Re: Local Console Password & Network Passwords Different

From: Steven L Umbach (n9rou_at_nospam-comcast.net)
Date: 10/27/05


Date: Thu, 27 Oct 2005 01:06:53 -0500

Oops. I did not read his first post for some reason. Still he could change
the administrator password from any domain workstation. Browstat could
probably find the domain controller. --- Steve

"Roger Abell [MVP]" <mvpNoSpam@asu.edu> wrote in message
news:%23lgqTWr2FHA.1420@TK2MSFTNGP09.phx.gbl...
> Steve - he has NT 4 here . . .
>
> --
> Roger
>
> "Steven L Umbach" <n9rou@nospam-comcast.net> wrote in message
> news:uKx$S0l2FHA.1148@tk2msftngp13.phx.gbl...
>> From any domain controller you can run the support tool dcdiag to find
>> out information such as the pdc fsmo. From any domain computer you can
>> run netdiag /v to find out a lot of information though you may want to
>> pipe the output to a text file as in netdiag /v>c:\netresults.txt as an
>> example. Anyhow you do not need to logon to the PDC fsmo to change any
>> domain user password - just open Active Directory Users and Groups on any
>> domain controller or since you already know the password, logon as that
>> user and user control-alt-delete and select change password from any
>> domain computer. As far as services you can change the properties of the
>> service in the recovery tab to disable user of that script. You can
>> manage services remotely using Computer Management - connect to another
>> computer and if the name does not access the remote server try entering
>> it's IP address. --- Steve
>>
>>
>> <larrypatterson@gmail.com> wrote in message
>> news:1130351128.816154.207570@g14g2000cwa.googlegroups.com...
>>> AARRGGHH
>>>
>>> This is a domain. Setup without our knowledge but that's besides the
>>> point now. How can I determine which Server is the PDC in order to
>>> create a password for the domain Admin account as a blank one seems
>>> very insecure. I'm attempting to use PSTools from Sysinternals in order
>>> to stop a service running on Server 1 from Server 2. Server 2 has a
>>> program that will execute a batch file if a local service stops.
>>>
>>> In addition a blank domain Admin password is ridiculously insecure.
>>>
>>> Hope I wasn't too confusing..and appreciate the assistance in advance.
>>>
>>> LP
>>>
>>
>>
>
>



Relevant Pages

  • Re: What policy change did I (or my colleague) make and how do I fix i
    ... Maybe you are no longer a member of the groups that are allowed access. ... If no one can logon locally to a domain controller you will need to ... change the user right settings from a non domain controller domain computer to ...
    (microsoft.public.windows.group_policy)
  • Re: Cannot logo to Win 2003 Enterprise 32-bit
    ... maybe it is misconfigured or it can not find the domain controller. ... domain computer must point to a domain controller running dns with the ... Active Directory domain in it's tcp/ip properties as preferred dns server ... you should be able to logon to the local computer [computer's name ...
    (microsoft.public.windows.server.networking)
  • Re: Can not access web directory in Win2k3 with anonymous access d
    ... I can NOW get to the protected web site from a ... domain computer when I am signed into the domain BUT when IE accesses the web ... I have a domain controller and a member server. ... I can open this file from the domain controller running IE. ...
    (microsoft.public.inetserver.iis)
  • Re: Local Console Password & Network Passwords Different
    ... > From any domain controller you can run the support tool dcdiag to find out ... From any domain computer you can run ... Anyhow you do not need to logon to the PDC fsmo to change any ... >> In addition a blank domain Admin password is ridiculously insecure. ...
    (microsoft.public.security)
  • Re: GPO not applied to clients
    ... I would also run dcdiag and gpotool on the domain controller and netdiag on ... a domain computer that is having the problem receiving the Group Policy. ... their preferred dns server in tcp/ip properties and as shown with ipconfig ...
    (microsoft.public.windows.group_policy)