EMET 3.0 can now be deployed using GPO and ConfigMgr

May 16, 2012 in Active Directory, Group Policy, SCCM 2007, SCCM 2012, Security, System Center Configuration Manager, Windows by Rod Trent

  EMET 3.0 has just been released and includes a number of improvements, including ease of deployment using GPO and System Center Configuration Manager. The enhanced Mitigation Experience Toolkit (EMET) is designed to help prevent [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

Quick AD Asset Management Tool…

May 10, 2012 in Active Directory by Daniel Belcher

  Alright, so Active Directory Asset Management.  What is it? Well a, not so, unique problem facing every enterprise large or small, is asset management. Now asset management is not a one dimensional issue, there [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

Creating And Managing Shadow Groups

May 8, 2012 in Active Directory, How-To by Jase T. Wolfe

  I've always thought of the Active Directory (AD DS) as a box of Legos: give any two kids an identical set and they will come up with something completely different.  Good from a design [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

ADFS 2.0 Cross Forest and Cross Domain Requirements

April 30, 2012 in Active Directory, Windows by Forefront Security

  One of the recurrent question about ADFS 2.0 is how many Federation Server is needed in a cross domain or cross forest scenario. The Active Directory Identity Provider is able to authenticate through Trust [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

ADFS 2.0 Client Certificate Authentication with a “standalone” CA

April 26, 2012 in Active Directory, Windows by Forefront Security

  In a previous post, we have seen how we can provide client certificate authentication. That was pretty simple, because we used an enterprise CA, an adfs server and a user account, all in the [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

ADFS 2.0 : The first release of my Custom LDAP Attribute Store is on CodePlex

April 26, 2012 in Active Directory, SQL Server, Windows by Forefront Security

  As you know, there are three “out of the box” Attribute Store in ADFS 2.0 : Active Directory SQL LDAP But there is a limitation with the LDAP Attribute Store. As this Technet Article [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

myTools : SIDTranslator v1.0.0.0

April 26, 2012 in Active Directory, Windows by Forefront Security

  When you work with Active Directory, did you never had to translate an objectSID from a string to hexadecimal format or vice versa ? Now, there is a tool to do that : SIDTranslator. [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

Group Policy & WMI Filtering

April 20, 2012 in Active Directory, Group Policy by Danny Guillory Jr

  WMI Filtering (Targeting Specific Operating Systems) So I have been using Group Policy for several years now and I figured I would start Blogging about things I think would be helpful to others. I [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

Back to Basics: Permissions needed in AD to “mess” with computers during OS Deployment

February 22, 2012 in Active Directory, Permissions by Chris Nackers

Posted in Active DirectoryPermissionsMikael Nystrom created a nice post on what permissions are needed in Active Directory for OSD.
Read his post here.

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email

Tools for managing AppLocker : Part 2

February 16, 2012 in Group Policy, PowerShell, Security, Windows 7 by Matt Benninge

  This part will describe how the XML created in Part 1 can be merged into an existing GPO. The manual process for doing this is described here: http://technet.microsoft.com/en-us/library/ee791754(v=ws.10).aspx Before launching the application you should [...]

  • Facebook
  • Twitter
  • LinkedIn
  • Google Plus
  • Delicious
  • Digg
  • StumbleUpon
  • Email