 




<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>PowerShell for Windows Admins &#187; Active Directory</title>
	<atom:link href="http://itknowledgeexchange.techtarget.com/powershell/tag/active-directory/feed/" rel="self" type="application/rss+xml" />
	<link>http://itknowledgeexchange.techtarget.com/powershell</link>
	<description>PowerShell and WMI: The fast and furious of windows administration.</description>
	<lastBuildDate>Thu, 16 May 2013 18:56:16 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	
		<item>
		<title>AD MoL Chapter 10 MEAP</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/ad-mol-chapter-10-meap/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/ad-mol-chapter-10-meap/#comments</comments>
		<pubDate>Wed, 08 May 2013 19:08:42 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Books]]></category>
		<category><![CDATA[PowerShell 3]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=913</guid>
		<description><![CDATA[Chapter 10 of AD Management in a Month of Lunches is now available. http://www.manning.com/siddaway3/ The chapter covers Fine Grained Password Policies]]></description>
				<content:encoded><![CDATA[<p>Chapter 10 of AD Management in a Month of Lunches is now available.</p>
<p>http://www.manning.com/siddaway3/</p>
<p>The chapter covers Fine Grained Password Policies</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/ad-mol-chapter-10-meap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>AD Management in a Month of Lunches&#8211; chapter 9 in MEAP</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/ad-management-in-a-month-of-lunches-chapter-9-in-meap/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/ad-management-in-a-month-of-lunches-chapter-9-in-meap/#comments</comments>
		<pubDate>Mon, 29 Apr 2013 18:26:28 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Books]]></category>
		<category><![CDATA[PowerShell]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=888</guid>
		<description><![CDATA[The MEAP for AD Management in a Month of Lunches has been updated with the release of chapter 9 on managing group policies]]></description>
				<content:encoded><![CDATA[<p>The MEAP for AD Management in a Month of Lunches has been updated with the release of chapter 9 on managing group policies</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/ad-management-in-a-month-of-lunches-chapter-9-in-meap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>AD Management in a Month of Lunches</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/ad-management-in-a-month-of-lunches/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/ad-management-in-a-month-of-lunches/#comments</comments>
		<pubDate>Sat, 06 Apr 2013 15:38:44 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Books]]></category>
		<category><![CDATA[PowerShell 3]]></category>
		<category><![CDATA[Windows Server 2012]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=872</guid>
		<description><![CDATA[The MEAP marches on with chapter 8 now released: Chapter 8 – creating Group Policies details from http://www.manning.com/siddaway3/]]></description>
				<content:encoded><![CDATA[<p>The MEAP marches on with chapter 8 now released:</p>
<p>Chapter 8 – creating Group Policies</p>
<p>details from <a title="http://www.manning.com/siddaway3/" href="http://www.manning.com/siddaway3/">http://www.manning.com/siddaway3/</a></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/ad-management-in-a-month-of-lunches/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Book offer&#8211;AD Management in a Month of Lunches</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/book-offerad-management-in-a-month-of-lunches/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/book-offerad-management-in-a-month-of-lunches/#comments</comments>
		<pubDate>Wed, 27 Feb 2013 20:23:20 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Books]]></category>
		<category><![CDATA[PowerShell]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=842</guid>
		<description><![CDATA[AD Management in a month of lunches is today’s deal of the day from Manning – www.manning.com The get 50% off today using code dotd0227cc. The offer is good for today only The same code can be used for 50% off PowerShell in Practice]]></description>
				<content:encoded><![CDATA[<p>AD Management in a month of lunches is today’s deal of the day from Manning – <a href="http://www.manning.com">www.manning.com</a> </p>
<p>The get 50% off today using code <strong>dotd0227cc. The offer is good for today only</strong></p>
<p>The same code can be used for 50% off PowerShell in Practice</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/book-offerad-management-in-a-month-of-lunches/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Filter or LDAP filter</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/filter-or-ldap-filter/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/filter-or-ldap-filter/#comments</comments>
		<pubDate>Wed, 27 Feb 2013 20:15:34 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[PowerShell 3]]></category>
		<category><![CDATA[Windows Server 2012]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=838</guid>
		<description><![CDATA[Many of the Microsoft AD cmdlets have a –Filter and an –LDAPFilter parameter.&#160; So what’s the difference? PS&#62; Get-Help Get-ADUser -Parameter *Filter* -Filter &#60;String&#62; &#160;&#160;&#160; Specifies a query string that retrieves Active Directory objects. This string uses the PowerShell Expression &#160;&#160;&#160; Language syntax. The PowerShell Expression Language syntax provides rich type-conversion support for value types&#160; [...]]]></description>
				<content:encoded><![CDATA[<p>Many of the Microsoft AD cmdlets have a –Filter and an –LDAPFilter parameter.&#160; So what’s the difference?</p>
<p>PS&gt; Get-Help Get-ADUser -Parameter *Filter*</p>
<p>-Filter &lt;String&gt;   <br />&#160;&#160;&#160; Specifies a query string that retrieves Active Directory objects. This string uses the PowerShell Expression    <br />&#160;&#160;&#160; Language syntax. The PowerShell Expression Language syntax provides rich type-conversion support for value types&#160; received by the Filter parameter. The syntax uses an in-order representation, which means that the operator is placed between the operand and the value. For more information about the Filter parameter, see&#160; about_ActiveDirectory_Filter.</p>
<p>-LDAPFilter &lt;String&gt;   <br />&#160;&#160;&#160; Specifies an LDAP query string that is used to filter Active Directory objects. You can use this parameter to run&#160; your existing LDAP queries. The Filter parameter syntax supports the same functionality as the LDAP syntax. For&#160; more information, see the Filter parameter description and the about_ActiveDirectory_Filter.</p>
<p>This means you have two ways to approach a problem. Lets think about finding a single user:</p>
<p>Get-ADUser -LDAPFilter &quot;(samAccountName=Richard)&quot;</p>
<p>Get-ADUser -Filter {samAccountName -eq &#8216;Richard&#8217;}</p>
<p>The LDAPFilter uses LDAP query syntax – attribute and value.&#160; Filter uses PowerShell syntax. You could think of the –Filter as a condensed version of</p>
<p>Get-ADUser -Filter * | where samAccountName -eq &#8216;Richard&#8217;</p>
<p>Use the –Filter parameter because its less typing and you filter early – especially important if querying across a network.</p>
<p>You can use multiple attributes in the filters&#160; &#8211; &amp; implies AND in the LDAP filter</p>
<p>Get-ADUser -LDAPFilter &quot;(&amp;(givenname=Bill)(sn=Green))&quot;</p>
<p>Get-ADUser -Filter {GivenName -eq &#8216;Bill&#8217; -and Surname -eq &#8216;Green&#8217;}</p>
<p>The LDAP filter HAS to use the correct attribute name but Filter uses the property name returned by Get-ADUser.</p>
<p>LDAP filters can get very complicated very quickly. For instance if you want to find the disabled user accounts</p>
<p>Get-ADUser -LDAPFilter &quot;(&amp;(objectclass=user)(objectcategory=user)(useraccountcontrol:1.2.840.113556.1.4.803:=2))&quot;</p>
<p>Get-ADUser -Filter {Enabled -eq $false}</p>
<p>Alternatively,and in my opinion, its simpler to use Search-ADaccount</p>
<p> Search-ADAccount -AccountDisabled –UsersOnly</p>
<p>Which one should you use?&#160; The one that best solves your problem. I mix &amp; match to suit the search I’m performing</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/filter-or-ldap-filter/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New book</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/new-book/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/new-book/#comments</comments>
		<pubDate>Mon, 25 Feb 2013 18:55:53 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Books]]></category>
		<category><![CDATA[PowerShell]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=832</guid>
		<description><![CDATA[My latest book has been released on the Manning Early Access Program (MEAP). Active Directory Management in a Month of Lunches takes the newcomer to AD through the tasks they need to perform to manage their organization’s AD. it assumes no knowledge of AD and shows how to perform the common management tasks from the [...]]]></description>
				<content:encoded><![CDATA[<p>My latest book has been released on the Manning Early Access Program (MEAP). Active Directory Management in a Month of Lunches takes the newcomer to AD through the tasks they need to perform to manage their organization’s AD.</p>
<p>it assumes no knowledge of AD and shows how to perform the common management tasks from the GUI (AD Administrative Center &amp; the venerable AD Users &amp; Computers) as well as PowerShell (using the Microsoft cmdlets).&#160; </p>
<p>Chapters 1-7 are currently available from <a href="http://www.manning.com\siddaway3">www.manning.com\siddaway3</a> with more to come soon</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/new-book/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Creating a Windows 2012 Domain Controller</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/creating-a-windows-2012-domain-controller/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/creating-a-windows-2012-domain-controller/#comments</comments>
		<pubDate>Thu, 21 Feb 2013 19:54:08 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[PowerShell 3]]></category>
		<category><![CDATA[Windows Server 2012]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=830</guid>
		<description><![CDATA[I decided to replace one of the DCs in my test environment with a Windows 2012 Server Core machine. Server Core has really come of age in Windows 2012 – its easy to configure. I’ve covered configuring a server before but to recap: Rename the machine – use Rename-Computer Set Network – use Set-NetIPInterface (address) [...]]]></description>
				<content:encoded><![CDATA[<p>I decided to replace one of the DCs in my test environment with a Windows 2012 Server Core machine. Server Core has really come of age in Windows 2012 – its easy to configure.</p>
<p>I’ve covered configuring a server before but to recap:</p>
<ul>
<li>Rename the machine – use Rename-Computer </li>
<li>Set Network – use Set-NetIPInterface (address) &amp; et-DnsClientServerAddress( dns address) &amp; Rename-netAdapter </li>
<li>Join to domain – use Add-Computer </li>
</ul>
<p>To create the domain controller use the ADDSDeployment module. You’ll only find this on servers where you’ve installed the AD Domain Services feature which you do like this:</p>
<p> Install-WindowsFeature -Name AD-Domain-Services -Confirm:$false   <br /> 
<p>&#160;</p>
<p>Import the module</p>
<p>Import-Module ADDSDeployment    <br />Get-Command -Module ADDSDeployment     </p>
<p>Create the Domain Controller. This is the equivalent of running DCPROMO in earlier versions. Even better you don’t need the answer file. Everything is a parameter on the cmdlet.</p>
<p>Install-ADDSDomain Controller -DomainName &quot;manticore.org&quot; -InstallDns -Credential (Get-Credential manticore\richard) -ApplicationPartitionsToReplicate *</p>
<p>Thats it!&#160; Just wait for replication to happen.</p>
<p>You can also demote a domain controller</p>
<p>$cred = Get-Credential    <br />Uninstall-ADDSDomainController -Credential $cred -RemoveApplicationPartitions -Confirm:$false</p>
<p>Restart the machine and uninstall AD &amp; DNS</p>
<p>Uninstall-WindowsFeature -Name AD-Domain-Services, DNS -Confirm:$false    <br />Restart-Computer -ComputerName dc02 </p>
<p>Leave the domain</p>
<p>$cred = Get-Credential manticore\richard    <br />Remove-Computer -UnjoinDomainCredential $cred -Workgroup Test</p>
<p>Trash the VM.</p>
<p>And best of all it works over remoting.&#160; You will need to recreate the session for restarts &amp; changes but it is really easy.</p>
<p>Server Core is now a much friendlier option.</p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/creating-a-windows-2012-domain-controller/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PowerShell and Active Directory recording</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/powershell-and-active-directory-recording/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/powershell-and-active-directory-recording/#comments</comments>
		<pubDate>Wed, 30 Jan 2013 22:06:50 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[PowerShell]]></category>
		<category><![CDATA[User Group]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=818</guid>
		<description><![CDATA[The recording, slides and demo script from yesterday’s PowerShell and Active Directory session can be found here: https://skydrive.live.com/?cid=43cfa46a74cf3e96#cid=43CFA46A74CF3E96&#38;id=43CFA46A74CF3E96%2140563]]></description>
				<content:encoded><![CDATA[<p>The recording, slides and demo script from yesterday’s PowerShell and Active Directory session can be found here:</p>
<p><a title="https://skydrive.live.com/?cid=43cfa46a74cf3e96#cid=43CFA46A74CF3E96&amp;id=43CFA46A74CF3E96%2140563" href="https://skydrive.live.com/?cid=43cfa46a74cf3e96#cid=43CFA46A74CF3E96&amp;id=43CFA46A74CF3E96%2140563">https://skydrive.live.com/?cid=43cfa46a74cf3e96#cid=43CFA46A74CF3E96&amp;id=43CFA46A74CF3E96%2140563</a></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/powershell-and-active-directory-recording/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PowerShell and Active Directory&#8211;reminder</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/powershell-and-active-directoryreminder/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/powershell-and-active-directoryreminder/#comments</comments>
		<pubDate>Mon, 28 Jan 2013 18:16:23 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[PowerShell]]></category>
		<category><![CDATA[User Group]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=814</guid>
		<description><![CDATA[Quick reminder for tomorrow’s session from the UK PowerShell group.&#160; Details from: http://msmvps.com/blogs/richardsiddaway/archive/2013/01/16/uk-powershell-group-29-january-2013.aspx]]></description>
				<content:encoded><![CDATA[<p>Quick reminder for tomorrow’s session from the UK PowerShell group.&#160; Details from:</p>
<p><a title="http://msmvps.com/blogs/richardsiddaway/archive/2013/01/16/uk-powershell-group-29-january-2013.aspx" href="http://msmvps.com/blogs/richardsiddaway/archive/2013/01/16/uk-powershell-group-29-january-2013.aspx">http://msmvps.com/blogs/richardsiddaway/archive/2013/01/16/uk-powershell-group-29-january-2013.aspx</a></p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/powershell-and-active-directoryreminder/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>UK PowerShell group &#8211; 29 January 2013</title>
		<link>http://itknowledgeexchange.techtarget.com/powershell/uk-powershell-group-29-january-2013/</link>
		<comments>http://itknowledgeexchange.techtarget.com/powershell/uk-powershell-group-29-january-2013/#comments</comments>
		<pubDate>Wed, 16 Jan 2013 20:29:43 +0000</pubDate>
		<dc:creator>Richard Siddaway</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[PowerShell]]></category>
		<category><![CDATA[User Group]]></category>

		<guid isPermaLink="false">http://itknowledgeexchange.techtarget.com/powershell/?p=797</guid>
		<description><![CDATA[When: Tuesday, Jan 29, 2013 7:30 PM (GMT)Where: virtual *~*~*~*~*~*~*~*~*~* Active Directory is one of the commonest automation targets for administrators. This session will covert the basics of automating your AD admin &#8211; scripts and the Microsoft cmdlets. The new features in PowerShell for Windows 2012 AD will also be covered Notes Richard Siddaway has [...]]]></description>
				<content:encoded><![CDATA[<pre><p><br />When: Tuesday, Jan 29, 2013 7:30 PM (GMT)<p><br />Where: virtual
<p>*~*~*~*~*~*~*~*~*~*</p>
</pre>
<p>Active Directory is one of the commonest automation targets for administrators. This session will covert the basics of automating your AD admin &#8211; scripts and the Microsoft cmdlets. The new features in PowerShell for Windows 2012 AD will also be covered </p>
<p><b>Notes</b></p>
<pre></pre>
<p>Richard Siddaway has invited you to attend an online meeting using Live Meeting.<br /><b><a href="https://www.livemeeting.com/cc/usergroups/join?id=RCRWH3&amp;role=attend&amp;pw=5p7%24%7DS_%21h">Join the meeting.</a></b><br /><b>Audio Information</b><br /><b>Computer Audio</b><br />To use computer audio, you need speakers and microphone, or a headset. <br /><b>First Time Users:</b><br />To save time before the meeting, <a href="http://go.microsoft.com/fwlink/?LinkId=90703">check your system </a>to make sure it is ready to use Microsoft Office Live Meeting. <br /><b>Troubleshooting</b><br />Unable to join the meeting? Follow these steps: </p>
<ol>
<li>Copy this address and paste it into your web browser: <br />https://www.livemeeting.com/cc/usergroups/join
<li>Copy and paste the required information: <br />Meeting ID: RCRWH3 <br />Entry Code: 5p7$}S_!h <br />Location: https://www.livemeeting.com/cc/usergroups </li>
</ol>
<p>If you still cannot enter the meeting, <a href="http://r.office.microsoft.com/r/rlidLiveMeeting?p1=12&amp;p2=en_US&amp;p3=LMInfo&amp;p4=support">contact support</a> </p>
<p><b>Notice</b><br />Microsoft Office Live Meeting can be used to record meetings. By participating in this meeting, you agree that your communications may be monitored or recorded at any time during the meeting. </p>
<!-- wpms-network-global-inserts -->]]></content:encoded>
			<wfw:commentRss>http://itknowledgeexchange.techtarget.com/powershell/uk-powershell-group-29-january-2013/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
