Install AD role
Create a new domain in a new forest
Install password: Xmas102411
Domain controller replication informatin by manual
Delete a OU
View->Advanced featehr->Right click OU->properties->Objects->Unselect (Protect object....)
dsadd user \"cn=username, ou=ouname, dc=YourDomain, dc=YourSuffix\"
dsadd user \"cn=hrichardson, ou=NYUsers, ou=NewYorkOU, dc=globomantics, dc=com\"
A1 blank 30000 color 35000
dsadd user \"cn=hrichardson, ou=NYUsers, ou=NewYorkOU, dc=globomantics, dc=com\" -fn Hank -ln Richardson -desc \"\" -pwd P@ssword -mustchpwd yes
dsadd user help (dsadd user /?)
User add batch
dsadd user \"cn=%1, ou=NYUsers, ou=NewYorkOU, dc=globomantics, dc=com\" -fn %2 -ln %3 -desc \"%3 %2\" -pwd P@ssword -mustchpwd yes
Save as add username.bat
run addouname.bat tmiller(replaces %1) Tonia(Replace %2) Miller(Replace %3)
Computer can\'t access the network without a AD account
Computer Accounts live ins OU\'a, which will allow you to install software to all machines in an OU at ounce
Share and storage management
Share is used for root folder which you want to share
NTFS is used for contents of share folder which you want to control the ACL in the share folde.
A (shared folder we use share permission to control who can access the share folder)
B C D (Use ntfs to control who can access these contents (the id belongs the group who can access the share folder))
Allow and deny permission
If user Tomy belongs group A and Group B.
A folder/file allow Group A access and no assign for Group B . Tommy can access the folder/file
A folder/file allow Group A access and deny for Group B . Tommy can not access the folder/file