<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-21992565</id><updated>2012-01-19T11:06:01.150+01:00</updated><category term='it-experts.dk'/><category term='block'/><category term='public beta'/><category term='group policies'/><category term='SQL'/><category term='regional options'/><category term='Outlook'/><category term='Patching'/><category term='SQL Injection'/><category term='registry'/><category term='mdop'/><category term='Security Guide'/><category term='Windows Server 2008'/><category term='software restriction policies'/><category term='updates'/><category term='whitepaper'/><category term='generalize'/><category term='dop'/><category term='terminal services'/><category term='group policy preferences'/><category term='online scanner'/><category term='encryption'/><category term='MSDN'/><category term='admx'/><category term='group policy'/><category term='softgrid'/><category term='windows xp'/><category term='webcast'/><category term='RSAT'/><category term='rdp'/><category term='language pack'/><category term='WMI Filters'/><category term='Mac'/><category term='runas'/><category term='Longhorn'/><category term='technet magazine'/><category term='mlgpo'/><category term='security id'/><category term='mstsc'/><category term='GPDBPA'/><category term='Shared Computer Toolkit'/><category term='xp'/><category term='x64'/><category term='gpo'/><category term='backup'/><category term='adml'/><category term='scripting'/><category term='Shadow Groups'/><category term='orlando'/><category term='windows server 2003'/><category term='Windows Vista'/><category term='specops'/><category term='Security Descriptors'/><category term='sysvol'/><category term='srp'/><category term='webinar'/><category term='security'/><category term='guid'/><category term='Microsoft Application Virtualization'/><category term='Activation'/><category term='MVP'/><category term='policy'/><category term='language'/><category term='best practice analyzer'/><category term='anti-malware'/><category term='wsus'/><category term='gui'/><category term='TechEd'/><category term='service pack'/><category term='hacker'/><category term='beta'/><category term='VBA'/><category term='Jeremy Moskowitz'/><category term='SteadyState'/><category term='UAC'/><category term='software'/><category term='BPA'/><category term='remote desktop'/><category term='network'/><category term='release'/><category term='Darren Mar-Elia'/><category term='exploit'/><category term='anti-virus'/><category term='vista'/><category term='agpm'/><category term='Core'/><category term='Unix'/><category term='display language'/><category term='virtualization'/><category term='starter gpo'/><category term='cab'/><category term='language interface packs'/><category term='public'/><category term='mav'/><category term='kb'/><category term='group policy extensions'/><category term='Powershell'/><category term='connection'/><category term='64bit'/><category term='PolicyMaker'/><category term='OU Filtering'/><category term='hacking'/><category term='endpointsecurity'/><category term='template'/><category term='Oracle'/><category term='mmc'/><category term='The onion ring'/><category term='mui'/><category term='CEH'/><category term='gpanswers.com'/><category term='gp preferences'/><category term='windowsecurity.com'/><category term='download'/><category term='Tor'/><category term='technet'/><category term='ISA'/><category term='online scanners'/><category term='script'/><category term='posters'/><category term='windows'/><category term='newsid'/><category term='starter gpos'/><category term='central store'/><category term='gfi'/><category term='VM Ware'/><category term='database'/><category term='Windows 7'/><category term='baseline'/><category term='gpmc'/><category term='Certified Ethical Hacker'/><category term='Fine-Grained Password Policies'/><category term='radio'/><category term='Certification'/><category term='knowledge base'/><category term='connect'/><category term='Site Filtering'/><category term='AppLocker'/><category term='Granular Password Settings'/><category term='deployment'/><category term='videos'/><category term='gpedit.msc'/><category term='Security Filtering'/><category term='Client Side Extensions'/><category term='virtual server'/><category term='Solution Accelerator'/><category term='desktop optimization pack'/><category term='sysprep'/><category term='multilingual'/><category term='gpoguy.com'/><category term='sid'/><category term='ctp'/><category term='Linux'/><category term='gpedit'/><category term='server'/><category term='microsoft'/><category term='DesktopStandards'/><category term='multihomed'/><category term='article'/><category term='administrative templates'/><category term='u2'/><category term='password'/><category term='problem'/><category term='BitLocker'/><title type='text'>heidelbergit</title><subtitle type='html'>Jakob H. Heidelberg it an IT specialist with focus on security, scripting and the Microsoft world. He's an MCSE:M/S, MCDST, MCTS, MCITP, MCT, CEH &amp; MVP- and an author on www.windowsecurity.com.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><link rel='next' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default?start-index=101&amp;max-results=100'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>105</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-21992565.post-1641117236127099269</id><published>2011-10-14T08:45:00.003+02:00</published><updated>2011-10-14T08:52:29.248+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='registry'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><title type='text'>RegistryProfileCleanup - cleartext</title><content type='html'>&lt;br /&gt;Several people have asked me for the VBS code to my "Efficient Registry Cleanup" script, since the link went down. I'm not using any time on this blog these days, so this is just a quick &amp;amp; dirty fix:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://dl.dropbox.com/u/11617172/RegistryProfileCleanup.txt"&gt;http://dl.dropbox.com/u/11617172/RegistryProfileCleanup.txt&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Also the "Get User Profile Dirs From Registry" script is here:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://dl.dropbox.com/u/11617172/GetUserProfileDirsFromRegistry.txt"&gt;http://dl.dropbox.com/u/11617172/GetUserProfileDirsFromRegistry.txt&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Cya!&lt;br /&gt;Jakob&lt;br /&gt;&lt;br /&gt;P.S. The article is still here:&amp;nbsp;&lt;a href="http://www.windowsecurity.com/articles/efficient-registry-cleanup.html" target="_blank"&gt;http://www.windowsecurity.com/articles/efficient-registry-cleanup.html&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1641117236127099269?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1641117236127099269/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1641117236127099269' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1641117236127099269'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1641117236127099269'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2011/10/registryprofilecleanup-cleartext.html' title='RegistryProfileCleanup - cleartext'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-8614676959396223660</id><published>2011-10-14T08:41:00.000+02:00</published><updated>2011-10-14T08:41:02.852+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy extensions'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><title type='text'>InstallGPPCSE - cleartext</title><content type='html'>&lt;br /&gt;Several people have asked me for the VBS code to my GPP CSE Install script since the link went down. I'm not using any time on this blog these days, so this is just a quick &amp;amp; dirty fix:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://dl.dropbox.com/u/11617172/InstallGPPCSE.txt"&gt;http://dl.dropbox.com/u/11617172/InstallGPPCSE.txt&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Cya!&lt;br /&gt;Jakob&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-8614676959396223660?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/8614676959396223660/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=8614676959396223660' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/8614676959396223660'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/8614676959396223660'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2011/10/installgppcse-cleartext.html' title='InstallGPPCSE - cleartext'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3667594422499316078</id><published>2011-06-24T20:38:00.001+02:00</published><updated>2011-06-24T20:38:56.926+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='script'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><title type='text'>FlexCommand - cleartext</title><content type='html'>Several people have asked me for the HTA code to my FlexCommand tool since the link went down. I'm not using any time on this blog these days, so this is just a quick &amp;amp; dirty fix:&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;&lt;a href="http://dl.dropbox.com/u/11617172/FLEXCOMMAND.txt"&gt;http://dl.dropbox.com/u/11617172/FLEXCOMMAND.txt&lt;/a&gt;&lt;/div&gt;&lt;div&gt;&lt;br /&gt;&lt;/div&gt;&lt;div&gt;Cya!&lt;/div&gt;&lt;div&gt;Jakob&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3667594422499316078?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3667594422499316078/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3667594422499316078' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3667594422499316078'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3667594422499316078'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2011/06/flexcommand-cleartext.html' title='FlexCommand - cleartext'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6586919536619604025</id><published>2009-05-24T10:25:00.022+02:00</published><updated>2009-05-24T13:40:29.949+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='password'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><title type='text'>Unique passwords on local user accounts using VBS and Group Policy</title><content type='html'>The purpose of the script (&lt;a href="http://it-experts.dk/cfs-file.ashx/__key/CommunityServer.Components.PostAttachments/00.00.00.43.31/SetLocalPassword.v2.txt" target="_blank"&gt;SetLocalPassword.v2.txt&lt;/a&gt; - just rename to "SetLocalPassword.vbs") is, to ensure assignment of unique and complex password to a specific local user account (typically the local administrator account) on a Windows client in an Active Directory (AD) domain environment.&lt;br /&gt;&lt;br /&gt;The script can be used, if you (for one reason or another) want a specified local user account (e.g. administrator) to be active, but you still want to ensure, that the password used is unique for each computer, that the password is changed regularly (a given period of time) and that you are able to logon using the password at any time. Usually I would recommend customers to just deactivate the local administrator account, or set the password using Group Policy Preferences (preferably different passwords on different security areas), but if these solutions aren’t usable in the environment, “ChangeLocalPassword.vbs” could be the right solution.&lt;br /&gt;&lt;br /&gt;The intention is to execute the script as a "Startup Script” within a Group Policy Object (GPO), which is aimed at the relevant computer accounts in AD (as you probably know GPO’s can be filtered by AD security groups, WMI filters, Organizational Units (OU), domain and/or site). This way we ensure that the script is executed in ”SYSTEM" context, in which we can pretty much do anything on the local computer(s). Furthermore, SYSTEM can access network resources on behalf of the computer, as long as the resource in question (a file share in this case) allows “Domain Computers”, the specific AD computer account og “Authenticated Users” to gain access.&lt;br /&gt;&lt;br /&gt;It is crucial that the group ”Authenticated Users” is NOT given access to the network share – in that case all users within the domain will be able to read which passwords are used on all computers hit by the GPO. Share permissions (could be a hidden share$) can of course be set to Everyone Full Control, but NTFS must be set to allow only members of the group "Domain Computers" to read and write - domain administrators, and other relevant groups (e.g. helpdesk, supporters, backup account etc.) should also have read access. If you have a Distributed File System (DFS) up and running it could be used as the network share.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;This illustrates the scripts cycle:&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://it-experts.dk/cfs-filesystemfile.ashx/__key/CommunityServer.Blogs.Components.WeblogFiles/zilent/7178.SetLocalPassword.v2.jpg"&gt;&lt;img style="WIDTH: 400px; HEIGHT: 240px; CURSOR: hand" border="0" alt="" src="http://it-experts.dk/cfs-filesystemfile.ashx/__key/CommunityServer.Blogs.Components.WeblogFiles/zilent/7178.SetLocalPassword.v2.jpg" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;1. The SYSTEM account is used by the computer during the boot process&lt;br /&gt;2. DNS and AD is contacted, and Group Policies are processed (machine policies)&lt;br /&gt;3. The GPO with the Startup Script is loaded&lt;br /&gt;4. The VBS script is executed (also in SYSTEM context)&lt;br /&gt;5. All activity is logged to a local log file (strLocalLog)&lt;br /&gt;6. Some preliminary checks are performed, this includes last modification of strLocalStamp and network access (strNetShare)&lt;br /&gt;7. A password (strNewPassword) is generated from 4 different criteras (intPasswordLength, intWantNumber, intWantLcase and intWantUcase)&lt;br /&gt;8. The username and password (clear text) is logged in a central log file (strnetFile)&lt;br /&gt;9. The chosen local user account (strLocalUser) is assigned the newly generated password (only if 8 was completed without any errors)&lt;br /&gt;10. A local timestamp file is created or modified if 9 was successfully completed&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;Some important notes...&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;First and foremost one must ensure, that the script file the GPO is pointing to cannot be modified by others than the relevant administrators. If a user gets write access to that file, he or she can do anything (locally) on all machines executing the code. This is of course true for any GPO Startup Script used.&lt;br /&gt;&lt;br /&gt;Another important thing to note is, that if your users have local admin rights (I hope not), they will be able to “hack” the solution in a couple of ways. First of all they will of course be able to reset passwords for all local user accounts, but if they are a bit clever, they will also be able to take over the SYSTEM account (hint: AT command or PSEXEC) and access the network share we are using – and thus read or modify the log files with all the clear text passwords. But who in the world would allow users to be local administrators in the fist place, right?&lt;br /&gt;&lt;br /&gt;A Startup Script will time out if the script takes too long to execute, but we should not have such a problem with this script (normally executed in less than a second). Startup Scripts react differently depending on whether the “Always wait for the network at computer startup and logo” setting is set or not - the script should work in both cases though.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;Let’s take a look at the customizable variables.&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;intDays&lt;/strong&gt; = 60&lt;br /&gt;- default: 60 days between password change&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;strNetShare&lt;/strong&gt; = "\\SERVER\SHARE\"&lt;br /&gt;- define as a share with the correct NTFS permissions set&lt;br /&gt;- is could be a hidden share, perhaps on a DFS&lt;br /&gt;- remember a trailing backslash (\) or the script will fail!&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;strLocalLog&lt;/strong&gt; = "C:\admpwd.log"&lt;br /&gt;- placement of the local log file of all activity (except for the password itself)&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;strLocalStamp&lt;/strong&gt; = "C:\admpwd.stp"&lt;br /&gt;- placement of the file used as a timestamp&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;strLocalUser&lt;/strong&gt; = "test-user"&lt;br /&gt;- name the user account to control (e.g. "administrator")&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;intPasswordLength&lt;/strong&gt; = 12&lt;br /&gt;- the number of characters the password should have (exactly)&lt;br /&gt;- must be at least the same as the domains minimum password length&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;intWantNumbers&lt;/strong&gt; = 1&lt;br /&gt;- set whether or not the password should contain numbers (complexity requirement)&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;intWantLcase&lt;/strong&gt; = 1&lt;br /&gt;- set whether or not the password should contain lowercase letters (complexity requirement)&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;intWantUcase&lt;/strong&gt; = 1&lt;br /&gt;- set whether or not the password should contain UPPERCASE letters (complexity requirement)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;An example of the strLocalLog (default "c:\admpwd.log") local log file:&lt;br /&gt;&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;2009-05-22 13:20:26 [STARTED]&lt;br /&gt;2009-05-22 13:20:26 [VARIABLES - A]&lt;br /&gt;2009-05-22 13:20:26 - intDays : 1&lt;br /&gt;2009-05-22 13:20:26 - strNetShare : '\\SERVER\SHARE\'&lt;br /&gt;2009-05-22 13:20:26 - strLocalLog : 'C:\admpwd.log'&lt;br /&gt;2009-05-22 13:20:26 - strLocalStamp : 'C:\admpwd.stp'&lt;br /&gt;2009-05-22 13:20:26 - strLocalUser : 'test-user'&lt;br /&gt;2009-05-22 13:20:26 - strComputer : 'COMPUTER1'&lt;br /&gt;2009-05-22 13:20:26 - strNetFile : '\\SERVER\SHARE\COMPUTER1.log'&lt;br /&gt;2009-05-22 13:20:26 STATUS - No local stamp file, probably first run&lt;br /&gt;2009-05-22 13:20:26 SUCCESS - ALIVE:\\SERVER\SHARE\&lt;br /&gt;2009-05-22 13:20:26 [VARIABLES - B]&lt;br /&gt;2009-05-22 13:20:26 - intPasswordLength: 12&lt;br /&gt;2009-05-22 13:20:26 - intWantNumbers : 1&lt;br /&gt;2009-05-22 13:20:26 - intWantLcase : 1&lt;br /&gt;2009-05-22 13:20:26 - intWantUcase : 1&lt;br /&gt;2009-05-22 13:20:26 SUCCESS - PWD SET for: 'test-user'&lt;br /&gt;2009-05-22 13:20:26 SUCCESS - PWD written to: '\\SERVER\SHARE\COMPUTER1.log'&lt;br /&gt;2009-05-22 13:20:26 SUCCESS - TIME written to: 'C:\admpwd.stp'&lt;br /&gt;2009-05-22 13:20:26 [COMPLETED]&lt;br /&gt;&lt;br /&gt;2009-05-22 13:27:45 [STARTED]&lt;br /&gt;2009-05-22 13:27:45 [VARIABLES - A]&lt;br /&gt;2009-05-22 13:27:45 - intDays : 1&lt;br /&gt;2009-05-22 13:27:45 - strNetShare : '\\SERVER\SHARE\'&lt;br /&gt;2009-05-22 13:27:45 - strLocalLog : 'C:\admpwd.log'&lt;br /&gt;2009-05-22 13:27:45 - strLocalStamp : 'C:\admpwd.stp'&lt;br /&gt;2009-05-22 13:27:45 - strLocalUser : 'test-user'&lt;br /&gt;2009-05-22 13:27:45 - strComputer : 'COMPUTER1'&lt;br /&gt;2009-05-22 13:27:45 - strNetFile : '\\SERVER\SHARE\COMPUTER1.log'&lt;br /&gt;2009-05-22 13:27:45 STATUS - STAMP last modified: 22-05-2009 13:20:26&lt;br /&gt;2009-05-22 13:27:45 STATUS - STAMP younger than: 1 days!&lt;br /&gt;2009-05-22 13:27:45 [COMPLETED]&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;An example of the strNetFile (named [computername].log) network log file:&lt;br /&gt;&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;2009-05-20 13:20:26 test-user : 'W57Ja6c5Xcus'&lt;br /&gt;2009-05-22 08:10:39 test-user : 'sdEc7s9Gbba8'&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;Final note:&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;The code could most definitely be more optimized (and prettier), but it works like a charm (and pretty fast too) on Windows 2000, Windows XP, Windows Vista, Windows Server 2003, Windows Server 2008 and Windows 7.&lt;br /&gt;&lt;br /&gt;I hope it will turn out to be useful to someone out there - enjoy!&lt;br /&gt;&lt;br /&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6586919536619604025?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6586919536619604025/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6586919536619604025' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6586919536619604025'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6586919536619604025'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2009/05/unique-passwords-on-local-useraccounts.html' title='Unique passwords on local user accounts using VBS and Group Policy'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3909029613609180578</id><published>2009-01-09T10:52:00.005+01:00</published><updated>2009-01-09T11:12:56.676+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='VBA'/><category scheme='http://www.blogger.com/atom/ns#' term='Outlook'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><title type='text'>Get email address of all users from all mails in an Outlook Folder</title><content type='html'>Hi,&lt;br /&gt;Ever had the need to extract all email adresses from a folder in Outlook?&lt;br /&gt;&lt;br /&gt;Let's say you want to make a reply to a lot of people who are not in your addressbook (contacts), but who have sent you an email which you have archived in a specific folder (or from your Sent items).&lt;br /&gt;&lt;br /&gt;I archive my emails all the time using one folder pr. "case", "customer" etc. - and sometimes it's ery useful to be able to write to everyone who had to do with the specific case. This is when it get's a bit frustrating - you have to find a way to get all the email-adresses, and only once!&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;This is how to do it the easy way:&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;1. In Outlook press &lt;strong&gt;ALT+F11&lt;/strong&gt; (opens Microsoft Visual Basic console)&lt;br /&gt;2. Open "&lt;strong&gt;ThisOutlookSession&lt;/strong&gt;" from the Project tree (left menubar)&lt;br /&gt;3. &lt;strong&gt;Paste &lt;/strong&gt;the code below into the project (right window)&lt;br /&gt;4. Press &lt;strong&gt;F5 &lt;/strong&gt;to Run the code (execute)&lt;br /&gt;5. &lt;strong&gt;Select the folder&lt;/strong&gt; you want to use and hit OK (might take some time to complete)&lt;br /&gt;6. Press &lt;strong&gt;ALT+G&lt;/strong&gt; and then copy the email-addresses from the "immediate" window (debug window)&lt;br /&gt;&lt;br /&gt;Oh, and remember to use the &lt;strong&gt;BCC field&lt;/strong&gt; if they shouldn't see eachothers email addresses (in the case you want to send an email to all of them).&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;CODE:&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;Sub GetEmailAddressesInFolder()&lt;br /&gt;Dim objFolder As MAPIFolder&lt;/em&gt;&lt;br /&gt;&lt;em&gt;Dim strEmail As String&lt;/em&gt;&lt;br /&gt;&lt;em&gt;Dim strEmails As String&lt;/em&gt;&lt;br /&gt;&lt;em&gt;Dim objItem As Object&lt;/em&gt;&lt;br /&gt;&lt;br /&gt;&lt;em&gt;Set objFolder = Application.GetNamespace("Mapi").PickFolder&lt;/em&gt;&lt;br /&gt;&lt;br /&gt;&lt;em&gt;For Each objItem In objFolder.Items&lt;/em&gt;&lt;br /&gt;&lt;em&gt;If objItem.Class = olMail Then&lt;/em&gt;&lt;br /&gt;&lt;em&gt;strEmail = objItem.SenderEmailAddress&lt;/em&gt;&lt;br /&gt;&lt;em&gt;If InStr(strEmails, strEmail) = 0 Then strEmails = strEmails + strEmail + ";"&lt;/em&gt;&lt;br /&gt;&lt;em&gt;End If&lt;/em&gt;&lt;br /&gt;&lt;em&gt;Next&lt;/em&gt;&lt;br /&gt;&lt;em&gt;Debug.Print strEmails&lt;/em&gt;&lt;br /&gt;&lt;em&gt;End Sub&lt;/em&gt;&lt;br /&gt;&lt;strong&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;The above code is tested on Microsoft Outlook 2007, but should work on older Office systems too.&lt;br /&gt;&lt;br /&gt;Original source &lt;a href="http://msmvps.com/blogs/omar/archive/2006/08/09/get-email-address-of-all-users-from-all-mails-in-outlook-folder.aspx"&gt;here&lt;/a&gt; - I just had to modify the code a bit.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Bye for now!&lt;br /&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3909029613609180578?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3909029613609180578/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3909029613609180578' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3909029613609180578'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3909029613609180578'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2009/01/get-email-address-of-all-users-from-all.html' title='Get email address of all users from all mails in an Outlook Folder'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2173400249826051521</id><published>2008-11-05T12:21:00.001+01:00</published><updated>2008-11-05T12:21:08.727+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='TechEd'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='srp'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='AppLocker'/><title type='text'>Software Restriction in Windows 7</title><content type='html'>&lt;p&gt;&lt;em&gt;These are some quick notes from a session on AppLocker by Paul A. Cooke, Tech-Ed EMEA 2008:&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;As you may have seen, I’ve written a few articles on Software Restriction Policy (SRP) under Windows XP and Windows Vista for &lt;a href="http://www.windowsecurity.com" target="_blank"&gt;www.windowsecurity.com&lt;/a&gt; (see below). I’m very happy to tell you, that Microsoft now improved this functionality and renamed it into: &lt;strong&gt;AppLocker&lt;/strong&gt;!&lt;/p&gt;  &lt;p&gt;Unfortunately I cannot bring you any screenshots (because of NDA), but I can tell you a few things about the basic functionality. With AppLocker you can more easily eliminate unwanted and unknown applications in your Windows (7) environment. You can enforce application standardization – both from a security (malware), and from a management point of view (licensing &amp;amp; user control).&lt;/p&gt;  &lt;p&gt;What most organizations try to do these days, it to limit users to be standard users (non-administrators) on their local machines – however this is actually not enough to feel secure as an IT administrator. Running as standard user is &lt;u&gt;not&lt;/u&gt; the solution to all of our problems. Many applications can do bad stuff, even within user context – like stealing data, deleting data, manipulating data, encrypting data, creating bot-nets, send spam, social engineering etc. etc. This is true for applications that install in user context (like Google Chrome), or regular executables that don’t actually install – they just run!&lt;/p&gt;  &lt;p&gt;If you want to control applications like that, what can run and what cannot – then you need another approach. AppLocker comes to the rescue!&lt;/p&gt;  &lt;p&gt;   &lt;br /&gt;AppLocker has been build around digital signatures – signing of software executables and DLLs. This was also an option in SRP under Windows XP, were we had path, filename, HASH &amp;amp; certificate rule, but it was pretty hard to manage and enforce back then. With Windows 7, a new GUI has been added to the group policy editor to support easy creation of software rules. We have 3 types of rules:     &lt;br /&gt;- &lt;strong&gt;Allow rules&lt;/strong&gt;: same as Whitelisting (‘known good’ software)     &lt;br /&gt;- &lt;strong&gt;Deny rules&lt;/strong&gt;: same as Blacklisting (‘known bad’ software)     &lt;br /&gt;- &lt;strong&gt;Exceptions&lt;/strong&gt;: exclusion from allow or deny rules&lt;/p&gt;  &lt;p&gt;Allow rules are of course the recommended approach – the “&lt;strong&gt;default deny all applications&lt;/strong&gt;” rule (Whitelisting), but with specific applications the network administrators wants to allow users to run. As an administrator, you get granular control of specific applications, enforcing who can run and/or install them (if they have the appropriate rights and permissions).&lt;/p&gt;  &lt;p&gt;The administration is done by group policy under &lt;em&gt;&lt;strong&gt;Computer Configuration &amp;gt; Application Control Policies&lt;/strong&gt;&lt;/em&gt;, but strangely enough you have to put in affected users and groups (still unclear whether or not the SYSTEM account is still excluded from SRP checks). So this is actually Computer policies that are able to hit users, like loopback or group policy preferences.&lt;/p&gt;  &lt;p&gt;You can create &lt;strong&gt;multiple rule sets&lt;/strong&gt; and take advantage of specific attributes, like app version (equal/above/below X.0.0.0), filename (executable name), product publisher (the valid root certificate used to sign), product suite (like “Microsoft Office 2007”) – and wildcards seems to be supported still. &lt;/p&gt;  &lt;p&gt;You can control executables, installers (MSI), scripts, and DLLs, using certificates (publisher), HASH or path rules. The disadvantage of using HASH rules is, that the HASH will change if the application is updated, certificate/publisher rules are much more flexible because the signature is still going to be there (unless the developers totally mess up). So always try to go for publisher rules, certificates are here to stay :)&lt;/p&gt;  &lt;p&gt;Can be run in 3 modes: Enforce policy, Enforce Policy using Group Policy Inheritance&amp;#160; and Audit Only mode! The latter is pretty cool, as you can configure a Software Restriction Policy, and test it out before you go “live”.&lt;/p&gt;  &lt;p&gt;AppLocker supports import and export of rules, which can be very useful, but one of the best new features is, that there’s no need to create all the rules manually – you have the option to “automatically generate rule”, this feature will analyze a “reference machine” (not sure if this has to be the local machine yet) and files in a given folder on that machine (not sure if this can be a share yet). You can compare this to a “snapshot” feature, take all files in this folder (and subfolders), and make an allow rule from that (certificate based preferably).&lt;/p&gt;  &lt;p&gt;The new rule creation tools and wizards seem pretty straight forward – but you really need to think about the SRP design before you go for it, and test intensively, or else you’ll end up in serious trouble ;-)&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;I just can’t wait to test this deeply and bring you more information!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;u&gt;&lt;strong&gt;Previous article series on SRP:&lt;/strong&gt;&lt;/u&gt;     &lt;br /&gt;&lt;a title="Default Deny All Applications (Part 1)" href="http://www.windowsecurity.com/articles/Default-Deny-All-Applications-Part1.html" target="_blank"&gt;Default Deny All Applications (Part 1)&lt;/a&gt;     &lt;br /&gt;&lt;a title="Default Deny All Applications (Part 2)" href="http://www.windowsecurity.com/articles/Default-Deny-All-Applications-Part2.html" target="_blank"&gt;Default Deny All Applications (Part 2)&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;u&gt;&lt;strong&gt;Microsoft AppLocker description:&lt;/strong&gt;&lt;/u&gt;     &lt;br /&gt;&lt;a title="http://www.microsoft.com/windows/products/windowsvista/enterprise/windows7.mspx?Tab=AppLocker" href="http://www.microsoft.com/windows/products/windowsvista/enterprise/windows7.mspx?Tab=AppLocker" target="_blank"&gt;http://www.microsoft.com&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2173400249826051521?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2173400249826051521/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2173400249826051521' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2173400249826051521'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2173400249826051521'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/11/software-restriction-in-windows-7.html' title='Software Restriction in Windows 7'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7104071634525750149</id><published>2008-11-05T11:07:00.001+01:00</published><updated>2008-11-05T11:07:29.930+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='TechEd'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='BitLocker'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows 7'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='UAC'/><title type='text'>User Account Control in Windows 7</title><content type='html'>&lt;p&gt;&lt;em&gt;These are some quick notes from a session on UAC by Paul A. Cooke, Tech-Ed EMEA 2008:&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&lt;em&gt;&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;Microsoft Windows 7 will reduce the number of OS applications and tasks, that require elevation – this has been done by re-factoring apps and tasks into elevated and non-elevated pieces.&lt;/p&gt;  &lt;p&gt;UAC v2 will provide a more flexible prompt behavior for administrators, also administrators will see less UAC elevation prompts.&lt;/p&gt;  &lt;p&gt;Users can do even more as standard user (eg. parts of Bitlocker, Windows Update etc.), they will also be able to ‘read’ system settings without needing to elevate.&lt;/p&gt;  &lt;p&gt;Windows 7 will be better spotting human vs. application changes, this way “human administrator” changes will be allowed without too many prompts.&lt;/p&gt;  &lt;p&gt;UAC can now easily be graduated into 4 levels (from the strict Vista default to totally off) - everything can of course be handled using group policy.&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;To me this is all pretty cool – but to be honest, I’m one of those weird guys, who don’t care about Vista UAC prompts… I just press ALT+C… How hard can it be? ;-)&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7104071634525750149?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7104071634525750149/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7104071634525750149' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7104071634525750149'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7104071634525750149'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/11/user-account-control-in-windows-7.html' title='User Account Control in Windows 7'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1543684766442405651</id><published>2008-10-20T10:01:00.002+02:00</published><updated>2008-10-20T10:03:54.200+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='script'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><title type='text'>I just love sharing!</title><content type='html'>Just found this - using Google Alerts of course :)&lt;br /&gt;&lt;br /&gt;&lt;em&gt;I made little modifications on this script created by Jakob Heidelberg to search for printers manually created on user profiles. This is very usefull when you wanna ensure that eveybody has only auto created printers, from Citrix or ThinPrint.&lt;/em&gt;&lt;br /&gt;&lt;br /&gt;&lt;em&gt;This script load ntuser.dat on each profile, check some registry keys, write a log and unload ntuser.dat. Some users can have problems to load their profiles if you use this script on the same time that they try logon.&lt;/em&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.robertoalves.com/?p=58"&gt;http://www.robertoalves.com/?p=58&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;I just love sharing!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1543684766442405651?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1543684766442405651/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1543684766442405651' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1543684766442405651'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1543684766442405651'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/10/i-just-love-sharing.html' title='I just love sharing!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2502838474519772369</id><published>2008-10-12T17:48:00.001+02:00</published><updated>2008-10-12T17:50:59.285+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><title type='text'>Why does standby overrule shutdown?</title><content type='html'>&lt;p&gt;Well, I’m a Microsoft kinda guy – but I do have a problem with one “feature” which has been part of the Windows OS for some time…&lt;/p&gt;  &lt;p&gt;Normally I change the default behavior under Power Setting, so that Windows does NOT start a STANDBY process when I close the lid of my laptops – but I haven’t done it on all of my machines, and under every user profile I have (and customers have the same issue).&lt;/p&gt;  &lt;p&gt;So, what happens is, that you are done for the day, and then you start a SHUTDOWN process like normally, and then you close the laptops lid – a STANDBY process then starts – Doh!&lt;/p&gt;  &lt;p&gt;That means, the SHUTDOWN process is put into STANDBY mode, and the next time you boot your laptop, the machine state resumes, just to finalize the SHUTDOWN process… And then you have to boot you machine to get started – hmmm, I definitely don’t like it!&lt;/p&gt;  &lt;p&gt;So what should happen? Well, when a SHUTDOWN process had started, a STANDBY process should NOT be able to “take over” – just let me close the laptop lid and continue the already started SHUTDOWN process, thanx :)&lt;/p&gt;  &lt;p&gt;OK, I admit that it’s only a problem when I haven’t changed the default Power Settings, but I can’t be the only human being in this world with that particular problem!?!? Why would you EVER want a SHUTDOWN process to be put into STANDBY mode?&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;BTW – I have seen, that Mac and Ubuntu people have the same issue on some version – don’t know if it has been fixed on those OS – I have the problem on all the different Windows systems I run on laptops.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2502838474519772369?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2502838474519772369/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2502838474519772369' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2502838474519772369'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2502838474519772369'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/10/why-does-standby-overrule-shutdown.html' title='Why does standby overrule shutdown?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-5323401415988259299</id><published>2008-10-02T13:05:00.000+02:00</published><updated>2008-10-02T13:07:16.322+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='technet'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='it-experts.dk'/><title type='text'>Microsoft: IT-experts.dk online forum er nu opdateret</title><content type='html'>&lt;p&gt;Citat:&lt;/p&gt;&lt;p&gt;&lt;em&gt;Microsoft Danmark tror meget på lokale danske it netværk.  Vi vil gerne hjælpe danske it professionelle med at knytte professionelle forbindelser og have et forum for tekniske spørgsmål og svar, hvor ikke-Microsoft ansatte bidrager med deres perspektiver.&lt;br /&gt;&lt;br /&gt;IT-experts.dk er et gratis online forum for danske IT professionelle. Sitet har haft stor succes med en åben stil, hvor alle medlemmer kan stille tekniske spørgsmål og dele sin viden med andre. Efter en nylig opdatering af sitet er der kommet rigtig mange nye features til, såsom RSS feeds i utallige afskygninger, blogs, OpenID og meget andet. Hvis du ikke allerede er oprettet som bruger på den nye platform, så gør det nu og her: &lt;/em&gt;&lt;a href="http://it-experts.dk/medlem"&gt;&lt;em&gt;http://it-experts.dk/medlem&lt;/em&gt;&lt;/a&gt;&lt;em&gt;.&lt;br /&gt;&lt;br /&gt;De typiske brugere er professionelle IT konsulenter, specialister, administratorer, supportere og arkitekter indenfor messaging, sikkerhed, infrastruktur, virtualisering, terminal services og lignende. Der er en overvejende hovedvægt på Microsoft platformen, men der er bestemt også plads til fokus på andre områder indenfor IT verdenen.&lt;br /&gt;&lt;br /&gt;Bag IT-experts.dk står en række dygtige danske IT konsulenter, MVP’ere og Microsoft Technet Influenters, som yder en stor indsats for at holde sitet kørende, besvare spørgsmål, blogge, skrive artikler og lignende, alt på frivillig basis.&lt;br /&gt;&lt;br /&gt;Vi ønsker IT-experts.dk tillykke med den nye platform og vil hermed opfordre til at deltage i det største danske Microsoft community for IT professionelle: &lt;/em&gt;&lt;a href="http://www.it-experts.dk/"&gt;&lt;em&gt;www.it-experts.dk&lt;/em&gt;&lt;/a&gt;&lt;em&gt;.&lt;/em&gt;&lt;/p&gt;&lt;p&gt; &lt;/p&gt;&lt;p&gt;Kilde: &lt;a href="http://blogs.technet.com/dkitpro/archive/2008/10/02/it-experts-dk-online-forum-er-nu-opdateret.aspx"&gt;http://blogs.technet.com/dkitpro&lt;/a&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-5323401415988259299?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/5323401415988259299/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=5323401415988259299' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5323401415988259299'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5323401415988259299'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/10/microsoft-it-expertsdk-online-forum-er.html' title='Microsoft: IT-experts.dk online forum er nu opdateret'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-8529127826234437031</id><published>2008-07-06T16:45:00.001+02:00</published><updated>2008-07-06T16:45:22.679+02:00</updated><title type='text'>Windows SteadyState 2.5 is out there!</title><content type='html'>&lt;p&gt;This is great news - I've been writing a few articles on this baby, but now we have a brand new version available for download!!!&lt;/p&gt;  &lt;p&gt;   &lt;br /&gt;Go ahead and read some more:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.windowsecurity.com/articles/Protect-Public-Computers-Windows-SteadyState-Part1.html" target="_blank"&gt;Protect Public Computers with Windows SteadyState, Part 1&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.windowsecurity.com/articles/Protect-Public-Computers-Windows-SteadyState-Part2.html" target="_blank"&gt;Protect Public Computers with Windows SteadyState, Part 2&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=6d130662-c084-4356-906f-426bc814582a&amp;amp;DisplayLang=en" target="_blank"&gt;Windows SteadyState 2.5 Technical FAQ&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=f829bb8b-c7a9-426b-a7a4-2b504a6238d2&amp;amp;DisplayLang=en" target="_blank"&gt;Windows SteadyState 2.5 Handbook&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Download Windows SteadyState 2.5 &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=d077a52d-93e9-4b02-bd95-9d770ccdb431&amp;amp;DisplayLang=en" target="_blank"&gt;right here!&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;em&gt;Enjoy!&lt;/em&gt;    &lt;br /&gt;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-8529127826234437031?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/8529127826234437031/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=8529127826234437031' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/8529127826234437031'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/8529127826234437031'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/07/windows-steadystate-25-is-out-there.html' title='Windows SteadyState 2.5 is out there!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6025387624072891736</id><published>2008-05-27T07:02:00.007+02:00</published><updated>2008-05-27T07:13:36.112+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='BitLocker'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='hacking'/><title type='text'>Great Vista hack... Somebody call Mr. Bitlocker!</title><content type='html'>We've seen hacks like this before, no doubt about it - but it's a really nice trick which you gotta love (and hate) - &lt;a href="http://www.offensive-security.com/movies/vistahack/vistahack.html"&gt;check it out here&lt;/a&gt;!&lt;br /&gt;&lt;br /&gt;So, basically this hack requires &lt;a href="http://www.microsoft.com/technet/archive/community/columns/security/essays/10imlaws.mspx?mfr=true"&gt;PHYSICAL ACCESS&lt;/a&gt; to the harddrive, using BackTrack (or some other boot utility capable of reading/writing NTFS) the file Utilman.Exe in \Windows\System32 is replaced with Cmd.exe - after a reboot, at the logon screen, if Utilman is called (by hitting Win-key + U) you'll get a nice command prompt running under SYSTEM credentials - pretty powerfull... From there the only limit is your imagination!&lt;br /&gt;&lt;br /&gt;Yes, Bitlocker protects us from attacks like these - so somebody please call Mr. Bitlocker!&lt;br /&gt;&lt;br /&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6025387624072891736?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6025387624072891736/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6025387624072891736' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6025387624072891736'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6025387624072891736'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/05/great-vista-hack-somebody-call-mr.html' title='Great Vista hack... Somebody call Mr. Bitlocker!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1211934769853596339</id><published>2008-04-29T09:13:00.001+02:00</published><updated>2008-04-29T09:13:37.503+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Group Policy Survival Guide</title><content type='html'>&lt;p&gt;Yes, it's true - there's a new GP guide out there from Microsoft...&lt;/p&gt;  &lt;p&gt;Check it out &lt;a href="http://go.microsoft.com/fwlink/?LinkId=117638" target="_blank"&gt;here&lt;/a&gt; - it's pretty cool!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;a href="http://blogs.technet.com/grouppolicy/archive/2008/04/28/you-will-survive.aspx" target="_blank"&gt;&amp;lt;source&amp;gt;&lt;/a&gt;&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1211934769853596339?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1211934769853596339/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1211934769853596339' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1211934769853596339'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1211934769853596339'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/04/group-policy-survival-guide.html' title='Group Policy Survival Guide'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7732728603873763180</id><published>2008-04-22T14:47:00.001+02:00</published><updated>2008-04-22T14:47:11.319+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='MVP'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>No place like 127.0.0.1</title><content type='html'>&lt;p&gt;So, I'm back home from a great trip to Seattle, Washington, US. The MVP Summit 2008 was a cool experience with lots of info and room for dialog with the product teams at the Microsoft Campus in Redmond.&lt;/p&gt;  &lt;p&gt;We had some awesome talks on the future of Group Policy and I would really like to share it with you, but because of Non-Disclosure Agreements 'n' stuff I can't really say anything - yet.&lt;/p&gt;  &lt;p&gt;Seattle is a very interesting city with a lot of great restaurants, nice architecture and friendly people. I had 2&amp;#189; day to spend after the summit and even though I was missing my family Seattle took great care of me :)&lt;/p&gt;  &lt;p&gt;Anyway, I hope to go back there next year - better prepared for jetlag (which basically means I'll travel a few days before the event next time) - but, that all depends on how much time I get to share information with you guys/girls out there... No sharing, no MVP award - that's the rule ya' know ;-)&lt;/p&gt;  &lt;p&gt;Thanx to the GP team and the other MVPs for a great experience!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7732728603873763180?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7732728603873763180/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7732728603873763180' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7732728603873763180'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7732728603873763180'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/04/no-place-like-127001.html' title='No place like 127.0.0.1'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7029008372084218310</id><published>2008-04-10T23:43:00.001+02:00</published><updated>2008-04-10T23:43:15.335+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SteadyState'/><category scheme='http://www.blogger.com/atom/ns#' term='windowsecurity.com'/><category scheme='http://www.blogger.com/atom/ns#' term='article'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Protect Public Computers with Windows SteadyState (Part 2)</title><content type='html'>&lt;p&gt;&lt;a href="http://www.windowsecurity.com/articles/Protect-Public-Computers-Windows-SteadyState-Part2.html" target="_blank"&gt;This&lt;/a&gt; is my 2nd article that deals with the Windows SteadyState product and how use it to protect public computers!&lt;/p&gt;  &lt;p&gt;If you haven't read part 1, please read it &lt;a href="http://windowsecurity.com/articles/Protect-Public-Computers-Windows-SteadyState-Part1.html" target="_blank"&gt;here&lt;/a&gt;...&lt;/p&gt;  &lt;p&gt;Enjoy!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7029008372084218310?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7029008372084218310/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7029008372084218310' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7029008372084218310'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7029008372084218310'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/04/protect-public-computers-with-windows.html' title='Protect Public Computers with Windows SteadyState (Part 2)'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7356179512407069443</id><published>2008-04-09T09:02:00.001+02:00</published><updated>2008-04-09T09:02:39.186+02:00</updated><title type='text'>StarterGPOs available for download</title><content type='html'>&lt;p&gt;Microsoft introduced the concept of StarterGPOs with GPMC version 2.0 in Vista SP1 + RSAT and Windows Server 2008. The idea is that it should be easy to share Group Policy settings, read more &lt;a href="http://www.windowsecurity.com/articles/Group-Policy-related-changes-Windows-Server-2008-Part1.html" target="_blank"&gt;here&lt;/a&gt;!&lt;/p&gt;  &lt;p&gt;The GREAT thing is that Microsoft has now released some StarterGPO samples - go download the first shipment &lt;a href="http://go.microsoft.com/fwlink/?LinkId=115690" target="_blank"&gt;here&lt;/a&gt;!&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7356179512407069443?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7356179512407069443/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7356179512407069443' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7356179512407069443'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7356179512407069443'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/04/startergpos-available-for-download.html' title='StarterGPOs available for download'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-9179100241573936261</id><published>2008-04-05T09:34:00.001+02:00</published><updated>2008-04-05T09:34:11.865+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Security White Papers &amp; Guides for download</title><content type='html'>&lt;p&gt;This post gives you some links to online available White Papers and Guides from the Microsoft download site - I hope you can use some of it to analyze and protect your own network(s)!&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;New Security White Paper of April 2008:&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&lt;em&gt;&amp;quot;The Microsoft US National Security Team is composed of strategic security advisors who work with Microsoft customers, partners, MS internal constituencies and the information security industry to promote the adoption of security processes and technologies. The NST also focuses on driving vertical security solutions for a wide range of industries. To this end, the NST has produced a number of white papers that address the specific security needs of particular industries, such as the professional services and financial services industries.&amp;quot;&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;You will find these papers:&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;- Electronic Signature Assurance and the Digital Chain-of-Evidence   &lt;br /&gt;- Enabling Secure Collaboration for Professional Services Firms    &lt;br /&gt;- Establishing the Foundation of Authenticity for Electronically Stored Information    &lt;br /&gt;- Information Protection Strategies For Financial Services    &lt;br /&gt;- Optimizing Branch Office Security and Productivity in the Financial Services Sector    &lt;br /&gt;- Secure Software Development for the Financial Services Industry    &lt;br /&gt;- Securing the Retail Store-Securing the Data&lt;/p&gt;  &lt;p&gt;Go get them &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=4cd29b01-eed8-45f5-ab1e-ff1e1aef7b22&amp;amp;DisplayLang=en" target="_blank"&gt;here&lt;/a&gt;!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Also, go check out the &amp;quot;&lt;strong&gt;Fundamental Computer Investigation Guide for Windows&lt;/strong&gt;&amp;quot;:&lt;/p&gt;  &lt;p&gt;&lt;em&gt;&amp;quot;The Fundamental Computer Investigation Guide for Windows Solution Accelerator is intended for IT professionals who need to effectively conduct investigations of Microsoft&amp;#174; Windows&amp;#174;&amp;#8211;based computers in their organizations. It provides a computer investigation model as well as process and best practice information. The guide also provides a fictitious example of an investigation that involves unauthorized access to confidential information. This investigation uses the provided guidance and demonstrates the use of numerous tools. Information is also included about how to configure a lab to create the example scenario. An appendix provides information about how to prepare for computer investigations, sample worksheets, contact information for reporting different types of computer-related crimes to appropriate law enforcement agencies, and lists of useful tools.&amp;quot;&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;Go get that document right &lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=71B986EC-B3F1-4C14-AC70-EC0EB8ED9D57&amp;amp;displaylang=en" target="_blank"&gt;here&lt;/a&gt;!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;And finally, what about checking out the &amp;quot;&lt;strong&gt;The Security Risk Management Guide&lt;/strong&gt;&amp;quot;?:&lt;/p&gt;  &lt;p&gt;&lt;em&gt;&amp;quot;The Security Risk Management Guide explains how to conduct each phase of a security risk management project and create an ongoing process that drives the organization towards the most useful and cost-effective controls to mitigate security risks. It incorporates real-world experiences from Microsoft IT and also includes input from Microsoft customers and partners.      &lt;br /&gt;This guide references many industry accepted standards for managing security risks. It is an important example of Microsoft's commitment to delivering quality guidance to help customers secure their IT infrastructures.&lt;/em&gt;&amp;quot; &lt;/p&gt;  &lt;p&gt;That document is available right &lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=C782B6D3-28C5-4DDA-A168-3E4422645459&amp;amp;displaylang=en" target="_blank"&gt;here&lt;/a&gt;!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Enjoy...&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-9179100241573936261?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/9179100241573936261/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=9179100241573936261' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/9179100241573936261'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/9179100241573936261'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/04/security-white-papers-guides-for.html' title='Security White Papers &amp;amp; Guides for download'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1391746328673917022</id><published>2008-04-01T19:25:00.001+02:00</published><updated>2008-04-05T11:52:32.202+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='MVP'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>MVP:Enterprise Security</title><content type='html'>&lt;p&gt;Yup, a wish came through - I'm now an MVP!&lt;/p&gt;  &lt;p&gt;Receiving the Microsoft Most Valuable Professional Award is a great honor and much appreciated - thank you.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/MVPEnterpriseSecurity_1112D/MVP_Horizontal_FullColor_small.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="59" alt="MVP_Horizontal_FullColor_small" src="http://www.heidelbergit.dk/Screenshots/MVPEnterpriseSecurity_1112D/MVP_Horizontal_FullColor_small_thumb.png" width="144" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Sharing Rocks - Information wants to be free!&lt;/p&gt;  &lt;p&gt;&lt;em&gt;Time to get a beer :-)&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1391746328673917022?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1391746328673917022/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1391746328673917022' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1391746328673917022'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1391746328673917022'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/04/mvpenterprise-security.html' title='MVP:Enterprise Security'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-4340897892639126934</id><published>2008-04-01T00:03:00.000+02:00</published><updated>2008-04-01T00:08:00.037+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='Core'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><title type='text'>Core with a GUI</title><content type='html'>&lt;p&gt;If you have messed around in Windows Server 2008 Core installation you've probably had some challenges along the way - like: how do I join a computer to the domain using a command prompt, how can I add Features, tweak the firewall etc. Well, a nice and very useful solution to many of the basic configuration tasks is out there - and it's free of course!&lt;/p&gt;  &lt;p&gt;Go check out &lt;a href="http://blogs.microsoft.co.il/blogs/guyt/archive/2008/03/22/windows-server-core-coreconfigurator-to-the-rescue.aspx" target="_blank"&gt;CoreConfigurator&lt;/a&gt; (Server Core Configurator) written by Guy Teverovsky - look how easy it is and stop acting like a geek sent back to the early 90s :-)&lt;/p&gt;  &lt;p&gt;&lt;img src="http://blogs.microsoft.co.il/blogs/guyt/WindowsLiveWriter/ConfiguringWindowsServerCoreCoreConfigur_118D3/main.jpg" /&gt; &lt;/p&gt;  &lt;p&gt;Download &lt;a href="http://blogs.microsoft.co.il/files/folders/guyt/entry68860.aspx" target="_blank"&gt;here&lt;/a&gt; and enjoy!&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-4340897892639126934?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/4340897892639126934/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=4340897892639126934' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4340897892639126934'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4340897892639126934'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/04/core-with-gui.html' title='Core with a GUI'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7977405309565815729</id><published>2008-03-25T22:51:00.001+01:00</published><updated>2008-03-25T23:06:46.218+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='RSAT'/><category scheme='http://www.blogger.com/atom/ns#' term='gp preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><title type='text'>Remote Server Administration Tools Available!</title><content type='html'>&lt;p&gt;You can now download the RSAT toolkit for Windows Vista - go get the package right &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=9FF6E897-23CE-4A36-B7FC-D52065DE9960&amp;amp;displaylang=en" target="_blank"&gt;HERE (32-bit)&lt;/a&gt; or &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=d647a60b-63fd-4ac5-9243-bd3c497d2bc5&amp;amp;DisplayLang=en" target="_blank"&gt;HERE (64-bit)&lt;/a&gt;...&lt;/p&gt;  &lt;p&gt;Time to get Group Policy Preferences and all those other goodies up and running - cool stuff!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7977405309565815729?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7977405309565815729/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7977405309565815729' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7977405309565815729'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7977405309565815729'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/03/remote-server-administration-tools.html' title='Remote Server Administration Tools Available!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6737421705825082733</id><published>2008-03-20T08:49:00.001+01:00</published><updated>2008-03-20T08:49:43.368+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='service pack'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>What's inside Vista Service Pack 1</title><content type='html'>&lt;p&gt;Well - in regards to Hotfixes and Security Updates, check out &lt;a href="http://technet2.microsoft.com/WindowsVista/en/library/20184cb6-7038-4e82-a32c-4bc10ffe56ab1033.mspx?mfr=true" target="_blank"&gt;this&lt;/a&gt; TechNet article. To get the complete overview, read this &lt;a href="http://technet2.microsoft.com/WindowsVista/en/library/20184cb6-7038-4e82-a32c-4bc10ffe56ab1033.mspx?mfr=true" target="_blank"&gt;one&lt;/a&gt;. The &amp;quot;notable changes&amp;quot; can be found &lt;a href="http://technet2.microsoft.com/WindowsVista/en/library/20184cb6-7038-4e82-a32c-4bc10ffe56ab1033.mspx?mfr=true" target="_blank"&gt;here&lt;/a&gt;.&lt;/p&gt;  &lt;p&gt;&lt;em&gt;That should be enough info to get safely through Eastern &lt;/em&gt;:-)&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6737421705825082733?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6737421705825082733/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6737421705825082733' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6737421705825082733'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6737421705825082733'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/03/what-inside-vista-service-pack-1.html' title='What&amp;#39;s inside Vista Service Pack 1'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6272111822827660614</id><published>2008-03-19T22:48:00.001+01:00</published><updated>2008-03-19T22:48:54.114+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Fine-Grained Password Policies'/><category scheme='http://www.blogger.com/atom/ns#' term='specops'/><category scheme='http://www.blogger.com/atom/ns#' term='Granular Password Settings'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Configuring Granular Password Settings in Windows Server 2008 – The Easy Way!</title><content type='html'>&lt;p&gt;&lt;u&gt;&lt;a href="http://www.windowsecurity.com/articles/Configuring-Granular-Password-Settings-Windows-Server-2008.html" target="_blank"&gt;This article&lt;/a&gt;&lt;/u&gt; will demonstrate &amp;#8220;The Easy Way&amp;#8221; of how to handle Granular Password Policies &amp;#8211; also known as Fine-Grained Password Policies - in a Windows Server 2008 domain environment.&lt;/p&gt;  &lt;p&gt;In the article series &amp;#8220;Configuring Granular Password Settings&amp;#8221; (&lt;a href="http://www.windowsecurity.com/articles/Configuring-Granular-Password-Settings-Windows-Server-2008-Part-1.html" target="_blank"&gt;part 1&lt;/a&gt; &amp;amp; &lt;a href="http://www.windowsecurity.com/articles/Configuring-Granular-Password-Settings-Windows-Server-2008-Part2.html" target="_blank"&gt;part 2&lt;/a&gt;) I demonstrated how to configure Granular Password Settings for individual users or global security groups in a Windows Server 2008 Active Directory environment, using built-in methods. This article will demonstrate &amp;#8220;The Easy Way&amp;#8221; of how to handle these additional password policies in your Windows Server 2008 domain environment... Using &lt;a href="http://www.specopssoft.com/wiki/index.php/SpecopsPasswordPolicyBasic/SpecopsPasswordPolicyBasic"&gt;Specops Password Policy Basic&lt;/a&gt;!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Enjoy!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6272111822827660614?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6272111822827660614/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6272111822827660614' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6272111822827660614'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6272111822827660614'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/03/configuring-granular-password-settings.html' title='Configuring Granular Password Settings in Windows Server 2008 – The Easy Way!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-966665409808215377</id><published>2008-03-18T08:34:00.001+01:00</published><updated>2008-03-18T08:34:08.563+01:00</updated><title type='text'>Easily leave users with the Least Privilege possible</title><content type='html'>&lt;p&gt;A new and shiny - &lt;em&gt;free!&lt;/em&gt; - tool from &lt;a href="http://www.beyondtrust.com" target="_blank"&gt;BeyondTrust&lt;/a&gt; makes it possible for admins around the world to figure out exactly what rights different applications in the environment need to run. This kind of info is essential for removing administrative rights from users and running a &amp;quot;principle of least privilege&amp;quot; environment!&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.beyondtrust.com/products/ApplicationRightsAuditor.aspx" target="_blank"&gt;BeyondTrust&amp;#174; Application Rights Auditor&lt;/a&gt; is a totally FREE tool which profiles applications and seamlessly identifies the required permissions - very easy to implement, use and manage.&lt;/p&gt;  &lt;p&gt;We all know, that administrative rights allow users to circumvent security policies, install unauthorized applications and make unauthorized modifications to a standard desktop configuration - let's move away from those risks... Just register, download and test out this free application - this is &amp;quot;low hanging fruit&amp;quot; giving your environment a needed security-vitamin injection!&lt;/p&gt;  &lt;p&gt;Download the &lt;a href="http://www.beyondtrust.com/documentation/dataSheets/DS_ARA.pdf" target="_blank"&gt;Product Sheet (PDF) right here&lt;/a&gt;!&lt;/p&gt;  &lt;p&gt;A desktop component can be installed on multiple computers to transparently examine applications during execution. The reporting console gives a nice overview of applications the environment from a central point.&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Reporting Console Prerequisites:     &lt;br /&gt;&lt;/strong&gt;Microsoft .NET Framework 3.0 SP 1 and     &lt;br /&gt;Microsoft Management Console 3.0&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;em&gt;Go for it !&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-966665409808215377?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/966665409808215377/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=966665409808215377' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/966665409808215377'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/966665409808215377'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/03/easily-leave-users-with-least-privilege.html' title='Easily leave users with the Least Privilege possible'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-752518711022565196</id><published>2008-03-01T09:21:00.001+01:00</published><updated>2008-03-01T09:21:00.157+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Solution Accelerator'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><category scheme='http://www.blogger.com/atom/ns#' term='Security Guide'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Windows Server 2008 Security Guide and the new GPOAccelerator tool is out there!</title><content type='html'>&lt;p&gt;I participated in creation of this great guide around security on Windows Server 2008 - really, you gotta see this... Also check out the new and shiny Solution Accelerator called &amp;quot;GPOAccelerator&amp;quot; - it really &lt;em&gt;rocks!&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Info from Microsoft:     &lt;br /&gt;&lt;/strong&gt;The primary purposes of this guide are to enable you to do the following: &lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;Use the solution guidance to efficiently create and apply tested security baseline configurations using Group Policy. &lt;/li&gt;    &lt;li&gt;Understand the reasoning for the security setting recommendations in the baseline configurations that the guide prescribes, and their implications. &lt;/li&gt;    &lt;li&gt;Identify and consider common security scenarios, and then use specific security features in Windows Server 2008 to help you manage them in your environment. &lt;/li&gt;    &lt;li&gt;Understand role based security for different workloads in Windows Server 2008. &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;strong&gt;Hardening:     &lt;br /&gt;&lt;/strong&gt;The WS2008 Security Guide also includes information on how to harden the following server roles and the role services that they provide:&lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;em&gt;Active Directory Domain Services (AD DS)&lt;/em&gt;&lt;/li&gt;    &lt;li&gt;&lt;em&gt;Dynamic Host Configuration Protocol (DHCP) Server&lt;/em&gt;&lt;/li&gt;    &lt;li&gt;&lt;em&gt;Domain Name System (DNS) Server&lt;/em&gt;&lt;/li&gt;    &lt;li&gt;&lt;em&gt;Web Server (IIS)&lt;/em&gt;&lt;/li&gt;    &lt;li&gt;&lt;em&gt;File Services&lt;/em&gt;&lt;/li&gt;    &lt;li&gt;&lt;em&gt;Print Services&lt;/em&gt;&lt;/li&gt;    &lt;li&gt;&lt;em&gt;Active Directory Certificate Services (AD CS)&lt;/em&gt;&lt;/li&gt;    &lt;li&gt;&lt;em&gt;Network Policy and Access Services&lt;/em&gt;&lt;/li&gt;    &lt;li&gt;&lt;em&gt;Terminal Services&lt;/em&gt;&lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;strong&gt;The &amp;quot;complete solution&amp;quot; from Microsoft:     &lt;br /&gt;&lt;/strong&gt;The Solution Accelerator for the Windows Server 2008 Security Guide includes the following components: &lt;/p&gt;  &lt;ul&gt;   &lt;li&gt;&lt;strong&gt;Executive Overview&lt;/strong&gt;. A summary for business and technical managers that briefly explains how you can use the guidance and the tool for this Solution Accelerator. &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;Security Guide&lt;/strong&gt;. Recommended guidelines and best practices in a series of chapters that offer detailed guidance on how to harden servers running Windows Server 2008 that handle different workloads (&lt;em&gt;see above&lt;/em&gt;).&lt;/li&gt;    &lt;li&gt;&lt;strong&gt;Security Settings Recommendation Appendix&lt;/strong&gt;. A comprehensive technical reference that explains every prescribed security setting in the security guide. &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;Security Settings Workbook&lt;/strong&gt;. A resource that lists all prescribed settings for each of the preconfigured security baselines provided by the guide.&lt;/li&gt;    &lt;li&gt;&lt;strong&gt;Attack Surface Reference Workbook&lt;/strong&gt;. A resource that lists the changes that installed server roles introduce in Windows Server 2008. &lt;/li&gt;    &lt;li&gt;&lt;strong&gt;GPOAccelerator&lt;/strong&gt;. A tool that you can use to automatically create Group Policy objects (GPOs) recommended by the guide, which is available as a separate download. To learn more about the GPOAccelerator and download the tool, click here. &lt;/li&gt; &lt;/ul&gt;  &lt;p&gt;&lt;strong&gt;Where can I get this?&lt;/strong&gt;    &lt;br /&gt;&lt;a href="http://technet.microsoft.com/en-us/library/cc264463.aspx" target="_blank"&gt;Windows Server 2008 Security Guide&lt;/a&gt; (online version)    &lt;br /&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkId=92552" target="_blank"&gt;Get the Windows Server 2008 Security Guide&lt;/a&gt;    &lt;br /&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkId=107264" target="_blank"&gt;Get the GPOAccelerator&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Enjoy!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.   &lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-752518711022565196?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/752518711022565196/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=752518711022565196' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/752518711022565196'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/752518711022565196'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/03/windows-server-2008-security-guide-and.html' title='Windows Server 2008 Security Guide and the new GPOAccelerator tool is out there!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-4746901372161652365</id><published>2008-03-01T01:34:00.001+01:00</published><updated>2011-10-14T08:43:03.330+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='windows xp'/><category scheme='http://www.blogger.com/atom/ns#' term='gp preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy extensions'/><category scheme='http://www.blogger.com/atom/ns#' term='Client Side Extensions'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='windows server 2003'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><category scheme='http://www.blogger.com/atom/ns#' term='Jeremy Moskowitz'/><title type='text'>How to install GPP CSEs using a Startup Script</title><content type='html'>When you have the &lt;strong&gt;Group Policy Preference (GPP) Client Side Extensions (CSE)&lt;/strong&gt; downloaded you'll notice that they are not (yet) in the &lt;strong&gt;.MSI&lt;/strong&gt; format - so using &lt;strong&gt;Group Policy Software Installation (GPSI)&lt;/strong&gt; is not possible. Bummer, right!?&lt;br /&gt;We have &lt;strong&gt;.EXE&lt;/strong&gt; files for Windows XP/2003 and &lt;strong&gt;.MSU&lt;/strong&gt; files for Windows Vista... But that's not the only thing we need to think about. Before "deploying" these things to the clients on the network we need to know the OS &lt;strong&gt;version&lt;/strong&gt; (XP/2003/Vista), the OS &lt;strong&gt;architecture&lt;/strong&gt; (32 or 64 bit), the &lt;strong&gt;Service Pack Level&lt;/strong&gt;, and whether or not the Group Policy Preference &lt;strong&gt;Pre-requisites&lt;/strong&gt; (WmlLite - &lt;a href="http://support.microsoft.com/kb/914783/en-us" title="http://support.microsoft.com/kb/914783/en-us"&gt;http://support.microsoft.com/kb/914783/en-us&lt;/a&gt;) are installed.&lt;br /&gt;To make all this pretty easy I've created a "demo" &lt;strong&gt;script&lt;/strong&gt; for deploying the GPP CSEs using Startup Script - or a manual launch (in admin context). My good friend &lt;em&gt;Jeremy Moskowitz&lt;/em&gt; asked me to do this - so, a couple of hours later the "demo" - or "&lt;em&gt;beta&lt;/em&gt;" - script is public (download below)...&lt;br /&gt;&lt;strong&gt;Note:&lt;/strong&gt; I haven't been able to test in all scenarios yet, but I *&lt;em&gt;think&lt;/em&gt;* they are all covered pretty well by now. &lt;strong&gt;Please report back&lt;/strong&gt; if you find any problems - any &lt;strong&gt;feedback&lt;/strong&gt; is welcome!&lt;br /&gt;&lt;strong&gt;&lt;a href="http://www.heidelbergit.dk/2011/10/installgppcse-cleartext.html" target="_blank"&gt;Download the VBS script right here!&lt;/a&gt;&lt;/strong&gt;&lt;br /&gt;NB! You might need other &lt;strong&gt;language&lt;/strong&gt; version for the &lt;strong&gt;XmlLite&lt;/strong&gt; GPP CSE Pre-requisites, so watch out!&lt;br /&gt;&lt;em&gt;Running the script in your production network is on your own risk. The code is delivered "As Is" - totally free of any charge. No strings attached.&lt;/em&gt;&lt;br /&gt;&lt;br /&gt;I hope this works out nicely for you!&lt;br /&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-4746901372161652365?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/4746901372161652365/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=4746901372161652365' title='15 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4746901372161652365'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4746901372161652365'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/03/how-to-install-gpp-cses-using-startup.html' title='How to install GPP CSEs using a Startup Script'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>15</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2201585499998036490</id><published>2008-02-26T18:58:00.001+01:00</published><updated>2008-02-26T19:48:18.070+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy extensions'/><category scheme='http://www.blogger.com/atom/ns#' term='Client Side Extensions'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='gpo'/><title type='text'>Group Policy Preference Client Side Extensions are now available for download!</title><content type='html'>&lt;p&gt;Here we are - &lt;strong&gt;Group Policy Preference&lt;/strong&gt; &lt;strong&gt;Client Side Extensions&lt;/strong&gt; are now available for download. This is a cool thing bringing lot's of Group Policy Power to admins around the world!&lt;/p&gt;  &lt;p&gt;The GPP CSEs are included in Windows Server 2008 RTM, but can now be downloaded for:    &lt;br /&gt;&lt;em&gt;Windows XP SP2+ (32/64 bit)      &lt;br /&gt;Windows Server 2003 SP1+ (32/64 bit)       &lt;br /&gt;Windows Vista RTM+ (32/64 bit)&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&lt;u&gt;&lt;strong&gt;These are the links:&lt;/strong&gt;&lt;/u&gt;     &lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=ab60dc87-884c-46d5-82cd-f3c299dac7cc&amp;amp;DisplayLang=en" target="_blank"&gt;GPP CSEs for Windows Vista (KB943729)&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=b10a7af4-8bee-4adc-8bbe-9949df77a3cf&amp;amp;DisplayLang=en" target="_blank"&gt;GPP CSEs for Windows Vista x64 Edition (KB943729)&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=bfe775f9-5c34-44d0-8a94-44e47db35add&amp;amp;DisplayLang=en" target="_blank"&gt;GPP CSEs for Windows Server 2003 (KB943729)&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=29e83503-7686-49f3-b42d-8e5ed23d5d79&amp;amp;DisplayLang=en" target="_blank"&gt;GPP CSEs for Windows Server 2003 x64 Edition (KB943729)&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=e60b5c8f-d7dc-4b27-a261-247ce3f6c4f8&amp;amp;DisplayLang=en" target="_blank"&gt;GPP CSEs for Windows XP (KB943729)&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=249c1aed-c1f1-4a0b-872e-ef0a32170625&amp;amp;DisplayLang=en" target="_blank"&gt;GPP CSEs for Windows XP x64 Edition (KB943729)&lt;/a&gt;     &lt;br /&gt;    &lt;br /&gt;To get Group Policy Preferences on your network all you need is a single Windows Server 2008 as a management station in you existing Windows Server 2003 AD (or 2008 AD of course). When &lt;strong&gt;RSAT&lt;/strong&gt; (Remote Server Administration Tools) is out there - very soon! - a Windows Vista SP1 will be enough to get this cool functionality in your domain!&lt;/p&gt;  &lt;p&gt;But remember, no GP Preferences (GPP) without the CSEs - so go ahead and download them now ;-)&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2201585499998036490?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2201585499998036490/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2201585499998036490' title='15 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2201585499998036490'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2201585499998036490'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/group-policy-client-extensions.html' title='Group Policy Preference Client Side Extensions are now available for download!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>15</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-5955076681967966427</id><published>2008-02-22T09:48:00.001+01:00</published><updated>2008-02-22T09:48:01.948+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='BitLocker'/><category scheme='http://www.blogger.com/atom/ns#' term='encryption'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>BitUnlocker - exploiting RAM after poweroff?</title><content type='html'>&lt;p&gt;This is &lt;u&gt;shocking&lt;/u&gt; - if it's true (haven't tested yet)...&lt;/p&gt;  &lt;p&gt;Check it out &lt;a href="http://www.theregister.co.uk/2008/02/22/eff_unbitlocker/" target="_blank"&gt;here&lt;/a&gt; and see the video below!&lt;/p&gt;  &lt;p&gt;get the Full research paper &lt;a href="http://citp.princeton.edu.nyud.net/pub/coldboot.pdf" target="_blank"&gt;here&lt;/a&gt;.&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;   &lt;div class="wlWriterSmartContent" id="scid:5737277B-5D6D-4f48-ABFC-DD9C333F4C5D:c25c5d73-debc-4bd3-94f9-0d1f8cf1171e" style="padding-right: 0px; display: inline; padding-left: 0px; padding-bottom: 0px; margin: 0px; padding-top: 0px"&gt;&lt;div&gt;&lt;object width="425" height="350"&gt;&lt;param name="movie" value="http://www.youtube.com/v/JDaicPIgn9U"&gt;&lt;/param&gt;&lt;param name="wmode" value="transparent"&gt;&lt;/param&gt;&lt;embed src="http://www.youtube.com/v/JDaicPIgn9U" type="application/x-shockwave-flash" wmode="transparent" width="425" height="350"&gt;&lt;/embed&gt;&lt;/object&gt;&lt;/div&gt;&lt;/div&gt; &lt;/p&gt;  &lt;p&gt;Hope this is not true - BitLocker (and other disk encryption tools) is still a good thing, but it has kinda lost some of its advantages... &lt;/p&gt;  &lt;p&gt;Where can I buy RAM that drops its content ASAP after power off? ;-)&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-5955076681967966427?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/5955076681967966427/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=5955076681967966427' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5955076681967966427'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5955076681967966427'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/bitunlocker-exploiting-ram-after.html' title='BitUnlocker - exploiting RAM after poweroff?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-5324013032340221548</id><published>2008-02-20T17:04:00.001+01:00</published><updated>2008-02-20T17:04:26.547+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='windowsecurity.com'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy extensions'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='article'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><title type='text'>Group Policy Changes in WS2008 article - part 4</title><content type='html'>&lt;p&gt;Hi,&lt;/p&gt;  &lt;p&gt;Just want to let you know that my latest article about &amp;quot;Group Policy related changes in Windows Server 2008&amp;quot; has been released today on &lt;a href="http://www.windowsecurity.com" target="_blank"&gt;www.windowsecurity.com&lt;/a&gt;.&lt;/p&gt;  &lt;p&gt;This 4th article in the series deals with Group Policy Preference actions, processing options, SYSVOL, Item Level targeting (ILT), Export/Import functionality, &amp;quot;well hidden stuff&amp;quot;, variables, logging, future additions etc. - &lt;a href="http://www.windowsecurity.com/articles/Group-Policy-related-changes-Windows-Server-2008-Part4.html" target="_blank"&gt;read more here...&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;I hope you like it - feel free to drop a comment or vote on the site!!!&lt;/p&gt;  &lt;p&gt;/Jakob&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-5324013032340221548?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/5324013032340221548/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=5324013032340221548' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5324013032340221548'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5324013032340221548'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/group-policy-changes-in-ws2008-article.html' title='Group Policy Changes in WS2008 article - part 4'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7247774105073977585</id><published>2008-02-15T16:39:00.001+01:00</published><updated>2008-02-17T17:59:06.729+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='hacker'/><category scheme='http://www.blogger.com/atom/ns#' term='CEH'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='Certified Ethical Hacker'/><category scheme='http://www.blogger.com/atom/ns#' term='Certification'/><category scheme='http://www.blogger.com/atom/ns#' term='hacking'/><title type='text'>CEH | Certified Ethical Hacker</title><content type='html'>&lt;p&gt;Today I went for the &lt;a href="http://www.eccouncil.org/CEH.htm" target="_blank"&gt;CEH&lt;/a&gt; v5 exam, &lt;a href="http://www.eccouncil.org/takeexam.htm" target="_blank"&gt;EC-Council certification# 312-50&lt;/a&gt;, I'd been studying for it for a while. It had no less than 150 questions - and pretty tough ones too - but I managed to pass it (85% which is OK considering US law was part of the Qs).&lt;/p&gt;  &lt;p&gt;I can really recommend you to go for this exam - it's somethin' else dude! The questions are short and exact (still multiple choice), but just the &lt;strong&gt;process&lt;/strong&gt; of going there is VERY cool and interesting. Personally I downloaded a lot of spooky tools and guides, created an isolated network with virtual machines and tested, tested, tested. It was fun I can tell you - I can't seem to stop studying this stuff!&lt;/p&gt;  &lt;p&gt;I also read 2 books on the journey:    &lt;br /&gt;&lt;em&gt;- Michael Gregg: Certified Ethical Hacker Exam Prep (very good)      &lt;br /&gt;- Kimberly Graves: Official Certified Ethical Hacker Review Guide (very brief)&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;If you're a totally cool (and white) hacker dude already, you could probably go for the latter only (it will give you the overall idea of what this exam is all about, the CEH terminology etc). BUT the first one mentioned, by Michael Gregg, is a VERY good introduction (broad and deep) into the world of haxin' actually.&lt;/p&gt;  &lt;p&gt;The whole idea with this exam is, that to be a professional penetration tester or security consultant, you need the skills and tools of the hackers. Put yourself in their place and start looking for your (or your customers) weakest link! A security system is only as strong as its weakest link - that also means, that security is a process (maintenance).&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;a href="http://www.heidelbergit.dk/Screenshots/CEHCertifiedEthicalHacker_E61C/ceh_black.jpg"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="187" alt="ceh_black" src="http://www.heidelbergit.dk/Screenshots/CEHCertifiedEthicalHacker_E61C/ceh_black_thumb.jpg" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Security is, and always will be, a mixture of: &lt;strong&gt;Prevention + Detection + Response&lt;/strong&gt;!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7247774105073977585?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7247774105073977585/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7247774105073977585' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7247774105073977585'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7247774105073977585'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/ceh-certified-ethical-hacker.html' title='CEH | Certified Ethical Hacker'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7705972452692362853</id><published>2008-02-13T13:27:00.001+01:00</published><updated>2008-02-13T13:56:42.037+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='MVP'/><category scheme='http://www.blogger.com/atom/ns#' term='Darren Mar-Elia'/><category scheme='http://www.blogger.com/atom/ns#' term='technet'/><category scheme='http://www.blogger.com/atom/ns#' term='gpanswers.com'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='gpoguy.com'/><category scheme='http://www.blogger.com/atom/ns#' term='Jeremy Moskowitz'/><title type='text'>The WMI Filter Contest - are you the knight in shining armor?</title><content type='html'>&lt;p&gt;Welcome to &lt;strong&gt;&amp;quot;The Quest for the Holy Desktop WMI Filter&amp;#8221;,&lt;/strong&gt; this is a global search for what you could call &amp;quot;&lt;em&gt;The Perfect Desktop WMI Filter&lt;/em&gt;&amp;quot;. A WMI filter which, by using WMI Query Language (WQL), should be able to spot DESKTOP computers only. It should be a general query - meaning it should be possible to use the filter in most Active Directory environments around the globe for Group Policy filtering.&lt;/p&gt;  &lt;p&gt;So, what is a desktop really? Well, actually in this case we'll say it's the opposite of a laptop. Hmm, then what is a laptop? Easy enough: a computer with a battery! We've got the WMI filter for finding laptops already:&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Select * from Win32_Battery&lt;/strong&gt;&amp;#160; - &lt;em&gt;don't you just love the simplicity in this query?&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;This filter will make a computer with a battery respond back with &amp;quot;TRUE&amp;quot; (because the WMI class instance is present), meaning a GPO with this filter will apply to computers with batteries. Simple right? And you might think it's easy to just &amp;quot;turn it around&amp;quot; to find desktops, like:&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Select * From Win32_Battery Where Availability != 2&lt;/strong&gt;     &lt;br /&gt;&amp;#160; or     &lt;br /&gt;&lt;strong&gt;&lt;strong&gt;Select * From Win32_Battery Where Availability IS NOT NULL        &lt;br /&gt;&lt;/strong&gt;&lt;/strong&gt;&amp;#160; or     &lt;br /&gt;&lt;strong&gt;&amp;#8220;Where Not X Like Y&amp;#8221; or whatever&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;Maybe it is, maybe it's not... I think it's pretty damn hard! For spotting laptops we could have tested the classes Win32_PortableBattery, Win32_PCMCIAController, Win32_POTSModem as well - but somehow I think most people will agree, that the &amp;quot;essential ting&amp;quot;, which makes a laptop a laptop, is in fact the battery presence!&lt;/p&gt;  &lt;p&gt;But, our tests for spotting DESKTOPS only (machines without a battery - yes, I know this will include servers as they a &amp;quot;stationary&amp;quot; too) have not been a success yet! We probably just need the correct syntax?&lt;strong&gt; And this is where you get into the picture!&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;h3&gt;Are you able to crack open this nut? There's a cool price!&lt;/h3&gt;  &lt;p&gt;This all started on a mailing list for Group Policy guys and girls - called GPTalk - created and maintained by Group Policy guru and MVP Darren Mar-Elia - the guy behind &lt;a href="http://www.gpoguy.com" target="_blank"&gt;GPOguy.com&lt;/a&gt; and &lt;a href="http://www.sdmsoftware.com" target="_blank"&gt;SDM Software&lt;/a&gt;. You can join the list &lt;a href="http://www.gpoguy.com/lists.htm" target="_blank"&gt;RIGHT HERE&lt;/a&gt; and participate in this contest to &lt;strong&gt;WIN a free copy&lt;/strong&gt; of the:&lt;/p&gt;  &lt;h4&gt;&lt;a href="http://www.sdmsoftware.com/group_policy_troubleshoot.php" target="_blank"&gt;&lt;strong&gt;GPExpert&amp;#8482; Troubleshooting Pak&lt;/strong&gt;&lt;/a&gt;&amp;#160;&lt;/h4&gt;  &lt;p&gt;BUT you have to be the first person to crack this thing, there'll be only ONE WINNER - that could be you!&lt;/p&gt;  &lt;p&gt;I'll be evaluating incoming answers - &lt;strong&gt;FIFO&lt;/strong&gt;: &amp;quot;&lt;em&gt;First In First Out&lt;/em&gt;&amp;quot; method is used. Hopefully we'll see the most simple solution first - simplicity works, right? Actually I wouldn't know in this case would I...&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;em&gt;One important thing! &lt;/em&gt;&lt;/strong&gt;We will ask you kindly to TEST any WMI query submissions before sending them to everybody on the list. During your testing, you should use a tool to verify the WMI filter against a minimum of 2 desktops and 2 laptops. You can use the free &lt;a title="WMI Filter Validation Tool" href="http://www.gpoguy.com/WMIFTest.htm" target="_blank"&gt;WMI Filter Validation Tool&lt;/a&gt; to test you WMI filters in your environment. Personally I&amp;#8217;m also using &lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=09dfc342-648b-4119-b7eb-783b0f7d1178" target="_blank"&gt;Scriptomatic version 2&lt;/a&gt; and &lt;a href="http://technet2.microsoft.com/windowsserver/en/library/28209472-b3ed-4b96-a6dd-c43ffdd913691033.mspx" target="_blank"&gt;WBEMTEST&lt;/a&gt; for finding the available classes, items, queries etc.&lt;/p&gt;  &lt;p&gt;Please have a look at the &amp;quot;rules&amp;quot; further down!&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;em&gt;Why do this? &lt;/em&gt;&lt;/strong&gt;Well, because it's fun - and useful at the same time... When looking at it generally, the purpose of this filter is to say: &amp;quot;&lt;em&gt;I want these user settings to apply, but only when the user logs on to stationary machines&lt;/em&gt;&amp;quot;. This can be used for a lot of security related setting, eg. in the case where Automatically cached Offline Files/Folders are unwanted on stationary machines for certain users etc. The job of most WMI filters placed on &lt;strong&gt;User policies&lt;/strong&gt; is to &lt;strong&gt;limit which machines&lt;/strong&gt; the policy setting(s) should apply to (even though WMI filters could check for user specific things too). Besides from that it's a nice challenge, we can pretty easily &amp;quot;spot&amp;quot; laptops, as they have batteries &amp;#8211; and desktops don&amp;#8217;t, but that&amp;#8217;s not good enough for Mr. WQL, is it?!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;h3&gt;Stuff we have tried - and the rules&lt;/h3&gt;  &lt;p&gt;We&amp;#8217;ve been around solutions looking for Win32_SystemEnclosure &amp;gt; ChassisType before - which basically doesn&amp;#8217;t work in a WMI filter because that&amp;#8217;s an Array (and yes, I've also seen lots of posts on forums out there claiming that particular class is the solution &amp;#8211; but for WMI/WQL queries it&amp;#8217;s not). If would work in a script (because you can add additional logic to scripts), but we are searching for a WMI Filter - &lt;u&gt;not workarounds of any kind&lt;/u&gt;!&lt;/p&gt;  &lt;p&gt;As mentioned we tried with the Win32_Battery WMI class. However, as desktops don&amp;#8217;t know this class at all, they'll return FALSE no matter what. Basically a desktop computer is gonna say &amp;#8220;Heck, I don&amp;#8217;t know anything about that class *Panic* I&amp;#8217;m out!&amp;#8221; &amp;#8211; or just &amp;#8220;False&amp;#8221;... Bummer!&lt;/p&gt;  &lt;p&gt;We have also tried PowerSupplyState, Win32_DesktopMonitor, Win32_DisplayConfiguration, Win32_SystemSlot, Win32_Fan and other classes &amp;#8211; just haven&amp;#8217;t found the perfect &amp;#8220;this is definitely a desktop WMI item value or class&amp;#8221;&amp;#8230; &lt;/p&gt;  &lt;p&gt;We're basically looking for something like: &lt;/p&gt;  &lt;p&gt;A) Select * from Win32_SomeClassOnlyDesktopsHave &lt;/p&gt;  &lt;p&gt;Or &lt;/p&gt;  &lt;p&gt;B )Select * from Win32_SomeClass.SomeItem = &amp;#8220;SomeValueOnlyDesktopsHave&amp;#8221; &lt;/p&gt;  &lt;p&gt;Or &lt;/p&gt;  &lt;p&gt;C) Some way of saying &amp;#8220;if you don&amp;#8217;t know the class (eg. Win32_Battery), then apply the GPO anyway&amp;#8221;&lt;/p&gt;  &lt;p&gt;Again, the &amp;#8220;quest&amp;#8221; is to find the perfect, *universal*, way of spotting &amp;#8220;Non-laptops&amp;#8221; or Desktops &amp;#8211; it can of course be done by looking for some special computer Manufacturer/Model, BIOS version, specific hardware driver or whatever &amp;#8211; but that stuff it most likely gonna be different from environment to environment. Also, if we all just used computer names like &amp;#8220;DESKxxx&amp;#8221; for desktops and &amp;#8220;LAPTxxx&amp;#8221; for laptops, we could have used WMI filters for computer name &amp;#8211; but unfortunately that&amp;#8217;s not the case - or at least I won't consider that a valid solution :)&lt;/p&gt;  &lt;p&gt;The thing is, that normally it&amp;#8217;s the LAPTOPS that have special hardware &amp;#8211; like Batteries and built-in Modems, PCMCIA slots etc. &amp;#8211; so they are pretty easy to find. With desktop computers it&amp;#8217;s another story &amp;#8211; hope you can help us out here!&lt;/p&gt;  &lt;p&gt;Please, again, we know lot&amp;#8217;s of &amp;#8220;workarounds&amp;#8221;, but what we need is a *WMI filter* and it has to return *TRUE* for *DESKTOPS* (or let&amp;#8217;s call the NON-LAPTOPS or NON-PORTABLES, it doesn&amp;#8217;t really matter). &lt;/p&gt;  &lt;p&gt;Remember, simplicity works - maybe the answer/solution is pretty straight forward? Feel free to post any additional questions to the mailing list!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;h3&gt;Another example of what has been tried&lt;/h3&gt;  &lt;p&gt;We could maybe try to go for presence of PCI (and not Mini-PCI) or AGP slots, as we expect most desktops to have PCI slots (and laptops to have Mini-PCI, but that would depend on the form factor) &amp;#8211; or maybe AGP (but does onboard VGA count as AGP? Any PCI VGA cards left out there? Yeah, probably...). If not we could maybe go for something like this: &lt;/p&gt;  &lt;p&gt;A) Select * From Win32_SystemSlot Where SlotDesignation = &amp;#8220;PCI%&amp;#8221;    &lt;br /&gt;Or     &lt;br /&gt;B) Select * From Win32_SystemSlot Where SlotDesignation = &amp;#8220;AGP&amp;#8221; &lt;/p&gt;  &lt;p&gt;However, this is not accepted as a solution as we cannot say that all desktop computers have AGP slots. But - maybe you can convince us otherwise?&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;h3&gt;Other cool Group Policy information:&lt;/h3&gt;  &lt;p&gt;You'll find additional Group Policy information at these sites:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.GPanswers.com" target="_blank"&gt;www.gpanswers.com&lt;/a&gt; - &lt;em&gt;The home of Group Policy guru and MVP Jeremy Moskowitz, check out the community there too!&lt;/em&gt;     &lt;br /&gt;&lt;a href="http://forums.microsoft.com/TechNet/ShowForum.aspx?ForumID=2023&amp;amp;SiteID=17" target="_blank"&gt;TechNet Group Policy Forum&lt;/a&gt; - A&lt;em&gt; brand new Group Policy forum on Microsoft TechNet&lt;/em&gt;     &lt;br /&gt;&lt;a href="http://blogs.technet.com/grouppolicy/default.aspx" target="_blank"&gt;The Group Policy Team&lt;/a&gt; - &lt;em&gt;The home of the Microsoft Group Policy Team&lt;/em&gt;     &lt;br /&gt;&lt;a href="http://heidelbergit.blogspot.com/" target="_blank"&gt;Jakob H. Heidelberg blog&lt;/a&gt;&amp;#160;&lt;em&gt;- My own blog, mostly about Group Policy and Security     &lt;br /&gt;&lt;/em&gt;&lt;a href="http://www.heidelbergit.dk" target="_blank"&gt;www.heidelbergit.dk&lt;/a&gt; -&lt;em&gt; My website with blog RSS, certifications, LinkedIn info etc.&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;em&gt;Hope to hear from you soon - O' Yee Knight of the Microsoft Group Policy Table! &lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7705972452692362853?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7705972452692362853/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7705972452692362853' title='11 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7705972452692362853'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7705972452692362853'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/wmi-filter-contest-are-you-knight-in.html' title='The WMI Filter Contest - are you the knight in shining armor?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>11</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3286327851838764270</id><published>2008-02-12T10:46:00.001+01:00</published><updated>2008-02-12T10:51:41.972+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='kb'/><category scheme='http://www.blogger.com/atom/ns#' term='Activation'/><category scheme='http://www.blogger.com/atom/ns#' term='knowledge base'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><title type='text'>A strange KB I would say - 240 days of Windows Server 2008 for nothing?</title><content type='html'>&lt;p&gt;Sometimes you come upon a strange KB article - which makes you wonder why that information is public or what's the general purpose of the article is... I found this one today:&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;em&gt;How to extend the Windows Server 2008 evaluation period&lt;/em&gt;&lt;/strong&gt;     &lt;br /&gt;&lt;a title="http://support.microsoft.com/kb/948472" href="http://support.microsoft.com/kb/948472"&gt;http://support.microsoft.com/kb/948472&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;u&gt;This is quoted from the article:&lt;/u&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;h4&gt;&lt;em&gt;&lt;strong&gt;SUMMARY&lt;/strong&gt;&lt;/em&gt;&lt;/h4&gt;  &lt;p&gt;&lt;em&gt;This article describes how to extend, or re-arm, the Windows Server 2008 evaluation period. The evaluation period is also known as the &amp;quot;activation grace&amp;quot; period. These instructions apply to any edition of Windows Server 2008. This includes evaluation copies. &lt;/em&gt;&lt;/p&gt;  &lt;h4&gt;&lt;em&gt;&lt;strong&gt;INTRODUCTION&lt;/strong&gt;&lt;/em&gt;&lt;/h4&gt;  &lt;p&gt;&lt;em&gt;Evaluating Windows Server 2008 software does not require product activation. Any edition of Windows Server 2008 may be installed without activation, and it may be evaluated for 60 days. Additionally, the 60-day evaluation period may be reset (re-armed) three times. This action extends the original 60-day evaluation period by up to 180 days for a total possible evaluation time of 240 days.      &lt;br /&gt;&lt;b&gt;Note&lt;/b&gt; Although you can reset the 60-day evaluation period, you cannot extend it beyond 60 days at any time. When you reset the current 60-day evaluation period, you lose whatever time is left on the previous 60-day evaluation period. Therefore, to maximize the total evaluation time, wait until close to the end of the current 60-day evaluation period before you reset the evaluation period. &lt;/em&gt;&lt;/p&gt;  &lt;h4&gt;&lt;em&gt;&lt;strong&gt;MORE INFORMATION&lt;/strong&gt;&lt;/em&gt;&lt;/h4&gt;  &lt;h5&gt;&lt;em&gt;&lt;strong&gt;How to install Windows Server 2008 without activating it&lt;/strong&gt;&lt;/em&gt;&lt;/h5&gt;  &lt;p&gt;&lt;em&gt;1. Run the Windows Server 2008 Setup program.     &lt;br /&gt;&lt;/em&gt;&lt;em&gt;2. When you are prompted to enter a product key for activation, do not enter a key. Click &lt;strong&gt;No&lt;/strong&gt; when Setup asks you to confirm your selection.       &lt;br /&gt;&lt;/em&gt;&lt;em&gt;3. You may be prompted to select the edition of Windows Server 2008 that you want to evaluate. Select the edition that you want to install.      &lt;br /&gt;&lt;b&gt;Note&lt;/b&gt; After Windows Server 2008 is installed, the edition cannot be changed without reinstalling it. &lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&lt;em&gt;4. When you are prompted, read the evaluation terms in the Microsoft Software License Terms, and then accept the terms.     &lt;br /&gt;&lt;/em&gt;&lt;em&gt;5. When the Windows Server 2008 Setup program is finished, your initial 60-day evaluation period starts. To check the time that is left on your current evaluation period, run the Slmgr.vbs script that is in the System32 folder. Use the &lt;b&gt;-dli&lt;/b&gt; switch to run this script. The &lt;b&gt;slmgr.vbs -dli &lt;/b&gt;command displays the number of days that are left in the current 60-day evaluation period.&lt;/em&gt;&lt;/p&gt;  &lt;h5&gt;&lt;em&gt;&lt;strong&gt;How to manually extend the evaluation period&lt;/strong&gt; &lt;/em&gt;&lt;/h5&gt; &lt;em&gt;When the initial 60-day evaluation period nears its end, you can run the Slmgr.vbs script to reset the evaluation period. To do this, follow these steps: &lt;/em&gt;  &lt;p&gt;&lt;em&gt;1. Click &lt;strong&gt;Start&lt;/strong&gt;, and then click &lt;strong&gt;Command Prompt&lt;/strong&gt;.      &lt;br /&gt;&lt;/em&gt;&lt;em&gt;2. Type slmgr.vbs -dli, and then press ENTER to check the current status of your evaluation period.     &lt;br /&gt;&lt;/em&gt;&lt;em&gt;3. To reset the evaluation period, type slmgr.vbs &amp;#8211;rearm, and then press ENTER.     &lt;br /&gt;&lt;/em&gt;&lt;em&gt;4. Restart the computer.     &lt;br /&gt;      &lt;br /&gt;&lt;/em&gt;&lt;em&gt;This resets the evaluation period to 60 days.     &lt;br /&gt;      &lt;br /&gt;&lt;/em&gt;&lt;em&gt;&lt;strong&gt;How to automate the extension of the evaluation period&lt;/strong&gt;&lt;/em&gt;&lt;/p&gt; &lt;em&gt;You may want to set up a process that automatically resets the evaluation period every 60 days. One way to automate this process is by using the Task Scheduler. You can configure the Task Scheduler to run the Slmgr.vbs script and to restart the server at a particular time. To do this, follow these steps: &lt;/em&gt;  &lt;p&gt;&lt;em&gt;1. Click &lt;strong&gt;Start&lt;/strong&gt;, point to &lt;strong&gt;Administrative Tools&lt;/strong&gt;, and then click &lt;strong&gt;Task Scheduler&lt;/strong&gt;.      &lt;br /&gt;&lt;/em&gt;&lt;em&gt;2. Copy the following sample task to the server, and then save it as an .xml file. For example, you can save the file as Extend.xml. &lt;/em&gt;&lt;code&gt;&lt;/code&gt;    &lt;pre&gt;&lt;em&gt;&amp;lt;?xml version=&amp;quot;1.0&amp;quot; encoding=&amp;quot;UTF-16&amp;quot;?&amp;gt;&lt;br /&gt;&amp;lt;Task version=&amp;quot;1.2&amp;quot; xmlns=&amp;quot;http://schemas.microsoft.com/windows/2004/02/mit/task&amp;quot;&amp;gt;&lt;br /&gt;  &amp;lt;RegistrationInfo&amp;gt;&lt;br /&gt;    &amp;lt;Date&amp;gt;2007-09-17T14:26:04.433&amp;lt;/Date&amp;gt;&lt;br /&gt;    &amp;lt;Author&amp;gt;Microsoft Corporation&amp;lt;/Author&amp;gt;&lt;br /&gt;  &amp;lt;/RegistrationInfo&amp;gt;&lt;br /&gt;  &amp;lt;Triggers&amp;gt;&lt;br /&gt;    &amp;lt;TimeTrigger id=&amp;quot;18c4a453-d7aa-4647-916b-af0c3ea16a6b&amp;quot;&amp;gt;&lt;br /&gt;      &amp;lt;Repetition&amp;gt;&lt;br /&gt;        &amp;lt;Interval&amp;gt;P59D&amp;lt;/Interval&amp;gt;&lt;br /&gt;        &amp;lt;StopAtDurationEnd&amp;gt;false&amp;lt;/StopAtDurationEnd&amp;gt;&lt;br /&gt;      &amp;lt;/Repetition&amp;gt;&lt;br /&gt;      &amp;lt;StartBoundary&amp;gt;2007-10-05T02:23:24&amp;lt;/StartBoundary&amp;gt;&lt;br /&gt;      &amp;lt;EndBoundary&amp;gt;2008-09-17T14:23:24.777&amp;lt;/EndBoundary&amp;gt;&lt;br /&gt;      &amp;lt;Enabled&amp;gt;true&amp;lt;/Enabled&amp;gt;&lt;br /&gt;    &amp;lt;/TimeTrigger&amp;gt;&lt;br /&gt;  &amp;lt;/Triggers&amp;gt;&lt;br /&gt;  &amp;lt;Principals&amp;gt;&lt;br /&gt;    &amp;lt;Principal id=&amp;quot;Author&amp;quot;&amp;gt;&lt;br /&gt;      &amp;lt;UserId&amp;gt;domain\alias&amp;lt;/UserId&amp;gt;&lt;br /&gt;      &amp;lt;LogonType&amp;gt;Password&amp;lt;/LogonType&amp;gt;&lt;br /&gt;      &amp;lt;RunLevel&amp;gt;HighestAvailable&amp;lt;/RunLevel&amp;gt;&lt;br /&gt;    &amp;lt;/Principal&amp;gt;&lt;br /&gt;  &amp;lt;/Principals&amp;gt;&lt;br /&gt;  &amp;lt;Settings&amp;gt;&lt;br /&gt;    &amp;lt;IdleSettings&amp;gt;&lt;br /&gt;      &amp;lt;Duration&amp;gt;PT10M&amp;lt;/Duration&amp;gt;&lt;br /&gt;      &amp;lt;WaitTimeout&amp;gt;PT1H&amp;lt;/WaitTimeout&amp;gt;&lt;br /&gt;      &amp;lt;StopOnIdleEnd&amp;gt;true&amp;lt;/StopOnIdleEnd&amp;gt;&lt;br /&gt;      &amp;lt;RestartOnIdle&amp;gt;false&amp;lt;/RestartOnIdle&amp;gt;&lt;br /&gt;    &amp;lt;/IdleSettings&amp;gt;&lt;br /&gt;    &amp;lt;MultipleInstancesPolicy&amp;gt;IgnoreNew&amp;lt;/MultipleInstancesPolicy&amp;gt;&lt;br /&gt;    &amp;lt;DisallowStartIfOnBatteries&amp;gt;true&amp;lt;/DisallowStartIfOnBatteries&amp;gt;&lt;br /&gt;    &amp;lt;StopIfGoingOnBatteries&amp;gt;true&amp;lt;/StopIfGoingOnBatteries&amp;gt;&lt;br /&gt;    &amp;lt;AllowHardTerminate&amp;gt;true&amp;lt;/AllowHardTerminate&amp;gt;&lt;br /&gt;    &amp;lt;StartWhenAvailable&amp;gt;false&amp;lt;/StartWhenAvailable&amp;gt;&lt;br /&gt;    &amp;lt;RunOnlyIfNetworkAvailable&amp;gt;false&amp;lt;/RunOnlyIfNetworkAvailable&amp;gt;&lt;br /&gt;    &amp;lt;AllowStartOnDemand&amp;gt;true&amp;lt;/AllowStartOnDemand&amp;gt;&lt;br /&gt;    &amp;lt;Enabled&amp;gt;true&amp;lt;/Enabled&amp;gt;&lt;br /&gt;    &amp;lt;Hidden&amp;gt;false&amp;lt;/Hidden&amp;gt;&lt;br /&gt;    &amp;lt;RunOnlyIfIdle&amp;gt;false&amp;lt;/RunOnlyIfIdle&amp;gt;&lt;br /&gt;    &amp;lt;WakeToRun&amp;gt;true&amp;lt;/WakeToRun&amp;gt;&lt;br /&gt;    &amp;lt;ExecutionTimeLimit&amp;gt;P3D&amp;lt;/ExecutionTimeLimit&amp;gt;&lt;br /&gt;    &amp;lt;DeleteExpiredTaskAfter&amp;gt;PT0S&amp;lt;/DeleteExpiredTaskAfter&amp;gt;&lt;br /&gt;    &amp;lt;Priority&amp;gt;7&amp;lt;/Priority&amp;gt;&lt;br /&gt;    &amp;lt;RestartOnFailure&amp;gt;&lt;br /&gt;      &amp;lt;Interval&amp;gt;PT1M&amp;lt;/Interval&amp;gt;&lt;br /&gt;      &amp;lt;Count&amp;gt;3&amp;lt;/Count&amp;gt;&lt;br /&gt;    &amp;lt;/RestartOnFailure&amp;gt;&lt;br /&gt;  &amp;lt;/Settings&amp;gt;&lt;br /&gt;  &amp;lt;Actions Context=&amp;quot;Author&amp;quot;&amp;gt;&lt;br /&gt;    &amp;lt;Exec&amp;gt;&lt;br /&gt;      &amp;lt;Command&amp;gt;C:\Windows\System32\slmgr.vbs&amp;lt;/Command&amp;gt;&lt;br /&gt;      &amp;lt;Arguments&amp;gt;-rearm&amp;lt;/Arguments&amp;gt;&lt;br /&gt;    &amp;lt;/Exec&amp;gt;&lt;br /&gt;    &amp;lt;Exec&amp;gt;&lt;br /&gt;      &amp;lt;Command&amp;gt;C:\Windows\System32\shutdown.exe&amp;lt;/Command&amp;gt;&lt;br /&gt;      &amp;lt;Arguments&amp;gt;/r&amp;lt;/Arguments&amp;gt;&lt;br /&gt;    &amp;lt;/Exec&amp;gt;&lt;br /&gt;  &amp;lt;/Actions&amp;gt;&lt;br /&gt;&amp;lt;/Task&amp;gt;&lt;br /&gt;&lt;br /&gt;&lt;/em&gt;&lt;/pre&gt;&lt;br /&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;&lt;em&gt;3. In the sample task, change the value of the following &amp;#8220;UserID&amp;#8221; tag to contain your domain and your alias: &lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;&amp;lt;UserId&amp;gt;&lt;var&gt;domain&lt;/var&gt;\&lt;var&gt;alias&lt;/var&gt;&amp;lt;/UserId&amp;gt;&lt;br /&gt;&lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;4. In the Task Scheduler, click &lt;strong&gt;Import Task&lt;/strong&gt; on the &lt;strong&gt;Action&lt;/strong&gt; menu.&lt;br /&gt;&lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;5. Click the sample task .xml file. For example, click &lt;strong&gt;Extend.xml&lt;/strong&gt;.&lt;br /&gt;&lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;6. Click &lt;strong&gt;Import&lt;/strong&gt;.&lt;br /&gt;&lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;7. Click the &lt;strong&gt;Triggers&lt;/strong&gt; tab.&lt;br /&gt;&lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;8. Click the &lt;strong&gt;One Time&lt;/strong&gt; trigger, and then click &lt;strong&gt;Edit&lt;/strong&gt;.&lt;br /&gt;&lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;9. Change the start date of the task to a date just before the end of your current evaluation period.&lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;10. Click &lt;strong&gt;OK&lt;/strong&gt;, and then exit the Task Scheduler.&lt;br /&gt;&lt;br /&gt;    &lt;br /&gt;&lt;br /&gt;&lt;br /&gt;    &lt;br /&gt;&lt;/em&gt;&lt;em&gt;The Task Scheduler will now run the evaluation reset operation on the date that you specified. &lt;/em&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;&amp;#160;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;-&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3286327851838764270?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3286327851838764270/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3286327851838764270' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3286327851838764270'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3286327851838764270'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/strange-kb-i-would-say-240-days-of.html' title='A strange KB I would say - 240 days of Windows Server 2008 for nothing?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2096865539859089141</id><published>2008-02-10T11:22:00.001+01:00</published><updated>2008-02-10T11:23:27.718+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='Patching'/><category scheme='http://www.blogger.com/atom/ns#' term='MVP'/><category scheme='http://www.blogger.com/atom/ns#' term='windows xp'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Windows Vista vs. Windows XP patching</title><content type='html'>&lt;p&gt;On January 24 MVP:Security Jesper Johansson posted a very good blog entry, &lt;a href="http://msinfluentials.com/blogs/jesper/archive/2008/01/24/do-vista-users-need-fewer-patches-than-xp-users.aspx" target="_blank"&gt;&amp;quot;Do Vista Users Need Fewer Security Patches Than XP Users?&amp;quot;&lt;/a&gt;, about Windows XP vs. Windows Vista security. This was in reply to the &lt;a href="http://blogs.technet.com/security/archive/2008/01/23/download-windows-vista-one-year-vulnerability-report.aspx" target="_blank"&gt;&amp;quot;One Year Vulnerability Report&amp;quot;&lt;/a&gt; by Jeff Jones (who is the Director of Security at Microsoft).&lt;/p&gt;  &lt;p&gt;It's VERY interesting reading&amp;#160; showing how strong Vista is - oh, and Jesper takes that even further comparing IE7 and Firefox patching. Cool stuff.&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Enjoy!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2096865539859089141?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2096865539859089141/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2096865539859089141' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2096865539859089141'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2096865539859089141'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/windows-vista-vs-windows-xp-patching.html' title='Windows Vista vs. Windows XP patching'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-788412915493669835</id><published>2008-02-09T00:48:00.001+01:00</published><updated>2008-02-09T00:48:31.720+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='service pack'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='wsus'/><title type='text'>WSUS 3.0 SP1 is out there!</title><content type='html'>&lt;p&gt;The final version has been released: &lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Windows Server Update Services 3.0 SP1&lt;/strong&gt; - &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=F87B4C5E-4161-48AF-9FF8-A96993C688DF&amp;amp;displaylang=en" target="_blank"&gt;download here&lt;/a&gt;.    &lt;br /&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;u&gt;Quote:&lt;/u&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&lt;i&gt;&lt;b&gt;Overview&lt;/b&gt;      &lt;br /&gt;Windows Server Update Services 3.0 Service Pack 1 (WSUS 3.0 SP1) delivers important customer-requested management, stability, and performance improvements, while incorporating further enhancements to local publishing of drivers and the Client Servicing API addition.       &lt;br /&gt;WSUS 3.0 SP1 delivers new features that enable administrators to more easily manage and deploy updates across the organization. This package installs both the WSUS 3.0 Server and WSUS 3.0 Administration Console components, for all Windows Server 2003 SP1 supported languages. Additionally, the WSUS 3.0 SP1 client is included in all supported client platform languages. You must install the server components on a computer running Windows Server 2008 or Windows Server 2003 SP1 or later. You may install the Administration Console on a remote computer running Windows Server 2008, Windows Vista, Windows Server 2003 SP1, or Windows XP SP2.&lt;/i&gt;&lt;/p&gt;  &lt;p&gt;&lt;i&gt;&lt;b&gt;Supported Operating Systems: &lt;/b&gt;      &lt;br /&gt;Windows Server 2003 Service Pack 1; Windows Server 2008      &lt;br /&gt;- Note: there's a special guide for SBS 2003 environments...&lt;/i&gt;    &lt;br /&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;u&gt;Additional information:&lt;/u&gt;&lt;/b&gt;&lt;/p&gt;  &lt;p&gt;&lt;b&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=8a283ea4-1545-47d5-a86c-5ca379bafb9c&amp;amp;DisplayLang=en" target="_blank"&gt;Release Notes for Windows Server Update Services 3.0 SP1&lt;/a&gt;&lt;/b&gt;    &lt;br /&gt;    &lt;br /&gt;&lt;b&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=1b5eac37-bd48-41fd-869b-f9b06fa64a61&amp;amp;DisplayLang=en" target="_blank"&gt;Microsoft Windows Server Update Services 3.0 SP1 Overview&lt;/a&gt;&lt;/b&gt;    &lt;br /&gt;    &lt;br /&gt;&lt;b&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=208e93d1-e1cd-4f38-ad1e-d993e05657c9&amp;amp;DisplayLang=en" target="_blank"&gt;Deploying Microsoft Windows Server Update Services 3.0 SP1&lt;/a&gt;&lt;/b&gt;    &lt;br /&gt;    &lt;br /&gt;&lt;b&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=c8fa2fd1-72f6-4f19-a1b0-f689dae14be6&amp;amp;DisplayLang=en" target="_blank"&gt;Step-by-Step Guide to Getting Started with Microsoft Windows Server Update Services 3.0 SP1&lt;/a&gt;&lt;/b&gt;    &lt;br /&gt;    &lt;br /&gt;&lt;b&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=66d250fa-670f-4a49-95ec-2ffda7691f55&amp;amp;DisplayLang=en" target="_blank"&gt;Microsoft Windows Server Update Services 3.0 SP1 Operations Guide&lt;/a&gt;&lt;/b&gt;    &lt;br /&gt;    &lt;br /&gt;&lt;b&gt;&lt;a href="http://technet2.microsoft.com/WindowsServerSolutions/SBS/en/library/de2e9436-f23f-47f0-b840-e8b3e72182751033.mspx?mfr=true" target="_blank"&gt;Installing Windows Server Update Services 3.0 on Windows Small Business Server 2003&lt;/a&gt;&lt;/b&gt;    &lt;br /&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Enjoy!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-788412915493669835?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/788412915493669835/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=788412915493669835' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/788412915493669835'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/788412915493669835'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/wsus-30-sp1-is-out-there.html' title='WSUS 3.0 SP1 is out there!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3296258646097365317</id><published>2008-02-08T16:00:00.001+01:00</published><updated>2008-02-08T16:00:18.488+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='anti-virus'/><category scheme='http://www.blogger.com/atom/ns#' term='online scanner'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='anti-malware'/><title type='text'>Why a single AV engine is not enough!</title><content type='html'>&lt;p&gt;This is just to prove my point - a single AV engine is not enough if you want to be secure.&lt;/p&gt;  &lt;p&gt;I had this problem today at a customer - a user had received a link in her Messenger... And she clicked it and probably accepted to execute the thing =&amp;gt; Pooof (all her MSN Messenger contacts were spammed with links to the worm)!&lt;/p&gt;  &lt;p&gt;We tried to use some different online scanners - as the local AV engines (no names mentioned) didn't find anything - even after updating the signatures. The online scanners I tried first didn't show anything. So, this particular online scanner turned out to be VERY cool and effective:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/WhyasingleAVengineisnotenough_A847/image.png"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="244" alt="image" src="http://www.heidelbergit.dk/Screenshots/WhyasingleAVengineisnotenough_A847/image_thumb.png" width="219" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;I can recommend this scanning link whenever you have a suspicious file you want to scan: &lt;a href="http://virusscan.jotti.org/"&gt;http://virusscan.jotti.org/&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;As you can see it uses several engines to determine if the file is infected or not - so nice, thanx!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;p&gt;&lt;a href="http://virusscan.jotti.org/"&gt;&amp;#160;&lt;/a&gt;&lt;a href="http://virusscan.jotti.org/"&gt;&amp;#160;&lt;/a&gt;&lt;a href="http://virusscan.jotti.org/"&gt;&amp;#160;&lt;/a&gt;&lt;a href="http://virusscan.jotti.org/"&gt;&amp;#160;&lt;/a&gt;&lt;a href="http://virusscan.jotti.org/"&gt;&amp;#160;&lt;/a&gt;&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3296258646097365317?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3296258646097365317/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3296258646097365317' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3296258646097365317'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3296258646097365317'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/why-single-av-engine-is-not-enough.html' title='Why a single AV engine is not enough!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3285589108773605095</id><published>2008-02-08T11:17:00.001+01:00</published><updated>2008-02-08T12:07:04.174+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='anti-virus'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='anti-malware'/><category scheme='http://www.blogger.com/atom/ns#' term='online scanners'/><title type='text'>Free online scanners</title><content type='html'>&lt;p&gt;Just a quick list of online scanners - will try to update regularly - please post or send me an email if you have other great links!&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;General scanner (very cool):      &lt;br /&gt;&lt;/strong&gt;&lt;a title="http://virusscan.jotti.org/" href="http://virusscan.jotti.org/"&gt;http://virusscan.jotti.org/&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;File/Machine scanning:&lt;/strong&gt;     &lt;br /&gt;&lt;a href="http://housecall65.trendmicro.com"&gt;http://housecall65.trendmicro.com&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.pandasecurity.com/homeusers/solutions/activescan"&gt;http://www.pandasecurity.com/homeusers/solutions/activescan&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.bitdefender.com/scan8/ie.html"&gt;http://www.bitdefender.com/scan8/ie.html&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://security.symantec.com/sscv6/default.asp?langid=ie&amp;amp;venid=sym"&gt;http://security.symantec.com/sscv6/default.asp?langid=ie&amp;amp;venid=sym&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://support.f-secure.com/enu/home/ols.shtml"&gt;http://support.f-secure.com/enu/home/ols.shtml&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://onlinescan.avast.com"&gt;http://onlinescan.avast.com&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.kaspersky.com/scanforvirus"&gt;http://www.kaspersky.com/scanforvirus&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.eset.com/onlinescan"&gt;http://www.eset.com/onlinescan&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://www.virustotal.com"&gt;http://www.virustotal.com&lt;strong&gt;&lt;/strong&gt;&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Microsoft Malicious Software Removal Tool&lt;/strong&gt;     &lt;br /&gt;&lt;a href="http://www.microsoft.com/security/malwareremove/default.mspx"&gt;http://www.microsoft.com/security/malwareremove/default.mspx&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;GFI EndPointScan&lt;/strong&gt;     &lt;br /&gt;&lt;a href="http://www.endpointscan.com/"&gt;http://www.endpointscan.com/&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Acunetix WVS (is your website hackable?)&lt;/strong&gt;     &lt;br /&gt;&lt;a href="http://www.acunetix.com/cross-site-scripting/scanner.htm"&gt;http://www.acunetix.com/cross-site-scripting/scanner.htm&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Test email system&lt;/strong&gt;     &lt;br /&gt;&lt;a href="http://www.windowsecurity.com/emailsecuritytest"&gt;http://www.windowsecurity.com/emailsecuritytest&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3285589108773605095?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3285589108773605095/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3285589108773605095' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3285589108773605095'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3285589108773605095'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/free-online-scanners.html' title='Free online scanners'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-785702986328957263</id><published>2008-02-06T16:38:00.001+01:00</published><updated>2008-02-06T16:38:36.140+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Windows Server 2008 RTM Administrative Template and Security settings reference spreadsheet available</title><content type='html'>&lt;p&gt;The Microsoft Group Policy Team has released the very useful Excel spreadsheet describing Administrative Template and Security policy settings.&lt;/p&gt;  &lt;p&gt;Check out the GP team blog &lt;a href="http://blogs.technet.com/grouppolicy/archive/2008/02/05/windows-server-2008-rtm-administrative-template-and-security-settings-reference-spreadsheet.aspx" target="_blank"&gt;here&lt;/a&gt; or download the XLS/XLSX spreadsheet right &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=2043b94e-66cd-4b91-9e0f-68363245c495&amp;amp;displaylang=en" target="_blank"&gt;here&lt;/a&gt;!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Enjoy... ;-)&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-785702986328957263?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/785702986328957263/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=785702986328957263' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/785702986328957263'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/785702986328957263'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/windows-server-2008-rtm-administrative.html' title='Windows Server 2008 RTM Administrative Template and Security settings reference spreadsheet available'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-9158193617533340749</id><published>2008-02-06T00:45:00.001+01:00</published><updated>2008-02-06T00:48:14.964+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='webcast'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='webinar'/><category scheme='http://www.blogger.com/atom/ns#' term='Mac'/><category scheme='http://www.blogger.com/atom/ns#' term='Linux'/><category scheme='http://www.blogger.com/atom/ns#' term='Unix'/><category scheme='http://www.blogger.com/atom/ns#' term='Jeremy Moskowitz'/><title type='text'>Using Group Policy to Secure and Manage UNIX, Linux and Mac Systems</title><content type='html'>&lt;p&gt;This new webinar from &lt;a href="http://www.centrify.com"&gt;www.centrify.com&lt;/a&gt; has been announced lately - featuring my good pal Jeremy Moskowitz - it's gonna be awesome!&lt;/p&gt;  &lt;p&gt;Check out the content and sign up for a great show - 100% guarantee:&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;em&gt;Five Top Benefits of Using Windows Group Policy to Secure and Manage UNIX, Linux and Mac Systems&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;   &lt;br /&gt;&lt;em&gt;&amp;#160;&amp;#160;&amp;#160; Date:&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; &lt;strong&gt;February 21, 2008&lt;/strong&gt;&amp;#160;&amp;#160;&amp;#160;&amp;#160; &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Time:&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160;&amp;#160; &lt;strong&gt;2 p.m. Eastern US (11 a.m. Pacific)&lt;/strong&gt;&amp;#160;&amp;#160;&amp;#160;&amp;#160; &lt;br /&gt;&amp;#160;&amp;#160;&amp;#160; Duration:&amp;#160;&amp;#160;&amp;#160;&amp;#160; &lt;strong&gt;1 hour&lt;/strong&gt;&amp;#160;&amp;#160; &lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&lt;em&gt;&amp;#160; &lt;br /&gt;In this live webinar, Linux, UNIX and Mac admins will get a concise overview of how Group Policy works from Jeremy Moskowitz, author of authoritative works on both Windows Group Policy and Windows/Linux integration. Centrify's David McNeely will then explain the workings of the Group Policy engine that is seamlessly built into DirectControl and the unique benefits of using it for non-Windows policy enforcement. He'll also demonstrate using Windows Group Policy to lock down user and security settings on a Mac desktop system.&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&lt;em&gt;Register now (&lt;/em&gt;&lt;em&gt;&lt;a href="http://www.centrify.com/request.asp?o=41&amp;amp;c=92&amp;amp;f=5" target="_blank"&gt;*CLICK HERE*&lt;/a&gt;&lt;/em&gt;&lt;em&gt;) and we'll send you a free copy of our complementary white paper on extending Windows Group Policy to Linux, UNIX and Mac.&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-9158193617533340749?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/9158193617533340749/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=9158193617533340749' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/9158193617533340749'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/9158193617533340749'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/02/using-group-policy-to-secure-and-manage.html' title='Using Group Policy to Secure and Manage UNIX, Linux and Mac Systems'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-5206430557561370534</id><published>2008-01-30T16:10:00.001+01:00</published><updated>2008-01-30T16:14:15.549+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='Darren Mar-Elia'/><category scheme='http://www.blogger.com/atom/ns#' term='Powershell'/><category scheme='http://www.blogger.com/atom/ns#' term='gpoguy.com'/><title type='text'>Powershell Group Policy Remote Refresh</title><content type='html'>&lt;p&gt;Check out this new &lt;a href="http://sdmsoftware.com/blog/2008/01/powershell_group_policy_remote.html" target="_blank"&gt;Powershell Cmdlet&lt;/a&gt; from Darren Mar-Elia:&lt;/p&gt;  &lt;p&gt;We have had the capability with &lt;a href="http://www.windowsecurity.com/articles/How-Force-Remote-Group-Policy-Processing.html" target="_blank"&gt;other tools/script&lt;/a&gt; - but using PS is new, great stuff!&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-5206430557561370534?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/5206430557561370534/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=5206430557561370534' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5206430557561370534'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5206430557561370534'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/powershell-group-policy-remote-refresh.html' title='Powershell Group Policy Remote Refresh'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1555147591156892721</id><published>2008-01-30T13:40:00.001+01:00</published><updated>2008-01-30T13:41:45.853+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='The onion ring'/><category scheme='http://www.blogger.com/atom/ns#' term='Tor'/><category scheme='http://www.blogger.com/atom/ns#' term='exploit'/><category scheme='http://www.blogger.com/atom/ns#' term='encryption'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><category scheme='http://www.blogger.com/atom/ns#' term='hacking'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><category scheme='http://www.blogger.com/atom/ns#' term='ISA'/><title type='text'>Limiting Tor access with ISA 2004/2006</title><content type='html'>&lt;p&gt;If you have looked into &amp;quot;The onion ring&amp;quot;, or just &amp;quot;&lt;strong&gt;Tor&lt;/strong&gt;&amp;quot;, you have probably wondered if it would be wise to block access from these &lt;strong&gt;anonymous&lt;/strong&gt; servers (or maybe just the exit nodes). I am not gonna talk about how the encrypted Tor network works, as a great deal of info can be found &amp;quot;out there&amp;quot;. Main source should be: &lt;a href="http://www.torproject.org" target="_blank"&gt;www.torproject.org&lt;/a&gt; - and perhaps &lt;a href="http://en.wikipedia.org/wiki/Tor_(anonymity_network)" target="_blank"&gt;WikiPedia&lt;/a&gt;.&lt;/p&gt;  &lt;p&gt;As a security guy (or &lt;strong&gt;ISA&lt;/strong&gt; administrator maybe), you ask yourself &amp;quot;&lt;strong&gt;why&lt;/strong&gt; do these people want to be anonymous&amp;quot;? In this case &amp;quot;anonymous&amp;quot; means that &amp;quot;they&amp;quot; don't want targets on the Internet to see the originating IP address (the source). A &amp;quot;target&amp;quot; is typically a web site or some other web service.&lt;/p&gt;  &lt;p&gt;The answer? Well, first you gotta ask yourself: &amp;quot;&lt;strong&gt;who&lt;/strong&gt; are &lt;em&gt;they&lt;/em&gt;&amp;quot;? And there's really no good answer to that question I guess - who really knows? All we can do is guess, so let me turn these questions around: if I were to try out a &lt;strong&gt;hack&lt;/strong&gt;, or some new &lt;strong&gt;exploit&lt;/strong&gt;, would I do it directly over my personal WAN IP? Or would I try to &amp;quot;hide&amp;quot; my originating IP? If you look at it in that perspective Tor networks are GREAT for hiding out - the whole idea is that it shouldn't be possible to track the communication. What you don't know can hurt you, right? I'm not saying all Tor users are hackers or anything, because they are not, but you have to look at the odds... What do you think? I cant help thinking, that if you hide from someone you have something (bad) to hide - but hey, it could be a Christmas present, right?&lt;/p&gt;  &lt;p&gt;Anyway - you have to decide - do I want these people to be able to access my web sites and services or not? I'm not going to decide on your behalf - that's politics!&lt;/p&gt;  &lt;p&gt;So, what can we do about it if we want them out? Well, after reading Thomas Shinders &lt;a href="http://blogs.isaserver.org/shinder/2008/01/14/hammerofgod-computer-sets-block-and-log-by-country/" target="_blank"&gt;Blog entry &amp;quot;HammerOfGod Computer Sets &amp;#8212; Block and Log by Country&amp;quot;&lt;/a&gt; I got an idea. How about downloading a list of Tor servers, import it into a &lt;strong&gt;Computer Set&lt;/strong&gt; (CS) and make sure that CS is an &lt;strong&gt;Exception&lt;/strong&gt; on all of you Published services? This way hackers out there, behind Tor servers, won't be able to poke around your IIS servers or whatever you have.&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;So, I started a search for Tor lists - the best thing would probably be to create it yourself dynamically - but that would take programming skills that I unfortunately haven't got. I'm just a scripting kinda guy... The thing is, you would need to have a Tor client installed and from that extract the list once in a while - not possible for me (maybe you can do it easily - please post a &amp;quot;how to&amp;quot; then).&lt;/p&gt;  &lt;p&gt;But, then I found a &lt;a href="http://proxy.org/tor_blacklist.txt" target="_blank"&gt;list&lt;/a&gt; on &lt;a href="http://www.proxy.org" target="_blank"&gt;Proxy.org&lt;/a&gt; - this list it updated regularly - the only thing is, that this list is formatted for easy import on Apache servers, definitely not ISA. But hey, we can change the formatting in a script and then call the &amp;quot;&lt;a href="http://www.microsoft.com/technet/isa/2006/development/computerset.mspx" target="_blank"&gt;AddComputersToComputerSet.vbs&lt;/a&gt;&amp;quot; script from Microsoft... Simple, all we have to do then, is to configure the CS exceptions on our ISA rules, schedule the script and never touch it again!&lt;/p&gt;  &lt;p&gt;So, I created a simple script for:&lt;/p&gt;  &lt;p&gt;a) Downloading the latest Tor server list from Proxy.org    &lt;br /&gt;b) After the download it creates a new file with the correct format (machine_name&amp;lt;tab&amp;gt;IP_address)     &lt;br /&gt;c) And then it calls the AddComputersToComputerSet.vbs with the correct parameters&lt;/p&gt;  &lt;p&gt;You can &lt;a href="http://www.heidelbergit.dk/Code/TorList.vbs" target="_blank"&gt;download the script here&lt;/a&gt; - also download the script from MS (link above) and place them in the same directory. You will need a bit of VBS knowledge to &amp;quot;tweak&amp;quot; the script(s), but I've tried to make the code &amp;quot;easy understandable&amp;quot;. Now, make sure you can run it from your ISA box (it downloads over HTTP), and then schedule the thing (oh, and remember to remove the &lt;strong&gt;Msgbox &amp;quot;Done!&amp;quot;&lt;/strong&gt; line if you want this as a scheduled task).&lt;/p&gt;  &lt;p&gt;If you want it to run from another machine, take a look at the link to the AddComputersToComputerSet I provided above (some changes are needed).&lt;/p&gt;  &lt;p&gt;Please report back if you have any bug reports or ideas! It provided &amp;quot;As Is&amp;quot; - after downloading you're on your own :)&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;The dynamically created/updated ISA Computer Set:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/LimitingTORaccesswithISA20042006_902B/CSTORSERVERS.jpg"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="244" alt="CS-TOR-SERVERS" src="http://www.heidelbergit.dk/Screenshots/LimitingTORaccesswithISA20042006_902B/CSTORSERVERS_thumb.jpg" width="221" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;The ISA Rule/Publishing Exceptions:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/LimitingTORaccesswithISA20042006_902B/RuleExceptions.jpg"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="244" alt="Rule-Exceptions" src="http://www.heidelbergit.dk/Screenshots/LimitingTORaccesswithISA20042006_902B/RuleExceptions_thumb.jpg" width="220" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;&lt;strong&gt;What's missing?&lt;/strong&gt;     &lt;br /&gt;I can think of a lot of things I'd like to add in there - but the idea with this blog entry is to &amp;quot;spread the word&amp;quot; and a Proof of Concept.&lt;/p&gt;  &lt;p&gt;Personally I want to add logging of script actions, email alerts if the list is unavailable or some other errors occur. Also, there's a weakness in case the downloadable list is compromised somehow. Say someone adds Internal/Private/&amp;quot;not-Tor&amp;quot; IPs etc. to the list, it just might give some strange results for your users. So, we have to trust the list is OK secure - but it would be a good idea to put in some sort of validation on what IP addresses are put into this particular CS.&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Hope you can use this :)&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1555147591156892721?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1555147591156892721/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1555147591156892721' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1555147591156892721'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1555147591156892721'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/limiting-tor-access-with-isa-20042006.html' title='Limiting Tor access with ISA 2004/2006'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2804222547487102510</id><published>2008-01-29T09:59:00.001+01:00</published><updated>2008-01-29T09:59:22.739+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='security'/><title type='text'>Is your company prepared for 2008?</title><content type='html'>&lt;p&gt;Read an interesting piece of information about the most likely security threats in 2008 - &lt;a href="http://www.sans.org/2008menaces/?utm_source=web-sans&amp;amp;utm_medium=text-ad&amp;amp;utm_content=text-link_2008menaces_homepage&amp;amp;utm_campaign=Top_10__Cyber_Security_Menaces_-_2008&amp;amp;ref=22218" target="_blank"&gt;read it here!&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;Top Ten Cyber Security Menaces for 2008:&lt;/p&gt;  &lt;ol&gt;   &lt;li&gt;Increasingly Sophisticated Web Site Attacks That Exploit Browser Vulnerabilities - Especially On Trusted Web Sites&lt;/li&gt;    &lt;li&gt;Increasing Sophistication And Effectiveness In Botnets&lt;/li&gt;    &lt;li&gt;Cyber Espionage Efforts By Well Resourced Organizations Looking To Extract Large Amounts Of Data - Particularly Using Targeted Phishing&lt;/li&gt;    &lt;li&gt;Mobile Phone Threats, Especially Against iPhones And Android-Based Phones; Plus VOIP&lt;/li&gt;    &lt;li&gt;Insider Attacks&lt;/li&gt;    &lt;li&gt;Advanced Identity Theft from Persistent Bots&lt;/li&gt;    &lt;li&gt;Increasingly Malicious Spyware&lt;/li&gt;    &lt;li&gt;Web Application Security Exploits&lt;/li&gt;    &lt;li&gt;Increasingly Sophisticated Social Engineering Including Blending Phishing with VOIP and Event Phishing&lt;/li&gt;    &lt;li&gt;Supply Chain Attacks Infecting Consumer Devices (USB Thumb Drives, GPS Systems, Photo Frames, etc.) Distributed by Trusted Organizations&lt;/li&gt; &lt;/ol&gt;  &lt;p&gt;The ranked list is created by Stephen Northcutt, Ed Skoudis, Marc Sachs, Johannes Ullrich, Tom Liston, Eric Cole, Eugene Schultz, Rohit Dhamankar, Amit Yoran, Howard Schmidt, Will Pelgrin, and Alan Paller.&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2804222547487102510?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2804222547487102510/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2804222547487102510' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2804222547487102510'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2804222547487102510'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/is-your-company-prepared-for-2008.html' title='Is your company prepared for 2008?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1588918933256463878</id><published>2008-01-25T12:42:00.001+01:00</published><updated>2008-01-25T12:42:55.363+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SQL Injection'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='SQL'/><title type='text'>SQL attacks - the lethal injection</title><content type='html'>&lt;p&gt;Hi there,&lt;/p&gt;  &lt;p&gt;Let everybody know the two very simple golden rules when it comes to web-applications that are communicating with SQL servers:&lt;/p&gt;  &lt;p&gt;1. Never send user input text strings directly to the (backend) SQL server(s). Make sure to &amp;quot;clean it up&amp;quot; first (eg. no special chars etc.). Only accept thing you KNOW you want.&lt;/p&gt;  &lt;p&gt;2. Always use Stored Procedures and call them with arguments instead of letting text strings (SQL injections) take control of your (backend) SQL server(s).&lt;/p&gt;  &lt;p&gt;Sticking to those rules will make life a lot easier for admins, consultant and security guys like me. Tell you company developers, thirds party software vendors etc. to stick to the rules (even though they should know them by heart already) - spread the word and life will be a lot easier for all of us good people around the globe :)&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1588918933256463878?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1588918933256463878/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1588918933256463878' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1588918933256463878'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1588918933256463878'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/sql-attacks-lethal-injection.html' title='SQL attacks - the lethal injection'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1755466933213288177</id><published>2008-01-25T00:48:00.001+01:00</published><updated>2008-01-25T00:54:37.441+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Site Filtering'/><category scheme='http://www.blogger.com/atom/ns#' term='Security Descriptors'/><category scheme='http://www.blogger.com/atom/ns#' term='OU Filtering'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='Shadow Groups'/><category scheme='http://www.blogger.com/atom/ns#' term='WMI Filters'/><category scheme='http://www.blogger.com/atom/ns#' term='gpo'/><category scheme='http://www.blogger.com/atom/ns#' term='Security Filtering'/><title type='text'>Yes of course you can assign Group Policies to Security Groups!</title><content type='html'>&lt;p&gt;I have to blog this right away - it will be part of a larger &amp;quot;GP Processing&amp;quot; article at some point though... But this is IMHO important stuff which needs to get out there quick :)&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;I've heard the following sentence too many times (in one way or the other): &amp;quot;You can only assign Group Policy Objects to Site, Domain Level or OU's&amp;quot;...&lt;/p&gt;  &lt;p&gt;- but that's only &lt;u&gt;partly&lt;/u&gt; true! Normally in newsgroups, forums etc. this leaves the readers (eg. someone who asked a GP question or whatever) with the impression that you cannot &amp;quot;hit&amp;quot; members of a certain &lt;strong&gt;Security Group&lt;/strong&gt; only (which leaves you with &lt;strong&gt;&amp;quot;Site/Domain/OU Filtering&amp;quot;&lt;/strong&gt; and/or &lt;strong&gt;&amp;quot;WMI Filtering&amp;quot;&lt;/strong&gt; as the only possible a choices available). But that's simply not fair to the amazing Group Policy processing engine!&lt;/p&gt;  &lt;p&gt;Even though &amp;quot;WMI Filtering&amp;quot; is pretty well-known these days (after WS2003 arrived), many people tend to forget the little - but extremely effective and flexible - thing called &lt;strong&gt;&amp;quot;Security Filtering&amp;quot;&lt;/strong&gt; (even though it's somewhat more &amp;quot;Basic&amp;quot; compared to WMI)...&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;em&gt;Let's talk about it for a minute or two if you are interested...&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;You can set this kind of filtering within the Group Policy Management Console (GPMC) on either the Scope tab:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="208" alt="image" src="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_thumb.png" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;- or the Delegation tab (a bit more Advanced):&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_3.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="207" alt="image" src="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_thumb_3.png" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;As you can see, by &lt;strong&gt;DEFAULT&lt;/strong&gt; all Group Policy Objects (GPO) include &lt;strong&gt;&amp;quot;Authenticated Users&amp;quot;&lt;/strong&gt; with both &lt;strong&gt;Allow:&amp;quot;Read&amp;quot;&lt;/strong&gt; and &lt;strong&gt;Allow:&amp;quot;Apply Group Policy&amp;quot;&lt;/strong&gt; permissions set. Both of these permissions are needed for &lt;u&gt;users and computers&lt;/u&gt; to take on (or process) a given GPO:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_4.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="244" alt="image" src="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_thumb_4.png" width="211" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;The thing about the very important &amp;quot;Authenticated Users&amp;quot; group is that it includes &lt;strong&gt;ALL User AND Computer accounts/objects within the AD domain&lt;/strong&gt; (Domain Controllers too, right). So, by default a GPO applies to both computers and users (we are not going to talk about disabling GPO parts etc. now). &lt;/p&gt;  &lt;p&gt;That's the &amp;quot;technical&amp;quot; explanation why policies placed on    &lt;br /&gt;a) the Site applies to ALL users and computers within the Site (users site follows computer site, site follows IP address)    &lt;br /&gt;b) the Domain Level applies to ALL users and computers within the Domain    &lt;br /&gt;c) any given OU applies to ALL users and computers within that particular OU (and sub-OUs for that matter)    &lt;br /&gt;=&amp;gt; because the &amp;quot;Authenticated Users&amp;quot; security group is there by default. These default permissions on new GPOs are handled by something called &lt;strong&gt;&amp;quot;Security Descriptors&amp;quot;&lt;/strong&gt;, but more on that in some other blog or article.&lt;/p&gt;  &lt;p&gt;So, we have Security permission on all of our GPOs (unfortunately not the GPO links, but that's another talk) - leaving us with GREAT power to control to whom he particular GPO should be assigned (or 'applied'). All we need to do is to change the default permissions and &amp;lt;Zaboooka!&amp;gt; we are in complete control.&lt;/p&gt;  &lt;p&gt;First step is generally to &lt;strong&gt;remove&lt;/strong&gt; the &amp;quot;Authenticated Users&amp;quot; group from the GPO in question. Click Remove (below Security Filtering section) on the Scope tab and click OK:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_5.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="172" alt="image" src="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_thumb_5.png" width="244" border="0" /&gt;&lt;/a&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Click &lt;strong&gt;Add...&lt;/strong&gt; and select the domain security group you want to &amp;quot;hit&amp;quot; - click OK when done:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_6.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="130" alt="image" src="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_thumb_6.png" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;And &amp;lt;poof&amp;gt;, this GPO will only apply to members of &amp;quot;The Sales Group&amp;quot; - or whatever group (or user, or computer object...) you selected:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_7.png"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="244" alt="image" src="http://www.heidelbergit.dk/Screenshots/YesofcourseyoucanassignGroupPoliciestoSe_148A1/image_thumb_7.png" width="202" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Now all you need to do is to &lt;strong&gt;link&lt;/strong&gt; the GPO to the Domain Level (or Site or OU if that's better in your case) - but the &lt;u&gt;Domain Level should be fine for most environments&lt;/u&gt;.&lt;/p&gt;  &lt;p&gt;Now, you could turn this around and Exclude certain groups, users or computers - by setting &lt;strong&gt;Deny&lt;/strong&gt;:&amp;quot;Apply Group Policy&amp;quot; instead. In some cases that might be the best choice - but as always with &amp;quot;deny&amp;quot; you have to watch out (manly because deny overwrites allow)!&lt;/p&gt;  &lt;p&gt;Also note, that Security groups can include both user and computer accounts - we are maybe used to thinking that groups are for users only (in my experience most admins know the &amp;quot;Domain Users&amp;quot; group - but the &amp;quot;Domain Computers&amp;quot; group is not that well known)... But, with this in mind, you could make a group of computers instead of applying a WMI filter for instance (which is generally slower).&lt;/p&gt;  &lt;p&gt;You could use other methods for setting permissions than the GPMC (like scripts) - but the GPMC is a wonderful tool for doing this easily - no sweat!&lt;/p&gt;  &lt;p&gt;One way of automatically creating Security Groups from members of an OU is described in my article &lt;a title="Article" href="http://www.windowsecurity.com/articles/Configuring-Granular-Password-Settings-Windows-Server-2008-Part2.html" target="_blank"&gt;&amp;quot;Configuring Granular Password Settings in Windows Server 2008, Part 2&amp;quot;&lt;/a&gt; - these groups are referred to as &lt;strong&gt;Shadow Groups&lt;/strong&gt; (cool, right). In some &amp;quot;filtering situations&amp;quot; that is nice to know...&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Wow - that was nice getting it off my shoulders, and now I can refer to this blog entry whenever I get the question again - and so can you of course :-)&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1755466933213288177?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1755466933213288177/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1755466933213288177' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1755466933213288177'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1755466933213288177'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/yes-of-course-you-can-assign-group.html' title='Yes of course you can assign Group Policies to Security Groups!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7684321560816205791</id><published>2008-01-17T21:47:00.001+01:00</published><updated>2008-01-17T21:47:23.745+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='network'/><category scheme='http://www.blogger.com/atom/ns#' term='virtualization'/><category scheme='http://www.blogger.com/atom/ns#' term='virtual server'/><category scheme='http://www.blogger.com/atom/ns#' term='VM Ware'/><category scheme='http://www.blogger.com/atom/ns#' term='multihomed'/><title type='text'>VM Ware with Multiple Physical NICs</title><content type='html'>&lt;p&gt;Got a question about whether it's possible to attach physical network adapters to VM Wares virtual network adapters - like eg. 1-to-1. An 'yes' it's possible... Just like it's possible in Virtual PC and Virtual Server from Microsoft.&lt;/p&gt;  &lt;p&gt;It's basically the same story for VM Ware Workstation and Server (almost the same dialog boxes) - go to Virtual Network Settings:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/VMWareMultipleNICs_13114/1VMWVirtNetwSettings.jpg"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="181" alt="1-VMW-VirtNetwSettings" src="http://www.heidelbergit.dk/Screenshots/VMWareMultipleNICs_13114/1VMWVirtNetwSettings_thumb.jpg" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Select what &amp;quot;Virtual Networks&amp;quot; you want - in here you can assign specific NICs to VMnet0-9 (you BRIDGE your adapters to the virtual &amp;quot;switch&amp;quot; you could say). &lt;/p&gt;  &lt;p&gt;Pretty nice - now you're almost done...&lt;/p&gt;  &lt;p&gt;On the Virtual Machine Settings - select the Network Adapter - choose Custom - and select the Virtual Network your Physical Network Adapter is bound to:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/VMWareMultipleNICs_13114/2VMWNetwAdapterSettings.jpg"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="244" alt="2-VMWNetwAdapterSettings" src="http://www.heidelbergit.dk/Screenshots/VMWareMultipleNICs_13114/2VMWNetwAdapterSettings_thumb.jpg" width="177" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;That should do it. Simple, right?&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7684321560816205791?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7684321560816205791/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7684321560816205791' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7684321560816205791'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7684321560816205791'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/vm-ware-with-multiple-physical-nics.html' title='VM Ware with Multiple Physical NICs'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2858386982781958185</id><published>2008-01-12T12:58:00.000+01:00</published><updated>2008-01-12T13:03:19.820+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Time to contribute to the Group Policy Explain texts!</title><content type='html'>The &lt;a href="http://blogs.technet.com/grouppolicy/archive/2008/01/11/tell-us-how-you-would-improve-group-policy-explain-text.aspx"&gt;Microsoft Group Policy Team&lt;/a&gt; invites everyone to send in suggestions for Explain text changes of any kind (check the link).&lt;br /&gt;&lt;br /&gt;Just send your suggestions to "gptext(@)microsoft(.)com".&lt;br /&gt;&lt;br /&gt;*&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2858386982781958185?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2858386982781958185/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2858386982781958185' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2858386982781958185'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2858386982781958185'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/time-to-contribute-to-group-policy.html' title='Time to contribute to the Group Policy Explain texts!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7745826179086915377</id><published>2008-01-09T20:57:00.000+01:00</published><updated>2008-01-09T21:04:50.359+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='technet'/><category scheme='http://www.blogger.com/atom/ns#' term='windowsecurity.com'/><category scheme='http://www.blogger.com/atom/ns#' term='gpanswers.com'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='gpoguy.com'/><title type='text'>Do you want GGPI? Great Group Policy Information?</title><content type='html'>So, you are in the mood for studying Group Policy? In the lack of GGPI, I know the feeling.&lt;br /&gt;&lt;br /&gt;And you got tired of reading my GP stuff here:&lt;br /&gt;&lt;a href="http://www.windowsecurity.com/Jakob_H_Heidelberg"&gt;http://www.windowsecurity.com/Jakob_H_Heidelberg&lt;/a&gt; :-)&lt;br /&gt;&lt;br /&gt;I'll recommend you to go for these sites then:&lt;br /&gt;&lt;a href="http://blogs.technet.com/grouppolicy"&gt;http://blogs.technet.com/grouppolicy&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.gpanswers.com/"&gt;http://www.gpanswers.com&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.gpoguy.com/"&gt;http://www.gpoguy.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;That's where everything starts...&lt;br /&gt;&lt;br /&gt;Enjoy!&lt;br /&gt;&lt;br /&gt; .&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7745826179086915377?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7745826179086915377/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7745826179086915377' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7745826179086915377'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7745826179086915377'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/do-you-want-ggpi-great-group-policy.html' title='Do you want GGPI? Great Group Policy Information?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-4714409691925202291</id><published>2008-01-04T17:04:00.000+01:00</published><updated>2008-01-04T17:06:10.166+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Oracle'/><category scheme='http://www.blogger.com/atom/ns#' term='database'/><title type='text'>You just have to check out this Oracle install!</title><content type='html'>Some say Danes are strange - this is the proof :-)&lt;br /&gt;&lt;br /&gt;A guy installs an Oracle database with his nose only - go check out "The Nose Job":&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.youtube.com/watch?v=CHzV4LZnvHc"&gt;http://www.youtube.com/watch?v=CHzV4LZnvHc&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-4714409691925202291?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/4714409691925202291/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=4714409691925202291' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4714409691925202291'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4714409691925202291'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2008/01/you-just-have-to-check-out-this-oracle.html' title='You just have to check out this Oracle install!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7215618697518098137</id><published>2007-12-06T00:39:00.001+01:00</published><updated>2007-12-06T00:39:27.243+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='technet'/><category scheme='http://www.blogger.com/atom/ns#' term='service pack'/><category scheme='http://www.blogger.com/atom/ns#' term='beta'/><category scheme='http://www.blogger.com/atom/ns#' term='MSDN'/><category scheme='http://www.blogger.com/atom/ns#' term='connect'/><title type='text'>Windows Vista SP1 Release Candidate is out there!</title><content type='html'>&lt;p&gt;&lt;u&gt;From the Vista Team blog:&lt;/u&gt;    &lt;br /&gt;&lt;em&gt;Today we're making available the release candidate (RC) of Windows Vista SP1 via &lt;/em&gt;&lt;a href="http://connect.microsoft.com/"&gt;&lt;em&gt;Microsoft Connect&lt;/em&gt;&lt;/a&gt;&lt;em&gt;, and tomorrow subscribers to TechNet and MDSN will have access to those RC bits too. In addition, the RC will be available to the public next week via Microsoft's Download Center.&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;&lt;a title="http://windowsvistablog.com/blogs/windowsvista/archive/2007/12/05/announcing-windows-vista-sp1-release-candidate-rc.aspx" href="http://windowsvistablog.com/blogs/windowsvista/archive/2007/12/05/announcing-windows-vista-sp1-release-candidate-rc.aspx" target="_blank"&gt;Check out the Vista Team blog here!&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;Go get it!&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;/Jakob&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7215618697518098137?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7215618697518098137/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7215618697518098137' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7215618697518098137'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7215618697518098137'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/12/windows-vista-sp1-release-candidate-is.html' title='Windows Vista SP1 Release Candidate is out there!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6923117014646200785</id><published>2007-12-06T00:25:00.001+01:00</published><updated>2007-12-06T00:25:20.175+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='beta'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><title type='text'>Windows Server 2008 RC1 in Public Beta!</title><content type='html'>&lt;p&gt;Today Microsoft made available for download the Release Candidate 1 (RC1) version of Windows Server 2008!&lt;/p&gt;  &lt;p&gt;This build includes Group Policy Preferences - you HAVE TO try it out!&lt;/p&gt;  &lt;p&gt;&lt;a title="download from the Windows Server evaluation site on Microsoft.com" href="http://www.microsoft.com/ws08eval/" target="_blank"&gt;Download you evaluation copy here!&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;/Jakob&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6923117014646200785?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6923117014646200785/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6923117014646200785' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6923117014646200785'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6923117014646200785'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/12/windows-server-2008-rc1-in-public-beta.html' title='Windows Server 2008 RC1 in Public Beta!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-5292961320678804721</id><published>2007-12-05T23:53:00.001+01:00</published><updated>2007-12-06T00:26:12.548+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='windowsecurity.com'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='article'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><title type='text'>Group Policy Changes in WS2008 article - part 3</title><content type='html'>&lt;p&gt;Hi,&lt;/p&gt;  &lt;p&gt;Just want to let you know that my latest article about &amp;quot;Group Policy related changes in Windows Server 2008&amp;quot; is released on &lt;a href="http://www.windowsecurity.com"&gt;www.windowsecurity.com&lt;/a&gt;.&lt;/p&gt;  &lt;p&gt;This 3rd article in the series deals with the new and shiny Group Policy Preferences - &lt;a href="http://www.windowsecurity.com/articles/Group-Policy-related-changes-Windows-Server-2008-Part3.html"&gt;read more here...&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;I hope you like it!!!&lt;/p&gt;  &lt;p&gt;/Jakob&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-5292961320678804721?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/5292961320678804721/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=5292961320678804721' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5292961320678804721'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5292961320678804721'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/12/group-policy-changes-in-ws2008-article.html' title='Group Policy Changes in WS2008 article - part 3'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7074148332379354785</id><published>2007-12-01T04:59:00.001+01:00</published><updated>2007-12-01T11:23:32.098+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='sysvol'/><category scheme='http://www.blogger.com/atom/ns#' term='RSAT'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='gpedit.msc'/><category scheme='http://www.blogger.com/atom/ns#' term='windows xp'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='windows server 2003'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='gpedit'/><title type='text'>Formatting "Message text for users attempting to log on"</title><content type='html'>&lt;p&gt;If you have ever tried defining the Security Options policy setting called: &lt;strong&gt;&amp;quot;Interactive logon: Message text for users attempting to log on&amp;quot;&lt;/strong&gt;, you may have had some difficulties formatting the message the way you wanted it. This blog is about &amp;quot;how to&amp;quot; workaround a minor bug in the GPEDIT tool...&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;u&gt;The issue:&lt;/u&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;First things first - the Group Policy setting is located here:&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&amp;quot;Computer Configuration\Windows Settings\Security Settings\Local Policies\Security Options\&amp;quot;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;The value is a Multi-String registry value that allows you to make multiple lines in the message. The message pops up right after a users hits Ctrl+Alt+Del as a general warning to the user before actually logging on. But, unfortunately the formatting isn't as perfect as it could be.&lt;/p&gt;  &lt;p&gt;What happens is, that carriage returns are lost after formatting this &amp;quot;pre-logon message&amp;quot; with GPEDIT, imagine you would want a message like this (see Figure 3):&lt;/p&gt;  &lt;p&gt;&lt;font face="Courier"&gt;---&amp;gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Courier"&gt;I don't know why this should be so hard? Jump next line please...      &lt;br /&gt;      &lt;br /&gt;&lt;/font&gt;&lt;font face="Courier"&gt;Let's do a comma, and continue the line...      &lt;br /&gt;&lt;/font&gt;&lt;font face="Courier"&gt;Line number 4 is ready, but let's jump line 5 &amp;amp; 6 now...      &lt;br /&gt;      &lt;br /&gt;      &lt;br /&gt;&lt;/font&gt;&lt;font face="Courier"&gt;Line 7 finishes up this story!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Courier"&gt;&amp;lt;---&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;Such a message would end up as (see Figure 5):&lt;/p&gt;  &lt;p&gt;&lt;font face="Courier"&gt;---&amp;gt;&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Courier"&gt;I don't know why this should be so hard? Jump next line please...      &lt;br /&gt;&lt;/font&gt;&lt;font face="Courier"&gt;Let's do a comma, and continue the line...      &lt;br /&gt;&lt;/font&gt;&lt;font face="Courier"&gt;Line number 4 is ready, but let's jump line 5 &amp;amp; 6 now...      &lt;br /&gt;&lt;/font&gt;&lt;font face="Courier"&gt;Line 7 finishes up this story!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Courier"&gt;&amp;lt;---      &lt;br /&gt;      &lt;br /&gt;&lt;/font&gt;So, basically the problem is: &lt;em&gt;line feeds/carriage returns/empty lines disappear completely!&lt;/em&gt;&lt;/p&gt;  &lt;p&gt;You can actually see this within the GPEDIT GUI, but only if you hit &amp;quot;Apply&amp;quot; before &amp;quot;OK&amp;quot; - if you just hit &amp;quot;OK&amp;quot; after typing in your message you cannot see that it's actually changed by GPEDIT (so you think the formatting is working as it should). I tested this behavior with GPEDIT on Windows XP SP2 (local policy), Windows Server 2003 SP1 (domain policy), Windows Vista SP Pre-RC (local policy) and Windows Server 2008 RC1 (domain policy).&lt;/p&gt;  &lt;p&gt;Figure 1 - I typed in my message with the format I wanted:    &lt;br /&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InterF1.jpg"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="162" alt="InterF1" src="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InterF1_thumb.jpg" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Figure 2 - I clicked Apply, and the formatting was changed:    &lt;br /&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InterF2.jpg"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="161" alt="InterF2" src="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InterF2_thumb.jpg" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;If I had just click OK I wouldn't have noticed the change - anyway it's a bit annoying, right?&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;u&gt;Solution/Workaround:&lt;/u&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;The solution I came up with is to modify the policy file directly/manually using Notepad. The file is located here:&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&amp;quot;\\DOMAIN.local\SYSVOL\DOMAIN.local\Policies\{GPO-GUID}\MACHINE\Microsoft\Windows NT\SecEdit\GptTmpl.inf&amp;quot;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;Within that file we have the relevant registry value, called &amp;quot;&lt;strong&gt;LegalNoticeText&amp;quot;:&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;&lt;font face="Courier"&gt;MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeText=7,I don't know why this should be so hard? Jump next line please...,&amp;quot; &amp;quot;,Let's do a comma&amp;quot;,&amp;quot; and continue the line...,Line number 4 is ready&amp;quot;,&amp;quot; but let's jump line 5 &amp;amp; 6 now...,&amp;quot; &amp;quot;,&amp;quot; &amp;quot;,Line 7 finishes up this story!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;Notice the &amp;quot; &amp;quot; (&amp;lt;quote&amp;gt;&amp;lt;space&amp;gt;&amp;lt;quote&amp;gt;) sequences, which are the same as empty lines.&lt;/p&gt;  &lt;p&gt;This is the relevant line from a working GptTempl.inf file (the correct syntax written manually), and it actually works great:&lt;/p&gt;  &lt;p&gt;Figure 3 - Pre-logon message on a Windows Server 2003 SP1 Domain Controller:&amp;#160; &lt;br /&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InteractiveLogonMsg.jpg"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="205" alt="InteractiveLogonMsg" src="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InteractiveLogonMsg_thumb.jpg" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;Figure 4 - The above inserted GptTmpl.inf line also works for Windows XP SP2 in the same domain:    &lt;br /&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InteractiveLogonMsgXP.jpg"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="210" alt="InteractiveLogonMsgXP" src="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InteractiveLogonMsgXP_thumb.jpg" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;So, this proves that the INI file can actually be correctly formatted so clients (tested w/WS2003 SP1 and XP SP2 in a domain) can show the message perfectly. Please notice that the behavior is similar with local policies, but my testing has been focused on domain environments so far.&lt;/p&gt;  &lt;p&gt;If you try to modify the working policy setting using GPEDIT again - after changing just a tiny bit (or just hitting OK to an existing setting) within the GPO the formatting/syntax is ruined again unfortunately (when GPO is saved by GPEDIT)! Look here what came out of it when I tested it:&lt;/p&gt;  &lt;p&gt;&lt;font face="Courier"&gt;MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System\LegalNoticeText=7,I don't know why this should be so hard? Jump next line please...,Let's do a comma&amp;quot;,&amp;quot; and continue the line...,Line number 4 is ready&amp;quot;,&amp;quot; but let's jump line 5 &amp;amp; 6 now...,Line 7 finishes up this story!&lt;/font&gt;&lt;/p&gt;  &lt;p&gt;Notice the &amp;quot; &amp;quot; (&amp;lt;quote&amp;gt;&amp;lt;space&amp;gt;&amp;lt;quote&amp;gt;) sequences are gone! This gives a wrong result (no empty lines) when clients get the pre-logon message.&lt;/p&gt;  &lt;p&gt;Figure 5 - The formatting is lost (or wrong) when GPEDIT does the job:    &lt;br /&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InterF5.jpg"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="204" alt="InterF5" src="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InterF5_thumb.jpg" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Please notice, if you're testing this you will have to define an additional policy setting for it to work, namely the &lt;strong&gt;&amp;quot;Interactive logon: Message title for users attempting to log on&amp;quot;&lt;/strong&gt; setting.&lt;/p&gt;  &lt;p&gt;Figure 6 - The title must be set for pre-logon message to appear    &lt;br /&gt;&lt;a href="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InterF6.jpg"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="135" alt="InterF6" src="http://www.heidelbergit.dk/Screenshots/FormattingMessagetextforusersattemptingt_38F3/InterF6_thumb.jpg" width="244" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;&lt;strong&gt;&lt;u&gt;Conclusion&lt;/u&gt;&lt;/strong&gt;&lt;/p&gt;  &lt;p&gt;So, my conclusion is that (existing version of) GPEDIT doesn't modify the GptTmpl.inf file properly (or the registry for local policies for that matter) - for this particular value at least... My best guess is that it doesn't handle the quotes (&amp;quot;) correctly, but I can't be 100% sure. A bug report has been made for Microsoft - so hopefully it will be fixed before the final release of Windows Server 2008 and the Remote Server Administration Tools (RSAT).&lt;/p&gt;  &lt;p&gt;However, as mentioned you can make it work with a workaround like this: Just perform the GptTmpl.inf (below SYSVOL) editing manually, make a &lt;u&gt;backup&lt;/u&gt; of the file when it's perfect - and never touch that GPO with GPEDIT again... Until Microsoft releases an updated version of GPEDIT anyway.&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Related KB articles out there:    &lt;br /&gt;&lt;a href="http://support.microsoft.com/kb/330618" target="_blank"&gt;KB 330618&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://support.microsoft.com/default.aspx?scid=kb%3Ben-us%3B238149" target="_blank"&gt;KB 238149&lt;/a&gt;     &lt;br /&gt;&lt;a href="http://technet2.microsoft.com/windowsserver/en/library/6c1aa83e-06fd-422c-b38f-a4a56032ce0a1033.mspx?mfr=true" target="_blank"&gt;Technet article&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;.&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7074148332379354785?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7074148332379354785/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7074148332379354785' title='5 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7074148332379354785'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7074148332379354785'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/12/formatting-text-for-users-attempting-to.html' title='Formatting &amp;quot;Message text for users attempting to log on&amp;quot;'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>5</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3658273444936734520</id><published>2007-11-28T21:49:00.000+01:00</published><updated>2007-11-29T09:54:51.707+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='RSAT'/><category scheme='http://www.blogger.com/atom/ns#' term='beta'/><category scheme='http://www.blogger.com/atom/ns#' term='connect'/><title type='text'>Remote Server Administration Tools (RSAT) in beta</title><content type='html'>Microsoft Remote Server Administration Tools (RSAT) are now in Beta, available on &lt;a href="https://connect.microsoft.com/"&gt;https://connect.microsoft.com/&lt;/a&gt; - I just got hold on them!&lt;br /&gt;&lt;br /&gt;The download contains:&lt;br /&gt;Remote Server Administration Tools Beta Fact Sheet.docx&lt;br /&gt;Windows6.0-KB941314-x64.msu&lt;br /&gt;Windows6.0-KB941314-x86.msu&lt;br /&gt;&lt;br /&gt;Still waiting to install on my Vista SP1 Beta...&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;update&gt;[UPDATE]&lt;br /&gt;Install went just fine - but some admin tools are still not included (se readme for more info).&lt;br /&gt;&lt;br /&gt;This is the exact download location:&lt;br /&gt;&lt;a href="http://connect.microsoft.com/windows/Downloads/DownloadDetails.aspx?DownloadID=9561"&gt;http://connect.microsoft.com/windows/Downloads/DownloadDetails.aspx?DownloadID=9561&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;More info:&lt;br /&gt;&lt;a href="http://blogs.technet.com/windowsserver/archive/2007/11/28/remote-server-administration-tools-rsat-beta-is-now-available.aspx"&gt;http://blogs.technet.com/windowsserver/archive/2007/11/28/remote-server-administration-tools-rsat-beta-is-now-available.aspx&lt;/a&gt;&lt;br /&gt;&lt;/update&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3658273444936734520?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3658273444936734520/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3658273444936734520' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3658273444936734520'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3658273444936734520'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/remote-server-administration-tools-rsat.html' title='Remote Server Administration Tools (RSAT) in beta'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7482992490338836180</id><published>2007-11-25T23:06:00.000+01:00</published><updated>2007-11-25T23:08:38.114+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='gpmc'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='windowsecurity.com'/><title type='text'>Group Policy Changes in WS2008 article - part 2</title><content type='html'>Hi,&lt;br /&gt;Just want to let you know that my latest article about "Group Policy related changes in Windows Server 2008" is released on &lt;a href="http://www.windowsecurity.com/"&gt;www.windowsecurity.com&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;This 2nd article in the series deals with the Group Policy Management Console (GPMC) version 2 - &lt;a href="http://www.windowsecurity.com/articles/Group-Policy-related-changes-Windows-Server-2008-Part2.html" target="_blank"&gt;read more here...&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Part 3 about Group Policy Preferences is soon to be published too.... Enjoy!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;   .&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7482992490338836180?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7482992490338836180/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7482992490338836180' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7482992490338836180'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7482992490338836180'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/group-policy-changes-in-ws2008-article.html' title='Group Policy Changes in WS2008 article - part 2'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-5516153560325538471</id><published>2007-11-20T15:19:00.000+01:00</published><updated>2007-11-20T15:30:21.134+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='SteadyState'/><category scheme='http://www.blogger.com/atom/ns#' term='Shared Computer Toolkit'/><category scheme='http://www.blogger.com/atom/ns#' term='windows xp'/><title type='text'>Windows SteadyState v2.5 Beta</title><content type='html'>If you have ever tried out the Shared Computer Toolkit - or the newer Windows SteadyState toolkit, you probably know that Windows Vista has not been supported so far... But now it's here - go get it:&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Windows SteadyState 2.5 Beta&lt;/strong&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=4DE91D3A-69F4-4D7B-94B1-C69B8BE029F4&amp;amp;displaylang=en"&gt;http://www.microsoft.com/downloads/details.aspx?FamilyId=4DE91D3A-69F4-4D7B-94B1-C69B8BE029F4&amp;amp;displaylang=en&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Windows SteadyState 2.5 Beta Handbook&lt;/strong&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=D173452A-CE26-4F26-9C30-982F705F84D2&amp;amp;displaylang=en"&gt;http://www.microsoft.com/downloads/details.aspx?familyid=D173452A-CE26-4F26-9C30-982F705F84D2&amp;amp;displaylang=en&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Windows SteadyState 2.5 Beta Readme File&lt;/strong&gt;&lt;br /&gt;&lt;a href="http://download.microsoft.com/download/E/2/F/E2F23589-E8E1-404F-9DAB-77F1CAE24153/ReadmeBeta.txt"&gt;http://download.microsoft.com/download/E/2/F/E2F23589-E8E1-404F-9DAB-77F1CAE24153/ReadmeBeta.txt&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Supported Operating Systems:&lt;/strong&gt;&lt;br /&gt;Windows Vista: Business/Home Basic/Starter/Ultimate/Enterprise/Home PremiumWindows XP: Home/Professional with Service Pack 2&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-5516153560325538471?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/5516153560325538471/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=5516153560325538471' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5516153560325538471'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5516153560325538471'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/windows-steadystate-v25-beta.html' title='Windows SteadyState v2.5 Beta'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3957251930656564330</id><published>2007-11-20T10:57:00.001+01:00</published><updated>2007-11-20T11:00:10.679+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='radio'/><category scheme='http://www.blogger.com/atom/ns#' term='runas'/><category scheme='http://www.blogger.com/atom/ns#' term='Jeremy Moskowitz'/><title type='text'>Jeremy Moskowitz in RunAs Radio</title><content type='html'>Richard Campbell &amp;amp; Greg Hughes from RunAs Radio talks to my good friend Jeremy Moskowitz about Group Policy - who would have guessed, right :-)&lt;br /&gt;&lt;br /&gt;Check it out here: &lt;a href="http://www.runasradio.com/default.aspx?showNum=32"&gt;http://www.runasradio.com/default.aspx?showNum=32&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3957251930656564330?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3957251930656564330/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3957251930656564330' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3957251930656564330'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3957251930656564330'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/jeremy-moskowitz-in-runas-radio.html' title='Jeremy Moskowitz in RunAs Radio'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-491870939209118619</id><published>2007-11-20T10:47:00.000+01:00</published><updated>2007-11-20T10:52:20.833+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policy'/><category scheme='http://www.blogger.com/atom/ns#' term='windowsecurity.com'/><category scheme='http://www.blogger.com/atom/ns#' term='article'/><title type='text'>My WindowSecurity.com articles...</title><content type='html'>Hi,&lt;br /&gt;This is a list of my articles on &lt;a href="http://www.windowsecurity.com/"&gt;www.windowsecurity.com&lt;/a&gt; for reference - if you haven't read them yet, please do so!&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Group Policy related changes in Windows Server 2008 (Part 1: What are Starter GPOs?)&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;This article series deals with the new Group Policy features W2008 will bring, including GPMC v2 features and Group Policy Preferences.&lt;/em&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/Group-Policy-related-changes-Windows-Server-2008-Part1.html"&gt;http://windowsecurity.com/articles/Group-Policy-related-changes-Windows-Server-2008-Part1.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Protect Public Computers with Windows SteadyState (Part 1)&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;This is an article series deals with the Windows SteadyState product and how to protect public computers using this toolkit.&lt;br /&gt;&lt;/em&gt;&lt;a href="http://windowsecurity.com/articles/Protect-Public-Computers-Windows-SteadyState-Part1.html"&gt;http://windowsecurity.com/articles/Protect-Public-Computers-Windows-SteadyState-Part1.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Configuring Granular Password Settings in Windows Server 2008 (Part 1 &amp;amp; 2)&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;This article series deals with how to set Granular Password Policies for WS2008 domains.&lt;/em&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/Configuring-Granular-Password-Settings-Windows-Server-2008-Part-1.html"&gt;http://windowsecurity.com/articles/Configuring-Granular-Password-Settings-Windows-Server-2008-Part-1.html&lt;/a&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/Configuring-Granular-Password-Settings-Windows-Server-2008-Part2.html"&gt;http://windowsecurity.com/articles/Configuring-Granular-Password-Settings-Windows-Server-2008-Part2.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Efficient Registry Cleanup&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;This article deals with Group Policy Startup scripts and why they are so powerful.&lt;br /&gt;&lt;/em&gt;&lt;a href="http://windowsecurity.com/articles/Efficient-Registry-Cleanup.html"&gt;http://windowsecurity.com/articles/Efficient-Registry-Cleanup.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Default Deny All Applications (Part 1 &amp;amp; 2)&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;This article series deals with Software Restriction Policies and how to implement SRP in a corporate environment.&lt;/em&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/Default-Deny-All-Applications-Part1.html"&gt;http://windowsecurity.com/articles/Default-Deny-All-Applications-Part1.html&lt;/a&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/Default-Deny-All-Applications-Part2.html"&gt;http://windowsecurity.com/articles/Default-Deny-All-Applications-Part2.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;How to Force Remote Group Policy Processing&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;This article shows how to update Group Policy settings on remote computers using different approaches.&lt;/em&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/How-Force-Remote-Group-Policy-Processing.html"&gt;http://windowsecurity.com/articles/How-Force-Remote-Group-Policy-Processing.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Managing Windows Vista Group Policy (Part 1, 2 &amp;amp; 3)&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;This article series deals with the new things in Group Policy land after Windows Vista joined the world.&lt;/em&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part1.html"&gt;http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part1.html&lt;/a&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part2.html"&gt;http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part2.html&lt;/a&gt;&lt;br /&gt;&lt;a href="http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part3.html"&gt;http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part3.html&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;All feedback is very welcome - just send me an email!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-491870939209118619?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/491870939209118619/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=491870939209118619' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/491870939209118619'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/491870939209118619'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/my-windowsecuritycom-articles.html' title='My WindowSecurity.com articles...'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2139355108984770401</id><published>2007-11-18T11:29:00.000+01:00</published><updated>2007-11-18T11:30:23.223+01:00</updated><title type='text'>Free PowerShell Cmdlets for Group Policy</title><content type='html'>&lt;p&gt;Group Policy MVP Darren Mar-Elia has released some new PS cmdlets for handling Group Policy Objects using PowerShell.&lt;/p&gt;&lt;p&gt;Check them out here:&lt;br /&gt;&lt;a title="http://www.gpoguy.com/powershell.htm" href="http://www.gpoguy.com/powershell.htm"&gt;http://www.gpoguy.com/powershell.htm&lt;/a&gt;&lt;/p&gt;&lt;p&gt;I hope you'll like it!&lt;br /&gt;/Jakob&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2139355108984770401?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2139355108984770401/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2139355108984770401' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2139355108984770401'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2139355108984770401'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/free-powershell-cmdlets-for-group.html' title='Free PowerShell Cmdlets for Group Policy'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-8322247431476827631</id><published>2007-11-13T22:06:00.000+01:00</published><updated>2007-11-13T22:17:26.530+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='agpm'/><category scheme='http://www.blogger.com/atom/ns#' term='whitepaper'/><title type='text'>AGPM whitepaper out there</title><content type='html'>Just a "quick note" this time!&lt;br /&gt;&lt;br /&gt;A nice looking whitepaper is available from the Microsoft Group Policy Team... This time it's an AGPM overview: &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=993a34d0-c274-4b46-b9fc-568426b81c5e&amp;amp;DisplayLang=en"&gt;Advanced Group Policy Management Overview&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-8322247431476827631?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/8322247431476827631/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=8322247431476827631' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/8322247431476827631'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/8322247431476827631'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/agpm-whitepaper-out-there.html' title='AGPM whitepaper out there'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3105477950955420088</id><published>2007-11-13T18:03:00.001+01:00</published><updated>2007-11-13T21:45:03.320+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='PolicyMaker'/><category scheme='http://www.blogger.com/atom/ns#' term='Longhorn'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='gp preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='DesktopStandards'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy extensions'/><category scheme='http://www.blogger.com/atom/ns#' term='group policy preferences'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><category scheme='http://www.blogger.com/atom/ns#' term='whitepaper'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Group Policy Revolution Coming Up!</title><content type='html'>&lt;p&gt;It's &lt;strong&gt;exciting&lt;/strong&gt;, &lt;strong&gt;fantastic&lt;/strong&gt;, &lt;strong&gt;amazing&lt;/strong&gt;, &lt;strong&gt;wonderful&lt;/strong&gt; and &lt;strong&gt;totally cool&lt;/strong&gt; - Microsoft has FINALLY announced what is going to happen with the &lt;strong&gt;PolicyMaker&lt;/strong&gt; stuff they got when taking over &lt;strong&gt;DesktopStandards&lt;/strong&gt;... It's going to be released with &lt;strong&gt;Windows Server 2008&lt;/strong&gt; as many of us had hoped for!&lt;/p&gt;&lt;p&gt;This is just GREAT I can tell you - and it will available to the public with the RC1 release of Windows Server 2008, maybe even before as a separate Beta program I'm told...&lt;/p&gt;&lt;p&gt;Microsoft decided to call it &lt;strong&gt;"Group Policy Preferences"&lt;/strong&gt; or just "GP Preferences". So, what can we do with this you ask? Well, here's some of it:&lt;/p&gt;&lt;ul&gt;&lt;li&gt;Map network drives&lt;/li&gt;&lt;li&gt;Set Environment variables&lt;/li&gt;&lt;li&gt;Copy Files to clients&lt;/li&gt;&lt;li&gt;Create and update INI files&lt;/li&gt;&lt;li&gt;Modify registry settings on the clients (REG_SZ, REG_DWORD, REG_BINARY, REG_MULTI_SZ, and REG_EXPAND_SZ )&lt;/li&gt;&lt;li&gt;Create Shortcuts (URL/File/Shell)&lt;/li&gt;&lt;li&gt;Open Database Connectivity (ODBC)&lt;/li&gt;&lt;li&gt;Control Devices&lt;/li&gt;&lt;li&gt;Set Folder Options&lt;/li&gt;&lt;li&gt;Define File Associations&lt;/li&gt;&lt;li&gt;Tweak Internet Settings&lt;/li&gt;&lt;li&gt;Handle Local Users and Groups (change passwords, add/remove from groups, disable users etc.)&lt;/li&gt;&lt;li&gt;Set Network Options (like VPN or Dial-Up connections)&lt;/li&gt;&lt;li&gt;Configure Power Options (Windows XP)&lt;/li&gt;&lt;li&gt;Map Printers (even TCP/IP printers)&lt;/li&gt;&lt;li&gt;Set Regional Options&lt;/li&gt;&lt;li&gt;Create Scheduled Tasks&lt;/li&gt;&lt;li&gt;Set properties on Services&lt;/li&gt;&lt;li&gt;Tweak the Start Menu&lt;/li&gt;&lt;li&gt;and so on....&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;As you can see, it's quite impressive and something that will make companies around the world turn to Windows Server 2008 ASAP... I think and hope anyway!&lt;/p&gt;&lt;p&gt;The client part, a necessary extension which must be installed on the client, will be ready for Windows XP/2003/Vista - and in both x86 and x64 editions. Windows Server 2008 already includes the CSE (Client Side Extension).&lt;/p&gt;&lt;p&gt;There's SO much to tell, and SO little time... But, a &lt;strong&gt;Whitepaper&lt;/strong&gt; is ready (a REALLY nice of the kind) thank you Microsoft!&lt;/p&gt;&lt;p&gt;Download the whitepaper here:&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=42e30e3f-6f01-4610-9d6e-f6e0fb7a0790&amp;amp;DisplayLang=en" target="_blank"&gt;An Overview of Group Policy Preferences&lt;/a&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3105477950955420088?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3105477950955420088/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3105477950955420088' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3105477950955420088'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3105477950955420088'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/group-policy-revolution-coming-up.html' title='Group Policy Revolution Coming Up!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-4850575652054302652</id><published>2007-11-13T14:31:00.001+01:00</published><updated>2007-11-14T07:57:07.042+01:00</updated><title type='text'>Microsoft IT Forum 2007 Barcelona</title><content type='html'>&lt;p&gt;Hi there,&lt;/p&gt;&lt;p&gt;I've been pretty busy the last days - so I haven't have time to create this "hello from Barcelona" post, now it's here :)&lt;/p&gt;&lt;p&gt;This year is a little special for me as it's the first time participating as a HOL (Hands-On-Lab) Proctor and an ATE (Ask The Expert - or "Ask The so called Expert")... So I'm working for Microsoft some hours during the day, which means I cannot attend all the sessions I might want - but so far I've been very lucky.&lt;/p&gt;&lt;p&gt;I'm assigned to the MDOP (Microsoft Desktop Optimization Pack) labs - so for me it's SoftGrid, AGPM (Advanced Group Policy Management), Desktop Error Monitoring, DART (Diagnostics and Recovery Toolset - which is actually the good old "Administrators Pak" from the former Winternals, &lt;u&gt;including&lt;/u&gt; the Locksmith utility to reset passwords...) - most attendees seems to focus on SoftGrid and AGPM though (as expected).&lt;/p&gt;&lt;p&gt;I've met a lot of Danes down here - we are around 250 this year - that is really great I think (compared to the size of the country). Many companies can see the value of TechEd apparently - I can understand why. For me it's not only the technical news, info and sessions, but also meeting people from around the world, from my own country, from Microsoft and vendors - and doing some good old "social networking" - which is very valuable, both shot and long term.&lt;/p&gt;&lt;p&gt;Hope to see you soon (or maybe next year).&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-4850575652054302652?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/4850575652054302652/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=4850575652054302652' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4850575652054302652'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4850575652054302652'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/microsoft-it-forum-2007-barcelona.html' title='Microsoft IT Forum 2007 Barcelona'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6251690588260880525</id><published>2007-11-13T14:12:00.001+01:00</published><updated>2007-11-13T14:16:50.137+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='public beta'/><category scheme='http://www.blogger.com/atom/ns#' term='softgrid'/><category scheme='http://www.blogger.com/atom/ns#' term='Microsoft Application Virtualization'/><category scheme='http://www.blogger.com/atom/ns#' term='desktop optimization pack'/><category scheme='http://www.blogger.com/atom/ns#' term='dop'/><category scheme='http://www.blogger.com/atom/ns#' term='mdop'/><category scheme='http://www.blogger.com/atom/ns#' term='beta'/><category scheme='http://www.blogger.com/atom/ns#' term='connect'/><category scheme='http://www.blogger.com/atom/ns#' term='mav'/><title type='text'>SoftGrid is now Microsoft Application Virtualization</title><content type='html'>&lt;p&gt;I hope you have tried out &lt;strong&gt;SoftGrid&lt;/strong&gt; (part of the cool &lt;strong&gt;MDOP&lt;/strong&gt; package) - but, now we gotta start using a new name: &amp;quot;Microsoft Application Virtualization&amp;quot; - or actually &amp;quot;System Center Application Virtualization Management System &amp;quot;... &lt;/p&gt;  &lt;p&gt;We all know the Microsoft way of doing this by now: buy the technology/product, start selling with the good old (well known) name, change the name - and some would add: then, as the very last part of the process, change the naming within the code, like &amp;quot;Softricity&amp;quot; folder names, service names etc. (as they often &amp;quot;forget&amp;quot; about this).&lt;/p&gt;  &lt;p&gt;Nevertheless a &lt;strong&gt;Public Beta version&lt;/strong&gt; is available for the NEW version 4.5 (most have 4.2 out there I guess). The Beta is available from &lt;a href="https://connect.microsoft.com" target="_blank"&gt;Microsoft Connect&lt;/a&gt; - just sign up and as to participate in the &amp;quot;Application Virtualization 4.5 Public Beta&amp;quot;.&lt;/p&gt;  &lt;p&gt;You then ask: what's the new stuff? First of all we of course have a lot of bugfixes, but you also have new and cool functionality worth a lot of nice words - but I'm afraid it's gonna be another time, sorry.&lt;/p&gt;  &lt;p&gt;However, check these links:   &lt;br /&gt;&lt;a href="http://www.microsoft.com/systemcenter/softgrid/msappvirt45/default.mspx" target="_blank"&gt;Microsoft Application Virtualization 4.5 Beta &amp;#8211; What&amp;#8217;s New&lt;/a&gt;    &lt;br /&gt;&lt;a href="http://technet.microsoft.com/en-us/softgrid/default.aspx" target="_blank"&gt;Microsoft SoftGrid Application Virtualization&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Hope you will like it!&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6251690588260880525?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6251690588260880525/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6251690588260880525' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6251690588260880525'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6251690588260880525'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/softgrid-is-now-microsoft-application.html' title='SoftGrid is now Microsoft Application Virtualization'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1503653698528378929</id><published>2007-11-12T15:57:00.001+01:00</published><updated>2007-11-12T15:57:07.873+01:00</updated><title type='text'>ADMX Migrator version 1.2</title><content type='html'>&lt;p&gt;Good news from IT Forum Barcelona:&lt;/p&gt;  &lt;p&gt;ADMX Migrator has been upgrade and now includes:&lt;/p&gt;  &lt;p&gt;(1) Enhancements and bug fixes to support a wider range of ADM templates for conversion to ADMX.   &lt;br /&gt;(2) Enhancements to code and documentation for conversion error reporting and warnings.    &lt;br /&gt;(3) Improved handling of internationalized ADMX templates.&lt;/p&gt;  &lt;p&gt;Get it here:&lt;/p&gt;  &lt;p&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkId=77409"&gt;http://go.microsoft.com/fwlink/?LinkId=77409&lt;/a&gt;&lt;/p&gt;  &lt;p&gt;&amp;#160;&lt;/p&gt;  &lt;p&gt;Great stuff!&lt;/p&gt;  &lt;p&gt;_&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1503653698528378929?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1503653698528378929/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1503653698528378929' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1503653698528378929'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1503653698528378929'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/11/admx-migrator-version-12.html' title='ADMX Migrator version 1.2'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6044290227568806682</id><published>2007-10-16T08:33:00.000+02:00</published><updated>2007-10-16T08:52:13.540+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Windows Vista'/><category scheme='http://www.blogger.com/atom/ns#' term='security id'/><category scheme='http://www.blogger.com/atom/ns#' term='generalize'/><category scheme='http://www.blogger.com/atom/ns#' term='sysprep'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='virtualization'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><category scheme='http://www.blogger.com/atom/ns#' term='sid'/><category scheme='http://www.blogger.com/atom/ns#' term='newsid'/><title type='text'>Sysprep - Generalize - SID</title><content type='html'>I create millions and billions of Virtual Machines - ok, maybe not that many but it feels like it. Everytime I have copied the physical files (VHD/VMC) a number of things must be done if I want to join those virtual machines to my domain(s) - most importantly: the machines SID (Security ID) must be re-generated to be unique and the computer must be renamed of course.&lt;br /&gt;&lt;br /&gt;So, heres the thing. Back in the good old days you had to find the Windows CD, find and extract the Deploy.CAB file to you hard drive and then execute the SYSPREP.EXE tool. But, with Windows Vista and Windows Server 2008 the SYSPREP file(s) can be found below:&lt;br /&gt;&lt;br /&gt;%WINDIR%\System32\Sysprep - ready "out of the box", just waiting for you to go for it!&lt;br /&gt;&lt;br /&gt;And this is the important thing (and the reason why I started this blog): If you want to create a new SID, remember to CHECK the "Generalize" checkbox - or else you have to go all over again...&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_I-snqt5ViC0/RxRedzWhDBI/AAAAAAAAAB4/Kb8XIQWLhgU/s1600-h/Sysprep_Vista_Generalize.JPG"&gt;&lt;img id="BLOGGER_PHOTO_ID_5121822542320962578" style="FLOAT: left; MARGIN: 0px 10px 10px 0px; CURSOR: hand" alt="" src="http://3.bp.blogspot.com/_I-snqt5ViC0/RxRedzWhDBI/AAAAAAAAAB4/Kb8XIQWLhgU/s320/Sysprep_Vista_Generalize.JPG" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;During the following reboot a new SID is automatically generated - and you will have to type in your Product/License Key, provide a new Computer Name, select an Administrator Password etc.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;You may have known this already - personally I didn't because I tend to use the wonderful Sysinternal NewSID tool for this purpose in most cases (it's much faster)... However, that tool is not officially supported for Windows Server 2008 (or even Vista) at this time - but hopefully it will be soon?&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;_&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6044290227568806682?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6044290227568806682/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6044290227568806682' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6044290227568806682'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6044290227568806682'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/10/sysprep-generalize-sid.html' title='Sysprep - Generalize - SID'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_I-snqt5ViC0/RxRedzWhDBI/AAAAAAAAAB4/Kb8XIQWLhgU/s72-c/Sysprep_Vista_Generalize.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-4725379622417017587</id><published>2007-10-02T02:39:00.001+02:00</published><updated>2007-10-02T08:04:43.478+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='starter gpos'/><category scheme='http://www.blogger.com/atom/ns#' term='guid'/><category scheme='http://www.blogger.com/atom/ns#' term='Longhorn'/><category scheme='http://www.blogger.com/atom/ns#' term='template'/><category scheme='http://www.blogger.com/atom/ns#' term='dop'/><category scheme='http://www.blogger.com/atom/ns#' term='administrative templates'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><category scheme='http://www.blogger.com/atom/ns#' term='baseline'/><category scheme='http://www.blogger.com/atom/ns#' term='cab'/><category scheme='http://www.blogger.com/atom/ns#' term='gpo'/><category scheme='http://www.blogger.com/atom/ns#' term='sysvol'/><category scheme='http://www.blogger.com/atom/ns#' term='gpmc'/><category scheme='http://www.blogger.com/atom/ns#' term='starter gpo'/><category scheme='http://www.blogger.com/atom/ns#' term='agpm'/><category scheme='http://www.blogger.com/atom/ns#' term='backup'/><category scheme='http://www.blogger.com/atom/ns#' term='desktop optimization pack'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><title type='text'>Starter GPO's - what are they?</title><content type='html'>&lt;div&gt;With Windows Server 2008 (Codename Longhorn) you will notice a new container called "Starter GPOs" inside the GPMC (version 2.0 - BTW this version will also be available as a separate download for Windows Vista with SP1).&lt;br /&gt;&lt;br /&gt;This new container can hold what I would call "templates" for creating new GPO's - with the limitation that only Administrative Template settings are available. When creating new GPO's you can choose to use a Starter GPO as the source (read: template) - which makes it easy and fast to create multiple GPO's with the same baseline configuration.&lt;br /&gt;&lt;br /&gt;But, the very cool thing is that you can now "export" those GPO templates (Starter GPO's) to a Cabinet file (.CAB) and then import into another environment - completely independent of the source domain/forest! So, you can create the PERFECT Starter GPO and then bring it around the world, share it on the Internet (if legal?), deploy it on all systems you can get a hold on etc. etc.&lt;br /&gt;&lt;br /&gt;When you 'enable' Starter GPO's in the domain for the first time, a folder called "StarterGPOs" is created inside the SYSVOL folder (\\domain.com\SYSVOL\domain.com\StarterGPOs) - this is where all the "magic" is done... For each new Starter GPO you create, you will see a new folder below this StarterGPOs folder - each will have a unique GUID (just like normal group policies). So, when you create a new GPO with a Starter GPO as &lt;em&gt;source&lt;/em&gt; a nice and simple COPY process is actually performed - the subfolders and files from the Starter GPO's GUID folder is just copied into the \\domain.com\SYSVOL\domain.com\Policies\[SomeNewGUID] folder - and wupti, you are ready to deploy...&lt;br /&gt;&lt;br /&gt;Well, it may not be the same as the Templates we got with AGPM (Advanced Group Policy Management from Desktop Optimization Pack) - but, even if you don't have the required DOP license you still get a few cookies for "free"...&lt;br /&gt;&lt;br /&gt;One last thing - remember to create a separate backup process for Starter GPO's, as they are not backed up though the GPMC "Backup All" method you have for the regular GPO's - the yhave a seperate backup procedure. So far there's no script for backing up the Starter GPO's, but I'm pretty sure it will show up (just like the "BackupAllGPOs.wsf script).&lt;br /&gt;&lt;br /&gt;And don't worry - if you should get an error like this:&lt;br /&gt;&lt;/div&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_I-snqt5ViC0/RwHe0jWhDAI/AAAAAAAAABw/MHNBczLOdtA/s1600-h/StarterGPO+Backup+All+error.JPG" target="blank"&gt;&lt;img id="BLOGGER_PHOTO_ID_5116615646093839362" style="CURSOR: hand" alt="" src="http://3.bp.blogspot.com/_I-snqt5ViC0/RwHe0jWhDAI/AAAAAAAAABw/MHNBczLOdtA/s320/StarterGPO+Backup+All+error.JPG" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;"The overall error was: The system cannot find the path specified. Additional details follow"&lt;br /&gt;&amp;amp;&lt;br /&gt;"[Error] The backup configuration file [C:\xxx\Backup.xml] cannot be saved. The following error occurred: The system cannot find the path specified."&lt;br /&gt;&lt;br /&gt;when performing a backup of your Starter GPO's you are probably testing the RC0 release... That build has a known bug which has been corrected already (RC1)! &lt;/div&gt;&lt;br /&gt;&lt;div&gt;&lt;br /&gt;&lt;br /&gt;But besides from this minor detail I say: Thumbs up for Starter GPO's!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;_&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-4725379622417017587?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/4725379622417017587/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=4725379622417017587' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4725379622417017587'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4725379622417017587'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/10/starter-gpos-what-are-they.html' title='Starter GPO&apos;s - what are they?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_I-snqt5ViC0/RwHe0jWhDAI/AAAAAAAAABw/MHNBczLOdtA/s72-c/StarterGPO+Backup+All+error.JPG' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7464982448970995973</id><published>2007-10-02T02:35:00.000+02:00</published><updated>2007-10-02T02:38:56.139+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='videos'/><category scheme='http://www.blogger.com/atom/ns#' term='MVP'/><category scheme='http://www.blogger.com/atom/ns#' term='Jeremy Moskowitz'/><title type='text'>Moskowitz videos</title><content type='html'>Hi,&lt;br /&gt;&lt;br /&gt;Microsoft MVP, Jeremy Moskowitz, has 2 video interviews out there... Check them out:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://media.podhoster.com/pearsoned/ON_MIC_Moskowitz_01_2.mp4"&gt;Part 1&lt;/a&gt; &amp;amp; &lt;a href="http://media.podhoster.com/pearsoned/ON_MIC_Moskowitz_02_2.mp4"&gt;Part 2&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;_&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7464982448970995973?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7464982448970995973/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7464982448970995973' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7464982448970995973'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7464982448970995973'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/10/moskowitz-videos.html' title='Moskowitz videos'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3419675869759756187</id><published>2007-09-29T01:16:00.000+02:00</published><updated>2007-09-29T01:21:18.112+02:00</updated><title type='text'>GPMC Script Samples</title><content type='html'>&lt;p&gt;&lt;strong&gt;Overview:&lt;/strong&gt;&lt;br /&gt;The Group Policy Management Console (GPMC) can be scripted by using a built-in COM object.&lt;/p&gt;&lt;p&gt;&lt;strong&gt;This package contains a great deal of script examples:&lt;/strong&gt;&lt;br /&gt;BackupAllGPOs.wsf&lt;br /&gt;BackupGPO.wsf&lt;br /&gt;CopyGPO.wsf&lt;br /&gt;CreateEnvironmentFromXML.wsf&lt;br /&gt;CreateGPO.wsf&lt;br /&gt;CreateMigrationTable.wsf&lt;br /&gt;CreateXMLFromEnvironment.wsf&lt;br /&gt;DeleteGPO.wsf&lt;br /&gt;DumpGPOInfo.wsf&lt;br /&gt;DumpSOMInfo.wsf&lt;br /&gt;FindDisabledGPOs.wsf&lt;br /&gt;FindDuplicateNamedGPOs.wsf&lt;br /&gt;FindGPOsByPolicyExtension.wsf&lt;br /&gt;FindGPOsBySecurityGroup.wsf&lt;br /&gt;FindGPOsWithNoSecurityFiltering.wsf&lt;br /&gt;findorphanedGPOsInSYSVOL.wsf&lt;br /&gt;FindSOMsWithExternalGPOLinks.wsf&lt;br /&gt;FindUnlinkedGPOs.wsf&lt;br /&gt;GetReportsForAllGPOs.wsf&lt;br /&gt;GetReportsForGPO.wsf&lt;br /&gt;GrantPermissionOnAllGPOs.wsf&lt;br /&gt;ImportAllGPOs.wsf&lt;br /&gt;ImportGPO.wsf&lt;br /&gt;ListAllGPOs.wsf&lt;br /&gt;ListSOMPolicyTree.wsf&lt;br /&gt;QueryBackupLocation.wsf&lt;br /&gt;RestoreAllGPOs.wsf&lt;br /&gt;RestoreGPO.wsf&lt;br /&gt;SetGPOCreationPermissions.wsf&lt;br /&gt;SetGPOPermissions.wsf&lt;br /&gt;SetGPOPermissionsBySOM.wsf&lt;br /&gt;SetSOMPermissions.wsf&lt;br /&gt;SampleEnvironment.xml&lt;br /&gt;ScriptingReadme.rtf&lt;br /&gt;SampleMigrationTable.migtable&lt;br /&gt;Lib_CommonGPMCFunctions.js&lt;/p&gt;&lt;p&gt;&lt;strong&gt;System requirements:&lt;br /&gt;&lt;/strong&gt;Windows Server 2008 or Windows Vista&lt;/p&gt;&lt;p&gt;&lt;strong&gt;Download here:&lt;/strong&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=38c1a89b-a6d2-4f2a-a944-9236999aee65"&gt;http://www.microsoft.com/downloads/details.aspx?familyid=38c1a89b-a6d2-4f2a-a944-9236999aee65&lt;/a&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3419675869759756187?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3419675869759756187/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3419675869759756187' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3419675869759756187'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3419675869759756187'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/09/gpmc-script-samples.html' title='GPMC Script Samples'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2607476997106142103</id><published>2007-09-29T01:09:00.000+02:00</published><updated>2007-09-29T01:16:17.388+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='adml'/><category scheme='http://www.blogger.com/atom/ns#' term='admx'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='central store'/><title type='text'>Populate the Central Store?</title><content type='html'>If you are in a large international organization you might want to upload Vista ADML files for the different languages used on management computers to the Central Store.&lt;br /&gt;&lt;br /&gt;Now you can download both ADMX and ADML files for Vista in a single package:&lt;br /&gt;&lt;a href="http://go.microsoft.com/?linkid=7471439"&gt;http://go.microsoft.com/?linkid=7471439&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;You might wanna pick out the languages needed only (ADML files) - as this will take up around 80MB of SYSVOL space.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2607476997106142103?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2607476997106142103/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2607476997106142103' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2607476997106142103'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2607476997106142103'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/09/populate-central-store.html' title='Populate the Central Store?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6228234717924952754</id><published>2007-09-29T01:07:00.000+02:00</published><updated>2007-09-29T01:09:05.969+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='Longhorn'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><title type='text'>GP related changes - good MS article</title><content type='html'>Check out this article, it's really good for a "quick" summary of the GP related changes in Windows Vista/Windows Server 2008 (Longhorn)&lt;br /&gt;&lt;br /&gt;&lt;a href="http://technet2.microsoft.com/WindowsVista/en/library/5ae8da2a-878e-48db-a3c1-4be6ac7cf7631033.mspx?mfr=true"&gt;http://technet2.microsoft.com/WindowsVista/en/library/5ae8da2a-878e-48db-a3c1-4be6ac7cf7631033.mspx?mfr=true&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6228234717924952754?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6228234717924952754/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6228234717924952754' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6228234717924952754'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6228234717924952754'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/09/gp-related-changes-good-ms-article.html' title='GP related changes - good MS article'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-5462827285057818195</id><published>2007-09-25T09:24:00.000+02:00</published><updated>2007-09-25T09:28:48.577+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='technet'/><category scheme='http://www.blogger.com/atom/ns#' term='beta'/><category scheme='http://www.blogger.com/atom/ns#' term='ctp'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><title type='text'>Windows Server 2008 RC0 is out there!</title><content type='html'>It's so exciting - Windows Server 2008 RC0 is out there and ready to be downloaded!&lt;br /&gt;&lt;br /&gt;Read the team blog here:&lt;br /&gt;&lt;a href="http://blogs.technet.com/windowsserver/"&gt;http://blogs.technet.com/windowsserver/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Download CTP here:&lt;br /&gt;&lt;a href="http://www.microsoft.com/windowsserver2008/audsel.mspx"&gt;http://www.microsoft.com/windowsserver2008/audsel.mspx&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;.. og go get it from Technet (if you are a subscriber).&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;_&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-5462827285057818195?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/5462827285057818195/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=5462827285057818195' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5462827285057818195'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5462827285057818195'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/09/windows-server-2008-rc0-is-out-there.html' title='Windows Server 2008 RC0 is out there!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-828763897589185000</id><published>2007-09-02T09:35:00.000+02:00</published><updated>2007-09-02T09:51:33.360+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='script'/><category scheme='http://www.blogger.com/atom/ns#' term='scripting'/><title type='text'>Windows Script 5.7 released!</title><content type='html'>&lt;p&gt;Microsoft just gave us an updated version of the Windows Script engine that we all love so much... This version brings very few additions, but great many fixes.&lt;/p&gt;&lt;p&gt;&lt;strong&gt;&lt;u&gt;From release notes:&lt;br /&gt;&lt;/u&gt;&lt;/strong&gt;This release of Windows Script brings the improvements in scripting made during the Vista development cycle to downlevel platforms. During any release cycle we test with increasingly effective analysis tools designed to expose stability problems, memory leaks, and potential security weaknesses in code. The results from this testing comprise the vast majority of changes. Of course, we also include all the current security updates. This is the fastest, most robust, and secure release of Windows Script available.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Why Version 5.7?&lt;/strong&gt;&lt;br /&gt;The primary reason for changing the version number from 5.6 to 5.7 is to simplify servicing and support by synchronizing the versioning to a consistent scheme based on Vista build number. The minor version increase does not indicate significant new features. The scripting feature set is substantially the same as 5.6, with only minor additions.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;What’s New&lt;br /&gt;&lt;/strong&gt;In addition to the general improvements noted above, the following are some of the notable changes in this release.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;em&gt;JScript&lt;/em&gt;&lt;/strong&gt;&lt;br /&gt;• This package includes the improved garbage collector (GC) shipped with Internet Explorer 7 and Vista. The new GC can dramatically improve the performance of applications that create large numbers of objects, such as Ajax-style web applications. These performance improvements are now available to users of earlier browsers.This work replaces and improves upon KB919237. If you have implemented KB919237, we recommend removing the registry keys.&lt;br /&gt;• New progid JScript.Compact implements the JScript Compact Profile (ECMA 327). This is a profile of the ECMAScript language standard with a subset of features. See the ECMA 327 standard for more information.&lt;br /&gt;• Update for new Daylight Savings Time rules.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;em&gt;VBScript&lt;/em&gt;&lt;/strong&gt;&lt;br /&gt;• VBScript defines a new global function GetUILanguage that returns the current default user interface language. This is the same value returned by the Windows API GetUserDefaultUILanguage. Script authors can now write code that is aware of the current user’s language preference.&lt;br /&gt;• Fix crash when calling VBScript class objects from JScript.&lt;br /&gt;• Fix problems with comparisons to NaN in some versions (KB901104).VBScript and JScript&lt;br /&gt;• Support for large address space on machines with &gt; 2GB RAM (KB890048)&lt;br /&gt;• Improved stack checking makes script more robust in the face of stack overflows.&lt;br /&gt;• Fix miscellaneous TLS leaks and memory leaks, including using the RegEx object with more than 10 sub-matches.Windows Scripting Host&lt;br /&gt;• Fixed rare deadlocks in remote scripting. Prevents occasional hangs in remote scripts.&lt;br /&gt;• Fixed propagation of error return codes in remote scripting. Error codes produced by remote scripts are more reliably returned to the client.&lt;br /&gt;• Fixed attempting to load nonexistent wshenu.dll which created performance problem in login scripts.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Included KB’s&lt;/strong&gt;&lt;br /&gt;This release also contains fixes described in the following knowledgebase articles.&lt;br /&gt;KB831191&lt;br /&gt;KB834742&lt;br /&gt;KB836863&lt;br /&gt;KB890048&lt;br /&gt;KB892296&lt;br /&gt;KB901104&lt;br /&gt;KB903648&lt;br /&gt;KB906092&lt;br /&gt;KB917344&lt;br /&gt;KB919237 (superceded by new GC)&lt;br /&gt;KB925753&lt;br /&gt;KB933811&lt;br /&gt;KB933812&lt;br /&gt;KB933873&lt;br /&gt;KB940284&lt;/p&gt;&lt;p&gt;&lt;strong&gt;&lt;u&gt;Download here:&lt;br /&gt;&lt;/u&gt;&lt;/strong&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=c03d3e49-b40e-4ca1-a0c7-cc135ec4d2be&amp;displaylang=en&amp;amp;tm"&gt;Windows Script 5.7 for Windows 2000&lt;/a&gt;&lt;br /&gt;&lt;a href="http://go.microsoft.com/?linkid=7322782"&gt;Windows Script 5.7 for Windows XP&lt;/a&gt;&lt;br /&gt;&lt;a href="http://go.microsoft.com/?linkid=7322784"&gt;Windows Script 5.7 for Windows Server 2003&lt;/a&gt;&lt;br /&gt;&lt;a href="http://download.microsoft.com/download/4/4/d/44de8a9e-630d-4c10-9f17-b9b34d3f6417/Windows%20Script%20Release%20Notes.rtf"&gt;Windows Script 5.7 Release Notes&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;_&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-828763897589185000?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/828763897589185000/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=828763897589185000' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/828763897589185000'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/828763897589185000'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/09/windows-script-57-released.html' title='Windows Script 5.7 released!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1232080850190261138</id><published>2007-09-02T09:27:00.000+02:00</published><updated>2007-09-02T09:34:56.124+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='BPA'/><category scheme='http://www.blogger.com/atom/ns#' term='GPDBPA'/><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='best practice analyzer'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='gpo'/><title type='text'>Group Policy Diagnostic Best Practice Analyzer</title><content type='html'>Microsoft just released a free tool to search for errors in Group Policy configuration - totally new and cool tool in the Best Practice Analyzer (BPA) series.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;Download here:&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=70E4A971-DA91-4D4F-BF92-5C75A84F3742"&gt;GPDBPA for Windows XP&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=317C372C-0FE3-4AD0-BE52-2FF3004DAEF0"&gt;GPDBPA for Windows XP x64 Edition&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=47F11B02-8EE4-450B-BF13-880B91BA4566"&gt;GPDBPA for Windows Server 2003&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyId=70E0EDEC-66F7-4499-83B7-4F2009DF2314"&gt;GPDBPA for Windows Server 2003 x64 Edition&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;Read more here:&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;&lt;a href="http://support.microsoft.com/kb/940122"&gt;Microsoft KB 940122 article&lt;/a&gt;: "How to use the Microsoft Group Policy Diagnostic Best Practice Analyzer (GPDBPA) tool to collect and to analyze data"&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;Quote from KB article:&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;You can use the Microsoft Group Policy Diagnostic Best Practice Analyzer (GPDBPA) tool to collect data about an environment's Group Policy configuration. For example, you can use this tool to analyze a Group Policy configuration for the following purposes:&lt;br /&gt;&lt;br /&gt;• To search for common configuration errors&lt;br /&gt;• To discover and to diagnose problems&lt;br /&gt;• To collect data for archiving&lt;br /&gt;&lt;br /&gt;The account that you use to run the tool must have the appropriate permissions to access both the Active Directory database on an environment's domain controllers and the SYSVOL file structure that is maintained on those domain controllers. Additionally, the account must have local Administrator permissions on the Group Policy client.&lt;br /&gt;&lt;br /&gt;There are two additional prerequisites for using the GPDBPA tool:&lt;br /&gt;•The Microsoft .NET Framework version 1.1 or a later version must be installed on the computer on which the GPDBPA tool is installed.&lt;br /&gt;•The Windows Management Instrumentation (WMI) service must be running on the environment's domain controllers.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1232080850190261138?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1232080850190261138/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1232080850190261138' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1232080850190261138'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1232080850190261138'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/09/group-policy-diagnostic-best-practice.html' title='Group Policy Diagnostic Best Practice Analyzer'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1504941758488617452</id><published>2007-07-17T23:42:00.000+02:00</published><updated>2007-07-17T23:48:13.816+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='technet magazine'/><category scheme='http://www.blogger.com/atom/ns#' term='posters'/><category scheme='http://www.blogger.com/atom/ns#' term='Windows Server 2008'/><title type='text'>Something nice for the wall</title><content type='html'>If you haven't got them already - those geeky posters from the July 2007 issue of TechNet Magazine visualizing the various features and components of Windows Server 2008 - go get them &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=c2b9e44e-0bbd-47cb-bc09-b3d48be7f867&amp;DisplayLang=en"&gt;here&lt;/a&gt;, ready to print :-)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=c2b9e44e-0bbd-47cb-bc09-b3d48be7f867&amp;DisplayLang=en"&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1504941758488617452?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1504941758488617452/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1504941758488617452' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1504941758488617452'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1504941758488617452'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/07/something-nice-for-wall.html' title='Something nice for the wall'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7168983859869754279</id><published>2007-06-19T21:03:00.000+02:00</published><updated>2007-06-19T21:24:53.499+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='SteadyState'/><category scheme='http://www.blogger.com/atom/ns#' term='Shared Computer Toolkit'/><category scheme='http://www.blogger.com/atom/ns#' term='windows xp'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='security'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='public'/><title type='text'>Windows SteadyState - the new and shiny Shared Computer Toolkit</title><content type='html'>Windows SteadyState is ready for download from Microsoft now - you can &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=d077a52d-93e9-4b02-bd95-9d770ccdb431&amp;amp;DisplayLang=en"&gt;get it right here&lt;/a&gt;! It's free - you just need to pass the WGA test... Only pirate Windows users cannot pass that test, so what are you waiting for? :)&lt;br /&gt;&lt;br /&gt;This toolkit is extremely efficient when it comes to protecting public available Windows XP computers (no support for Windows Vista unfortunately).&lt;br /&gt;&lt;br /&gt;In short Windows SteadyState is:&lt;br /&gt;- Easier to set up&lt;br /&gt;- Easier to use&lt;br /&gt;- More Secure&lt;br /&gt;&lt;br /&gt;Windows SteadyState website:&lt;br /&gt;&lt;a href="http://www.microsoft.com/windows/products/winfamily/sharedaccess/default.mspx"&gt;http://www.microsoft.com/windows/products/winfamily/sharedaccess/default.mspx&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7168983859869754279?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7168983859869754279/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7168983859869754279' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7168983859869754279'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7168983859869754279'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/06/windows-steadystate-new-and-shiny.html' title='Windows SteadyState - the new and shiny Shared Computer Toolkit'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2355187762393025677</id><published>2007-06-12T08:14:00.000+02:00</published><updated>2007-06-12T08:18:05.097+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='64bit'/><category scheme='http://www.blogger.com/atom/ns#' term='virtualization'/><category scheme='http://www.blogger.com/atom/ns#' term='service pack'/><category scheme='http://www.blogger.com/atom/ns#' term='virtual server'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><title type='text'>Microsoft Virtual Server 2005 R2 SP1 released</title><content type='html'>Hi!&lt;br /&gt;&lt;br /&gt;Microsoft released Service Pack 1 for Virtual Server 2005 R2 - Enterprise Edition!&lt;br /&gt;&lt;br /&gt;It can be &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=bc49c7c8-4840-4e67-8dc4-1e6e218acce4&amp;DisplayLang=en"&gt;downloaded here&lt;/a&gt;! More &lt;a href="http://www.microsoft.com/windowsserversystem/virtualserver/evaluation/vsoverview.mspx"&gt;info available here&lt;/a&gt;!&lt;br /&gt;&lt;br /&gt;Now all we need is 64bit support for the Guest OS :-)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2355187762393025677?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2355187762393025677/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2355187762393025677' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2355187762393025677'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2355187762393025677'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/06/microsoft-virtual-server-2005-r2-sp1.html' title='Microsoft Virtual Server 2005 R2 SP1 released'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-5681208017035416426</id><published>2007-06-05T21:28:00.000+02:00</published><updated>2007-06-05T22:16:56.559+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='TechEd'/><category scheme='http://www.blogger.com/atom/ns#' term='deployment'/><category scheme='http://www.blogger.com/atom/ns#' term='specops'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='gpo'/><category scheme='http://www.blogger.com/atom/ns#' term='orlando'/><title type='text'>Booth #914</title><content type='html'>I joined a session "Deep Dive into Microsoft Windows Vista Group Policy Changes and Troubleshooting" with &lt;a href="http://www.gpanswers.com/"&gt;Jeremy Moskowitz&lt;/a&gt; here in Orlando - and he was very good. He's a funny guy and it seemed like everybody in the room just loved him. Thanx for the inspiration Jeremy - you put on a nice show.&lt;br /&gt;&lt;br /&gt;After the session I joined him at the &lt;a href="http://www.specopssoft.com"&gt;SpecOps &lt;/a&gt;booth (#914) and spoke to some of the other Group Policy Gurus, like &lt;a href="http://www.gpoguy.com"&gt;Darren Mar-Elia&lt;/a&gt;, &lt;a href="http://www.cliptraining.com/"&gt;J. Peter Bruzzese&lt;/a&gt; and the SpecOps employees. SpecOps were really focused on sharing info on their &lt;a href="http://www.specopssoft.com/products/specopsdeploy/"&gt;SpecOps Deploy product &lt;/a&gt;- so why not help them here ;-)&lt;br /&gt;&lt;br /&gt;Tomorrow I hope to catch &lt;a href="http://www.windowsecurity.com/Derek_Melber/"&gt;Derek Melber&lt;/a&gt; - a 'colleague' from &lt;a href="http://www.windowsecurity.com"&gt;www.windowsecurity.com&lt;/a&gt; - he was busy preparing for his upcoming Group Policy sessions so he didn't show today... I'll try to get back with a report from those sessions when possible.&lt;br /&gt;&lt;br /&gt;I have to mention that it turned out Peter Bruzzese not only mentions me, but also quotes me, in his new book "Tricks of the Microsoft Windows Vista Master" * - as a "Vista Master" - thanx for the honor!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;* Book is published by Que Publishing&lt;br /&gt;ISBN-13: 978-0-7897-3689-5&lt;br /&gt;ISBN-10: 0-7897-3689-6&lt;br /&gt;&lt;a href="http://www.amazon.com/Tricks-Microsoft-Windows-Vista-Masters/dp/0789736896/ref=sr_1_1/104-5885167-2463158?ie=UTF8&amp;s=books&amp;amp;qid=1181074468&amp;amp;sr=8-1"&gt;Amazon link here!&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-5681208017035416426?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/5681208017035416426/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=5681208017035416426' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5681208017035416426'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/5681208017035416426'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/06/booth-914.html' title='Booth #914'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3156059074111772600</id><published>2007-06-04T16:45:00.000+02:00</published><updated>2007-06-04T16:49:16.803+02:00</updated><title type='text'>Blogging from TechEd 2007 Orlando</title><content type='html'>Hi there,&lt;br /&gt;&lt;br /&gt;I'm blogging "Live" from Microsoft TechEd 2007 in Orlando, Florida. It's an amazing event - and hopefully we will learn something new :)&lt;br /&gt;&lt;br /&gt;You should be able to follow the blogs on the Microsoft Technet Denmark website in danish:&lt;br /&gt;&lt;a href="https://mobile.interprise.dk/owa/redir.aspx?URL=http%3a%2f%2fwww.microsoft.com%2fdanmark%2ftechnet%2fdefault.mspx" target="_blank"&gt;http://www.microsoft.com/danmark/technet/default.mspx&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Direct links:&lt;br /&gt;&lt;a href="http://blogs.technet.com/dkitpro/archive/2007/06/04/jakob-blogger-fra-teched-i-orlando.aspx" target="_blank"&gt;http://blogs.technet.com/dkitpro/archive/2007/06/04/jakob-blogger-fra-teched-i-orlando.aspx&lt;/a&gt;&lt;br /&gt;&lt;a href="http://blogs.technet.com/dkitpro/archive/2007/05/23/f-lg-med-i-jakobs-blog-om-bl-a-microsoft-group-policies.aspx"&gt;http://blogs.technet.com/dkitpro/archive/2007/05/23/f-lg-med-i-jakobs-blog-om-bl-a-microsoft-group-policies.aspx&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3156059074111772600?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3156059074111772600/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3156059074111772600' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3156059074111772600'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3156059074111772600'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/06/blogging-from-teched-2007-orlando.html' title='Blogging from TechEd 2007 Orlando'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-706970023065003989</id><published>2007-05-19T14:28:00.000+02:00</published><updated>2007-05-19T14:39:54.560+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mlgpo'/><category scheme='http://www.blogger.com/atom/ns#' term='policy'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='group policies'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='sid'/><title type='text'>Export a Local User Policy on Vista</title><content type='html'>I received an interesting question by mail the other day regarding &lt;a href="http://www.windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part2.html."&gt;my article about MLGO on Windowsecurity.com&lt;/a&gt;. The question was, if it is possible to export a local policy assigned to a specific user to a user on another computer...?&lt;br /&gt;&lt;br /&gt;After scratching my head and researching a bit it seemed like nobody had a good answer for this and no GUI tool is apparently available - so I had to come up with something myself... This is the result:&lt;br /&gt;&lt;br /&gt;The following undocumented - and probably &lt;strong&gt;&lt;em&gt;unsupported&lt;/em&gt;&lt;/strong&gt; - method worked for me:&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;On "Source Computer":&lt;/strong&gt;&lt;br /&gt;1. Create/modify a local policy for the "Source User"&lt;br /&gt;2. Go to "&lt;strong&gt;C:\Windows\System32\GroupPolicyUsers\&lt;/strong&gt;" and locate the last modified policy folder&lt;br /&gt;- the folder should be named with the &lt;strong&gt;SID&lt;/strong&gt; (Security ID) of the "Source User", e.g. "S-1-5-21-452792215-1268730067-2626448776-1108"&lt;br /&gt;3. Copy the folder and content to the "Target Computer" into the same directory structure&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;On "Target Computer":&lt;/strong&gt;&lt;br /&gt;1. Rename the newly copied folder to the SID of the "Target User" (the user who should receive the "exported" policy)&lt;br /&gt;- &lt;a href="http://www.microsoft.com/technet/scriptcenter/resources/qanda/dec04/hey1203.mspx"&gt;how to find the SID of a local user?&lt;/a&gt;&lt;br /&gt;2. Set NTFS permissions on the newly renamed folder to:&lt;br /&gt;- SYSTEM = "Full Control"&lt;br /&gt;- Administrators group = "Full Control"&lt;br /&gt;- "Target User" = "Read &amp;amp; Execute"&lt;br /&gt;3. Test a logon as the "Target User", the policies should be correctly applied.&lt;br /&gt;&lt;br /&gt;Done! Well, the procedure is a bid "odd", but it could be scripted if required.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-706970023065003989?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/706970023065003989/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=706970023065003989' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/706970023065003989'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/706970023065003989'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/05/export-local-user-policy-on-vista.html' title='Export a Local User Policy on Vista'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-4791045192924225860</id><published>2007-05-10T09:19:00.000+02:00</published><updated>2007-05-10T11:39:39.211+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='block'/><category scheme='http://www.blogger.com/atom/ns#' term='srp'/><category scheme='http://www.blogger.com/atom/ns#' term='hacker'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='endpointsecurity'/><category scheme='http://www.blogger.com/atom/ns#' term='gpo'/><category scheme='http://www.blogger.com/atom/ns#' term='u2'/><category scheme='http://www.blogger.com/atom/ns#' term='policy'/><category scheme='http://www.blogger.com/atom/ns#' term='software restriction policies'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='xp'/><category scheme='http://www.blogger.com/atom/ns#' term='windows server 2003'/><category scheme='http://www.blogger.com/atom/ns#' term='gfi'/><title type='text'>Blocking U3 USB devices</title><content type='html'>Hey,&lt;br /&gt;&lt;br /&gt;I get this question a lot: how can we block &lt;a href="http://www.everythingusb.com/u3.html"&gt;U3 devices&lt;/a&gt; on the network?&lt;br /&gt;&lt;br /&gt;Well, one approach that some companies take is to simply block the physical USB ports by glue etc. - no USB devices are able to get in, so we have a "secure" system... Hmmm, this would mean that we are not able to use other USB devices either - maybe not the best solution for all of us then...&lt;br /&gt;&lt;br /&gt;If you have Windows Vista deployed the new &lt;a href="http://www.windowsecurity.com/articles/Best-practice-security-guide-built-in-device-control-Windows-Part11744.html"&gt;Device Control functionality&lt;/a&gt;, but most companies have Windows XP and Windows Server 2003 products in production (and probably waits for Vista Service Pack 1 before they go ahead with the Vista deployment)... So, what could they do then?&lt;br /&gt;&lt;br /&gt;Third party software, like &lt;a href="http://www.windowsecurity.com/articles/Product-Review-GFI-EndPointSecurity.html"&gt;GFI EndPointSecurity&lt;/a&gt; is capable of blocking USB devices etc. - and it's does a very good job too, but there's also a free way to do it (if you ask me it's the best way to do it): implement Software Restriction Policies (SRP)!&lt;br /&gt;&lt;br /&gt;I've been writing about the "&lt;a href="http://www.windowsecurity.com/articles/Default-Deny-All-Applications-Part1.html"&gt;Default Deny All Applications&lt;/a&gt;" approach and this is (of couse) also capable of blocking U3 devices - out of the box, built-in Windows functionality.&lt;br /&gt;&lt;br /&gt;When the Default Security Level is set to Disallowed, nothing is able to launch except what the administrator defines as Unrestricted (and some default rules and limitations on top of this). When a user plugs in the U3 USB device NOTHING happens - no weird hacker tools, utilities, applications and whatever those 'wonderful' devices normally introduce.&lt;br /&gt;&lt;br /&gt;Behind the scenes SRP restricts access to the U3 LaunchPad and leaves only an event in the Windows Event log:&lt;br /&gt;&lt;br /&gt;&lt;p&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/_I-snqt5ViC0/RkLkR8AzWSI/AAAAAAAAABE/fdt3iPoo1_Q/s1600-h/SRP_U3.bmp"&gt;&lt;img id="BLOGGER_PHOTO_ID_5062859927936260386" style="FLOAT: left; MARGIN: 0px 10px 10px 0px; CURSOR: hand" alt="" src="http://3.bp.blogspot.com/_I-snqt5ViC0/RkLkR8AzWSI/AAAAAAAAABE/fdt3iPoo1_Q/s400/SRP_U3.bmp" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;/p&gt;&lt;br /&gt;&lt;p&gt;&lt;br&gt;&lt;br /&gt;&lt;strong&gt;Source:&lt;/strong&gt; Software Restriction Policy&lt;br /&gt;&lt;strong&gt;Event ID:&lt;/strong&gt; 865&lt;br /&gt;&lt;strong&gt;Type:&lt;/strong&gt; Warning &lt;p&gt;&lt;/p&gt;&lt;p&gt;&lt;em&gt;"Access to C:\...\LaunchPad.exe has been restricted by your Administrator by the default software restriction policy level"&lt;/em&gt;&lt;/p&gt;&lt;p&gt;&lt;br /&gt;This limitation can be set on user and/or computer level.&lt;/p&gt;&lt;p&gt;After introducing SRP on your Windows computers (Windows XP and above) - you can consider your network "U3 free".&lt;br /&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-4791045192924225860?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/4791045192924225860/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=4791045192924225860' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4791045192924225860'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/4791045192924225860'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/05/blocking-u3-usb-devices.html' title='Blocking U3 USB devices'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><media:thumbnail xmlns:media='http://search.yahoo.com/mrss/' url='http://3.bp.blogspot.com/_I-snqt5ViC0/RkLkR8AzWSI/AAAAAAAAABE/fdt3iPoo1_Q/s72-c/SRP_U3.bmp' height='72' width='72'/><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2140453114052640902</id><published>2007-05-03T01:43:00.000+02:00</published><updated>2007-05-03T01:54:35.687+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='rdp'/><category scheme='http://www.blogger.com/atom/ns#' term='mstsc'/><category scheme='http://www.blogger.com/atom/ns#' term='remote desktop'/><category scheme='http://www.blogger.com/atom/ns#' term='kb'/><category scheme='http://www.blogger.com/atom/ns#' term='problem'/><category scheme='http://www.blogger.com/atom/ns#' term='terminal services'/><category scheme='http://www.blogger.com/atom/ns#' term='connection'/><category scheme='http://www.blogger.com/atom/ns#' term='article'/><category scheme='http://www.blogger.com/atom/ns#' term='knowledge base'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='multihomed'/><title type='text'>Remote Desktop issue on multihomed machines</title><content type='html'>I have seen this issue too many times now, so I have to write this short blog about it!&lt;br /&gt;&lt;br /&gt;Have you ever seen this error when trying to connect to a Remote Desktop enabled machine using MSTSC/Remote Desktop Client:&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;em&gt;Remote Desktop Disconnected&lt;/em&gt;&lt;/strong&gt;&lt;br /&gt;&lt;em&gt;The client could not connect to the remote computer. Remote connections might not be enabled or the computer might be too busy to accept new connections. It is also possible that network problems are preventing your connection. Please try connecting again later. If the problem continues to occur, contact your administrator.&lt;/em&gt;&lt;br /&gt;&lt;br /&gt;Well, I've seen it so many times now, especially on ISA servers... Even after the RDP sessions have worked nicely, sometimes, for some reason, the RDP settings can be changed - or even "corrupted". In most cases the above error has something to do with NIC (Network Interface Card) adapter binding to RDP.&lt;br /&gt;&lt;br /&gt;If you are experiencing this issue go read the Microsoft KB article: "You can not establish a Remote Desktop session to a computer running one of the affected products". You will find it here &lt;a href="http://support.microsoft.com/kb/555382"&gt;http://support.microsoft.com/kb/555382&lt;/a&gt; - good luck!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2140453114052640902?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2140453114052640902/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2140453114052640902' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2140453114052640902'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2140453114052640902'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/05/remote-desktop-issue-on-multihomed.html' title='Remote Desktop issue on multihomed machines'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-3262816621298052110</id><published>2007-05-01T07:46:00.000+02:00</published><updated>2007-05-01T08:12:58.522+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='x64'/><category scheme='http://www.blogger.com/atom/ns#' term='deployment'/><category scheme='http://www.blogger.com/atom/ns#' term='mmc'/><category scheme='http://www.blogger.com/atom/ns#' term='software'/><category scheme='http://www.blogger.com/atom/ns#' term='release'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='wsus'/><category scheme='http://www.blogger.com/atom/ns#' term='updates'/><title type='text'>WSUS 3.0 Released - nice stuff!</title><content type='html'>I'm happy to tell you that &lt;a href="http://www.microsoft.com/technet/windowsserver/wsus/default.mspx"&gt;WSUS&lt;/a&gt; version 3.0 has been released! The release day was April 30th 2007 - a day to remember...&lt;br /&gt;&lt;br /&gt;This version bring lots of goodies compared to it's younger brother WSUS 2.0 (who did a great job in my opinion).&lt;br /&gt;&lt;br /&gt;So, what's new? Well, let my try to wrap up some of the really good stuff:&lt;br /&gt;- Inplace upgrade over WSUS 2.0 SP1&lt;br /&gt;- New setup and configuration wizard&lt;br /&gt;- New MMC (Microsoft Management Console) GUI&lt;br /&gt;- New views and reports (and faster reports - up to 50%)&lt;br /&gt;- Cleanup wizard for management of stale clients and content&lt;br /&gt;- Built-in email notifications&lt;br /&gt;- New approvement rules&lt;br /&gt;- Enhanced target group concepts (eg. overlapping group membership)&lt;br /&gt;- Support for language sub-setting for downstream replica servers&lt;br /&gt;- Peer caching&lt;br /&gt;- Syncronization with MS down to every 1 hour now&lt;br /&gt;- Native support for x64 platform&lt;br /&gt;- NLB (Network Load balancing) and SQL Cluster support&lt;br /&gt;- MOM Management Pack (will be released very soon)&lt;br /&gt;- Client 'Sync me now' quick check-in&lt;br /&gt;- and all the other stuff...&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Download:&lt;/strong&gt;&lt;br /&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkId=89379"&gt;x86/x64 package&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/info.aspx?na=40&amp;p=1&amp;amp;SrcDisplayLang=en&amp;SrcCategoryId=&amp;amp;SrcFamilyId=e4a868d7-a820-46a0-b4db-ed6aa4a336d9&amp;u=http%3a%2f%2fgo.microsoft.com%2ffwlink%2f%3fLinkId%3d71268"&gt;WSUS 3.0 Release Notes&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.microsoft.com/downloads/info.aspx?na=40&amp;amp;p=2&amp;SrcDisplayLang=en&amp;amp;SrcCategoryId=&amp;SrcFamilyId=e4a868d7-a820-46a0-b4db-ed6aa4a336d9&amp;amp;u=http%3a%2f%2fgo.microsoft.com%2ffwlink%2f%3fLinkId%3d89081"&gt;WSUS 3.0 on SBS 2003&lt;/a&gt;&lt;br /&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkId=79983"&gt;Deployment Guide for WSUS 3.0&lt;/a&gt;&lt;br /&gt;&lt;a href="http://go.microsoft.com/fwlink/?LinkId=71267"&gt;Step-by-step Guide: Getting Started with WSUS 3.0&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Go to &lt;a href="http://technet2.microsoft.com/windowsserver/en/library/d446d310-413f-4844-8aad-c557712397401033.mspx?mfr=true"&gt;WSUS Technical Library&lt;/a&gt; for more information, guides etc.&lt;br /&gt;&lt;br /&gt;I think we will all benefit from this release - well, maybe not the penguin guys :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-3262816621298052110?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/3262816621298052110/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=3262816621298052110' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3262816621298052110'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/3262816621298052110'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/05/wsus-30-released-nice-stuff.html' title='WSUS 3.0 Released - nice stuff!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-8589760457560448117</id><published>2007-04-26T08:02:00.000+02:00</published><updated>2007-04-26T08:05:23.816+02:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='server'/><category scheme='http://www.blogger.com/atom/ns#' term='download'/><category scheme='http://www.blogger.com/atom/ns#' term='Longhorn'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='beta'/><title type='text'>Windows Server Code Name Longhorn Beta 3 is PUBLIC!</title><content type='html'>Hello there,&lt;br /&gt;&lt;br /&gt;I know it has been a while, but something great happened today :)&lt;br /&gt;&lt;br /&gt;Windows Server Code Name "Longhorn" is available for download here:&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/prodtechnol/beta/lhs/default.mspx" target="_blank"&gt;http://www.microsoft.com/technet/prodtechnol/beta/lhs/default.mspx&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;You can download Standard, Enterprise, Web and even Datacenter editions - x86 or x64!&lt;br /&gt;&lt;br /&gt;Go get it ASAP!!!!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-8589760457560448117?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/8589760457560448117/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=8589760457560448117' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/8589760457560448117'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/8589760457560448117'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/04/windows-server-code-name-longhorn-beta.html' title='Windows Server Code Name Longhorn Beta 3 is PUBLIC!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-6364463761353541903</id><published>2007-02-19T21:36:00.000+01:00</published><updated>2007-02-19T23:37:04.741+01:00</updated><title type='text'>Virtual PC 2007 is out there!</title><content type='html'>&lt;p&gt;Go to &lt;a href="http://www.microsoft.com/windows/products/winfamily/virtualpc/default.mspx"&gt;this link&lt;/a&gt; and get the latest version of Virtual PC!&lt;/p&gt;&lt;p&gt;You must uninstall any previously installed beta versions of VPC 2007 before installing the latest edition.&lt;/p&gt;&lt;p&gt;You can download the release notes &lt;a href="http://go.microsoft.com/fwlink/?LinkID=81416"&gt;here!&lt;/a&gt;&lt;/p&gt;&lt;p&gt;&lt;strong&gt;&lt;em&gt;This release of Virtual PC 2007 introduces support for the following:&lt;/em&gt;&lt;/strong&gt;&lt;/p&gt;&lt;ul&gt;&lt;li&gt;&lt;em&gt;Windows Vista™ operating system as a host operating system&lt;/em&gt;&lt;/li&gt;&lt;li&gt;&lt;em&gt;Windows Vista as a guest operating system&lt;/em&gt;&lt;/li&gt;&lt;li&gt;&lt;em&gt;64-bit host operating systems&lt;/em&gt;&lt;/li&gt;&lt;li&gt;&lt;em&gt;Hardware-assisted virtualization&lt;/em&gt;&lt;/li&gt;&lt;li&gt;&lt;em&gt;Network-based installation of a guest operating system&lt;/em&gt;&lt;/li&gt;&lt;li&gt;&lt;em&gt;Running virtual machines on multiple monitors&lt;/em&gt;&lt;/li&gt;&lt;li&gt;&lt;em&gt;Support has been removed for the use of linked disks in a virtual machine&lt;/em&gt; &lt;/li&gt;&lt;/ul&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-6364463761353541903?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/6364463761353541903/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=6364463761353541903' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6364463761353541903'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/6364463761353541903'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/02/virtual-pc-2007-is-out-there.html' title='Virtual PC 2007 is out there!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-2545108994517149495</id><published>2007-01-30T07:32:00.000+01:00</published><updated>2007-01-30T09:33:39.060+01:00</updated><category scheme='http://www.blogger.com/atom/ns#' term='mui'/><category scheme='http://www.blogger.com/atom/ns#' term='language interface packs'/><category scheme='http://www.blogger.com/atom/ns#' term='regional options'/><category scheme='http://www.blogger.com/atom/ns#' term='multilingual'/><category scheme='http://www.blogger.com/atom/ns#' term='language pack'/><category scheme='http://www.blogger.com/atom/ns#' term='display language'/><category scheme='http://www.blogger.com/atom/ns#' term='vista'/><category scheme='http://www.blogger.com/atom/ns#' term='gui'/><category scheme='http://www.blogger.com/atom/ns#' term='windows'/><category scheme='http://www.blogger.com/atom/ns#' term='microsoft'/><category scheme='http://www.blogger.com/atom/ns#' term='language'/><title type='text'>Windows Vista Language Packs</title><content type='html'>First of all - happy Vista Launch Day :)&lt;br /&gt;&lt;br /&gt;I just want to write a real quick blog about Windows Vistas way of handling Display Language. With Windows 2000/XP we also had MUIs - Multilingual User Interface language packs - they were just a bit more complicated to setup (just getting the media was a seperate task). LIPs (Language Interface Pack) for Windows Vista Ultimate and Windows Vista Enterprise are now available on Windows Update!&lt;br /&gt;&lt;br /&gt;&lt;a target="_blank" href="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/processA.jpg"&gt;&lt;img style="WIDTH: 320px; CURSOR: hand" alt="" src="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/processA.jpg" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Installing languages (we can have multiple packs installed):&lt;br /&gt;&lt;br /&gt;&lt;a target="_blank" href="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/processB.jpg"&gt;&lt;img style="WIDTH: 320px; CURSOR: hand" alt="" src="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/processB.jpg" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The administrator installs the required language packs and users can user Regional and Language Options to set their Display Language - the language follows the user. In this case I'm, gonna select Danish...&lt;br /&gt;&lt;br /&gt;&lt;a target="_blank" href="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/RegionalOptions.jpg"&gt;&lt;img style="WIDTH: 320px; CURSOR: hand" alt="" src="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/RegionalOptions.jpg" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Now all we have to do is to log off:&lt;br /&gt;&lt;br /&gt;&lt;a target="_blank" href="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/logoff.jpg"&gt;&lt;img style="WIDTH: 320px; CURSOR: hand" alt="" src="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/logoff.jpg" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;The GUI is not in Danish... Internet Explorer, Calculator, Control Panel, Help &amp; Support - everything!&lt;br /&gt;&lt;br /&gt;&lt;a target="_blank" href="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/DanishStartMenu.jpg"&gt;&lt;img style="WIDTH: 320px; CURSOR: hand" alt="" src="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/DanishStartMenu.jpg" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Other language packs are available on the Windows Update website - by the end of 2007 there should be 99 languages available according to Microsoft&lt;br /&gt;&lt;br /&gt;&lt;a target="_blank" href="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/WindowsUpdateLP.jpg"&gt;&lt;img style="WIDTH: 320px; CURSOR: hand" alt="" src="http://www.heidelbergit.dk/Screenshots/VistaLanguagePack/WindowsUpdateLP.jpg" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Extremely cool and smooth if you ask me :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-2545108994517149495?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/2545108994517149495/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=2545108994517149495' title='3 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2545108994517149495'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/2545108994517149495'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/01/windows-vista-language-packs.html' title='Windows Vista Language Packs'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>3</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-767761676271444980</id><published>2007-01-15T00:33:00.000+01:00</published><updated>2011-10-14T08:43:47.761+02:00</updated><title type='text'>FlexCommand</title><content type='html'>Hi,&lt;br /&gt;&lt;br /&gt;I was looking at Darren Mar-Elia's (MVP Group Policy) tool that makes it possible to update a REMOTE computers Group Policy settings using the command line (almost like the good "old" GPUPDATE, just on speed). You can get more info and &lt;a href="http://www.gpoguy.com/rgprefresh.htm" target="_blank"&gt;download the tool here&lt;/a&gt;.&lt;br /&gt;I thought it might be an idea to "wrap" the tool into a simple GUI application that should make it possible to select an Organizational Unit (OU) in a domain and run the RGPREFRESH for each computer object in the OU. I know you can use a FOR command, DSQUERY and other stuff, but "normal" admins etc. might not find this easy to do.&lt;br /&gt;That made me start working on a "quick-and-dirty" HTA application which should let the user select an OU and the run the RGPREFRESH command with some checkboxes for the available switches... BUT, after a short time I decided to make the application more FLEXIBLE so the user can type ANY command that should be executed for a given number of computers (selected from an OU).&lt;br /&gt;The tool can now be combined with most command line utilities, fx. the wonderful &lt;a href="http://www.microsoft.com/technet/sysinternals/utilities/psexec.mspx" target="_blank"&gt;PSEXEC from Sysinternals&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;strong&gt;The FlexCommand HTA application&lt;/strong&gt;&lt;/u&gt;&lt;br /&gt;So, let's take a look at the tool in its current state (version 1.0).&lt;br /&gt;&lt;a atomicselection="true" href="http://www.heidelbergit.dk/Screenshots/FlexCommand/Default.jpg" target="_blank"&gt;&lt;img border="0" height="115" src="http://www.heidelbergit.dk/Screenshots/FlexCommand/Default.jpg" style="border-bottom: 0px; border-left: 0px; border-right: 0px; border-top: 0px;" width="240" /&gt;&lt;/a&gt; &lt;br /&gt;As you can see above the GUI is pretty simple. First we should select en Organizational Unit (must be done before the application can be executed):&lt;br /&gt;&lt;a atomicselection="true" href="http://www.heidelbergit.dk/Screenshots/FlexCommand/Select%20OU.jpg" target="_blank"&gt;&lt;img border="0" height="115" src="http://www.heidelbergit.dk/Screenshots/FlexCommand/Select OU.jpg" style="border-bottom: 0px; border-left: 0px; border-right: 0px; border-top: 0px;" width="240" /&gt;&lt;/a&gt; &lt;br /&gt;After selecting a given OU (hopefully one with computer objects in it) there is 2 checkboxes that can be selected.&lt;br /&gt;&lt;em&gt;A. Also handle computers in sub-Organizational Units?&lt;/em&gt;&lt;br /&gt;With this checkbox selected we use "SUBTREE" in the LDAP query behind the scenes, so all computer objects in the underlying OU's will be handled too!&lt;br /&gt;&lt;em&gt;B. Only run command if the computer is alive (WMI)?&lt;/em&gt;&lt;br /&gt;With this checkbox selected we check to see if the remote computer is alive - by using a WMI PING (that unfortunately can be a bit slow when a remote computer is not responding - but still faster than commands that just wait to "timeout") - before actually executing a command against the remote computer.&lt;br /&gt;&lt;a atomicselection="true" href="http://www.heidelbergit.dk/Screenshots/FlexCommand/Checkboxes.jpg" target="_blank"&gt;&lt;img border="0" height="115" src="http://www.heidelbergit.dk/Screenshots/FlexCommand/Checkboxes.jpg" style="border-bottom: 0px; border-left: 0px; border-right: 0px; border-top: 0px;" width="240" /&gt;&lt;/a&gt; &lt;br /&gt;Then we need to type in the command, the example below is a simple PING command. It's IMPORTANT to understand, that the computernames from the selected OU (or OU's) will be inserted instead of the "{C}" signature which MUST be entered before the application can be executed.&lt;br /&gt;&lt;a atomicselection="true" href="http://www.heidelbergit.dk/Screenshots/FlexCommand/Execute%20ready.jpg" target="_blank"&gt;&lt;img border="0" height="115" src="http://www.heidelbergit.dk/Screenshots/FlexCommand/Execute ready.jpg" style="border-bottom: 0px; border-left: 0px; border-right: 0px; border-top: 0px;" width="240" /&gt;&lt;/a&gt; &lt;br /&gt;In some cases it will be necessary to specify a FULL PATH to the command line utility that must be run - remember to user the "quote signs" on each side of the file path.&lt;br /&gt;&lt;a atomicselection="true" href="http://www.heidelbergit.dk/Screenshots/FlexCommand/Ping%20Command%20Fullpath.jpg" target="_blank"&gt;&lt;img border="0" height="115" src="http://www.heidelbergit.dk/Screenshots/FlexCommand/Ping Command Fullpath.jpg" style="border-bottom: 0px; border-left: 0px; border-right: 0px; border-top: 0px;" width="240" /&gt;&lt;/a&gt; &lt;br /&gt;Using the PING example above, the result is the following in my test domain, and this command is repeated for each computer (that is alive in the selected OU and Sub-OUs):&lt;br /&gt;&lt;a atomicselection="true" href="http://www.heidelbergit.dk/Screenshots/FlexCommand/Ping%20Command.jpg" target="_blank"&gt;&lt;img border="0" height="30" src="http://www.heidelbergit.dk/Screenshots/FlexCommand/Ping Command.jpg" style="border-bottom: 0px; border-left: 0px; border-right: 0px; border-top: 0px;" width="240" /&gt;&lt;/a&gt; &lt;br /&gt;&lt;a href="http://dl.dropbox.com/u/11617172/FLEXCOMMAND.txt" target="_blank"&gt;The tool can be downloaded here!&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;strong&gt;Future versions&lt;/strong&gt;&lt;/u&gt;&lt;br /&gt;Well, I haven't thought this through 100% yet (and I know the tool is not perfect yet) but I have thought about making the following changes whenever I have time:&lt;br /&gt;1. Logging - write a logfile that shows the commands that where executed&lt;br /&gt;2. Reporting - give a report at the end about number of successfully executed commands etc.&lt;br /&gt;3. Testmode - checkbox where you can make a "what if" execution before running "the real thing"&lt;br /&gt;4. Selection between a- or synchronous execution of commands&lt;br /&gt;I hope you will enjoy this "as-is" tool - it's FREE for you to USE and MODIFY (one cool thing about HTA applications).&lt;br /&gt;All comments and ideas are very welcome - just send me an email for &lt;em&gt;&lt;u&gt;info at heidelbergit dot dk&lt;/u&gt;&lt;/em&gt;!&lt;br /&gt;&lt;br /&gt;Best regards&lt;br /&gt;Jakob H. Heidelberg&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-767761676271444980?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/767761676271444980/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=767761676271444980' title='7 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/767761676271444980'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/767761676271444980'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/01/hi-i-was-looking-at-darren-mar-elias.html' title='FlexCommand'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>7</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-1024396672442008529</id><published>2007-01-06T16:23:00.000+01:00</published><updated>2007-01-06T17:38:59.300+01:00</updated><title type='text'>Group Policy Update</title><content type='html'>If you have read my article series on &lt;a href="http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part1.html"&gt;windowsecurity.com&lt;/a&gt; about "Managing Windows Vista Group Policy" theres a few extra comments I would like to add...&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;strong&gt;ADMX&lt;br /&gt;&lt;/strong&gt;&lt;/u&gt;The most important note I would like to make is that Microsoft published a tool to migrate ADM files to the ADMX file format some time ago (november 2006) - the tool was actually developed by &lt;a href="http://www.fullarmor.com"&gt;FullAmor&lt;/a&gt; and licensed freely for Microsoft costumors. The tool is called "&lt;strong&gt;ADMX Migrator&lt;/strong&gt;", but actually does more than just migrate templates...&lt;br /&gt;&lt;br /&gt;The product requires "Microsoft Management Console 3.0" and "Microsoft .NET version 2.0" on Windows Vista, Windows XP SP2 or Windows Server 2003 SP1 to work - and provides the following functionality:&lt;br /&gt;&lt;br /&gt;1. Converting/migrating ADM files to the new XML based Administrative Templates format: ADMX. You can even select multiple files to convert at one time - it's almost too easy!&lt;br /&gt;&lt;br /&gt;2. Creating new ADMX files from scratch without the need to understand and master XML and the special syntax the templates requires. This is the "editor" part of the "ADMX Migrator" tool.&lt;br /&gt;This is a very powerfull tool with lots of possibilities for admins around the world. I you haven't played with this already I will advice you to do so, you can use &lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=0F1EEC3D-10C4-4B5F-9625-97C2F731090C&amp;displaylang=en"&gt;this link&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;strong&gt;GPMC&lt;/strong&gt;&lt;/u&gt;&lt;br /&gt;At TechEd in Barcelona there was a "rumor" that Microsoft will remove the builtin GPMC from Windows Vista as part of the Vista Service Pack 1 installation. I don't know if this is true and a final decision, but it was actually stated so by the Group Policy Product Manager, Michael Dennis. The reason should be, that Microsoft received some "complaints" on the fact that every user could start this wonderfull admin tool (maybe those costumors haven't heard of Group Policy settings that disallow the use of MMC, Software Restriction policies etc.?). Well, I just think it's funny to think of a Service Pack that actually remove functionality (without replacing with anything else/better) instead of adding stuff - maybe it's just me :-)&lt;br /&gt;&lt;br /&gt;&lt;u&gt;&lt;strong&gt;TOOLBELT&lt;/strong&gt;&lt;/u&gt;&lt;br /&gt;The great guys at gpanswers.com have collected a Group policy Toolbelt that a GP admin just must have - it can be downloaded here: &lt;a href="http://www.gpanswers.com/toolbelt"&gt;http://www.gpanswers.com/toolbelt&lt;/a&gt;. Within this "belt" you will find tools within an ISO file ready to be "mounted" or burned. The tools are anything from an ADM file that sets GPO logging level to third party utilities that makes tho job of a GP admin a bit more easy. Check it out the next time you have time to download about 70 MB - a lot better than finding the tools on diffenrent sites around the world.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;&lt;u&gt;THE VISTA SETTINGS&lt;/u&gt;&lt;/strong&gt;&lt;br /&gt;If you haven't looked on Windows Vista Group Policy news in detail yet, here is you chance to do so. Microsoft relased &lt;a href="http://www.microsoft.com/downloads/details.aspx?FamilyID=41DC179B-3328-4350-ADE1-C0D9289F09EF&amp;amp;displaylang=en"&gt;this Excel document&lt;/a&gt; (as they have done in the past) with Vista GP settings. Very interesting reading for GP nerds like myself. We now have SO many GP settings that no man can possibly contain all the great possibilities in his head so that's why we need this sheet. As mentioned in one of my articles for &lt;a href="http://www.windowsecurity.com"&gt;windowsecurity.com&lt;/a&gt; there will hopefully be a search option within the MMC when Microsoft released the first service pack to Windows Vista (and in Longhorn Server). It will be interesting to see how they manage to incorporate such a crucial functionality - we must have faith in those guys :)&lt;br /&gt;&lt;br /&gt;And BTW - when you guys are changing the code anyway, why not put a "Save changes" dialog into the GPEDIT MMC like ANY other GUI that handles important system changes. I hope that we will also see some workflow handling soon, one admin that changes the GP settings and a manager that approves the changes, making them "live" in the environment. Also versioning is needed as GP's will probably "rule the world" in a few years - not just backups, but real versioning that makes it possible to spot changes made over time and to get back to a "safe" setting fast (rollback). Well, I actually know that MS is working on this too (DOPSA - Desktop Optimization Pack for Software Assurance) - but as with Christmas presents it can be hard to wait too long - I'll get back to this in a post very soon :)&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-1024396672442008529?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/1024396672442008529/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=1024396672442008529' title='2 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1024396672442008529'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/1024396672442008529'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/01/group-policy-update.html' title='Group Policy Update'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>2</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-7016298614772923105</id><published>2007-01-06T16:07:00.000+01:00</published><updated>2007-01-06T16:15:13.759+01:00</updated><title type='text'>If you think I haven't done anything for a while</title><content type='html'>&lt;p&gt;If you think I haven't done anything for a while, then please check out my articles on &lt;a href="http://www.windowsecurity.com"&gt;www.windowsecurity.com&lt;/a&gt; about Group Policy on Windows Vista and Longhorn Server:&lt;/p&gt;&lt;p&gt;&lt;a target="_blank" href="http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part1.html"&gt;http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part1.html&lt;/a&gt;&lt;br /&gt;&lt;a target="_blank" href="http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part2.html"&gt;http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part2.html&lt;/a&gt;&lt;br /&gt;&lt;a target="_blank" href="http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part3.html"&gt;http://windowsecurity.com/articles/Managing-Windows-Vista-Group-Policy-Part3.html&lt;/a&gt;&lt;/p&gt;&lt;p&gt;And this Danish website (in danish), &lt;a href="http://www.tweakup.dk/"&gt;http://www.tweakup.dk/&lt;/a&gt;, about new stuff in Windows Vista for non-IT professionals:&lt;br /&gt;&lt;a href="http://www.tweakup.dk/article/1022/dk/"&gt;http://www.tweakup.dk/article/1022/dk/&lt;/a&gt;&lt;br /&gt;&lt;/p&gt;&lt;p&gt;I'm now an auther on the above sites, so there won't be much time to write in here - but I'll do my very, very best :-)&lt;/p&gt;&lt;p&gt;Hope you will enjoy - and Happy New Year BTW!&lt;br /&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-7016298614772923105?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/7016298614772923105/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=7016298614772923105' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7016298614772923105'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/7016298614772923105'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2007/01/if-you-think-i-havent-done-anything-for.html' title='If you think I haven&apos;t done anything for a while'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-116324375854411610</id><published>2006-11-11T12:15:00.000+01:00</published><updated>2006-11-11T12:15:58.623+01:00</updated><title type='text'>Windows Mobile Network Analyzer</title><content type='html'>&lt;p&gt;Troubleshooting network is not that easy on a Windows Mobile using built-in functionality. But with a new powertoy from Microsoft it's possible&amp;nbsp;to perform two very basic network troubleshooting commands:&amp;nbsp;PING and&amp;nbsp;IPCONFIG!&lt;/p&gt; &lt;p&gt;Furthermore you can save a capture file (.cap) and use an external network analyzer tool so see what packets were received etc.&lt;/p&gt; &lt;p&gt;Check it out: &lt;a href="http://www.microsoft.com/downloads/details.aspx?familyid=081C6401-49D4-4506-A03B-C41BC76C2F51&amp;amp;mg_id=10049&amp;amp;displaylang=en" target="_blank"&gt;Windows Mobile Network Analyzer PowerToy&lt;/a&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-116324375854411610?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/116324375854411610/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=116324375854411610' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116324375854411610'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116324375854411610'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/11/windows-mobile-network-analyzer.html' title='Windows Mobile Network Analyzer'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-116288491012248012</id><published>2006-11-07T08:35:00.000+01:00</published><updated>2006-11-07T08:35:10.186+01:00</updated><title type='text'>Download your virtual machines!</title><content type='html'>&lt;p&gt;Microsoft really did a nice thing the other day, this is so kewl...&lt;/p&gt; &lt;p&gt;Microsoft released a few &lt;strong&gt;VHD files&lt;/strong&gt; (Virtual Hard Discs) with some of their top products pre-installed! This means you can test the products and get some hands-on experience - no time wasted on installing etc.&lt;/p&gt; &lt;p&gt;All you need is the &lt;strong&gt;free &lt;/strong&gt;&lt;a href="http://www.microsoft.com/windowsserversystem/virtualserver/software/default.mspx" target="_blank"&gt;Virtual Server 2005 software&lt;/a&gt;&amp;nbsp;and&amp;nbsp;then you can download the VHD files from &lt;a href="http://www.microsoft.com/downloads/results.aspx?pocId=&amp;amp;freetext=msvhds&amp;amp;DisplayLang=en" target="_blank"&gt;here&lt;/a&gt;&amp;nbsp;- fantastic!&lt;/p&gt; &lt;p&gt;&lt;strong&gt;These days&amp;nbsp;VHD files are available&amp;nbsp;for:&lt;/strong&gt;&lt;br&gt;&lt;em&gt;Exchange Server 2007&lt;br&gt;SQL Server 2005&lt;br&gt;Windows Server 2003 R2&lt;br&gt;ISA Server 2006&lt;/em&gt;&lt;/p&gt; &lt;p&gt;Taking a look at MS products was never this easy before... Enjoy!&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-116288491012248012?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/116288491012248012/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=116288491012248012' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116288491012248012'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116288491012248012'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/11/download-your-virtual-machines.html' title='Download your virtual machines!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-116245548994368001</id><published>2006-11-02T09:18:00.000+01:00</published><updated>2007-01-06T14:49:43.873+01:00</updated><title type='text'>Exchange 2003 in real trouble</title><content type='html'>&lt;p&gt;Hi,&lt;/p&gt; &lt;p&gt;Just wanted to share an experience I had the other day at a customer's&amp;nbsp;network (a small company with around 15 guys in the sales department and a few more in administration&amp;nbsp;etc.).&lt;/p&gt; &lt;p&gt;The local IT responsible called me and asked me if I had an idea why their Internet connection was extremely slow that Monday - it had been so since around 10:40 the same morning... Hmm, I had no idea to begin with, so we had to do some troubleshooting over the phone.&lt;/p&gt; &lt;p&gt;First we did some ICMP echo requests against some remote servers and I could only agree, things didn't look good - so the question was: Is this because of the ISP or some local problem?&lt;/p&gt; &lt;p&gt;Well, the ISP had no problems in the area they said (but it seems they never have any problems - officially). So I set up some monitoring in their Sonicwall firewall and we quickly spotted heavy action from their Exchange 2003 server.&amp;nbsp;He tried to restart the server and after half an hour it actually restarted - it was under heavy load! After the reboot the network performance went bad again, so&amp;nbsp;I asked him to go into Exchange System Manager (ESM) and take a look at the queues...&lt;/p&gt; &lt;p&gt;The queue situation turned out to be pretty ugly and it looked like the server was an open relay, hit by some SPAM/hacker attack or whatever - even though I was pretty sure everything was setup correctly and in a secure manner when I installed the server. So I grabbed my jacket and went to the customer's location.&lt;/p&gt; &lt;p&gt;When I&amp;nbsp;arrived I could see almost 1000 queues left in retry state, each with a single message of around 1 MB. The server was responding extremely slowly and every mouse click was like an eternity. When I took a closer look at the emails&amp;nbsp;it seemed as though they were all sent from an internal user, let's call him Mr. Spammer! I feared some malware had entered his computer - even though I knew he was not a local admin, they had antivirus &amp;amp; -spyware running,&amp;nbsp;XP built-in&amp;nbsp;firewall activated&amp;nbsp;etc.&lt;/p&gt; &lt;p&gt;I went to the users seat an unplugged his computer, looked in his Event Log, running processes/services and Outlook sent items -&amp;nbsp;and there it was... At 10.40 this guy actually produced an email for a&amp;nbsp;high number of external&amp;nbsp;receivers, probably above one thousand... That should be OK, but the thing is, he attached a 1 MB picture - this changed the story completely. Exchange simply couldn't handle that amount of traffic.&lt;/p&gt; &lt;p&gt;So now I was sure this was not an attack or anything - I was pretty relieved I can tell you - it was now "just" a local user who acted like a SPAMMER... An internal attack you could say. Well, I never saw that one coming!&lt;/p&gt; &lt;p&gt;Now I had one problem - the queues didn't go away. Restart of SMTP service didn't work, the "Default SMTP Virtual Server" queue (and pickup)&amp;nbsp;directory was empty so I was left with the manual approach of deleting every item in each queue.... Or using the&amp;nbsp;&lt;a href="ftp://ftp.microsoft.com/pss/Tools/Exchange%20Support%20Tools/Aqadmcli/aqadmcli.exe" target="_blank"&gt;AQADMCLI tool&lt;/a&gt;. &lt;/p&gt; &lt;p&gt;This tool is an admins friend in situations like mine. I downloaded the tool from another server, placed it on a floppy, copied to the (offline) Exchange server and executed the file. This gives you a Command Prompt, and all I had to do was to type:&lt;/p&gt; &lt;p&gt;&lt;em&gt;setserver SERVERNAME&lt;br&gt;delmsg flags=all&lt;/em&gt;&lt;/p&gt; &lt;p&gt;This displayed a lot of entries about queues being flushed - or&amp;nbsp;messages being deleted - and then all I had to do was to type in &lt;em&gt;quit&lt;/em&gt;. Problem solved!&lt;/p&gt; &lt;p&gt;So todays blog is just a small tribute to AQADMCLI and it's authors - I hope this info will come in handy someday in your admin-life :)&lt;/p&gt; &lt;p&gt;&lt;a href="http://cameron-webb.com/blog/archive/2004/10/06/195.aspx" target="_blank"&gt;You can read more about the tool here&lt;/a&gt;.&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-116245548994368001?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/116245548994368001/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=116245548994368001' title='6 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116245548994368001'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116245548994368001'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/11/exchange-2003-in-real-trouble.html' title='Exchange 2003 in real trouble'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>6</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-116146124024700611</id><published>2006-10-21T22:07:00.000+02:00</published><updated>2006-10-21T22:08:12.160+02:00</updated><title type='text'>Alt+C Vista Trick</title><content type='html'>&lt;p&gt;This might be a very simple trick which is known to many people out there, but I'm gonna give it out for free&amp;nbsp;no matter what you say :-)&lt;/p&gt; &lt;p&gt;I've read and heard people complaining about the new UAC popup we have in Windows Vista - personally I really don't mind at all - but this really seems to mess people up... Before this, the same people probably complained about the lack of security in Microsoft products, talking about how wonderful Mac and Linux is to use, hmm let me stop now before I get too angry.&lt;/p&gt; &lt;p&gt;Well, I just want to say, that whenever you see this:&lt;br&gt;&lt;a href="http://heidelbergit.dk/Screenshots/AltCVistaTrick_13575/UACtip1.jpg" atomicselection="true"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="132" src="http://heidelbergit.dk/Screenshots/AltCVistaTrick_13575/UACtip.jpg" width="240" border="0"&gt;&lt;/a&gt;&amp;nbsp;&lt;br&gt;All you have to do is press [Alt]+C !!!&amp;nbsp;You DON'T have to click the "Continue" button with the mouse... Once you've learned this trick, maybe you won't get so annoyed with Vista UAC behavior anymore ;-)&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-116146124024700611?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/116146124024700611/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=116146124024700611' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116146124024700611'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116146124024700611'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/10/altc-vista-trick.html' title='Alt+C Vista Trick'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-116141763038274533</id><published>2006-10-21T10:00:00.000+02:00</published><updated>2006-10-21T10:00:30.460+02:00</updated><title type='text'>Do you notice the difference?</title><content type='html'>&lt;p&gt;Hi,&lt;/p&gt; &lt;p&gt;Just wanted to share this nice detail within Windows Vista Disk Management GUI... Just saw it a few minutes ago and I like it alot!&lt;/p&gt; &lt;p&gt;&lt;a href="http://heidelbergit.dk/Screenshots/Doyounoticethedifference_8B21/Vista_DiskManagement_Nice_Detail1.jpg" atomicselection="true"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="28" src="http://heidelbergit.dk/Screenshots/Doyounoticethedifference_8B21/Vista_DiskManagement_Nice_Detail.jpg" width="240" border="0"&gt;&lt;/a&gt; &lt;/p&gt; &lt;p&gt;Do you notice the difference from 2000/XP/2003?&lt;br&gt;&lt;br&gt;Well, now it doesn't just say "System" anymore (on the System partition/volume), now we have some great detail on the functions each partition/volume has on the computer... This would be "System" (the boot files), "Boot" (the Windows files), "Page Files" (we have the Page File on this partition), "Active" (the partition is used by the BIOS), "Crash Dump" (on system failure we use this drive to store the Kernel memory dump) and "Primary Partition" (the partition type, could be "Extended" etc.)...&lt;/p&gt; &lt;p&gt;Well, maybe I'm crazy - but I really like this detailed info right there in&amp;nbsp;Disk Manager :)&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-116141763038274533?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/116141763038274533/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=116141763038274533' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116141763038274533'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116141763038274533'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/10/do-you-notice-difference.html' title='Do you notice the difference?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-116076552777075310</id><published>2006-10-13T20:52:00.000+02:00</published><updated>2006-10-13T20:52:07.796+02:00</updated><title type='text'>Am I command prompt admin?</title><content type='html'>&lt;p&gt;Have you ever been in a situation where you wanted to know whether you are logged into a Windows Vista command promt&amp;nbsp;as an administrator or a limited user?&lt;/p&gt; &lt;p&gt;Well, this is a small tip to let you SEE the difference :)&lt;/p&gt; &lt;p&gt;We have a registry&amp;nbsp;key&amp;nbsp;that gives us an option to autorun a specific BAT file whenever a command prompt&amp;nbsp;is executed:&lt;/p&gt; &lt;p&gt;&lt;em&gt;HKEY_LOCAL_MACHINE\Software\Microsoft\Command Processor\&lt;/em&gt;&lt;/p&gt; &lt;p&gt;All you need to do is to add a String value called "autorun"&amp;nbsp;and point to the BAT file we will create in a few seconds... Use "quotes" in the path, like in my case: "C:\!MY AREA\admintest.bat"&lt;/p&gt; &lt;p&gt;The BAT file itself needs to include the following code:&lt;/p&gt; &lt;blockquote&gt; &lt;p&gt;&lt;em&gt;&lt;font color="#004080"&gt;@echo off&lt;br&gt;pushd %SystemRoot%\System32&lt;br&gt;set ADMINTEST=~_~_ThisGottaBeUnique_~_~&lt;br&gt;:START&lt;br&gt;MD %ADMINTEST% &amp;gt; NUL 2&amp;gt;&amp;amp;1&lt;br&gt;if exist %SystemRoot%\System32\%ADMINTEST% GOTO ADMIN&lt;br&gt;GOTO END&lt;br&gt;:ADMIN&lt;br&gt;color 5f&lt;br&gt;RD %ADMINTEST%&lt;br&gt;:END&lt;br&gt;set ADMINTEST=popd&lt;/font&gt;&lt;/em&gt;&lt;/p&gt;&lt;/blockquote&gt; &lt;p&gt;Basically it tries to create a (hopefully) unique&amp;nbsp;directory below "Systemroot\System32" and tests if it succeedes, as only admins can create directories at that location it is pretty simple to figure out.&lt;/p&gt; &lt;p&gt;The rest is just setting the COLOR of the CLI&amp;nbsp;background.&lt;/p&gt; &lt;p&gt;This picture shows the elements&amp;nbsp;needed&amp;nbsp;to perform&amp;nbsp;this little trick&amp;nbsp;-&amp;nbsp;two different CLI's, one as a limited user (black) and one as an admin (purple) - the last&amp;nbsp;title bar still shows "Administrator: Command Prompt" which is the only 'hint' we have by default.&lt;/p&gt; &lt;p&gt;&lt;a href="http://heidelbergit.dk/Screenshots/AmIcommandpromptadmin_123E1/AdminTestCmdPrompt1.jpg" atomicselection="true"&gt;&lt;img style="border-top-width: 0px; border-left-width: 0px; border-bottom-width: 0px; border-right-width: 0px" height="101" src="http://heidelbergit.dk/Screenshots/AmIcommandpromptadmin_123E1/AdminTestCmdPrompt.jpg" width="240" border="0"&gt;&lt;/a&gt;&lt;/p&gt; &lt;p&gt;In the background you will see the registry setting as well as the BAT script... I hope you can use this IRL, if not... it's still pretty kewl :)&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-116076552777075310?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/116076552777075310/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=116076552777075310' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116076552777075310'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116076552777075310'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/10/am-i-command-prompt-admin.html' title='Am I command prompt admin?'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-116017438420793953</id><published>2006-10-07T00:34:00.000+02:00</published><updated>2006-10-07T10:03:12.080+02:00</updated><title type='text'>Windows Vista beta - build 5744.16384</title><content type='html'>In case you didn't know, Microsoft just released Windows Vista build 5744.16384 - the release which is also called RC2 - on &lt;a href="https://connect.microsoft.com"&gt;https://connect.microsoft.com&lt;/a&gt;, but this is only for beta testers right now.&lt;br /&gt;&lt;br /&gt;According to different sources a more "public" release will arrive very soon - like MSDN, "second-wave beta testers" and perhaps others...&lt;br /&gt;&lt;br /&gt;We still don't need new keys!&lt;br /&gt;&lt;br /&gt;The ISO files you need are the following:&lt;br /&gt;0x523B6D3A:&lt;br /&gt;vista_5744.16384.061003-1945_x86fre_client-LRMCFRE_EN_DVD.iso&lt;br /&gt;&lt;br /&gt;0x0F8131AB:&lt;br /&gt;vista_5744.16384.061003-1945_x64fre_client-LRMCxFRE_EN_DVD.iso&lt;br /&gt;&lt;br /&gt;Have a nice testing time - I'm downloading as I write, simply can't wait to check out this thing :)&lt;br /&gt;&lt;br /&gt;EDIT:&lt;br /&gt;The release is now available to the public - all you need is a key (or you will only have Vista in a trial period of 14 days I beleive), go here to download:&lt;br /&gt;&lt;a href="http://download.windowsvista.com/preview/rc2/en/download.htm"&gt;http://download.windowsvista.com/preview/rc2/en/download.htm&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-116017438420793953?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/116017438420793953/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=116017438420793953' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116017438420793953'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/116017438420793953'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/10/windows-vista-beta-build-574416384.html' title='Windows Vista beta - build 5744.16384'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-115910980086420354</id><published>2006-09-24T16:56:00.000+02:00</published><updated>2006-09-24T16:56:40.863+02:00</updated><title type='text'>Windows Vista beta - build 5728.16387</title><content type='html'>&lt;p&gt;If you haven't already downloaded the latest Vista beta build (the first public version&amp;nbsp;after build 5600 =RC1), then you have the option from these links:&lt;/p&gt; &lt;p&gt;&lt;a href="http://download.windowsvista.com/dl/preview/rc1/en/x86/iso/vista_5728.16387.060917-1430_x86fre_client-lrmcfre_en_dvd.iso" target="_blank"&gt;x86 (approx. 2.6GB)&lt;/a&gt;&amp;nbsp;- or - &lt;a href="http://download.windowsvista.com/dl/preview/rc1/en/x64/iso/vista_5728.16387.060917-1430_x64fre_client-LRMCxFRE_EN_DVD.iso" target="_blank"&gt;x64 (approx. 3.6GB)&lt;/a&gt;&lt;/p&gt; &lt;p&gt;&amp;nbsp;&lt;/p&gt; &lt;p&gt;&lt;u&gt;Important information:&lt;br&gt;&lt;/u&gt;"This build (5728) has a number of improvements and updates from RC1, but has not been put through the same internal testing process as RC1 and therefore may be unstable in certain installations. We are making this release available for a limited time only (and only by download) in order to get broad distribution and testing in a variety of PC configurations. Please note: This build may not have the same level of support or servicing via Windows Update, and you may not be able to upgrade to the final version of Windows Vista."&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-115910980086420354?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/115910980086420354/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=115910980086420354' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115910980086420354'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115910980086420354'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/09/windows-vista-beta-build-572816387.html' title='Windows Vista beta - build 5728.16387'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-115910869345733123</id><published>2006-09-24T16:38:00.000+02:00</published><updated>2006-09-24T16:49:43.646+02:00</updated><title type='text'>Terminal Services Client v6 - RC1</title><content type='html'>&lt;p&gt;Microsoft released v6 of the RDP client just the other day.&lt;/p&gt;&lt;p&gt;It looks a bit different than the former versions:&lt;/p&gt;&lt;p&gt;&lt;a href="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/image03.png" atomicselection="true"&gt;&lt;img style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height="102" src="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/image02.png" width="240" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;&lt;p&gt;But it's not just the icon and some colors that has changed - let's take look at some changes... First of all the RC1 version is called 6.0.5600.16384 - to some extend indicating that this is from Vista build 5600 (=Vista RC1).&lt;/p&gt;&lt;p&gt;&lt;a href="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/image05.png" atomicselection="true"&gt;&lt;img style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height="147" src="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/image04.png" width="240" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;&lt;p&gt;The first cool thing I notices was, that this version is installed like any other update to the OS - not like a separate application as it used to. This provides us with a &lt;u&gt;new MSTSC.EXE&lt;/u&gt; file - so when launching the executable (without a path) we get the latest version (earlier it didn't replace the builtin version of MSTSC (v. 5.1.2600.2180) - I'll get back to this in a moment) - also it doesn't force an installation into "Accessories" either, both "features" that made some of us kinda frustrated).&lt;/p&gt;&lt;p&gt;I usually start the RDP client from a command prompt with some switches "MSTSC /v 192.168.170.100 /console" for instance brings me to the active session (console) of 192.168.170.100. Now this finally works without mistakenly launching an old version of the client (namely the builtin version placed in the Windows folders with a system environment path to it) - earlier version "upgrades" of the RDP client (like version 5.2.3790.1830 from the Windows Server 2003 R2 CD I believe) placed itself in "%programfiles%\remote desktop" instead of replacing the MSTSC.EXE file in the "%windir%\system32" folder). Well, now this works - great job!&lt;/p&gt;&lt;p&gt;Lets take a quick look at some differences between the versions:&lt;/p&gt;&lt;p&gt;This is version 5.1.2600.2180 (notice that there is no Security or Advanced tab):&lt;br /&gt;&lt;a href="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/RDP_5.1.2600.21801.png" atomicselection="true"&gt;&lt;img style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height="240" src="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/RDP_5.1.2600.2180.png" width="212" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;&lt;p&gt;This is version 5.2.3790.1830 (notice we now got a Security tab):&lt;br /&gt;&lt;a href="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/RDP_5.2.3790.1830_general_tab1.png" atomicselection="true"&gt;&lt;img style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height="240" src="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/RDP_5.2.3790.1830_general_tab.png" width="212" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;&lt;p&gt;This is version 6.0.5600.16384 RC1 (now the Security tab is gone and the Advanced tab is introduced):&lt;br /&gt;&lt;a href="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/31.png" atomicselection="true"&gt;&lt;img style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height="240" src="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/3.png" width="212" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;&lt;p&gt;So what is the difference then? Well, the first 5 tabs - General, Display, Local Resources, Programs and Experience haven't changed since the builtin release... The Security tab (which might have been there in versions in between, I'm not sure) in version 5.2.3790.1830 brings us authentication of the remote system - &lt;a href="http://technet2.microsoft.com/WindowsServer/en/library/a92d8eb9-f53d-4e86-ac9b-29fd6146977b1033.mspx" target="_blank"&gt;see more detailed info right here&lt;/a&gt;! The tab looked like this:&lt;br /&gt;&lt;a href="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/RDP_5.2.3790.1830_security_tab1.png" atomicselection="true"&gt;&lt;img style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height="240" src="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/RDP_5.2.3790.1830_security_tab.png" width="212" border="0" /&gt;&lt;/a&gt;&lt;br /&gt;Well, in the RDP v6 RC1 version the tab was renamed to Advanced and it now looks like this:&lt;br /&gt;&lt;a href="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/42.png" atomicselection="true"&gt;&lt;img style="BORDER-RIGHT: 0px; BORDER-TOP: 0px; BORDER-LEFT: 0px; BORDER-BOTTOM: 0px" height="240" src="http://heidelbergit.dk/Screenshots/TerminalServicesClientv6RC1_E878/4_thumb.png" width="212" border="0" /&gt;&lt;/a&gt; &lt;/p&gt;&lt;p&gt;The top part is like the Security tab - but now we also have the "Connect from anywhere" section where we can configure Terminal Services Gateway settings.&lt;/p&gt;&lt;p&gt;Where can I get it? It's currently available on &lt;a href="http://connect.microsoft.com"&gt;http://connect.microsoft.com&lt;/a&gt; for Vista/Longhorn BETA testers.&lt;/p&gt;&lt;p&gt;Enjoy :)&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-115910869345733123?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/115910869345733123/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=115910869345733123' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115910869345733123'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115910869345733123'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/09/terminal-services-client-v6-rc1.html' title='Terminal Services Client v6 - RC1'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-115830551491123940</id><published>2006-09-15T09:29:00.000+02:00</published><updated>2006-09-15T09:31:54.926+02:00</updated><title type='text'>Vista RC1 productkeys available!</title><content type='html'>Vista productkeys should be available right here (you need to use your Passport):&lt;br /&gt;&lt;a href="http://www.microsoft.com/windowsvista/PCTrialResults1.aspx?s=37&amp;refer=%2Fwindowsvista%2Fgetready%2Fpreview.mspx"&gt;http://www.microsoft.com/windowsvista/PCTrialResults1.aspx?s=37&amp;amp;refer=%2Fwindowsvista%2Fgetready%2Fpreview.mspx&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;If the above doesn’t work – try this link:&lt;br /&gt;&lt;a href="http://www.laboratoire-microsoft.org/n/22215/"&gt;http://www.laboratoire-microsoft.org/n/22215/&lt;/a&gt; (the site looks kinda funny, but it works!)…&lt;br /&gt;&lt;br /&gt;Remember that you can activate your product key up to 10 times!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-115830551491123940?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/115830551491123940/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=115830551491123940' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115830551491123940'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115830551491123940'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/09/vista-rc1-productkeys-available.html' title='Vista RC1 productkeys available!'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-115687339834196157</id><published>2006-08-29T19:38:00.000+02:00</published><updated>2006-08-29T19:43:18.356+02:00</updated><title type='text'>Download Windows Vista Pre RC1 build 5536</title><content type='html'>Microsoft released Windows Vista Pre RC1 build 5536 to the public - but you need to act fast, only 100.000 downloads will be available...&lt;br /&gt;&lt;br /&gt;&lt;a href="http://download.windowsvista.com/preview/prerc1/en/download.html"&gt;http://download.windowsvista.com/preview/prerc1/en/download.html&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-115687339834196157?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/115687339834196157/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=115687339834196157' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115687339834196157'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115687339834196157'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/08/download-windows-vista-pre-rc1-build.html' title='Download Windows Vista Pre RC1 build 5536'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-115660894303039584</id><published>2006-08-26T18:06:00.000+02:00</published><updated>2006-08-26T19:08:18.906+02:00</updated><title type='text'>NETSHELL - Tip #1</title><content type='html'>The NETSH(ell) command is a very powerful tool included in the Windows 2K+ systems. The following article brings you a few tips on using this command - have a nice one!&lt;br /&gt;&lt;br /&gt;A)&lt;br /&gt;I have seen a problem a few times where Windows XP computers do not want to change their IP addresses after a move from one network to another. It's like some part of the computers IP stack is still attached to the old IP address - and this happens even though you use IPCONFIG /RELEASE &amp; /RENEW!&lt;br /&gt;&lt;br /&gt;Well, in this case the NETSH command is very useful, try this:&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;NETSH INT IP RESET C:\IPRESET.TXT&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;After executing the command you IP stack is rebuild in a few seconds.&lt;br /&gt;&lt;br /&gt;B)&lt;br /&gt;Some spyware and other awful software replaces parts of the Winsock Catalog for "sniffing" purposes - when this crap is removed (by anti-spyware apps for instance) you will sometimes find that your Internet connection is no longer up and running. In this case try the following command:&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;NETSH WINSOCK RESET&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;After executing the command you must restart your computer for the changes to take effect. When the system is back up and running you may have to reset the IP stack (tip 1A) - and you should be up and running again now.&lt;br /&gt;&lt;br /&gt;C)&lt;br /&gt;Within Help &amp;amp; Support you may have found the Network Diagnostics Tool which tests the computers network access in detail - it's actually pretty good, but seldom used I think. If you (like myself) are a command line junkie, you (or a user) can launch the tool by running the following command:&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;NETSH DIAG GUI&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;After executing the command a nice HTML interface (The Help &amp;amp; Support page) pops up and you can click "Scan your system" which will end up with a network report.&lt;br /&gt;&lt;br /&gt;All for now - CYA!&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-115660894303039584?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/115660894303039584/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=115660894303039584' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115660894303039584'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115660894303039584'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/08/netshell-tip-1.html' title='NETSHELL - Tip #1'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-115559137114685146</id><published>2006-08-14T23:36:00.000+02:00</published><updated>2006-08-15T00:01:51.426+02:00</updated><title type='text'>Windows Live Writer (beta)</title><content type='html'>&lt;p&gt;This is a test &lt;strong&gt;Windows Live Writer beta&lt;/strong&gt;!&lt;/p&gt; &lt;p&gt;Please check out this great tool here:&lt;/p&gt; &lt;p&gt;&lt;a href="http://windowslivewriter.spaces.live.com/blog/" target="_blank"&gt;http://windowslivewriter.spaces.live.com/blog/&lt;/a&gt;&lt;/p&gt; &lt;p&gt;&amp;nbsp;&lt;/p&gt; &lt;p&gt;&lt;a href="http://heidelbergit.dk/Screenshots/WindowsLiveWriterbeta_14AB6/image09.png" atomicselection="true"&gt;&lt;img style="border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px" height="346" src="http://heidelbergit.dk/Screenshots/WindowsLiveWriterbeta_14AB6/image0_thumb3.png" width="355" border="0"&gt;&lt;/a&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-115559137114685146?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/115559137114685146/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=115559137114685146' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115559137114685146'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115559137114685146'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/08/windows-live-writer-beta.html' title='Windows Live Writer (beta)'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-115464921346627536</id><published>2006-08-04T01:50:00.000+02:00</published><updated>2006-08-06T22:22:43.396+02:00</updated><title type='text'>The Virtual Direct Push Setup (VDPS part 3)</title><content type='html'>&lt;strong&gt;The Virtual Direct Push Setup (VDPS part 3)&lt;/strong&gt;&lt;br /&gt;Please be sure to checkout &lt;a href="http://heidelbergit.blogspot.com/2006/08/virtual-direct-push-setup-vdps-part-1.html"&gt;part 1&lt;/a&gt; &amp;amp; &lt;a href="http://heidelbergit.blogspot.com/2006/08/virtual-direct-push-setup-vdps-part-2.html"&gt;part 2&lt;/a&gt; of the VDPS article also :)&lt;br /&gt;&lt;br /&gt;This VDPS article covers functionality of the "Virtual Machine Network Driver" (VMND) and links to really nice external information.&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Testing SMS and other phone stuff&lt;/strong&gt;&lt;br /&gt;You can use the VMND to test different phone features too. You could try to send an SMS message by doing the following on the mobile device:&lt;br /&gt;- "Start" &gt; "Messaging"&lt;br /&gt;- click "Menu" &gt; "Switch Accounts..."&lt;br /&gt;- select "Text Messages" &gt; click New&lt;br /&gt;Send an SMS to phone# 0010001 with some message and click "Send".&lt;br /&gt;Within no time you receive a message from 0010001 with the same message as you sent before.&lt;br /&gt;&lt;br /&gt;You can test emergency calls - like: 911&lt;br /&gt;A phone line that is allways Busy: 7272024&lt;br /&gt;A phone line which is never answered: 7272773&lt;br /&gt;&lt;br /&gt;More info here: &lt;a href="http://blogs.msdn.com/barrybo/archive/2005/09/17/469702.aspx"&gt;http://blogs.msdn.com/barrybo/archive/2005/09/17/469702.aspx&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;More information needed!&lt;/strong&gt;&lt;br /&gt;Download or view this cool video which inspired me to create the VDPS articles:&lt;br /&gt;&lt;a href="http://msexchangeteam.com/videos/9/train/entry426996.aspx"&gt;http://msexchangeteam.com/videos/9/train/entry426996.aspx&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Microsofts "Step-by-Step Guide to Deploying Windows Mobile-based Devices with Microsoft Exchange Server 2003 SP2":&lt;br /&gt;&lt;a href="http://www.microsoft.com/technet/itsolutions/mobile/deploy/msfpdepguide.mspx"&gt;Look here&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;What is next?&lt;/strong&gt;&lt;br /&gt;Next time I have a hard time sleeping I'll expand the VDPS articles with:&lt;br /&gt;- "Remote Wipe" and the "ActiveSync Web Administration Tool"&lt;br /&gt;- "Device security" settings (in ESM) and how they apply to the device&lt;br /&gt;- Direct Push and encryption using HTTPS (SSL)&lt;br /&gt;- The mentioned features from an ISA 2004/2006 admins point of view&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-115464921346627536?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/115464921346627536/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=115464921346627536' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115464921346627536'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115464921346627536'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/08/virtual-direct-push-setup-vdps-part-3.html' title='The Virtual Direct Push Setup (VDPS part 3)'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-21992565.post-115463991330494327</id><published>2006-08-03T23:18:00.000+02:00</published><updated>2006-08-06T22:23:07.650+02:00</updated><title type='text'>The Virtual Direct Push Setup (VDPS part 2)</title><content type='html'>&lt;strong&gt;The Virtual Direct Push Setup (VDPS part 2)!&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;Be sure to check out VDPS part 1 &lt;a href="http://heidelbergit.blogspot.com/2006/08/virtual-direct-push-setup-vdps-part-1.html" target="_blank"&gt;http://heidelbergit.blogspot.com/2006/08/virtual-direct-push-setup-vdps-part-1.html&lt;/a&gt; first :)&lt;br /&gt;&lt;br /&gt;Well, the virtual domain environment is up and running, now for the funny part.&lt;br /&gt;&lt;br /&gt;On "DC" create a new user account called "mobile" and be sure to create a mailbox for the user also - make the password something relatively easy for testing purpose, like "Start123" (must be uppercase + lowercase + numbers by default). From now on just minimize the "DC" VM to save on performance - the rest of the time all we need it &lt;em&gt;love&lt;/em&gt;... No, the Exchange server of course - Doh! If nothing else is stated, please use the "EXCH" VM from now on (maybe even in Full Screen mode for better performance.&lt;br /&gt;&lt;br /&gt;On "EXCH": From the OWA (&lt;a href="http://localhost/exchange"&gt;http://localhost/exchange&lt;/a&gt; - logged in as Administrator) send a test email to "mobile". Hopefully no error messages will return :)&lt;br /&gt;&lt;br /&gt;Open Exchange System Manager (ESM) on "EXCH" - expand "Global Settings" &gt; Right click "Mobile Services" and select Properties. On the "General" tab select "Enable user initiated synchronization" AND "Enable Direct Push over HTTP(s)". For now we will not set up any "Device Security" options - but we will test this out later on! For now just select "OK" and close down ESM. Exchange is now ready to handle Direct Push... See &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush01.JPG" target="_blank"&gt;picture&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Now we get to the "Virtual Machine Network Driver for Microsoft Device Emulator". Copy the "netsvwrap.msi" file to "EXCH" (use the "drag and drop" feature in VPC) and execute the file (next, next, next etc.).&lt;br /&gt;&lt;br /&gt;Now we need the "Standalone Device Emulator 1.0 with Windows Mobile OS Images"... First copy the downloaded Device Emulator files to "EXCH" - then extract the downloaded "V1Emulator.zip" file, and run: "standalone_emulator_V1.exe" (next, next, next etc.). Next execute the "efp.msi" file (next, next, next etc.). Now you are all set :)&lt;br /&gt;&lt;br /&gt;Go to "Start" &gt; "All programs" &gt; "Microsoft Windows Mobile 5.0 MSFP Emulator Images" &gt; click "PocketPC - Coldboot"... &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush02.JPG" target="_blank"&gt;This is what you should see after some time&lt;/a&gt; (typically a few minutes).&lt;br /&gt;&lt;br /&gt;- &lt;em&gt;Note:&lt;/em&gt; MSFP (Messaging and Security Feature Pack) is required on the Windows Mobile 5.0 device - we are "lucky" that Microsoft provided a Mobile OS image with this Feature Pack on it. This image is a great part in making the VDPS possible...!&lt;br /&gt;&lt;br /&gt;Now - within the "WM 5.0 MSFP" mobile device click "Start" &gt; "Programs" &gt; open "ActiveSync". In ActiveSync click "Menu" &gt; "Add Server source", in the field "Server address" specify the (static) IP address of you virtual Exchange server and uncheck the "This server requires an encrypted (SSL) connection" checkbox. Say "OK" to the "Security Warning" that pops up - IRL you should of course use SSL, but this is just a first glance at Direct Push, so no need to get too complicated at this point. You should now see &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush03.JPG" target="_blank"&gt;this&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Click "Next" - on the "Edit Server Settings" page specify "User name" (mobile), "Password" (Start123) and Domain (whatever you named your AD domain). Remember to enable/check the checkbox "Save password (required for automatic sync)". &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush04.JPG" target="_blank"&gt;This is what you should see now&lt;/a&gt;. Let's just ignore the "Advanced" button for now and click "Next". Please also ignore the "Settings" button at the next screen and click "Finish". The mobile device will try to synchronize with our Exchange server - but &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush06.JPG" target="_blank"&gt;fails&lt;/a&gt;...&lt;br /&gt;&lt;br /&gt;It fails because no network connection have been established yet on the mobile device - so don't worry too much yet. The network driver we installed earlier sets up some functionality that I'm going to cover in detail later on (VDPS part 3)- but the most important thing to know right now is, that it creates the "Fake Network" which is used to communicate with the virtual Exchange server.&lt;br /&gt;&lt;br /&gt;To establish the needed network connection, click the "antenna" icon at the top of the screen (still within the virtual mobile device). You will see a dialog like &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush07.JPG" target="_blank"&gt;this&lt;/a&gt;. The dialog states "This network card connects me to: The Internet (or work via VPN)" (default choice) - let's just click "Connect"!&lt;br /&gt;&lt;br /&gt;Next click "Sync" to manually initialize the first synchronization from the mobile device - hopefully your device will successfully contact the Exchange server and perform the sync nicely - &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush08.JPG" target="_blank"&gt;like you see here&lt;/a&gt; - and when finished you should see something &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush09.JPG" target="_blank"&gt;similar to this&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;As you may claim, we haven't really performed a Direct Push of mail yet - but now it's time for the big test... On the mobile device close the "ActiveSync" application, the "Programs" folder and you should see the &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush10.JPG" target="_blank"&gt;default startup view&lt;/a&gt;.&lt;br /&gt;&lt;br /&gt;Now, on "EXCH" log on to OWA and send "mobile" another test email. A short moment after you click "Send" you should see the &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush11.JPG" target="_blank"&gt;sync process starting on the mobile device&lt;/a&gt;. And after a few seconds &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush12.JPG" target="_blank"&gt;a popup should be displayed&lt;/a&gt; (the "New E-mail Messages" popup). Click "Dismiss" and you should be &lt;a href="http://www.heidelbergit.dk/grafik/DirectPush13.JPG" target="_blank"&gt;"back where we started"&lt;/a&gt; - only now we have 2 unread e-mails!&lt;br /&gt;&lt;br /&gt;Well - all for now - CYA!&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Check out the VDPS part 3&lt;/strong&gt;&lt;br /&gt;&lt;a href="http://heidelbergit.blogspot.com/2006/08/virtual-direct-push-setup-vdps-part-3.html"&gt;http://heidelbergit.blogspot.com/2006/08/virtual-direct-push-setup-vdps-part-3.html&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/21992565-115463991330494327?l=www.heidelbergit.dk' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://www.heidelbergit.dk/feeds/115463991330494327/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=21992565&amp;postID=115463991330494327' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115463991330494327'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/21992565/posts/default/115463991330494327'/><link rel='alternate' type='text/html' href='http://www.heidelbergit.dk/2006/08/virtual-direct-push-setup-vdps-part-2.html' title='The Virtual Direct Push Setup (VDPS part 2)'/><author><name>Jakob H. Heidelberg</name><uri>http://www.blogger.com/profile/05947807953068058636</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
