<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>RO Windows Administrators Weblog &#187; Tools</title>
	<atom:link href="http://www.winadmin.ro/tag/tools/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.winadmin.ro</link>
	<description>Weblogul adminilor de Windows din Romania.</description>
	<lastBuildDate>Fri, 03 Feb 2012 19:33:55 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Remote Desktop Connection Manager</title>
		<link>http://www.winadmin.ro/2010/06/21/remote-desktop-connection-manager/</link>
		<comments>http://www.winadmin.ro/2010/06/21/remote-desktop-connection-manager/#comments</comments>
		<pubDate>Mon, 21 Jun 2010 12:21:07 +0000</pubDate>
		<dc:creator>Andrei Ungureanu</dc:creator>
				<category><![CDATA[Diverse]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.winadmin.ro/2010/06/21/remote-desktop-connection-manager/</guid>
		<description><![CDATA[Uite unul chiar ok de la Microsoft: http://www.microsoft.com/downloads/details.aspx?displaylang=en&#38;FamilyID=4603c621-6de7-4ccb-9f51-d53dc7e48047 Simplu, fara prea multe functionalitati, exact ce iti trebuie atunci cand administrezi multe servere.]]></description>
			<content:encoded><![CDATA[<p>Uite unul chiar ok de la Microsoft:</p>
<p><a title="http://www.microsoft.com/downloads/details.aspx?displaylang=en&amp;FamilyID=4603c621-6de7-4ccb-9f51-d53dc7e48047" href="http://www.microsoft.com/downloads/details.aspx?displaylang=en&amp;FamilyID=4603c621-6de7-4ccb-9f51-d53dc7e48047">http://www.microsoft.com/downloads/details.aspx?displaylang=en&amp;FamilyID=4603c621-6de7-4ccb-9f51-d53dc7e48047</a></p>
<p>Simplu, fara prea multe functionalitati, exact ce iti trebuie atunci cand administrezi multe servere.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.winadmin.ro/2010/06/21/remote-desktop-connection-manager/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Cum sa bootati de pe VHD cu Windows 7 in 10 pasi</title>
		<link>http://www.winadmin.ro/2009/12/17/cum-sa-bootati-de-pe-vhd-cu-windows-7-in-10-pasi/</link>
		<comments>http://www.winadmin.ro/2009/12/17/cum-sa-bootati-de-pe-vhd-cu-windows-7-in-10-pasi/#comments</comments>
		<pubDate>Thu, 17 Dec 2009 05:00:36 +0000</pubDate>
		<dc:creator>Andrei Ignat</dc:creator>
				<category><![CDATA[Virtualization]]></category>
		<category><![CDATA[Disk2VHD]]></category>
		<category><![CDATA[Tips&Tricks]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[VHD]]></category>
		<category><![CDATA[Windows 7]]></category>

		<guid isPermaLink="false">http://www.winadmin.ro/?p=320</guid>
		<description><![CDATA[Avertisment 1 : este rezumatul de la http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html &#8211; imbunatatit cu inca un tool Avertisment 2 : nu merge DECIT cu Windows 7. Nu incercati cu Vista … Pasul 1 : Cititi http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html si confirmati ca aveţi drepturi administrative pentru a executa programe. Pasul 2 : Asigurati-va instrumentele : a) Disk2VHD from SysInternals, http://technet.microsoft.com/en-us/sysinternals/ee656415.aspx b) [...]]]></description>
			<content:encoded><![CDATA[<p>Avertisment 1 : este rezumatul de la <a href="http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html">http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html</a> &#8211; imbunatatit cu inca un tool</p>
<p>Avertisment 2 : nu merge DECIT cu Windows 7. Nu incercati cu Vista …</p>
<p>Pasul 1 : Cititi <a href="http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html">http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html</a> si confirmati ca aveţi drepturi administrative pentru a executa programe.</p>
<p>Pasul 2 : Asigurati-va instrumentele :</p>
<p>a) Disk2VHD from SysInternals, <a href="http://technet.microsoft.com/en-us/sysinternals/ee656415.aspx">http://technet.microsoft.com/en-us/sysinternals/ee656415.aspx</a></p>
<p>b) VHD Resizer, <a href="http://vmtoolkit.com/files/folders/converters/entry87.aspx">http://vmtoolkit.com/files/folders/converters/entry87.aspx</a></p>
<p>c) BcdVHD, <a href="http://disk2vhd.codeplex.com/">http://disk2vhd.codeplex.com/</a> .</p>
<p>d) CD Original Windows 7 cu bootsect.exe</p>
<p>Pasul 3 : Executaţi Disk2VHD şi creaţi un fişier VHD</p>
<p><a href="\Users\andrei\AppData\Local\Temp\WindowsLiveWriter-429641856\supfiles519CA3B\image%5b2%5d.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/12/clip_image002.gif" border="0" alt="clip_image002" width="244" height="196" /></a></p>
<p>Pasul 4 : Ataşaţi fişierul VHD în DiskManagement, face-ti-l on-line, ştergeti RAW volume şi faceti shrink la el.Detasati VHD din Disk Management</p>
<p>Pasul 5: Executaţi VHD Resizer cu VHD selectat</p>
<p><a href="\Users\andrei\AppData\Local\Temp\WindowsLiveWriter-429641856\supfiles519CA3B\image%5b5%5d.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/12/clip_image004.gif" border="0" alt="clip_image004" width="244" height="222" /></a></p>
<p>Pasul 6: Rulati BcdVHD ca sa il adaugati in boot configuration.</p>
<p><a href="\Users\andrei\AppData\Local\Temp\WindowsLiveWriter-429641856\supfiles519CA3B\image%5b11%5d.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/12/clip_image006.gif" border="0" alt="clip_image006" width="244" height="83" /></a></p>
<p>Rulati apoi bootsect on VHD cum e mentionat in <a href="http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html">http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html</a></p>
<p>Pasul 7: Restartati si boot pe VHD. Rulati %SystemDrive% pe vhd. Tineti minte litera drive-ului.</p>
<p>Pasul 8: Atasati registry de pe VHD cum scrie in <a href="http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html">http://onegeekwithalife.blogspot.com/2009/11/booting-from-cloned-vhd-in-win7.html</a></p>
<p>Pasul 9 : Restart</p>
<p>Pasul 10: Felicitari, aveti un nou sistem de boot de pe VHD!</p>
<p>Andrei Ignat</p>
<p><a title="http://serviciipeweb.ro/iafblog/" href="http://serviciipeweb.ro/iafblog/">http://serviciipeweb.ro/iafblog/</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.winadmin.ro/2009/12/17/cum-sa-bootati-de-pe-vhd-cu-windows-7-in-10-pasi/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Windows 7 builtin tools</title>
		<link>http://www.winadmin.ro/2009/12/01/windows-7-builtin-tools/</link>
		<comments>http://www.winadmin.ro/2009/12/01/windows-7-builtin-tools/#comments</comments>
		<pubDate>Tue, 01 Dec 2009 13:00:29 +0000</pubDate>
		<dc:creator>Sebi22</dc:creator>
				<category><![CDATA[Windows Client]]></category>
		<category><![CDATA[builtin]]></category>
		<category><![CDATA[Tools]]></category>
		<category><![CDATA[windows7]]></category>

		<guid isPermaLink="false">http://www.winadmin.ro/?p=258</guid>
		<description><![CDATA[Windows 7 contine cateva utilitare noi, care mie mi se par destul de folositoare 1. Windows Disc Image Burner Ne ofera posibilitatea de a “arde” o imagine pe un DVD fara a mai instala alt soft de genul Nero, iar procedeul este foarte simplu : click-dreapta pe fisierul .iso, Open with – Windows Disc Image [...]]]></description>
			<content:encoded><![CDATA[<p>Windows 7 contine cateva utilitare noi, care mie mi se par destul de folositoare</p>
<p><strong>1. </strong><strong>Windows Disc Image Burner</strong></p>
<p>Ne ofera posibilitatea de a “arde” o imagine pe un DVD fara a mai instala alt soft de genul Nero, iar procedeul este foarte simplu : click-dreapta pe fisierul .iso, Open with – Windows Disc Image Burner.</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image002.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image002_thumb.jpg" border="0" alt="clip_image002" width="638" height="355" /></a></p>
<p>Avem si optiunea de a verifica discul dupa terminarea scrierii iso-ului.</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image004.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image004_thumb.jpg" border="0" alt="clip_image004" width="457" height="432" /></a></p>
<p><strong>2. </strong><strong>Microsoft Windows Repair Disc – RECDISC.EXE</strong></p>
<p>Este un mic utilitar cu ajutorul caruia putem crea un CD bootabil de recovery.</p>
<p>Se lanseaza din Start – Run – recdisc – OK, sau din Control Panel – Backup and Restore – Create a system repair disc.</p>
<p><a href="\Users\admin.hidro6\AppData\Local\Temp\WindowsLiveWriter-429641856\supfiles78E88C\image3.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image006.gif" border="0" alt="clip_image006" width="464" height="261" /></a></p>
<p><a href="\Users\admin.hidro6\AppData\Local\Temp\WindowsLiveWriter-429641856\supfiles78E88C\image7.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image008.gif" border="0" alt="clip_image008" width="468" height="298" /></a></p>
<p>Ni se cere sa introducem un blank disc in unitatea optica ( nu trebuie DVD, e suficient un CD), apasam Create disc si in cateva minute avem CD-ul de recovery. Ce nu imi place e ca nu poti salva un .iso pe care sa-l poti scrie mai tarziu pe CD.</p>
<p><a href="\Users\admin.hidro6\AppData\Local\Temp\WindowsLiveWriter-429641856\supfiles78E88C\image12.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image010.gif" border="0" alt="clip_image010" width="471" height="298" /></a></p>
<p>Optiunile incluse in CD-ul de recovery sunt :</p>
<p>- Startup repair</p>
<p>- System restore</p>
<p>- System image recovery</p>
<p>- Windows memory diagnostic</p>
<p>- Command prompt</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image012.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image012_thumb.jpg" border="0" alt="clip_image012" width="541" height="407" /></a></p>
<p>Inca ceva : recdisc.exe exista si in Windows Vista, dar nu functioneaza. Cand incerci sa-l lansezi, pur si simplu nu se intampla nimic.</p>
<p><strong>3. </strong><strong>Problem Steps Recorder – PSR.EXE</strong></p>
<p>Foarte util pentru suport. De multe ori, descrierea problemei de catre utilizator este incompleta sau gresita si mai rau te incurca. Cu Problem Steps Recorder poti vedea cu ochii tai ce se intampla.</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image014.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image014_thumb.jpg" border="0" alt="clip_image014" width="482" height="251" /></a></p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image016.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image016_thumb.jpg" border="0" alt="clip_image016" width="479" height="75" /></a></p>
<p>O descriere mai detaliata a acestui utilitar o puteti gasi pe blog-ul lui Andrei Ungureanu :</p>
<p><a href="http://itboard.ro/blogs/andrei_ungureanus_blog/archive/2009/09/01/windows-7-psr.aspx">http://itboard.ro/blogs/andrei_ungureanus_blog/archive/2009/09/01/windows-7-psr.aspx</a></p>
<p><strong>4. </strong><strong>Deployment Image Servicing and Management tool – DISM.EXE</strong></p>
<p>Ce este DISM? Pai, sa deschidem un Command prompt (ca administrator), sa tastam dism.exe, enter, si sa vedem despre ce e vorba :</p>
<p>“ DISM enumerates, installs, uninstalls, configures, and updates features and packages in Windows images. “</p>
<p>De fapt, face chiar mai multe, nu se ocupa doar cu “features and packages”, ci si cu “drivers and international settings” . O descriere completa , precum si instructiuni de utilizare puteti gasi aici : <a href="http://technet.microsoft.com/en-us/library/dd744566(WS.10).aspx">http://technet.microsoft.com/en-us/library/dd744566(WS.10).aspx</a></p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image018.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image018_thumb.jpg" border="0" alt="clip_image018" width="533" height="558" /></a></p>
<p>Functioneaza atat cu imagini offline, cat si online. Iata cateva comenzi simple:</p>
<p>- Pentru a vedea o lista completa a Windows features si starea lor (enabled/disabled) :</p>
<p>dism /online /get-features /format:table</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image020.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image020_thumb.jpg" border="0" alt="clip_image020" width="535" height="566" /></a></p>
<p>- Pentru a modifica starea unei componente :</p>
<p>dism /online /enable-feature:TelnetClient</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image022.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image022_thumb.jpg" border="0" alt="clip_image022" width="542" height="165" /></a></p>
<p>dism /online /disable-feature:TelnetClient</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/image40.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/image_thumb39.png" border="0" alt="image" width="546" height="180" /></a></p>
<p>Pentru o monta o imagine in vederea customizarii :</p>
<p>dism /mount-wim /wimfile:f:\win7\sources\install.wim /index:1 /mountdir:f:\dism</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image026.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image026_thumb.jpg" border="0" alt="clip_image026" width="554" height="155" /></a></p>
<p>Pentru a modifica imaginea montata :</p>
<p>dism /image:f:\dism /enable-feature:TFTP</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image028.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image028_thumb.jpg" border="0" alt="clip_image028" width="559" height="143" /></a></p>
<p>Pentru a aplica modificarile:</p>
<p>dism /commit-wim /mount-dir:f:\dism</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image030.jpg"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" src="http://www.winadmin.ro/wp-content/uploads/2009/11/clip_image030_thumb.jpg" border="0" alt="clip_image030" width="563" height="123" /></a></p>
<p>Material de studiu aveti la adresa citata mai sus, plus google, bing, etc.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.winadmin.ro/2009/12/01/windows-7-builtin-tools/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Protecting AD &#8211; Tombstone objects</title>
		<link>http://www.winadmin.ro/2009/11/03/protecting-ad-tombstone-objects/</link>
		<comments>http://www.winadmin.ro/2009/11/03/protecting-ad-tombstone-objects/#comments</comments>
		<pubDate>Tue, 03 Nov 2009 06:30:00 +0000</pubDate>
		<dc:creator>Andrei Ungureanu</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Recovery]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.winadmin.ro/2009/11/03/protecting-ad-tombstone-objects/</guid>
		<description><![CDATA[&#160; In articolul precedent am vazut cum putem recupera anumite date care au fost sterse accidental din Active Directory, folosind informatiile dintr-un snapshot. Insa ce facem daca trebuie sa recuperam un obiect intreg (user account). Il putem recreea bineinteles, insa dupa cum stim nu o sa fie acelasi obiect deoarece va avea alt SID (Security [...]]]></description>
			<content:encoded><![CDATA[<p>&#160;</p>
<p>In <a href="http://www.winadmin.ro/2009/10/28/protecting-ad-active-directory-explorer/" target="_blank">articolul precedent</a> am vazut cum putem recupera anumite date care au fost sterse accidental din Active Directory, folosind informatiile dintr-un snapshot. Insa ce facem daca trebuie sa recuperam un obiect intreg (user account). Il putem recreea bineinteles, insa dupa cum stim nu o sa fie acelasi obiect deoarece va avea alt SID (Security Identifier). </p>
<p>Manualul spune ca in acest caz ar trebui sa apelam la un backup – insa un restore din backup inseamna ca trebuie sa restartam un domain controller (de 2 ori) plus ca dureaza ceva toata operatiunea. </p>
<p>Hai sa vedem acum la ce se refera termenul din titlu – Tombstoned objects. Pai tine de un anumit mecanism pe baza caruia functioneaza procesul de replicare si stergere a obiectelor in AD. In clipa in care stergem un obiect, sa spunem un user, obiectul nu este sters, ci atributul isDeleted este setat pe True iar obiectul este mutat intr-un container special numit Deleted Objects. In afara de asta, anumite atribute ale obiectului sunt sterse (fara posibilitatea de a fi recuperate). In aceasta clipa obiectul este invizibil pentru administrator, insa nu si pentru mecanismul de replicare, care il va replica si pe restul domain controller-elor pentru a se asigura ca este sters si pe celelalte servere. </p>
<p>Timpul in care obiectul ramane in aceasta stare poate varia – 60 de zile in forest-urile promovate de la Windows 2000 sau 180 de zile pentru cele care au inceput cu Windows 2003 SP1 (bineinteles ca poate fi modificat). Fiecare DC din domeniu scaneaza aceste inregistrari la un interval de 12 ore si le sterge pe cele care sunt mai vechi decat intervalul specificat. </p>
<p>Nota: Informatiile din articol se refera la modul de functionare al forest-urilor Active Directory care ruleaza in modul Windows 2000 pana la Windows 2008. Incepand cu R2 lucrurile se schimba (exista Recycle Bin).</p>
<p>Acum ca am inteles la ce se refera termenul de tombstoned objects, hai sa vedem si cum putem reanima aceste obiecte. In multe cazuri e mai simplu sa le reanimam decat sa le readucem din backup.</p>
<p>O varianta ar fi cu LDP (il gasiti in support tools) – sincer mi se pare cam peste mana; gasiti pe net cum se face.    <br />Alta varianta ar fi sa o faceti programatic din C++, C#, VB – setand atributul isDeleted pe false si mutand obiectul in containerul de unde a fost sters (ne folosim de atributul lastKnownParent). Pe vremea cand nu existau tool-uri GUI pentru asa ceva tin minte ca imi facusem propriul utilitar care imi cauta aceste obiecte si imi dadea posibilitatea sa le recuperez.</p>
<p>Dar acum exista tool-uri suficiente pentru a uita cele doua variante descrise mai sus. Un exemplu foarte bun este ADRestore.Net care mi-a functionat si pe W2K3 si pe W2K8 (inclusiv versiunea x64).</p>
<p>&#160;</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/image.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/11/image_thumb.png" width="644" height="477" /></a></p>
<p>&#160;</p>
<p align="center"><a href="http://www.winadmin.ro/wp-content/uploads/2009/11/image1.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/11/image_thumb1.png" width="644" height="336" /></a></p>
<p align="center">&#160;</p>
<p align="left">Un alt tool cunoscut dar numai command line ar fi cel de la Sysinternals pe care il gasiti <a href="http://technet.microsoft.com/en-us/sysinternals/bb963906.aspx" target="_blank">aici</a>.</p>
</p>
</p>
<p>Si mai sunt multe, inclusiv PowerPack-urile de la <a href="http://www.powergui.org" target="_blank">PowerGUI</a> insa atentie ca au ceva dependinte in spate (cmdlet-uri third party) si am avut si supriza sa nu imi ruleze pe W2K8 x64; pe 2003 nu am avut nici o problema.</p>
<p>&#160;</p>
<p>Sa revenim putin si sa ne aducem aminte ce am spus la inceputul articolului: <em>anumite atribute ale obiectului sunt sterse (fara posibilitatea de a fi recuperate). </em>Dupa “recuperare” o sa avem acelasi obiect (acelsi SID) insa multe din informatiile asociate cu acest obiect s-au evaporat. Le puteam adauga manual folosind informatii dintr-un snapshot (vezi <a href="http://www.winadmin.ro/2009/10/28/protecting-ad-active-directory-explorer/" target="_blank">AD Explorer</a>).</p>
<p>In majoritatea cazurilor folosim aceasta metoda pentru a recupera obiecte de tip user account. In cazul unui user sters si recuperat prin aceasta metoda, problema apare atunci cand observam ca userul nu mai face parte din nici un grup. Asta pentru ca dupa cum am spus mai sus – unele atribute sunt sterse fara posibilitatea de a fi recuperate. La fel, ne folosim de AD Explorer pentru a vedea group membership-ul user-ului ca sa il adaugam in grupurile din care a facut parte inainte.</p>
<p>&#160;</p>
<p>PS: Backup is still Backup. Don’t forget about it.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.winadmin.ro/2009/11/03/protecting-ad-tombstone-objects/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Protecting AD &#8211; Active Directory Explorer</title>
		<link>http://www.winadmin.ro/2009/10/28/protecting-ad-active-directory-explorer/</link>
		<comments>http://www.winadmin.ro/2009/10/28/protecting-ad-active-directory-explorer/#comments</comments>
		<pubDate>Wed, 28 Oct 2009 07:00:00 +0000</pubDate>
		<dc:creator>Andrei Ungureanu</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.winadmin.ro/2009/10/28/protecting-ad-active-directory-explorer/</guid>
		<description><![CDATA[Incep seria Protecting Active Directory prin prezentarea unui tool foarte simplu dar si foarte util – Active Directory Explorer. Poate ca ar fi utila combinarea acestui tool cu ADSIEdit si includerea lui in sistemul de operare. Tool-ul, dupa cum ii spune si numele poate fi folosit in special pentru a vizualiza informatiile din baza de [...]]]></description>
			<content:encoded><![CDATA[<p>Incep seria Protecting Active Directory prin prezentarea unui tool foarte simplu dar si foarte util – <a href="http://technet.microsoft.com/en-us/sysinternals/bb963907.aspx">Active Directory Explorer</a>. Poate ca ar fi utila combinarea acestui tool cu ADSIEdit si includerea lui in sistemul de operare.</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image83.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb82.png" width="644" height="445" /></a></p>
<p>Tool-ul, dupa cum ii spune si numele poate fi folosit in special pentru a vizualiza informatiile din baza de date. Daca ne ducem pe un user account vom vedea toate atributele care au valori. Pentru a edita e putin mai dificil – click dreapta pe un atribut existent si&#160; selectam&#160; Modify sau New attribute – daca vrem sa editam un atribut care nu a fost populat inca:</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image84.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb83.png" width="644" height="445" /></a></p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image85.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb84.png" width="644" height="459" /></a></p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image86.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb85.png" width="644" height="446" /></a></p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image87.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb86.png" width="644" height="446" /></a></p>
<p>Dar scopul acestui post e de a vedea cum ne poate ajuta acest tool in situatia in care “dispar” anumite date din AD. Si asta e adevarata valoare a lui AD Explorer – snapshot-urile (De la 2008 putem sa facem ceva similar fara acest tool, insa functioneaza diferit si o sa discutam in alt post). So … facem un snapshot al bazei de date</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image88.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb87.png" width="644" height="444" /></a></p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image89.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb88.png" width="644" height="443" /></a>&#160;</p>
<p>Atentie si la Throttle atunci cand lucrati pe un server pus in productie cu un NTDS.DIT destul de mare (in special in tipul orelor de program).</p>
<p>Ok, acum ca am facut un snapshot (care este o imagine a AD-ului la momentul in care a fost facuta) sa incercam sa gandim un scenariu in care ne putem folosi de acest tool pentru a recupera informatii din AD. Sa presupunem ca un operator de la helpdesk a sters din intamplare numarul de telefon al unui user. Sau poate ca cineva a modificat lista de membri a unui grup si am vrea sa o refacem. Pentru asa ceva nu e nevoie de restore din backup. E mult mai simplu sa facem snapshot-uri ale bazei de date la anumite intervale, dupa care sa refacem informatiile din AD (de mana) pe baza a ce vedem in snapshot.</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image90.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb89.png" width="644" height="444" /></a> </p>
<p>Putem sa vizionam informatiile din snapshot la fel ca si pe cele din copia live. Nu putem face un compare intre copie si live, ci doar intre doua snapshot-uri. Deci pentru compare mai facem un snapshot dupa care incercam compare:</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image91.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb90.png" width="620" height="484" /></a></p>
<p>Deschidem primul snapshot, dupa care in fereastra de compare selectam cel de-al doilea snapshot si tipul de obiecte pentru care vrem sa vedem diferentele. Nu merge sa compari doar un anumit obiect:</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image92.png"><img style="border-right-width: 0px;float: none;border-top-width: 0px;border-bottom-width: 0px;margin-left: auto;border-left-width: 0px;margin-right: auto" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb91.png" width="644" height="441" /></a></p>
<p>In cazul de mai sus, era vorba de un grup cu un singur membru. Dupa ce am scos userul din grup,&#160; atributul member s-a modificat. In cazul meu imi spune Attribute missing pentru ca atributul este null acum.</p>
<p>Ar mai trebui retinut ca AD Explorer merge rulat si din linie de comanda – asa ca il puteti rula cu task scheduler pentru a face snapshoturi periodice ale AD-ului. Nu uitati si de BACKUP.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.winadmin.ro/2009/10/28/protecting-ad-active-directory-explorer/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Cautand prin Event Viewer &#8211; EventCombMT</title>
		<link>http://www.winadmin.ro/2009/10/15/cautand-prin-event-viewer-eventcombmt/</link>
		<comments>http://www.winadmin.ro/2009/10/15/cautand-prin-event-viewer-eventcombmt/#comments</comments>
		<pubDate>Thu, 15 Oct 2009 09:49:50 +0000</pubDate>
		<dc:creator>Andrei Ungureanu</dc:creator>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Management and monitoring]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows Client]]></category>
		<category><![CDATA[Windows Server]]></category>
		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://www.winadmin.ro/2009/10/15/cautand-prin-event-viewer-eventcombmt/</guid>
		<description><![CDATA[Dintotdeauna cautatul prin Windows Event Logs a fost o problema. Cred ca daca ar fi renuntat la formatul ala binar ar fi fost mult mai simplu. Lucrurile au evoluat totusi incepand cu Vista/2008 dar parca nu suficient. inca e nevoie sa ne bazam pe solutii thirdparty sau sa apelam la scripturi. De fapt pe partea [...]]]></description>
			<content:encoded><![CDATA[<p>Dintotdeauna cautatul prin Windows Event Logs a fost o problema. Cred ca daca ar fi renuntat la formatul ala binar ar fi fost mult mai simplu. Lucrurile au evoluat totusi incepand cu Vista/2008 dar parca nu suficient. inca e nevoie sa ne bazam pe solutii thirdparty sau sa apelam la scripturi. De fapt pe partea de scripting s-a avansat atat de mult incat nimeni nu se mai gandeste sa dezvolte tool-uri GUI.</p>
<p>Dar sa luam exemplul in care nu am in sistem centralizat de colectare al logurilor si trebuie sa caut ceva in cateva sute de servere? O sa-mi ia ceva timp nu? Sau nu o sa-mi ia deloc pentru ca o sa zic ca asa ceva e imposibil de realizat.</p>
<p>Prin scripting ar merge insa o sa va invit pe voi sa faceti asta in powershell. Eu in continuare in caz de situatii disperate folosesc un tool din Resource Kit (2000/2003) numit EventCombMT. Daca nu l-ati folosit pana in ziua de azi exista si o explicatie – descrierea de <a href="http://www.microsoft.com/Downloads/details.aspx?FamilyID=9d467a69-57ff-4ae7-96ee-b18c4790cffd&amp;displaylang=en">aici</a> (Check replication?).</p>
<p>Iata si cum arata interfata:</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image29.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb28.png" width="644" height="463" /></a></p>
<p>Eventcombmt poate selecta toate DC-urile din domeniu si poate efectua cautari pe mai multe servere in paralel (da, este multithreading) pana la 100. Vine si cu cateva criterii de cautara predefinite, cea mai utila fiind cea pentru account lockouts:</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image30.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb29.png" width="644" height="461" /></a></p>
<p>Mai sunt si alte optiuni, unele nedocumentate:</p>
<p><a href="http://www.winadmin.ro/wp-content/uploads/2009/10/image31.png"><img style="border-right-width: 0px;border-top-width: 0px;border-bottom-width: 0px;border-left-width: 0px" border="0" alt="image" src="http://www.winadmin.ro/wp-content/uploads/2009/10/image_thumb30.png" width="644" height="461" /></a></p>
<p>&#160;</p>
<p>Throttle CPU il “infraneaza” putin si limiteaza folosirea procesorului la maxim. In cateva cazuri masina de pe care l-am rulat statea numai in 100% CPU Usage.</p>
<p>Cu tot cu cache SIDs activat mi s-a parut destul de lent atunci cand cauti prin Security Logs (eh, am cautat si prin cateva milioane de inregistrari) dar de fiecare data si-a facut treaba.</p>
<p>Pentru fiecare server interogat genereaza un fisier text care arata cam asa:</p>
<p>6008,ERROR,EventLog,Tue Sep 15 01:53:24 2009,No User,The previous system shutdown at 12:05:03 AM on ?9/?15/?2009 was unexpected.&#160; <br />The longest gap between all scanned records occurred at Tue Sep 15 02:36:06 2009 and was 14 days, 9 hours, 39 minutes, 48 seconds.     <br />c:\temp\DC1-System_LOG.txt contains 1 parsed events.</p>
<p>In exemplul de mai sus am cautat evenimente de tip Error in logul System.</p>
<p>Data viitoare o sa facem asta cu scripturi.</p>
<p>PS: Functioneaza si pe Windows 2008/2008R2</p>
]]></content:encoded>
			<wfw:commentRss>http://www.winadmin.ro/2009/10/15/cautand-prin-event-viewer-eventcombmt/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
	</channel>
</rss>

