher,

   Your script is good and very much usefull.But in which type i should give the text file i didnt understand and also i want to add one more column to the script i.e., to add PS ID too means its an identity number for every user.Request you to help me in this,as your help is very much useful for me as iam doing it dialy manually for a bulk of users.

You can mail me also at bhaska(dot)v25 @ gmail(dot)com

Thanks,
Bhaskar.V</description>
		<content:encoded><![CDATA[<p>Hi Christopher,</p>
<p>   Your script is good and very much usefull.But in which type i should give the text file i didnt understand and also i want to add one more column to the script i.e., to add PS ID too means its an identity number for every user.Request you to help me in this,as your help is very much useful for me as iam doing it dialy manually for a bulk of users.</p>
<p>You can mail me also at bhaska(dot)v25 @ gmail(dot)com</p>
<p>Thanks,<br />
Bhaskar.V</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Uninstalling Trend Micro Client/Server Security without a Password or Why are Some Consultants Pricks by Shance</title>
		<link>http://blog.christophermichaelwebb.com/antivirus/why-are-some-consultants-pricksuninstalling-trend-micro-clientserver-security-without-a-password/48/comment-page-1/#comment-1194</link>
		<dc:creator>Shance</dc:creator>
		<pubDate>Mon, 06 Feb 2012 09:06:32 +0000</pubDate>
		<guid isPermaLink="false">http://technobabbleindy.wordpress.com/?p=48#comment-1194</guid>
		<description>Thanks! Work like a charm!</description>
		<content:encoded><![CDATA[<p>Thanks! Work like a charm!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on About Me by Tommy Öman</title>
		<link>http://blog.christophermichaelwebb.com/about-me/comment-page-1/#comment-1163</link>
		<dc:creator>Tommy Öman</dc:creator>
		<pubDate>Mon, 26 Dec 2011 23:08:27 +0000</pubDate>
		<guid isPermaLink="false">http://technobabbleindy.wordpress.com/?page_id=149#comment-1163</guid>
		<description>Hi there !
And thank you so much for these very helping words of yours.
I have a small site at home, experimenting with websites, linux installations etc. And i have had a domain in my network for about 10 years. My pdc started to have some problems some years ago, so i created a bdc (second domain server) wich finally had to take over when the first machine crasched totally. Since then things has been working but with a sort of unstable feeling. I have been searching a bit to find a solution of my &quot;get rid of&quot; the domain espacially when i now have established a new domain in the same net, and it wasn&#039;t easy to get the right answers.
Until i stumbled over your blog !

So, thank you so much for this article, it helped me definitely !</description>
		<content:encoded><![CDATA[<p>Hi there !<br />
And thank you so much for these very helping words of yours.<br />
I have a small site at home, experimenting with websites, linux installations etc. And i have had a domain in my network for about 10 years. My pdc started to have some problems some years ago, so i created a bdc (second domain server) wich finally had to take over when the first machine crasched totally. Since then things has been working but with a sort of unstable feeling. I have been searching a bit to find a solution of my &#8220;get rid of&#8221; the domain espacially when i now have established a new domain in the same net, and it wasn&#8217;t easy to get the right answers.<br />
Until i stumbled over your blog !</p>
<p>So, thank you so much for this article, it helped me definitely !</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How To Seize FSMO Roles and Clean Up Failed Domain Controllers In Active Directory by Christopher Webb</title>
		<link>http://blog.christophermichaelwebb.com/windows/how-to-seize-fsmo-roles-and-clean-up-failed-domain-controllers-in-active-directory/165/comment-page-1/#comment-1145</link>
		<dc:creator>Christopher Webb</dc:creator>
		<pubDate>Sun, 11 Dec 2011 18:52:24 +0000</pubDate>
		<guid isPermaLink="false">http://blog.christophermichaelwebb.com/?p=165#comment-1145</guid>
		<description>A FSMO role TRANSFER is the graceful movement of the roles from a live, working DC to another live DC. This could be performed in any situation - such as if you build a new DC and wish to migrate Active Directory over, or for any other reason. During the process, the current DC holding the role(s) is updated, so it becomes aware it is no longer the role holder. I would recommend always evaluating which DC&#039;s have FSMO roles whenever you add new DCs to the network as having them all on the same server (which is by default since the first server in teh domain has all the roles for that domain).

A FSMO role SEIZE is when a DC holding one (or more) roles has failed and will never return to the network. The roles need to be re-located to a live, working DC. A transfer operation will not succeed because the old DC is not contactable; the roles must therefore be forcefully seized. In other words, it&#039;s a transfer operation, but the old DC is never notified the role holders have changed.

If you perform a seizure of the FSMO roles from a DC, you need to ensure two things: the current holder is actually dead and offline, and that the old DC will NEVER return to the network. If you do an FSMO role Seize and then bring the previous holder back online, you&#039;ll have a problem.

Now, if you have already seized the roles from the server, you can try the following process (or just rebuild the DC).  I have seen it work, but not sure if there are any long term coimplications that may arise:

First, go through the steps in the article to remove the domain conttroller from AD completely and clear up metadata.  Once you have the server repaired, do not connect it to the network but dcpromo it out while it is still disjoined.  Change the server to be a member of a workgroup, then use the &lt;a href=&quot;http://technet.microsoft.com/en-us/sysinternals/bb897418.aspx&quot; rel=&quot;nofollow&quot;&gt;NewSID &lt;/a&gt;tool to rename the server and change it&#039;s SID to avoid AD complications.

Then, connect it to the network and dcpromo it back as a domain controller, portion out the FSMO roles how you prefer and you should be good</description>
		<content:encoded><![CDATA[<p>A FSMO role TRANSFER is the graceful movement of the roles from a live, working DC to another live DC. This could be performed in any situation &#8211; such as if you build a new DC and wish to migrate Active Directory over, or for any other reason. During the process, the current DC holding the role(s) is updated, so it becomes aware it is no longer the role holder. I would recommend always evaluating which DC&#8217;s have FSMO roles whenever you add new DCs to the network as having them all on the same server (which is by default since the first server in teh domain has all the roles for that domain).</p>
<p>A FSMO role SEIZE is when a DC holding one (or more) roles has failed and will never return to the network. The roles need to be re-located to a live, working DC. A transfer operation will not succeed because the old DC is not contactable; the roles must therefore be forcefully seized. In other words, it&#8217;s a transfer operation, but the old DC is never notified the role holders have changed.</p>
<p>If you perform a seizure of the FSMO roles from a DC, you need to ensure two things: the current holder is actually dead and offline, and that the old DC will NEVER return to the network. If you do an FSMO role Seize and then bring the previous holder back online, you&#8217;ll have a problem.</p>
<p>Now, if you have already seized the roles from the server, you can try the following process (or just rebuild the DC).  I have seen it work, but not sure if there are any long term coimplications that may arise:</p>
<p>First, go through the steps in the article to remove the domain conttroller from AD completely and clear up metadata.  Once you have the server repaired, do not connect it to the network but dcpromo it out while it is still disjoined.  Change the server to be a member of a workgroup, then use the <a href="http://technet.microsoft.com/en-us/sysinternals/bb897418.aspx" rel="nofollow">NewSID </a>tool to rename the server and change it&#8217;s SID to avoid AD complications.</p>
<p>Then, connect it to the network and dcpromo it back as a domain controller, portion out the FSMO roles how you prefer and you should be good</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on How To Seize FSMO Roles and Clean Up Failed Domain Controllers In Active Directory by shehryar</title>
		<link>http://blog.christophermichaelwebb.com/windows/how-to-seize-fsmo-roles-and-clean-up-failed-domain-controllers-in-active-directory/165/comment-page-1/#comment-1144</link>
		<dc:creator>shehryar</dc:creator>
		<pubDate>Sun, 11 Dec 2011 02:00:24 +0000</pubDate>
		<guid isPermaLink="false">http://blog.christophermichaelwebb.com/?p=165#comment-1144</guid>
		<description>Hi Christpopher,

Thank you for a great blog and a great article,I have a question :

for e.g. if I have 2 x DCs (with one holding all FSMO roles), and the dc with fsmo roles goes offline due to a raid card or failed drives or anyother problem, I assume :

1) We go into AD MMC and then Move FSMO roles to the 2nd DC ?
2) As our 1st (failed) DC gets repaired in a couple of days, can we just plug it back in to the network and let it sync with AD, as it had all drives and data intact with the operating system ?

Upon reading through articles, it seems that one cannot just plug it back in - 

When you move roles from the MMC, does that means FSMO roles are seized ?

Will be grateful for your suggestion
Thanks again for a great blog</description>
		<content:encoded><![CDATA[<p>Hi Christpopher,</p>
<p>Thank you for a great blog and a great article,I have a question :</p>
<p>for e.g. if I have 2 x DCs (with one holding all FSMO roles), and the dc with fsmo roles goes offline due to a raid card or failed drives or anyother problem, I assume :</p>
<p>1) We go into AD MMC and then Move FSMO roles to the 2nd DC ?<br />
2) As our 1st (failed) DC gets repaired in a couple of days, can we just plug it back in to the network and let it sync with AD, as it had all drives and data intact with the operating system ?</p>
<p>Upon reading through articles, it seems that one cannot just plug it back in &#8211; </p>
<p>When you move roles from the MMC, does that means FSMO roles are seized ?</p>
<p>Will be grateful for your suggestion<br />
Thanks again for a great blog</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on SSH VPN Tunnels &#8211; Secure, Unrestricted Access From Public/Work by Christopher Webb</title>
		<link>http://blog.christophermichaelwebb.com/linux/ssh-vpn-tunnels-full-internet-at-work/268/comment-page-1/#comment-1141</link>
		<dc:creator>Christopher Webb</dc:creator>
		<pubDate>Fri, 09 Dec 2011 00:01:47 +0000</pubDate>
		<guid isPermaLink="false">http://blog.christophermichaelwebb.com/?p=268#comment-1141</guid>
		<description>Well, for a full VPN and not just port forwarding/tunnellin, it is possible via OpenSSH but not with Windows clients at this time (at least not to my knowledge).  Really, if you&#039;re wanting something more robust, I would recommend &lt;a href=&quot;http://openvpn.net/&quot; rel=&quot;nofollow&quot;&gt;OpenVPN&lt;/a&gt;.  I have used it for a couple of my clients in the past.  I did hae it for my home network but really SSH is all I need and it is already running on all of my servers anyway.  OpenVPN work with Windows, Mac, &amp; Linux, it&#039;s free, and fairly simple to set up.  There are plenty of how-to&#039;s out there, but I may write something up on it in the near future anyway.

Hope this helps</description>
		<content:encoded><![CDATA[<p>Well, for a full VPN and not just port forwarding/tunnellin, it is possible via OpenSSH but not with Windows clients at this time (at least not to my knowledge).  Really, if you&#8217;re wanting something more robust, I would recommend <a href="http://openvpn.net/" rel="nofollow">OpenVPN</a>.  I have used it for a couple of my clients in the past.  I did hae it for my home network but really SSH is all I need and it is already running on all of my servers anyway.  OpenVPN work with Windows, Mac, &amp; Linux, it&#8217;s free, and fairly simple to set up.  There are plenty of how-to&#8217;s out there, but I may write something up on it in the near future anyway.</p>
<p>Hope this helps</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on SSH VPN Tunnels &#8211; Secure, Unrestricted Access From Public/Work by SS</title>
		<link>http://blog.christophermichaelwebb.com/linux/ssh-vpn-tunnels-full-internet-at-work/268/comment-page-1/#comment-1138</link>
		<dc:creator>SS</dc:creator>
		<pubDate>Thu, 08 Dec 2011 14:16:12 +0000</pubDate>
		<guid isPermaLink="false">http://blog.christophermichaelwebb.com/?p=268#comment-1138</guid>
		<description>This works well for apps that you can configure to tunnel but what about those that you cannot? How do I make a connection to the ssh server where ALL traffic will rout. So in other words I can make a new connection on my windows machine and it will be a dedicated VPN connection to the ssh server such that I don&#039;t need to change any setting in outlook or Firefox etc...</description>
		<content:encoded><![CDATA[<p>This works well for apps that you can configure to tunnel but what about those that you cannot? How do I make a connection to the ssh server where ALL traffic will rout. So in other words I can make a new connection on my windows machine and it will be a dedicated VPN connection to the ssh server such that I don&#8217;t need to change any setting in outlook or Firefox etc&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on SharePoint 2007 Calendar Sync with Outlook Only Updating Certain Fields by Shared Calendar Attendee Appointment End Time</title>
		<link>http://blog.christophermichaelwebb.com/windows/sharepoint-2007-calendar-sync-outlook-updating-fields/335/comment-page-1/#comment-995</link>
		<dc:creator>Shared Calendar Attendee Appointment End Time</dc:creator>
		<pubDate>Wed, 16 Nov 2011 17:55:30 +0000</pubDate>
		<guid isPermaLink="false">http://blog.christophermichaelwebb.com/?p=335#comment-995</guid>
		<description>[...] Thanks again SpiderTech. I received more info from the user and it appears the calendar is published to SharePoint and Outlook isnt enforcing the SharePoint rules. A solution can be found on this blog.   http://blog.christophermichaelwebb.com/windows/sharepoint-2007-calendar-sync-outlook-updating-fields... [...]</description>
		<content:encoded><![CDATA[<p>[...] Thanks again SpiderTech. I received more info from the user and it appears the calendar is published to SharePoint and Outlook isnt enforcing the SharePoint rules. A solution can be found on this blog.   <a href="http://blog.christophermichaelwebb.com/windows/sharepoint-2007-calendar-sync-outlook-updating-fields.." rel="nofollow">http://blog.christophermichaelwebb.com/windows/sharepoint-2007-calendar-sync-outlook-updating-fields..</a>. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Uninstalling Trend Micro Client/Server Security without a Password or Why are Some Consultants Pricks by Camille Shrier</title>
		<link>http://blog.christophermichaelwebb.com/antivirus/why-are-some-consultants-pricksuninstalling-trend-micro-clientserver-security-without-a-password/48/comment-page-1/#comment-952</link>
		<dc:creator>Camille Shrier</dc:creator>
		<pubDate>Thu, 10 Nov 2011 20:02:23 +0000</pubDate>
		<guid isPermaLink="false">http://technobabbleindy.wordpress.com/?p=48#comment-952</guid>
		<description>I appreciate, cause I found exactly what I was looking for. You&#039;ve ended my 4 day long hunt! God Bless you man. Have a nice day.</description>
		<content:encoded><![CDATA[<p>I appreciate, cause I found exactly what I was looking for. You&#8217;ve ended my 4 day long hunt! God Bless you man. Have a nice day.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on STSADM Import Creating Ghost Lists in SharePoint 2010 by Elliptical</title>
		<link>http://blog.christophermichaelwebb.com/windows/sharepoint-windows/stsadm-import-creating-ghost-lists-in-sharepoint-2010/355/comment-page-1/#comment-939</link>
		<dc:creator>Elliptical</dc:creator>
		<pubDate>Tue, 08 Nov 2011 10:21:24 +0000</pubDate>
		<guid isPermaLink="false">http://blog.christophermichaelwebb.com/?p=355#comment-939</guid>
		<description>Great! Thanks for the share!  
Arron</description>
		<content:encoded><![CDATA[<p>Great! Thanks for the share!<br />
Arron</p>
]]></content:encoded>
	</item>
</channel>
</rss>

