What can be done prior to raise Windows function level?

Q: What can be done prior to raise Windows function level?

A: Verify that Active Directory is replicating properly to all DCs. The Domain and Forest Functional Levels are essentially just attributes in Active Directory. The Domain Functional Level for all domains must be properly replicated before you’ll be able to raise the Forest Functional level. This practice also addresses the question of how long one should wait to raise the Forest Functional Level after you’ve raised the Domain Functional Level for all the domains in the forest. Well…what is your end-to-end replication latency? How long does it take a change to replicate to all the DCs in the forest?

Which client and server OS are supported to join Windows domain

Q: Which client and server OS are supported to join Windows domain?

A: Quoted from Microsoft article:

The following Windows client and Windows Server operating systems are supported for domain member computers with domain controllers that run Windows Server 2012 or later:

  • Client operating systems: Windows 8.1, Windows 8, Windows 7, Windows Vista
    • Computers that run Windows 8.1 or Windows 8 are also able to join domains that have domain controllers that run earlier version of Windows Server, including Windows Server 2003 or later. In this case however, some Windows 8 features may require additional configuration or may not be available. For more information about those features and other recommendations for managing Windows 8 clients in downlevel domains, see Running Windows 8 member computers in Windows Server 2003 domains.
  • Server operating systems: Windows Server 2012 R2, Windows Server 2012, Windows Server 2008 R2, Windows Server 2008, Windows Server 2003 R2, Windows Server 2003

Domain Functional level features and requirements

Q: Our Domain is Windows 2012 R2 wit 2003 function level. If we upgrade to Windows 2012 R2 function level, does that cause any problem on Windows 2008 servers?

A: That should be fine. Quote from Microsoft article:

Windows Server 2012 requires a Windows Server 2003 forest functional level. That is, before you can add a domain controller that runs Windows Server 2012 to an existing Active Directory forest, the forest functional level must be Windows Server 2003 or higher. This means that domain controllers that run Windows Server 2008 R2, Windows Server 2008, or Windows Server 2003 can operate in the same forest, but domain controllers that run Windows 2000 Server are not supported and will block installation of a domain controller that runs Windows Server 2012. If the forest contains domain controllers running Windows Server 2003 or later but the forest functional level is still Windows 2000, the installation is also blocked.

How to combine and merge files into one PDF

You can merge two or more files into one PDF using Adobe Acrobat. Here is how.

  1. With Acrobat open, click on the Tools or Create.

  2. Click Combine Files, and then click Add Files to select the files you want to include in your PDF.

  3. Click, drag, and drop to reorder the files and pages. Double-click on a file to expand and rearrange individual pages. Press the Delete key to remove unwanted content.

  4. When finished arranging files, click Combine Files.

  5. Click the Save button.

Can we sync our Windows 2012 r2 AD to azure AD 2016?

Q: We are small company and running two Windows 2012 r2 as domain controllers. We are planning to use Microsoft cloud services and will sync our active directory to Azure Active directory.

Can we sync our Windows 2012 r2 AD to azure AD 2016?

A: It should work. Azure AD has no versioning and you can sync your 2012 R2 environment.

How to get Forest and domain information

Q: We are small company and running two Windows 2012 r2 as domain controllers. We are planning to use Microsoft cloud services and will sync our active directory to Azure Active directory.

To answer some questions from the form sent to us, what are the Forest Name, Forest, site. I can search for the concepts, but can someone give me the example or where can I find them?

The article I read are example, forest name=forest.local, domain name is domain.local, Forest=corporate.local, domain=corporate.local, site=datacenter. I assume since we have only one forest and one domain, all forest name, forest, domain name and domain are the same, for example mydomain.com. The site is Default-First-Site-Name? Not sure.

A: Run PowerShell commands:

Get-ADForest

Get-ADDomain

How and where to change MFA verification settings

To manage MFA verification settings such as Call phone number, Authentication app, go to this page: https://aka.ms/mfasetup or https://account.activedirectory.windowsazure.com/proofup.aspx?proofup=1

Or follow these steps:

  1. Sign in to Office 365 using your password and verification code.
  2. Choose Settings Office 365 Settings button > Office 365.
  3. Choose Security & Privacy > Additional security verification.
  4. Choose Update my phone numbers used for account security. This will display the following page:

Please view this step by step video:

Manage White List in Office 365

To prevent email from being marked as spam in Office 365, you may have 3 options.

  1. Create a rule bypass spam filter. After login Office 365, go to Exchange admin center>mail flow>rule. Create a rule and add the allowed domain.

 

2. Add senders to whitelist. In Exchange admin center, go to protection>Spam filter, click edit icon. Under allow list, add the senders’ emails you want to allow.

3. Add allowed domain in whitelist. Same procedure as 2 and add allowed domains.