Forum Search:
Forum.Brain-Cluster.com: Brain Cluster Technical Forum
Ultimate forum for Technical Discussions

Home » Microsoft » Windows Server » Active Directory » Extending the Schema for Credentials Roaming
Extending the Schema for Credentials Roaming [message #350931] Wed, 23 December 2009 07:40 Go to next message
nik  is currently offline nik  Canada
Messages: 115
Registered: September 2009
Senior Member
Hi guys,
I'm try to setup credentials roaming, because my users are have a number of
certificates generated for them everytime the login to a different computer.
So it was recommended I look at certificate roaming. Anyhow, I can't find
the files KRdeploy.cmd, KRdeploy.js, and DIMSroam.ldf as recommended by
Microsoft. However, they have provided the .ldf file to extend the schema
http://technet.microsoft.com/en-us/library/cc776299(WS.10).aspx. Can someone
please tell me how to use this file to extend the schema to support
Credentials Romaing.
Thanks
Nik
Re: Extending the Schema for Credentials Roaming [message #350946 is a reply to message #350931] Wed, 23 December 2009 08:02 Go to previous messageGo to next message
meiweb  is currently offline meiweb  Germany
Messages: 2225
Registered: September 2009
Senior Member
Hello Nik,

!!!!!USE A TEST SYSTEM TO MAKE SURE IT WORKS AS EXPECTED BEFORE USING THE
PRODUCTION DOMAIN!!!!!

You can use the LDIFDE command-line utility to import directory objects into
Active Directory.

This command line will import the schema extensions into Active Directory,
turn on verbose logging, and create a log file during the import process:

ldifde -i -f CredRoam.ldf -v -j <location to store log file>.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


> Hi guys,
> I'm try to setup credentials roaming, because my users are have a
> number of
> certificates generated for them everytime the login to a different
> computer.
> So it was recommended I look at certificate roaming. Anyhow, I can't
> find
> the files KRdeploy.cmd, KRdeploy.js, and DIMSroam.ldf as recommended
> by
> Microsoft. However, they have provided the .ldf file to extend the
> schema
> http://technet.microsoft.com/en-us/library/cc776299(WS.10).aspx. Can
> someone
> please tell me how to use this file to extend the schema to support
> Credentials Romaing.
> Thanks
> Nik
Re: Extending the Schema for Credentials Roaming [message #350981 is a reply to message #350946] Wed, 23 December 2009 09:04 Go to previous messageGo to next message
nik  is currently offline nik  Canada
Messages: 115
Registered: September 2009
Senior Member
Hey Meinolf,
I always use my lab environment (Virtual) before I do anything with
production systems. However, thanks for the heads up. In addition, it
worked. I verified that the attributes were created.
Thanks again
Nik

"Meinolf Weber [MVP-DS]" <meiweb@(nospam)gmx.de> wrote in message
news:6cb2911db5d98cc520079c1b871@msnews.microsoft.com...
> Hello Nik,
>
> !!!!!USE A TEST SYSTEM TO MAKE SURE IT WORKS AS EXPECTED BEFORE USING THE
> PRODUCTION DOMAIN!!!!!
>
> You can use the LDIFDE command-line utility to import directory objects
> into Active Directory.
>
> This command line will import the schema extensions into Active Directory,
> turn on verbose logging, and create a log file during the import process:
> ldifde -i -f CredRoam.ldf -v -j <location to store log file>.
>
> Best regards
>
> Meinolf Weber
> Disclaimer: This posting is provided "AS IS" with no warranties, and
> confers no rights.
> ** Please do NOT email, only reply to Newsgroups
> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>
>> Hi guys,
>> I'm try to setup credentials roaming, because my users are have a
>> number of
>> certificates generated for them everytime the login to a different
>> computer.
>> So it was recommended I look at certificate roaming. Anyhow, I can't
>> find
>> the files KRdeploy.cmd, KRdeploy.js, and DIMSroam.ldf as recommended
>> by
>> Microsoft. However, they have provided the .ldf file to extend the
>> schema
>> http://technet.microsoft.com/en-us/library/cc776299(WS.10).aspx. Can
>> someone
>> please tell me how to use this file to extend the schema to support
>> Credentials Romaing.
>> Thanks
>> Nik
>
>
Re: Extending the Schema for Credentials Roaming [message #351013 is a reply to message #350981] Wed, 23 December 2009 09:21 Go to previous messageGo to next message
nik  is currently offline nik  Canada
Messages: 115
Registered: September 2009
Senior Member
Hey,
Since I don't have the files I mentioned initially, how do I go about
changing the Security Descriptor properties for the domain
Thanks

"Nik" <nalleyne@maxxam.lab> wrote in message
news:eu0LJm#gKHA.1112@TK2MSFTNGP04.phx.gbl...
> Hey Meinolf,
> I always use my lab environment (Virtual) before I do anything with
> production systems. However, thanks for the heads up. In addition, it
> worked. I verified that the attributes were created.
> Thanks again
> Nik
>
> "Meinolf Weber [MVP-DS]" <meiweb@(nospam)gmx.de> wrote in message
> news:6cb2911db5d98cc520079c1b871@msnews.microsoft.com...
>> Hello Nik,
>>
>> !!!!!USE A TEST SYSTEM TO MAKE SURE IT WORKS AS EXPECTED BEFORE USING THE
>> PRODUCTION DOMAIN!!!!!
>>
>> You can use the LDIFDE command-line utility to import directory objects
>> into Active Directory.
>>
>> This command line will import the schema extensions into Active
>> Directory, turn on verbose logging, and create a log file during the
>> import process:
>> ldifde -i -f CredRoam.ldf -v -j <location to store log file>.
>>
>> Best regards
>>
>> Meinolf Weber
>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>> confers no rights.
>> ** Please do NOT email, only reply to Newsgroups
>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>
>>> Hi guys,
>>> I'm try to setup credentials roaming, because my users are have a
>>> number of
>>> certificates generated for them everytime the login to a different
>>> computer.
>>> So it was recommended I look at certificate roaming. Anyhow, I can't
>>> find
>>> the files KRdeploy.cmd, KRdeploy.js, and DIMSroam.ldf as recommended
>>> by
>>> Microsoft. However, they have provided the .ldf file to extend the
>>> schema
>>> http://technet.microsoft.com/en-us/library/cc776299(WS.10).aspx. Can
>>> someone
>>> please tell me how to use this file to extend the schema to support
>>> Credentials Romaing.
>>> Thanks
>>> Nik
>>
>>
Re: Extending the Schema for Credentials Roaming [message #351047 is a reply to message #351013] Wed, 23 December 2009 09:58 Go to previous messageGo to next message
meiweb  is currently offline meiweb  Germany
Messages: 2225
Registered: September 2009
Senior Member
Hello Nik,

The files above are only available via CSS from Microsoft, see also:
http://technet.microsoft.com/en-us/library/cc700821.aspx

http://social.technet.microsoft.com/forums/en-US/winserverDS /thread/5d8b8964-9c83-4575-adb9-ed35eab7bc68/

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


> Hey,
> Since I don't have the files I mentioned initially, how do I go about
> changing the Security Descriptor properties for the domain
> Thanks
> "Nik" <nalleyne@maxxam.lab> wrote in message
> news:eu0LJm#gKHA.1112@TK2MSFTNGP04.phx.gbl...
>
>> Hey Meinolf,
>> I always use my lab environment (Virtual) before I do anything with
>> production systems. However, thanks for the heads up. In addition, it
>> worked. I verified that the attributes were created.
>> Thanks again
>> Nik
>> "Meinolf Weber [MVP-DS]" <meiweb@(nospam)gmx.de> wrote in message
>> news:6cb2911db5d98cc520079c1b871@msnews.microsoft.com...
>>
>>> Hello Nik,
>>>
>>> !!!!!USE A TEST SYSTEM TO MAKE SURE IT WORKS AS EXPECTED BEFORE
>>> USING THE PRODUCTION DOMAIN!!!!!
>>>
>>> You can use the LDIFDE command-line utility to import directory
>>> objects into Active Directory.
>>>
>>> This command line will import the schema extensions into Active
>>> Directory, turn on verbose logging, and create a log file during the
>>> import process:
>>> ldifde -i -f CredRoam.ldf -v -j <location to store log file>.
>>> Best regards
>>>
>>> Meinolf Weber
>>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>>> confers no rights.
>>> ** Please do NOT email, only reply to Newsgroups
>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>> Hi guys,
>>>> I'm try to setup credentials roaming, because my users are have a
>>>> number of
>>>> certificates generated for them everytime the login to a different
>>>> computer.
>>>> So it was recommended I look at certificate roaming. Anyhow, I
>>>> can't
>>>> find
>>>> the files KRdeploy.cmd, KRdeploy.js, and DIMSroam.ldf as
>>>> recommended
>>>> by
>>>> Microsoft. However, they have provided the .ldf file to extend the
>>>> schema
>>>> http://technet.microsoft.com/en-us/library/cc776299(WS.10).aspx.
>>>> Can
>>>> someone
>>>> please tell me how to use this file to extend the schema to support
>>>> Credentials Romaing.
>>>> Thanks
>>>> Nik
Re: Extending the Schema for Credentials Roaming [message #351636 is a reply to message #351047] Thu, 24 December 2009 06:36 Go to previous messageGo to next message
nik  is currently offline nik  Canada
Messages: 115
Registered: September 2009
Senior Member
Hey Meinolf,
I got the files from Microsoft.
Thanks and happy holidays
Nik

"Meinolf Weber [MVP-DS]" <meiweb@(nospam)gmx.de> wrote in message
news:6cb2911db5fb8cc5210a57ed29c@msnews.microsoft.com...
> Hello Nik,
>
> The files above are only available via CSS from Microsoft, see also:
> http://technet.microsoft.com/en-us/library/cc700821.aspx
>
> http://social.technet.microsoft.com/forums/en-US/winserverDS /thread/5d8b8964-9c83-4575-adb9-ed35eab7bc68/
>
> Best regards
>
> Meinolf Weber
> Disclaimer: This posting is provided "AS IS" with no warranties, and
> confers no rights.
> ** Please do NOT email, only reply to Newsgroups
> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>
>> Hey,
>> Since I don't have the files I mentioned initially, how do I go about
>> changing the Security Descriptor properties for the domain
>> Thanks
>> "Nik" <nalleyne@maxxam.lab> wrote in message
>> news:eu0LJm#gKHA.1112@TK2MSFTNGP04.phx.gbl...
>>
>>> Hey Meinolf,
>>> I always use my lab environment (Virtual) before I do anything with
>>> production systems. However, thanks for the heads up. In addition, it
>>> worked. I verified that the attributes were created.
>>> Thanks again
>>> Nik
>>> "Meinolf Weber [MVP-DS]" <meiweb@(nospam)gmx.de> wrote in message
>>> news:6cb2911db5d98cc520079c1b871@msnews.microsoft.com...
>>>
>>>> Hello Nik,
>>>>
>>>> !!!!!USE A TEST SYSTEM TO MAKE SURE IT WORKS AS EXPECTED BEFORE
>>>> USING THE PRODUCTION DOMAIN!!!!!
>>>>
>>>> You can use the LDIFDE command-line utility to import directory
>>>> objects into Active Directory.
>>>>
>>>> This command line will import the schema extensions into Active
>>>> Directory, turn on verbose logging, and create a log file during the
>>>> import process:
>>>> ldifde -i -f CredRoam.ldf -v -j <location to store log file>.
>>>> Best regards
>>>>
>>>> Meinolf Weber
>>>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>>>> confers no rights.
>>>> ** Please do NOT email, only reply to Newsgroups
>>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>> Hi guys,
>>>>> I'm try to setup credentials roaming, because my users are have a
>>>>> number of
>>>>> certificates generated for them everytime the login to a different
>>>>> computer.
>>>>> So it was recommended I look at certificate roaming. Anyhow, I
>>>>> can't
>>>>> find
>>>>> the files KRdeploy.cmd, KRdeploy.js, and DIMSroam.ldf as
>>>>> recommended
>>>>> by
>>>>> Microsoft. However, they have provided the .ldf file to extend the
>>>>> schema
>>>>> http://technet.microsoft.com/en-us/library/cc776299(WS.10).aspx.
>>>>> Can
>>>>> someone
>>>>> please tell me how to use this file to extend the schema to support
>>>>> Credentials Romaing.
>>>>> Thanks
>>>>> Nik
>
>
Re: Extending the Schema for Credentials Roaming [message #352196 is a reply to message #351636] Fri, 25 December 2009 08:27 Go to previous message
meiweb  is currently offline meiweb  Germany
Messages: 2225
Registered: September 2009
Senior Member
Hello Nik,

You're welcome and Merry Christmas :-)

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


> Hey Meinolf,
> I got the files from Microsoft.
> Thanks and happy holidays
> Nik
> "Meinolf Weber [MVP-DS]" <meiweb@(nospam)gmx.de> wrote in message
> news:6cb2911db5fb8cc5210a57ed29c@msnews.microsoft.com...
>
>> Hello Nik,
>>
>> The files above are only available via CSS from Microsoft, see also:
>> http://technet.microsoft.com/en-us/library/cc700821.aspx
>>
>> http://social.technet.microsoft.com/forums/en-US/winserverDS /thread/5
>> d8b8964-9c83-4575-adb9-ed35eab7bc68/
>>
>> Best regards
>>
>> Meinolf Weber
>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>> confers no rights.
>> ** Please do NOT email, only reply to Newsgroups
>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>> Hey,
>>> Since I don't have the files I mentioned initially, how do I go
>>> about
>>> changing the Security Descriptor properties for the domain
>>> Thanks
>>> "Nik" <nalleyne@maxxam.lab> wrote in message
>>> news:eu0LJm#gKHA.1112@TK2MSFTNGP04.phx.gbl...
>>>> Hey Meinolf,
>>>> I always use my lab environment (Virtual) before I do anything with
>>>> production systems. However, thanks for the heads up. In addition,
>>>> it
>>>> worked. I verified that the attributes were created.
>>>> Thanks again
>>>> Nik
>>>> "Meinolf Weber [MVP-DS]" <meiweb@(nospam)gmx.de> wrote in message
>>>> news:6cb2911db5d98cc520079c1b871@msnews.microsoft.com...
>>>>> Hello Nik,
>>>>>
>>>>> !!!!!USE A TEST SYSTEM TO MAKE SURE IT WORKS AS EXPECTED BEFORE
>>>>> USING THE PRODUCTION DOMAIN!!!!!
>>>>>
>>>>> You can use the LDIFDE command-line utility to import directory
>>>>> objects into Active Directory.
>>>>>
>>>>> This command line will import the schema extensions into Active
>>>>> Directory, turn on verbose logging, and create a log file during
>>>>> the
>>>>> import process:
>>>>> ldifde -i -f CredRoam.ldf -v -j <location to store log file>.
>>>>> Best regards
>>>>> Meinolf Weber
>>>>> Disclaimer: This posting is provided "AS IS" with no warranties,
>>>>> and
>>>>> confers no rights.
>>>>> ** Please do NOT email, only reply to Newsgroups
>>>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>>> Hi guys,
>>>>>> I'm try to setup credentials roaming, because my users are have a
>>>>>> number of
>>>>>> certificates generated for them everytime the login to a
>>>>>> different
>>>>>> computer.
>>>>>> So it was recommended I look at certificate roaming. Anyhow, I
>>>>>> can't
>>>>>> find
>>>>>> the files KRdeploy.cmd, KRdeploy.js, and DIMSroam.ldf as
>>>>>> recommended
>>>>>> by
>>>>>> Microsoft. However, they have provided the .ldf file to extend
>>>>>> the
>>>>>> schema
>>>>>> http://technet.microsoft.com/en-us/library/cc776299(WS.10).aspx.
>>>>>> Can
>>>>>> someone
>>>>>> please tell me how to use this file to extend the schema to
>>>>>> support
>>>>>> Credentials Romaing.
>>>>>> Thanks
>>>>>> Nik
Previous Topic:Extending ADAM Schema with PKI objects
Next Topic:RODC
Goto Forum:
  


Current Time: Tue Jan 16 04:10:20 MST 2018

Total time taken to generate the page: 0.03992 seconds
.:: Contact :: Home ::Sitemap::.

Powered by: FUDforum 3.0.0RC2.
Copyright ©2001-2009 FUDforum Bulletin Board Software