Read-Only Domain Controller (RODC)

Windows Server 2008: Read-Only Domain Controller (RODC)

A Read-Only Domain Controller (RODC) is a new type of domain controller in Windows Server 2008. Its main purpose is to improve security in office branches. In this post, I summarize the functionality of RODC.

In office branches, it is often not easy to provide sufficient physical security for servers. It is not a big deal to manipulate a Windows system if you can get physical access to it. Since Domain controllers store security sensitive data, they are particularly endangered. RODCs can help with this problem in four ways:

RODC essentials Continue reading “Read-Only Domain Controller (RODC)”

10 reasons why you should learn to use PowerShell

PowerShell is a powerful scripting tool that can greatly expedite your admin tasks. If you haven’t had a chance to learn how to use it, you might want to make time for it now. Here are some reasons why the effort will pay off. Continue reading “10 reasons why you should learn to use PowerShell”

How do I check Active Directory Tombstone Lifetime?

What is Active Directory Tombstone Lifetime (TSL) ?

The tombstone lifetime in an Active Directory forest determines how long a deleted object (called a “tombstone”) is retained in Active Directory Domain Services (AD DS). The tombstone lifetime is determined by the value of the tombstoneLifetime attribute on the Directory Service object in the configuration directory partition. Continue reading “How do I check Active Directory Tombstone Lifetime?”

TechNet Virtual Labs: Windows Server 2008 R2

Come experience the newest release of Windows Server. In these virtual labs, you’ll have the opportunity to test drive new and improved features and functionality in Windows Server 2008 R2, including management, network protection, and improvements to Remote Desktop Services (Terminal Services). Continue reading “TechNet Virtual Labs: Windows Server 2008 R2”