<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Exchange Server Pro &#187; Windows</title>
	<atom:link href="http://exchangeserverpro.com/tag/windows/feed" rel="self" type="application/rss+xml" />
	<link>http://exchangeserverpro.com</link>
	<description>Microsoft Exchange Server news, tips, tricks and tutorials</description>
	<lastBuildDate>Tue, 31 Aug 2010 12:02:04 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>Recovering a single Domain Controller from a USN Rollback</title>
		<link>http://exchangeserverpro.com/recovering-a-single-domain-controller-from-a-usn-rollback</link>
		<comments>http://exchangeserverpro.com/recovering-a-single-domain-controller-from-a-usn-rollback#comments</comments>
		<pubDate>Thu, 07 Feb 2008 11:58:02 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Solutions]]></category>
		<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Disaster Recovery]]></category>
		<category><![CDATA[Server 2003]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.capslockassassin.com/2008/02/07/recovering-a-single-domain-controller-from-a-usn-rollback/</guid>
		<description><![CDATA[Some time ago I wrote about my experience recovering a customer&#8217;s Active Directory from a USN Rollback condition that had been caused by some virtualisation work.  There has been some discussion in the comments in that post about what to do when you have a single domain controller that thinks it is in a USN [...]]]></description>
			<content:encoded><![CDATA[<p>Some time ago I <a href="http://www.exchangeserverpro.com/2007/06/02/event-id-2095-and-the-usn-rollback-adventure/" title="Event ID 2095 and the USN Rollback adventure">wrote about my experience </a>recovering a customer&#8217;s Active Directory from a USN Rollback condition that had been caused by some virtualisation work.  There has been some discussion in the comments in that post about what to do when you have a single domain controller that thinks it is in a USN Rollback condition (eg has disabled outbound replication and paused the NetLogon service).</p>
<p>Logic would suggest that once a DC knows it is the only DC in the Forest that it would shake off the USN Rollback blues and start humming away normally again.  Not the case unfortunately.</p>
<p><a href="http://www.exchangeserverpro.com/2007/06/02/event-id-2095-and-the-usn-rollback-adventure/#comment-337" title="Link to Comment">Rob P</a> recently spent some time and effort with Microsoft support and came up with a solution that can be applied.</p>
<h3><font color="#ff0000">!!!Warning!!! !!!Warning!!! !!!Warning!!!</font></h3>
<p>I&#8217;m not 100% sure why I&#8217;m warning you, but I&#8217;ll take Rob&#8217;s word on the matter.  Apparently this fix is quite dangerous and not for the faint of heart.  My heart is not the least bit faint, particularly when it comes to my VMWare test environment, so I didn&#8217;t mind testing this out.  At the very least you should make sure you have a backup of the server you can go back to if this doesn&#8217;t work.</p>
<p>To get a single domain controller out of USN Rollback:</p>
<ol>
<li>Open Regedit</li>
<li>Navigate to HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NTDS\Parameters</li>
<li>Locate the key “Dsa Not Writable”=dword:00000004</li>
<li>Delete the entire key</li>
<li>Enable replication by running <strong>repadmin /options servername -DISABLE_OUTBOUND_REPL</strong> and <strong>repadmin /options servername -DISABLE_INBOUND_REPL</strong></li>
<li>Reboot</li>
</ol>
<p>Once your domain controller has rebooted you should find that NetLogon is running again and <strong>repadmin /options</strong> no longer shows replication as being disabled.</p>
<p>I performed this test on a Windows Server 2003 R2 domain controller and I imagine it works fine on Small Business Server 2003 as well.</p>
<h3  class="related_post_title">Related posts:</h3><ul class="related_post"><li><a href="http://exchangeserverpro.com/event-id-2095-and-the-usn-rollback-adventure" title="Event ID 2095 and The USN Rollback Adventure">Event ID 2095 and The USN Rollback Adventure</a></li><li><a href="http://exchangeserverpro.com/exchange-2010-hub-transport-server-backup-and-recovery" title="Exchange 2010 Hub Transport Server Backup and Recovery">Exchange 2010 Hub Transport Server Backup and Recovery</a></li><li><a href="http://exchangeserverpro.com/improved-database-integrity-checking-in-exchange-server-2010-sp1" title="Improved Database Integrity Checking in Exchange Server 2010 SP1">Improved Database Integrity Checking in Exchange Server 2010 SP1</a></li><li><a href="http://exchangeserverpro.com/exchange-2010-edge-transport-server-backup-and-recovery" title="Exchange 2010 Edge Transport Server Backup and Recovery">Exchange 2010 Edge Transport Server Backup and Recovery</a></li><li><a href="http://exchangeserverpro.com/exchange-2010-setup-error-the-exchange-server-is-in-an-inconsistent-state" title="Exchange 2010 Setup Error &#8211; The Exchange Server is in an Inconsistent State">Exchange 2010 Setup Error &#8211; The Exchange Server is in an Inconsistent State</a></li></ul><hr />
<p>This article <a href="http://exchangeserverpro.com/recovering-a-single-domain-controller-from-a-usn-rollback">Recovering a single Domain Controller from a USN Rollback</a> is © 2008 ExchangeServerPro.com</p>
<p>Get more <a href="http://exchangeserverpro.com">Exchange Server tips</a> at <a href="http://exchangeserverpro.com">ExchangeServerPro.com</a></p>]]></content:encoded>
			<wfw:commentRss>http://exchangeserverpro.com/recovering-a-single-domain-controller-from-a-usn-rollback/feed</wfw:commentRss>
		<slash:comments>9</slash:comments>
		</item>
		<item>
		<title>The most annoying feature of Windows Vista</title>
		<link>http://exchangeserverpro.com/the-most-annoying-feature-of-windows-vista</link>
		<comments>http://exchangeserverpro.com/the-most-annoying-feature-of-windows-vista#comments</comments>
		<pubDate>Fri, 14 Dec 2007 06:10:13 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[Bugs]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[Windows Vista]]></category>

		<guid isPermaLink="false">http://www.capslockassassin.com/2007/12/14/the-most-annoying-feature-of-windows-vista/</guid>
		<description><![CDATA[Whinging about UAC is for wimps, this is a real Windows Vista annoyance. 1. Open Windows Explorer and navigate through the folder tree in the left pane (eg, navigate to C:\Temp) 2. Drag and select one or more files or folders in the right pane that you would like to delete 3. Hit delete Windows [...]]]></description>
			<content:encoded><![CDATA[<p>Whinging about UAC is for wimps, this is a <em>real</em> Windows Vista annoyance.</p>
<p>1. Open Windows Explorer and navigate through the folder tree in the left pane (eg, navigate to C:\Temp)</p>
<p><a href="http://www.exchangeserverpro.com/wp-content/uploads/2007/12/vistaexplorer01.JPG" title="vistaexplorer01.JPG"><img src="http://www.exchangeserverpro.com/wp-content/uploads/2007/12/vistaexplorer01.JPG" alt="vistaexplorer01.JPG" /></a></p>
<p>2. Drag and select one or more files or folders in the right pane that you would like to delete</p>
<p><a href="http://www.exchangeserverpro.com/wp-content/uploads/2007/12/vistaexplorer02.JPG" title="vistaexplorer02.JPG"><img src="http://www.exchangeserverpro.com/wp-content/uploads/2007/12/vistaexplorer02.JPG" alt="vistaexplorer02.JPG" /></a></p>
<p>3. Hit delete</p>
<p><a href="http://www.exchangeserverpro.com/wp-content/uploads/2007/12/vistaexplorer03.JPG" title="vistaexplorer03.JPG"><img src="http://www.exchangeserverpro.com/wp-content/uploads/2007/12/vistaexplorer03.JPG" alt="vistaexplorer03.JPG" /></a></p>
<p>Windows Vista wants to delete the Temp folder that you had last selected in the left pane, not the files or folders you just selected in the right pane.  Windows XP or Server 2003 would delete the files you had selected in the right pane.</p>
<p>This feature was stinging me about once a week when I first started using Vista.  Now it catches me out far less often, but it is still very annoying when it does.  Even more annoying is if you are being reckless and hit Yes (the default answer) without really reading the dialog, or are using Shift + Del to bypass the Recycle Bin, or are deleting files from a network drive (when Recycle Bin does not come into play).</p>
<p>Its a very annoying feature, but luckily it won&#8217;t be a problem for me any longer.</p>
<h3  class="related_post_title">Related posts:</h3><ul class="related_post"><li><a href="http://exchangeserverpro.com/recovering-a-single-domain-controller-from-a-usn-rollback" title="Recovering a single Domain Controller from a USN Rollback">Recovering a single Domain Controller from a USN Rollback</a></li><li><a href="http://exchangeserverpro.com/how-and-why-i-stopped-using-windows-vista" title="How and why I stopped using Windows Vista">How and why I stopped using Windows Vista</a></li><li><a href="http://exchangeserverpro.com/security-spin-cycles" title="Security Spin Cycles">Security Spin Cycles</a></li><li><a href="http://exchangeserverpro.com/huge-microsoft-piracy-bust" title="Huge Microsoft Piracy Bust!">Huge Microsoft Piracy Bust!</a></li><li><a href="http://exchangeserverpro.com/vista-laptop-keeps-beeping" title="Vista Laptop Keeps Beeping!">Vista Laptop Keeps Beeping!</a></li></ul><hr />
<p>This article <a href="http://exchangeserverpro.com/the-most-annoying-feature-of-windows-vista">The most annoying feature of Windows Vista</a> is © 2007 ExchangeServerPro.com</p>
<p>Get more <a href="http://exchangeserverpro.com">Exchange Server tips</a> at <a href="http://exchangeserverpro.com">ExchangeServerPro.com</a></p>]]></content:encoded>
			<wfw:commentRss>http://exchangeserverpro.com/the-most-annoying-feature-of-windows-vista/feed</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
		<item>
		<title>Security Spin Cycles</title>
		<link>http://exchangeserverpro.com/security-spin-cycles</link>
		<comments>http://exchangeserverpro.com/security-spin-cycles#comments</comments>
		<pubDate>Wed, 17 Oct 2007 02:29:38 +0000</pubDate>
		<dc:creator>Paul Cunningham</dc:creator>
				<category><![CDATA[Articles]]></category>
		<category><![CDATA[Linux]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>

		<guid isPermaLink="false">http://www.capslockassassin.com/2007/10/17/security-spin-cycles/</guid>
		<description><![CDATA[Jeff Jones posted a blog entry to celebrate Red Hat fixing their 1000th unique security vulnerability.  He also draws attention to a Red Hat post on their &#8220;Truth Happens&#8221; blog back in August, which itself quotes a post on Lxer.com. Jeff posts quarterly statistics on his blog that show how many vulnerabilities have been patched for various [...]]]></description>
			<content:encoded><![CDATA[<p><a target="_blank" href="http://blogs.technet.com/security/archive/2007/10/16/red-hat-enterprise-linux-4-passes-1000-vulnerabilities.aspx" title="Jeff Jones Blog on Technet">Jeff Jones </a>posted a blog entry to celebrate Red Hat fixing their 1000th unique security vulnerability.  He also draws attention to a Red Hat post on their <a href="http://truthhappens.redhatmagazine.com/2007/08/22/bug-fix-scorecard/" title="Red Hat's Truth Happens Blog">&#8220;Truth Happens&#8221; blog </a>back in August, which itself quotes a post on <a target="_blank" href="http://lxer.com/module/newswire/view/91474/index.html" title="LXer.com">Lxer.com</a>.</p>
<p>Jeff posts quarterly statistics on his blog that show how many vulnerabilities have been patched for various operating systems.  The LXer.com post takes one of his reports and uses it to demonstrate that Linux is more secure than Windows because Linux vendors fix more security vulnerabilities.</p>
<blockquote><p>A <a href="http://blogs.technet.com/security/archive/2007/08/16/july-2007-operating-system-vulnerability-scorecard.aspx">Microsoft vulnerability report</a> suggests that Microsoft wasn&#8217;t able to fix more Windows flaws than the number of open software flaws fixed by the major open source companies . Red Hat, having forty times less employees than Microsoft, did the best job, by fixing and closing the most security bugs, also closing even minor bugs &#8211; where Microsoft didn&#8217;t even fix <em>one</em> minor bug in the same period. Even Apple did a better job than Microsoft by fixing lots of flaws in Mac OS X.</p></blockquote>
<p>Jeff found this to be a little amusing.</p>
<blockquote><p>Seriously, I <em>loved</em> this post, it made me laugh out loud!  Fixing more security vulnerabilities is apparently a good thing in the world of Red Hat Truth.</p>
<p>Well, for those who actively support that theory, I have some <strong><em>fantastic</em></strong> <strong><em>news</em></strong> for them!  According to my calculations, in July 2007, the Red Hat Enterprise Linux 4 team fixed their 1000th unique security vulnerability.  Now, 164 of these were Low severity and 479 were Medium severity, but still, that is a ton of work accomplished by that team, especially given that the product only shipped in February of 2005.</p>
<p>To put that in context, (again by my calculations) Microsoft has fixed only 649 security vulnerabilities for all supported products across the company since the year 2000.</p></blockquote>
<p>I&#8217;m not sure what to think.  Jeff is <a target="_blank" href="http://blogs.csoonline.com/methodology_sources_and_assumptions_for_monthly_vulnerability_scorecards" title="Jeff Jones - Methodology, Sources and Assumptions for Monthly Vulnerability Scorecards">quite clear on how his reports are generated</a>.  Linux supporters used to tell me that fewer vulnerabilities meant a product was more secure.  Now Linux supporters want to say that more vulnerabilities means the product is more secure, or as one comment on LXer.com puts it:</p>
<blockquote><p>You spin the data by saying &#8220;we fixed the most bugs, leaving the fewest bugs in the new code, therefore we are the best.&#8221;</p></blockquote>
<p>Round and round we go.</p>
<h3  class="related_post_title">Related posts:</h3><ul class="related_post"><li><a href="http://exchangeserverpro.com/how-to-configure-a-relay-connector-for-exchange-server-2010" title="How to Configure a Relay Connector for Exchange Server 2010">How to Configure a Relay Connector for Exchange Server 2010</a></li><li><a href="http://exchangeserverpro.com/causes-of-mapiexceptionnotauthorized-error-sending-to-public-folders" title="Causes of MapiExceptionNotAuthorized Error Sending to Public Folders">Causes of MapiExceptionNotAuthorized Error Sending to Public Folders</a></li><li><a href="http://exchangeserverpro.com/gfi-languard-tutorial" title="GFI LANGuard Tutorial">GFI LANGuard Tutorial</a></li><li><a href="http://exchangeserverpro.com/bruce-schneier-on-certificate-authorities" title="Bruce Schneier on Certificate Authorities">Bruce Schneier on Certificate Authorities</a></li><li><a href="http://exchangeserverpro.com/well-designed-security-systems-fail-gracefully-sonicwall-does-not" title="Well-designed security systems fail gracefully, SonicWALL does not">Well-designed security systems fail gracefully, SonicWALL does not</a></li></ul><hr />
<p>This article <a href="http://exchangeserverpro.com/security-spin-cycles">Security Spin Cycles</a> is © 2007 ExchangeServerPro.com</p>
<p>Get more <a href="http://exchangeserverpro.com">Exchange Server tips</a> at <a href="http://exchangeserverpro.com">ExchangeServerPro.com</a></p>]]></content:encoded>
			<wfw:commentRss>http://exchangeserverpro.com/security-spin-cycles/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
