<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;AkMDQHg8eSp7ImA9WhRVEU4.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530</id><updated>2012-01-09T20:47:51.671+01:00</updated><category term="Directory" /><category term="Windows Server 2008 R2" /><category term="Lync 2010" /><category term="Powershell" /><category term="Active Directory" /><category term="Epolicy" /><category term="Terminal Services/Citrix" /><category term="Xenserver" /><category term="Hyper-V" /><category term="Exchange 2010" /><category term="Microsoft Exchange 2003" /><category term="Windows7" /><category term="Citrix" /><category term="Windows Server 2003" /><category term="Exchange 2007" /><title>The Real Shrimp</title><subtitle type="html" /><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://therealshrimp.blogspot.com/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>105</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/TheRealShrimp" /><feedburner:info uri="therealshrimp" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><entry gd:etag="W/&quot;A08HSHc8fSp7ImA9WhRQEEQ.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-6669407987134442143</id><published>2011-12-05T16:43:00.001+01:00</published><updated>2011-12-05T16:43:59.975+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-05T16:43:59.975+01:00</app:edited><title>Exchange 2010 SP2 released</title><content type="html">It seems that Microsoft released Exchange 2010 SP2 about 10 hours ago. You can get it here:&lt;br /&gt;
http://www.microsoft.com/download/en/details.aspx?id=28190&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-6669407987134442143?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/iR5k99243EEiSUwTmCnf75A-fqg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/iR5k99243EEiSUwTmCnf75A-fqg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/iR5k99243EEiSUwTmCnf75A-fqg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/iR5k99243EEiSUwTmCnf75A-fqg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/g90Bt7-AC2U" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/6669407987134442143/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/12/exchange-2010-sp2-launched.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/6669407987134442143?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/6669407987134442143?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/g90Bt7-AC2U/exchange-2010-sp2-launched.html" title="Exchange 2010 SP2 released" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/12/exchange-2010-sp2-launched.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0YEQ3k-cSp7ImA9WhRTGU8.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-8388268814319032986</id><published>2011-10-26T19:37:00.000+02:00</published><updated>2011-11-10T11:31:42.759+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-10T11:31:42.759+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lync 2010" /><title>Oh Certificate where art thou</title><content type="html">A few days back i had to replace the external certificate on an edge server with a new third party certificate. I created a new certificate request (with private key) and mailed it to the guy who was responsible for requesting the certificate with VeriSign. Moments later i received my SAN certificate.&lt;br /&gt;
&lt;br /&gt;
I logged on to the edge server and opened the Lync Deployment Wizard to import the certificate using the GUI. I select import new certificate and browsed to the path where i placed the certificate. Clicked import, and verified that the command completed successfully.&lt;br /&gt;
&lt;br /&gt;
In the same window I now ran the assign new certificate wizard, to assign the newly imported certificate to the external interface of the edge server. To my surprise I could only select one of the old certificates. The newly imported certificate could not be seen.&lt;br /&gt;
&lt;br /&gt;
I wondered if something went wrong during the import, so I opened the local computer certificate store. Well nothing wrong to see here, the certificate is nicely imported in the local personnel certificate store of the computer. Clicked the Refresh button in&amp;nbsp; the deployment wizard, ran the assign new certificate again, but still no luck.&lt;br /&gt;
&lt;br /&gt;
Damn, what is going on here? Ghost in the machine? You know what, i will start all over again. So&amp;nbsp; removed the certificate from the local certificate store. Opened the deployment wizard, imported the certificate using the wizard. Again the wizard told me the certificate imported successfully. But the greater was my disappointment, when i discovered that the certificate was still not present.&lt;br /&gt;
&lt;br /&gt;
Ok, had it using the GUI, will use Powershell this time, that will always work. Imported the certificate using powershell, and tried to assign. No, still no certificate available. Ok, this is really the Ghost in the machine, you know those days when you cant seem to achieve anything.&lt;br /&gt;
&lt;br /&gt;
Tried all over again, but this time i checked the html files which are created in the temp folder by lync (%userprofile%\appdate\local\Microsoft\temp). Although the wizard reported that the command completed successfully, I could see that the certificate was not imported. As reason the log file logged the following: Certificate already present or could not process the private key.&lt;br /&gt;
&lt;br /&gt;
Opened the local computer certificate store, and now saw something fishy. The old certificate, which was generated by the internal CA, had a key displayed in the icon for the certificate. The new certificate, although present did not display that key. The picture below displays a certificate which has a valid private key.&lt;br /&gt;
&lt;a href="http://4.bp.blogspot.com/-NB1Kl6e0pHw/TqhAP9gX4jI/AAAAAAAAAMo/NQmgkhTzHmI/s1600/26-10-2011+19-09-57.png" imageanchor="1" style="clear: left; float: left; margin-bottom: 1em; margin-right: 1em;"&gt;&lt;img border="0" src="http://4.bp.blogspot.com/-NB1Kl6e0pHw/TqhAP9gX4jI/AAAAAAAAAMo/NQmgkhTzHmI/s1600/26-10-2011+19-09-57.png" /&gt;&lt;/a&gt;&lt;br /&gt;
&lt;br /&gt;
That convinced me that there was something wrong with the private key of the certificate. I have seen this situation in Exchange, and has been widely documented on the internet, but never saw it in Lync before. Nevertheless we are talking about certificates no matter where they are applied to. So this made me decide to use the same sollution, which is repairing the certificate using Certutil.&lt;br /&gt;
&lt;br /&gt;
Opened the certificate, clicked the Details tab and copied the serial number of the certificate.&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://2.bp.blogspot.com/-6bKUBdcwHTs/TqhCamR-KSI/AAAAAAAAAMw/eF_YlfsJaf4/s1600/26-10-2011+19-19-15.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="320" src="http://2.bp.blogspot.com/-6bKUBdcwHTs/TqhCamR-KSI/AAAAAAAAAMw/eF_YlfsJaf4/s320/26-10-2011+19-19-15.png" width="256" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&amp;nbsp;Then opened a dos-box in administrative mode, where i used following command:&lt;br /&gt;
[Code]&lt;br /&gt;
Certutil -repairstore my "xx xx xx xx xx xx xx" (where x is the serial number of the certificate).&lt;br /&gt;
[/Code]&lt;br /&gt;
Which gave me following result:&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-IRCapzVoP28/TqhD5YWEWLI/AAAAAAAAAM4/ea1esjfghZo/s1600/26-10-2011+19-25-50.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="117" src="http://4.bp.blogspot.com/-IRCapzVoP28/TqhD5YWEWLI/AAAAAAAAAM4/ea1esjfghZo/s320/26-10-2011+19-25-50.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
Open the deployment wizard and could successfully assign the certificate this time. You see experience comes in handy ;) !&lt;br /&gt;
&lt;br /&gt;
Discovered a bit later that the friendly name was missing from the certificate when i opened the certificate wizard (Deployment Wizard). You can also assign a friendly name to the certificate using certutil.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Required steps:&lt;/b&gt; &lt;br /&gt;
First you need to create a inf file that contains the friendly name you wish to assign to the certificate. Open notepad and insert following text:&lt;br /&gt;
&lt;br /&gt;
[Version]&lt;br /&gt;Signature = "$Windows NT$"&lt;br /&gt;[Properties]&lt;br /&gt;11 = "{text}&lt;i&gt;Friendly Name&lt;/i&gt;"&amp;nbsp; &lt;br /&gt;
&lt;br /&gt;
Adjust &lt;i&gt;Friendly Name&lt;/i&gt; to the friendly name you wish to assign to your certificate. Save the notepad as an INF file in certain directory. I used C:\Temp\FriendlyName.inf.&lt;br /&gt;
&lt;br /&gt;
Second, open the command prompt in administrative mode, and type following command:&lt;br /&gt;
[Code]&lt;br /&gt;
Certutil -repairstore my "xx xx xx xx xx xx xx" (where x is the serial number of the certificate) C:\Temp\FriendlyName.inf&lt;br /&gt;
[/Code]&lt;br /&gt;
&lt;br /&gt;
Reassign the certificate in the certificate wizard and you will see that the certificate now displays the friendly name you have defined in the inf file.&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-8388268814319032986?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/8Ylr10Kp9xMk8MHfhFCd05X9Zek/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/8Ylr10Kp9xMk8MHfhFCd05X9Zek/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/8Ylr10Kp9xMk8MHfhFCd05X9Zek/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/8Ylr10Kp9xMk8MHfhFCd05X9Zek/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/Pev4AnlqvHw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/8388268814319032986/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/10/oh-certificate-where-art-thou.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8388268814319032986?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8388268814319032986?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/Pev4AnlqvHw/oh-certificate-where-art-thou.html" title="Oh Certificate where art thou" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-NB1Kl6e0pHw/TqhAP9gX4jI/AAAAAAAAAMo/NQmgkhTzHmI/s72-c/26-10-2011+19-09-57.png" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/10/oh-certificate-where-art-thou.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DE4MRHo8fSp7ImA9WhdbGU8.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-4408459328499327559</id><published>2011-10-17T15:46:00.000+02:00</published><updated>2011-10-18T10:36:25.475+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-18T10:36:25.475+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lync 2010" /><title>Lync Location Policy</title><content type="html">&amp;nbsp; &lt;br /&gt;
This is the second article in the article series about policies in Lync 2010. The policies we are going to discuss are the location policies. The whole idea and wherefore it is designed is to provide an indication of where the user is located when calling 911. The E.911 solution has been in place for many years for hard phones, but soft phones or IP phones where not covered by the traditional E.911 system.&lt;br /&gt;
&lt;br /&gt;
&lt;b&gt;Enhanced 911&lt;/b&gt;, &lt;b&gt;E-911&lt;/b&gt; or &lt;b&gt;E911&lt;/b&gt; in North America is one
 example of the modern evolution of telecommunications based system 
meant as an easy way to link people experiencing an emergency with the 
public resources that can help. The dial-three-digits concept first 
originated in the &lt;a href="http://en.wikipedia.org/wiki/999_%28emergency_telephone_number%29#History" title="999 (emergency telephone number)"&gt;United Kingdom in 1937&lt;/a&gt;. It has spread to continents and countries across the globe. Today other easy dial codes including the &lt;a href="http://en.wikipedia.org/wiki/112_%28emergency_telephone_number%29" title="112 (emergency telephone number)"&gt;112&lt;/a&gt; that was adopted by the &lt;a href="http://en.wikipedia.org/wiki/European_Union" title="European Union"&gt;European Union&lt;/a&gt; in 1991 and others like it have been deployed to provide free-of-charge calling to those who need help during emergencies. The &lt;a href="http://en.wikipedia.org/wiki/Emergency_telephone_number" title="Emergency telephone number"&gt;Emergency telephone number&lt;/a&gt; article contains comprehensive information regarding other emergency dialing codes for countries outside North America. (Source:http://en.wikipedia.org/wiki/Enhanced_9-1-1)&lt;br /&gt;
&lt;br /&gt;
&lt;div class="separator" style="clear: both; text-align: center;"&gt;
&lt;a href="http://4.bp.blogspot.com/-W0d2mvkvCqM/TpwQgDXHCtI/AAAAAAAAAMg/NktlYw3rGc4/s1600/17-10-2011+13-23-54.png" imageanchor="1" style="margin-left: 1em; margin-right: 1em;"&gt;&lt;img border="0" height="195" src="http://4.bp.blogspot.com/-W0d2mvkvCqM/TpwQgDXHCtI/AAAAAAAAAMg/NktlYw3rGc4/s320/17-10-2011+13-23-54.png" width="320" /&gt;&lt;/a&gt;&lt;/div&gt;
&lt;br /&gt;
&lt;br /&gt;
In Lync 2010 Microsoft incorporated a location mechanism to provide location awareness for Llync clients and Lync client phones.&lt;br /&gt;
&lt;br /&gt;
I not going going to blog about the complete E.911 implementation on Lync, because this has already been done numerous time on other blogs, and there is no point in reinvented hot water over and over again. The most complete article i have ever read on the subject, is an article from Mark King which you can find on following location: http://blog.unplugthepbx.com/2011/07/06/lync-e911-deployment/.&lt;br /&gt;
It gives a thorough understanding of what E.911 is in Lync and how to implement it.&lt;br /&gt;
&lt;br /&gt;
What we will be focusing on is the policies that come with the E.911 implementation in Lync. One thing i do need to point out is that the Enhanced 911 implementation is only supported in North America. For the rest of the world you can configure it, but there are no agencies that verify the location, so all location are unverified.&lt;br /&gt;
&lt;br /&gt;
Which brings us to custom, suggested and validated locations.&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;Custom: &lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
Custom locations are when you allow the users to configure there own location in the client. This information is stored in the PersonalLisDB.cashe file, which is located in the user profile on the computer. When the computer recognizes the location of the user, it will reuse the information stored in the local LIS db. The location is recognized on the Mac address of the default gateway. The locale database can store up to 10 locations.&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;Suggested:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
Suggested locations are locations that have been set by the Location Information Service database stored on the Lync Back-end server. This database is build up by the Lync administrators where he/she defines certain parameters required to build location awareness. These parameters are:&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;Subnets&lt;/li&gt;
&lt;li&gt;Switches&lt;/li&gt;
&lt;li&gt;SwitchPorts&lt;/li&gt;
&lt;li&gt;Wireless access points&lt;/li&gt;
&lt;/ul&gt;
So to recap, a suggested location is a location that has been derived from the information stored in the central Location Information Service database stored on the Lync Back-end infrastructure, which has not been validated by an organization that validates and represents &lt;a href="http://www.oregon.gov/OMD/OEM/OR911/MSAG_GIS/MSAG_development_maintenance.pdf?ga=t"&gt;Master Street Address Guide&lt;/a&gt;.&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;Validated:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
Validated locations are locations that have been derived from the location parameters stored in the LIS database on the Lync Back-end infrastructure. The location is verified and validated by MSAG, but as noted before is only supported in North America.&lt;br /&gt;
&lt;br /&gt;
Note: Europe will probably be working on a similar solution for the near future.&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;Central Database:&lt;/b&gt;&lt;/u&gt; &lt;br /&gt;
The location information is stored in location database which is called LIS.mdf on the Lync back-end server. &lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;Policy:&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
When we search for location in the Lync Management Shell, we get following result:&lt;br /&gt;
Get-command "*Location*"&lt;br /&gt;
CommandType&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Definition&lt;br /&gt;
-----------&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ----&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; ----------&lt;br /&gt;
Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get-CsConfigurationStoreLoca... Get-CsConfigurationStoreLoca...&lt;br /&gt;
Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get-CsLisLocation&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get-CsLisLocation [-Unrefere...&lt;br /&gt;
Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get-CsLocationPolicy&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get-CsLocationPolicy [[-Iden...&lt;br /&gt;
Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get-Location&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get-Location [-PSProvider &lt;s...&lt;br&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Grant-CsLocationPolicy&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Grant-CsLocationPolicy [-Ide...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; New-CsLocationPolicy&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; New-CsLocationPolicy [-Ident...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Pop-Location&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Pop-Location [-PassThru] [-S...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Push-Location&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Push-Location [[-Path] &lt;stri...&lt;br&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Remove-CsConfigurationStoreL... Remove-CsConfigurationStoreL...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Remove-CsLisLocation&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Remove-CsLisLocation -Locati...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Remove-CsLocationPolicy&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Remove-CsLocationPolicy [-Id...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Set-CsConfigurationStoreLoca... Set-CsConfigurationStoreLoca...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Set-CsLisLocation&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Set-CsLisLocation -Location ...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Set-CsLocationPolicy&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Set-CsLocationPolicy [[-Iden...&lt;br /&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Set-Location&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Set-Location [[-Path] &lt;strin...&lt;br&gt;Cmdlet&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Test-CsLocationPolicy&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Test-CsLocationPolicy [-Targ...&lt;/strin...&lt;br&gt;&lt;/stri...&lt;br&gt;&lt;/s...&lt;br&gt;&lt;br /&gt;
&lt;br /&gt;
We will not be explaining every setting, because we will have to write a short book, which information is already available on the Microsoft website. We will be focusing the Set-CSLocationPolicy and the Get-CSLoactionpolicy. There is no reason to explain both cmdlets as get-CsLocationPolicy gets the location policy and Set-CSLocationPolicy set the parameters for the location policy.&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;Get-CsLocationPolicy&lt;/b&gt;&lt;/u&gt;:&lt;br /&gt;
Gets all location policies, as you know Lync policies are in-band provisioned and can be applied to following scopes:&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;Global&lt;/li&gt;
&lt;li&gt;Site&lt;/li&gt;
&lt;li&gt;Tag (User/Service/Pool)&lt;/li&gt;
&lt;/ul&gt;
We have a location policy which is called LocTest, which we will discuss here.&lt;br /&gt;
&lt;br /&gt;
Identity [mandatory = Name of the location policy) &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : Tag:Loctest &lt;br /&gt;
&lt;br /&gt;
Description (optional = description of the location policy) &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; :&lt;br /&gt;
&lt;br /&gt;
EnhancedEmergencyServicesEnabled (Mandatory = specifies whenever E911 is enabled)&amp;nbsp; : False&lt;br /&gt;
Only supported in North America. &lt;br /&gt;
&lt;br /&gt;
LocationRequired (Mandatory = Specifies if location needs to be set) &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : no&lt;br /&gt;
Options are Yes, No and Disclaimer&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;Yes: When LocationRequired is set to Yes, the set your location will turn up Red in the Lync client. Location is required but can be ignored.&lt;/li&gt;
&lt;li&gt;No: Location is not required. The user will not be prompted for a location, but can still be set if the user does so.&lt;/li&gt;
&lt;li&gt;Disclaimer: The user sees that the location is marked red, prompting the user to set a location, if the user removes the prompt without setting the location, the user will receive a disclaimer. The disclaimer has to be set using the Set-CsEnhancedEmergancyServiceDisclaimer. &lt;/li&gt;
&lt;/ul&gt;
&lt;br /&gt;
UseLocationForE911Only (Mandatory =&amp;nbsp;&amp;nbsp; Location information can be used by the Microsoft Lync 2010 
client for various reasons (such as notifying teammates of current 
location). Set this value to True to ensure location information is 
available only for use with an emergency call.) &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; : False&lt;br /&gt;
&lt;br /&gt;
PstnUsage (Optional = &lt;br /&gt;
The public switched telephone network (PSTN) usage that 
will be used to determine which voice route will be used to route 911 
calls from clients using this profile.)&amp;nbsp;&amp;nbsp; :&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
EmergencyDialString (Optional = The number that is dialed to reach emergency services. For example 911, 112, 100) :&lt;br /&gt;
&lt;br /&gt;
EmergencyDialMask (Optional = The number entered here is translated to the value in EmergencyDialString. Example: if you enter 112 here and enter 100 in the EmergencyDialString, 112 will be translated to 100) :&lt;br /&gt;
&lt;br /&gt;
NotificationUri (Optional: One or more SIP Uniform Resource Identifiers (URIs) to be 
notified when an emergency call is made. For example, the company 
security office could be notified through an instant message whenever an
 emergency call is made.) :&lt;br /&gt;
&lt;br /&gt;
ConferenceUri (Optional: The SIP Uniform Resource Identifier (URI), in this case the 
telephone number, of a third party that will be conferenced in to any 
emergency calls that are made. For example, the company security office 
could receive a call when an emergency call is made and listen in or 
participate in that call (depending on the value of the ConferenceMode 
property). :&lt;br /&gt;
&lt;br /&gt;
ConferenceMode (Optional: &lt;br /&gt;
If a value is specified for the ConferenceUri parameter, 
the ConferenceMode parameter determines whether a third party can 
participate in the call or can only listen in. Available values are:&lt;br /&gt;
- oneway: Third party can only listen to the 
conversation between the caller and the Public Safety Answering Point 
(PSAP) operator.&lt;br /&gt;
- twoway: Third party can listen in and participate in the call between the caller and the PSAP operator.) :&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;Remarks: &lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
The location policy cannot be set or changed by the user if LIS information is provided by the location database. To retrieve the information that is used for LIS, use following CMDLet: Get-CsNetworkConfiguration.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-4408459328499327559?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/uQ6_crUxZMfeITgBBKAQhCUA064/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/uQ6_crUxZMfeITgBBKAQhCUA064/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/uQ6_crUxZMfeITgBBKAQhCUA064/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/uQ6_crUxZMfeITgBBKAQhCUA064/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/DgHeDgVTews" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/4408459328499327559/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/10/lync-location-policy.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/4408459328499327559?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/4408459328499327559?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/DgHeDgVTews/lync-location-policy.html" title="Lync Location Policy" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-W0d2mvkvCqM/TpwQgDXHCtI/AAAAAAAAAMg/NktlYw3rGc4/s72-c/17-10-2011+13-23-54.png" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/10/lync-location-policy.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEQFQ3g4eCp7ImA9WhdUFkg.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-8739998712660888012</id><published>2011-09-30T13:00:00.002+02:00</published><updated>2011-10-03T17:38:32.630+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-03T17:38:32.630+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Lync 2010" /><title>Lync 2010 Policies and settings</title><content type="html">It is pretty obvious that Lync is a very complicated product, that aligns with many features in a corporate network. For example, Lync integrates or provides telephone, provides numerous forms of collaboration and presence.&lt;br /&gt;
We are not going to talk about the various features in Lync, Which have been widely discussed on other blogs. But lets talk about the numerous policies and configurations that help you manage this product. We clearly put the focus on policies, and add the configuration as a bonus, as many settings link to configuration settings.&lt;br /&gt;
&lt;br /&gt;
When talking about policies we have following policy scopes in mind: &lt;br /&gt;
&lt;ol&gt;
&lt;li&gt;Client Policies&lt;/li&gt;
&lt;li&gt;Location Policies&lt;/li&gt;
&lt;li&gt;Voice Policies&lt;/li&gt;
&lt;li&gt;Conferencing Policies&lt;/li&gt;
&lt;li&gt;Presence Policies&lt;/li&gt;
&lt;li&gt;Archiving Policies&lt;/li&gt;
&lt;li&gt;Pin Policies&lt;/li&gt;
&lt;li&gt;External Access Policies&lt;/li&gt;
&lt;li&gt;Hosted Voice Mail Policies&lt;/li&gt;
&lt;li&gt;Client Version Policies &lt;/li&gt;
&lt;/ol&gt;
Each scope will be discussed as a separate article.&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;1. Client Policies&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
&lt;br /&gt;
We start off by discussing client policies. &lt;br /&gt;
Client policies apply to the Lync client as the name suggests. But before starting to describe what can be applied using client policies, it is interesting to look at how policies are applied in Lync 2010.&lt;br /&gt;
&lt;br /&gt;
When talking about client policies, we have to make an distinction between two types of policies. Namely the "Out-of-band provisioning" policies and the "In-band provisioning" policies.&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;1.1 Precedence&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
As we are talking about client settings, the settings can be applied at several levels. The settings can be done by tattooing the registry, group policies, Lync policies, or configuring the options by hand in the client. It is important to understand which setting takes precedence when being set.&lt;br /&gt;
&lt;br /&gt;
The precedence is set from 1 to 4, in which 1 takes precedence over 2, 3, and 4.&lt;br /&gt;
&lt;ol&gt;
&lt;li&gt;HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\Communicator&amp;nbsp; &lt;/li&gt;
&lt;li&gt;HKEY_CURRENT_USER\Software\Policies\Microsoft\Communicator&lt;/li&gt;
&lt;li&gt;Lync Server In-brand provisioning&lt;/li&gt;
&lt;li&gt;Lync Option Dialog box&lt;/li&gt;
&lt;/ol&gt;
&lt;ol&gt;
&lt;/ol&gt;
Note: Another important thing to say is that lync allows policies to be set at certain levels, an example of this is the client policy and the voice policy. The voice policy will overrule the client policy if the user is voice enabled. An example is delegations in outlook when scheduling an on-line meeting. If you want your users to be able to schedule a online meeting you have to set the client policy to EnableExchangeDelegateSync to true. However if the user who has delegated his calendar is voice enabled, we have to make sure that "DelegationEnabled" is set to true in the voice policy for that user. If the voice policy for that user still states "DelegationEnabled: False", delegates will be unable to schedule an online meeting for the voice enabled user. &lt;u&gt;&lt;b&gt;&lt;br /&gt;&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;1.2&amp;nbsp; "Out-of-band provisioning" policies&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
"Out-of-band provisioning" or group policies have been replaced by "In-Band provisioning" policies. Out-of-band provisioning" policies are applied using group policy, and therefore have the limitation that come with group policies. "In-Band provisioning" do not use group policies and therefore do not have the limitations of group policies. Does this mean that group policies are gone? No, they are not, Goup Policies can still be used, and are applied to the client before the client logs on the Lync infrastructure.&lt;br /&gt;
&lt;br /&gt;
These policies are available as a ADM file which is part of the Lync 2010 client download from the partner website. This communicator.adm file can be imported in any group policy template and applied to a computer, set of computers, user or off course a set of users.&lt;br /&gt;
&lt;br /&gt;
The communicator.adm file contains 15 policy settings:&lt;br /&gt;
&lt;ol&gt;
&lt;li&gt; Specify Transport and server: Allows you to specify the name of your front-end and edge server. This way you do not need to provide the DNS names required for client Autodiscovery on the WAN or LAN.&lt;/li&gt;
&lt;li&gt;Enable Strict DNS naming for server name: When not set, or disabled the client will connect to the SIP server that has the domain name of the SIP address. Meaning that if your SIP address is sip:Me@example.com, the sip server should be sip.example.com. If you enable this setting, the client will communicate with whatever server that has the SIP domain configured. In case the policy is enabled the client could communicate with a server called whatever.example.com, in which you would allow a potential risk for spoofers to mimic the sip server. Does only apply when TLS is used (default).&lt;/li&gt;
&lt;li&gt;Configure SIP security mode: If you enable this policy the client requires TLS to be used, in which the client will not fall back to TCP in case TLS cannot be used. This setting if enabled also requires the client to authenticate using Kerberos or NTLM. If this setting is enabled all communications must run through the SIP server, in which peer 2 peer communications are disabled.&lt;/li&gt;
&lt;li&gt;Configure SIP compression mode: whether or not to use SIP compression. By default the network adapter speed specifies whether compression is or is not used. Enabling this setting could increase logon time. &amp;nbsp; &lt;/li&gt;
&lt;li&gt;Prevent users from running Microsoft Lync: States whether or not the lync client can be used by that particular user or machine.&lt;/li&gt;
&lt;li&gt;Allow storage of user password: If you enable this policy setting, Microsoft Lync can store a password on request from the user. If you disable this policy setting, Microsoft Lync cannot store a password. If you do not configure this policy setting and the user logs on to a domain, Microsoft Lync does not store the password. If you do not configure this policy setting and the user does not log on to a domain (for example, if the user logs on to a workgroup), Microsoft Lync can store the password.&lt;/li&gt;
&lt;li&gt;Require logon credentials: Requires the user to provide logon credentials for Microsoft Lync rather than automatically using the Windows credentials when Microsoft Lync authenticates the user using NTLM or Kerberos. If you enable this policy setting, Microsoft Lync requires the user to provide logon credentials. If you disable or do not configure this policy setting, Microsoft Lync authenticates the user based on the logon credentials for Windows.&lt;/li&gt;
&lt;li&gt;Disable HTTP fallback for SIP connection: Prevents from HTTP being used for SIP connection in case TLS or TCP fail.&lt;/li&gt;
&lt;li&gt;Disable version Server check: Prevents Microsoft Lync from checking the server version before signing in.&lt;/li&gt;
&lt;li&gt;Additional Server version support: Specify a semicolon separated list of server version names,&lt;br /&gt;e.g. RTC/2.8;RTC/2.9, to which Microsoft Lync allows logon in addition to the server versions that are supported by default. Space character is treated as part of the version string.&lt;/li&gt;
&lt;li&gt;Enable using BITS to download address book service files: This policy allows Microsoft Lync to use BITS (Background Intelligent Transfer Service) to download the Address Book Services files.&lt;/li&gt;
&lt;li&gt;Use compact DELTA file for GAL: This policy allows Microsoft Lync to use compact delta file for GAL.&lt;/li&gt;
&lt;li&gt;Help menu: This policy is used to extend the Help Menu in Microsoft Lync. An administrator can specify a help web site for Microsoft Lync using these keys. Help Menu Text is a string value that specifies the text to display to the user in the Help Menu for the help web site. Help Menu URL is a string value that specifies which web site to open when the user selects the Help Menu Text item in the Help Menu. Note that both Help Menu Text and Help Menu URL need to be specified in order for the Help Menu item to appear in Microsoft Lync.&lt;/li&gt;
&lt;li&gt;Launch Microsoft Link First Run: This policy defines the behavior of the Microsoft Lync First Run. Whether it's enabled or not, whether it should be launched automatically or not.&lt;/li&gt;
&lt;li&gt;Turn on tracing for Lync: Turn on tracing for Lync, primarily for use to assist customer problem solving. If this policy is not configured, then the user can specify the choice in Lync options. Otherwise, the corresponding behavior is enforced and the user has no choice.&lt;/li&gt;
&lt;/ol&gt;
Note: policy 1, 2, 3, 5, 6, and 7 can be configured on both the user as the computer level of the policy. Yet the computer policy takes precedence over the user policy. All other policies only apply on the computer level of the policy.&lt;br /&gt;
&lt;br /&gt;
Now explaining how group policies work and how they are applied is really not the scope of this article. Yet i do want to point out why group policies have a certain disadvantage, and why Microsoft moved away from group policies and implemented the new way of assigning policies (in-band provisioning). Group policies are typically applied at logon, and are refreshed every 90 to 120 minutes by default (90+ random offset of 30 minutes). So when applying new settings this setting are not automatically applied, unless the policies are refreshed manually on the client. A second disadvantage is that you are not really sure that the policies set are actually applied. It could be that a corporate user who logs on to the network using VPN, does not get his/her policies applied, due to slow link detection. Or that the remote user logs on to the network using a computer that has not been subjected to group policies (home computer, none Windows system).&amp;nbsp; &lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;&lt;b&gt;1.3 In-band provisioning&lt;/b&gt;&lt;/u&gt;&lt;br /&gt;
Microsoft acknowledged the problem with group policies, and developed a new way of assigning policies in Lync 2010. The new way is known as in-band provisioning. The policies are applied through Lync itself and the policies are stored in the Lync CMS store and replicated to the local copy of the database.&lt;br /&gt;
&lt;br /&gt;
The policies are applied as soon as replication has been done, and the policy is assigned to a certain level. The levels to which a policy can be applied is Global, Site, and Tag.&lt;br /&gt;
&lt;ol&gt;
&lt;li&gt;Global: The global Lync infrastructure, in this case every lync client.&lt;/li&gt;
&lt;li&gt;Site: A Lync site, every client within a Lync site. The Lync organization can have multiple Lync Sites.&amp;nbsp;&lt;/li&gt;
&lt;li&gt;Tag: the tag can be a user, group or service.&lt;/li&gt;
&lt;/ol&gt;
The client policy can only be set by using the Lync Management Shell and not by the Lync Control Panel. Most of the settings that determine Microsoft Lync 2010 features and 
functionality are configurable through Microsoft Lync Server 2010 
Control Panel. However, there are several essential policies and 
settings that significantly impact client functionality and that can be 
configured only by using Group Policy or Lync Server Management Shell.&lt;br /&gt;
&lt;br /&gt;
The following CMDlets are used to manage the client policies:&lt;br /&gt;
&lt;ul&gt;
&lt;li&gt;Get-CsClientPolicy: Get the client policies which are configured, if you do not specify a name all client policies are returned.&lt;/li&gt;
&lt;li&gt;Grant-CsClientPolicy: Assigns the policy to a level (Global, Site, Tag). If you do not specify an identity the client policy is applied Global. &lt;/li&gt;
&lt;li&gt;New-CsClientPolicy: Creates a new client policy. Among other things, client policies help 
determine the features of Microsoft Lync 2010 that are made available to
 users; for example, you might give some users the right to transfer 
files while denying this right to other users.&lt;/li&gt;
&lt;li&gt;Remove-CsClientPolicy: Removes an existing client policy. Among other things, client policies 
help determine the features of Microsoft Lync 2010 that are available to
 users; for example, you might give some users the right to transfer 
files while denying this right to other users.&lt;/li&gt;
&lt;li&gt;Set-CsClientPolicy: Modifies the property values of an existing client policy. Among other 
things, client policies help determine the features of Microsoft Lync 
2010 that are available to users; for example, you might give some users
 the right to transfer files while denying this right to other users.&lt;/li&gt;
&lt;li&gt;New-CsClientPolicyEntry: Allows you to assign new options to the client policy. &lt;/li&gt;
&lt;/ul&gt;
&lt;br /&gt;
Information on the settings and applying the policy can be found here: http://technet.microsoft.com/en-us/library/gg398300.aspx &lt;br /&gt;
&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-8739998712660888012?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/LealUGmD7jnzDf6-O_8D3VcjAEQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/LealUGmD7jnzDf6-O_8D3VcjAEQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/LealUGmD7jnzDf6-O_8D3VcjAEQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/LealUGmD7jnzDf6-O_8D3VcjAEQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/SNnGuS6YRxc" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/8739998712660888012/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/09/lync-2010-policies-and-settings.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8739998712660888012?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8739998712660888012?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/SNnGuS6YRxc/lync-2010-policies-and-settings.html" title="Lync 2010 Policies and settings" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/09/lync-2010-policies-and-settings.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkQGSXg8fCp7ImA9WhdXGEo.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-6343325915406200711</id><published>2011-09-01T13:57:00.001+02:00</published><updated>2011-09-01T13:58:48.674+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-09-01T13:58:48.674+02:00</app:edited><title>Export/Import Contacts</title><content type="html">Exporting an importing contacts has become easy since Powershell was introduced. In the old days we used tools as CSVDE or LDIFDE to export, import contact information. This article describes both ways.&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;CSVDE&lt;/u&gt;&lt;br /&gt;
&lt;br /&gt;
Export&lt;br /&gt;
[Code] &lt;br /&gt;
CSVDE -f C:\Mailcontacts.csv -r ObjectClass=Contact -l Objectclass,DisplayName,GivenName,SN,Mail&lt;br /&gt;
[/Code]&lt;br /&gt;
Import&lt;br /&gt;
[Code]&lt;br /&gt;
CSVDE -i -f C:\Mailcontacts.csv&lt;br /&gt;
[/code]&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;LDIFDE&lt;/u&gt;&lt;br /&gt;
&lt;br /&gt;
Export&lt;br /&gt;
[Code]&lt;br /&gt;
LDIFDE -f C:\MailContacts.ldf -r ("Objectclass=Contact") -l Objectclass,DisplayName,GivenName,SN,Mail&lt;br /&gt;
[/Code]&lt;br /&gt;
Import&lt;br /&gt;
[Code]&lt;br /&gt;
LDIFDE -i -f C:\Mailcontacts.ldf&lt;br /&gt;
[/Code]&lt;br /&gt;
&lt;br /&gt;
&lt;u&gt;Powershell&lt;/u&gt;&lt;br /&gt;
Get-contact | select-object Name, DisplayName, FirstName; LastName; WindowsEmailAddress | Export-csv C:\Mailcontacts.csv&lt;br /&gt;
&lt;br /&gt;
$Contacts = import-csv C:\Mailcontacts.csv&lt;br /&gt;
Foreach ($_.Name in $Contacts) {New-contact -Name $_.Name -DisplayName $_DisplayName -FirstName $_FisrName -LastName $_LastName -Externaladdress $_.WindowsEmailAddress -Ou "OU=Contacts,DC=Domain,DC=Suffix,"}&lt;br /&gt;
&lt;br /&gt;
You can of course combine&amp;nbsp; these tools to export for example contacts out of Windows Server 2003 and import them in Windows Server 2008. Just remember that you need to modify the CSV tables to match the variables in the powershell Cmdlet.&lt;br /&gt;
&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-6343325915406200711?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/bgTisvJxEeS0TE8NgYCUitStrpY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/bgTisvJxEeS0TE8NgYCUitStrpY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/bgTisvJxEeS0TE8NgYCUitStrpY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/bgTisvJxEeS0TE8NgYCUitStrpY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/Mq9mre0hlZQ" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/6343325915406200711/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/09/exportimport-contacts.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/6343325915406200711?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/6343325915406200711?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/Mq9mre0hlZQ/exportimport-contacts.html" title="Export/Import Contacts" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>1</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/09/exportimport-contacts.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUANR30_eSp7ImA9WhdXE0g.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-5396259301351852564</id><published>2011-08-26T10:49:00.005+02:00</published><updated>2011-08-26T12:16:36.341+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-26T12:16:36.341+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2010" /><title>OWA: options, ecp and rules trow in Unexpected error</title><content type="html">Had this issue quit some time in my test environment, but never had the time nor the mood to resolve the issue.
&lt;br /&gt;The issue:
&lt;br /&gt;OWA works fine for normal e-mail usage, but when you try to set some options, rules a pop-up is displayed which say OWA encountered an unexpected error.
&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-w3Aoe2zraKw/TldrgjHPy_I/AAAAAAAAAMc/iFq7EfCmCEo/s1600/Capture.PNG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 143px;" src="http://3.bp.blogspot.com/-w3Aoe2zraKw/TldrgjHPy_I/AAAAAAAAAMc/iFq7EfCmCEo/s320/Capture.PNG" alt="" id="BLOGGER_PHOTO_ID_5645098864857828338" border="0" /&gt;&lt;/a&gt;
&lt;br /&gt;
&lt;br /&gt;Troubleshooting the issue showed me that the Exchange Control Panel was also unreachable. When accessing Owa from the internet (public url), only the error was displayed with no further information. When trying to access the ECP from the private interface, i managed to retrieve more information on the error "EventID: 4, source: MSExchange Control Panel".
&lt;br /&gt;
&lt;br /&gt;The next logical step is to check the eventvwr, where i discovered that the following event was logged each time i reproduced the issue:
&lt;br /&gt;Source: MSexchangeCommon
&lt;br /&gt;EventID:106
&lt;br /&gt;
&lt;br /&gt;Performance counter updating error. Counter name is Total time for saving Admin Audit records, category name is MSExchange Admin Audit. Optional code: 1. Exception: The exception thrown is : System.InvalidOperationException: The requested Performance Counter is not a custom counter, it has to be initialized as ReadOnly.
&lt;br /&gt;
&lt;br /&gt;I decided to try my luck on the Internet which led me to following tech-net forum-post:
&lt;br /&gt;
&lt;br /&gt;http://social.technet.microsoft.com/Forums/en-US/exchange2010/thread/5f1fd736-46b1-45cc-b028-934304163f76/
&lt;br /&gt;
&lt;br /&gt;The solution provided in the forum did resolve the issue.
&lt;br /&gt;Open the command prompt in administrative modus, which starts by default in the %systemroot%\system32 folder. If not, go to that path and run following command:
&lt;br /&gt;[Code]
&lt;br /&gt;LODCTR /r (resets the performance counters)
&lt;br /&gt;IISRESET /noforce (restart the IIS services)
&lt;br /&gt;[/code]
&lt;br /&gt;
&lt;br /&gt;more info on LODCTR can be found here:
&lt;br /&gt;http://technet.microsoft.com/en-us/library/bb490926.aspx
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-5396259301351852564?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/pTMzi1c3dB-sPqZN4pEY68D-Css/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/pTMzi1c3dB-sPqZN4pEY68D-Css/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/pTMzi1c3dB-sPqZN4pEY68D-Css/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/pTMzi1c3dB-sPqZN4pEY68D-Css/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/fOsvNKfklj8" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/5396259301351852564/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/08/owa-options-ecp-and-rules-trow-in.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/5396259301351852564?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/5396259301351852564?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/fOsvNKfklj8/owa-options-ecp-and-rules-trow-in.html" title="OWA: options, ecp and rules trow in Unexpected error" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-w3Aoe2zraKw/TldrgjHPy_I/AAAAAAAAAMc/iFq7EfCmCEo/s72-c/Capture.PNG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/08/owa-options-ecp-and-rules-trow-in.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEUBR304fip7ImA9WhdXGEo.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-8476428577252256768</id><published>2011-08-25T11:42:00.005+02:00</published><updated>2011-09-01T12:17:36.336+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-09-01T12:17:36.336+02:00</app:edited><title>Reinstallation of the Client access server role fails with MSI error 1630 -2920</title><content type="html">Sometimes i try to contribute on technical forums for people who have some questions regarding certain software products in which i have some level of expertise. A few days back somebody asked a question regarding authentication in OWA (Exchange 2010). As the question was pretty forward, i decided to test the solution on my test environment, before writing it down as an answer.
&lt;br /&gt;
&lt;br /&gt;The implementation and test ran according to plan, meaning that the solution in mind proved to be a valid solution. As i had proven my plan i reverted back to the previous configuration. After logging back into OWA, i received the following error message: "Owa encountered an error. If the problem consists, please contact your administrator".
&lt;br /&gt;The Authentication did not seem to be a problem, as the error occurs after the user is authenticated an reverted to the mailbox.
&lt;br /&gt;
&lt;br /&gt;As the problem originated after adjusting the authentication mechanism, i decided to try several authentication mechanisms to see if they would provide me back with a working configuration. None of them did.
&lt;br /&gt;
&lt;br /&gt;Restoring was not an option, as in this lab only the databases are backed up. Therefore i decided to reset the owa virtual directory (remove and recreate). The reset procedure completed successfully (used powershell), but it did not resolve the issue. Even after rebooting the server, the problem did persist.
&lt;br /&gt;
&lt;br /&gt;In an final attempt to resolve the issue i decided to reinstall the Client Access server role. I know a harsh solution but i am running out of options here.
&lt;br /&gt;
&lt;br /&gt;The un-install went well, but after reinstalling the client access server role the installation fails at 23% when copying installation files. This led me to believe there was an issue with the installation files. Re-downloaded the installation files and started the install from there. Still no go, again at 23% the install reverts back with a failure. Ok now, i am in a world of hurt. The client access server role has been removed, so there is no way for anybody to access his mailbox.
&lt;br /&gt;
&lt;br /&gt;The install logs only show the following:
&lt;br /&gt;[08/25/2011 08:24:37.0634] [1] Installing MSI package 'E:\Software\Microsoft\Exchange Server 2010\exchangeserver.msi'.
&lt;br /&gt;
&lt;br /&gt;[08/25/2011 08:24:37.0637] [1] Configuring an existing product. Product code: {4934D1EA-BE46-48B1-8847-F1AF20E892C1}. Property values: DISABLEERRORREPORTING=1 PRODUCTLANGUAGELCID=1033 DEFAULTLANGUAGENAME=ENU DEFAULTLANGUAGELCID=1033 INSTALLCOMMENT="Installed language for this product: English (United States)" REBOOT=ReallySuppress ADDLOCAL=ClientAccess
&lt;br /&gt;
&lt;br /&gt;[08/25/2011 08:25:04.0269] [1] [WARNING] Unexpected Error
&lt;br /&gt;
&lt;br /&gt;Searching the Internet did not provide any clue into solving this issue. As the problem seems to occur when copying installation files, i suspected a version mismatch. This led me to UN-install the Exchange roll-up packs one by one.
&lt;br /&gt;
&lt;br /&gt;1. Uninstalled Exchange 2010 RUP4, no luck.
&lt;br /&gt;
&lt;br /&gt;2. Uninstalled Exchange 2010 RUP3v3 (remember?), and BANG, we have a winner.
&lt;br /&gt;
&lt;br /&gt;After uninstalling Rollup 3 version 3, i was able to install the client access server role (looks like RUP3 is cursed).
&lt;br /&gt;
&lt;br /&gt;At the end all is well, as i resolved the issue but it toke me quit some time to resolve the issue. Writing this down i hope someone with similar issues stumbles on my blog, in which he shortens his burden.
&lt;br /&gt;  
&lt;br /&gt;
&lt;br /&gt; &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-8476428577252256768?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/kU87x8tGKSHpDNRCYHVoUGI3POE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/kU87x8tGKSHpDNRCYHVoUGI3POE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/kU87x8tGKSHpDNRCYHVoUGI3POE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/kU87x8tGKSHpDNRCYHVoUGI3POE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/Bv6RjSJC0xc" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/8476428577252256768/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/08/reinstallation-of-client-access-server.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8476428577252256768?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8476428577252256768?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/Bv6RjSJC0xc/reinstallation-of-client-access-server.html" title="Reinstallation of the Client access server role fails with MSI error 1630 -2920" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>1</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/08/reinstallation-of-client-access-server.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUAFRn87eCp7ImA9WhdXEU0.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-2803357127879458811</id><published>2011-08-21T16:53:00.005+02:00</published><updated>2011-08-23T15:55:17.100+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-23T15:55:17.100+02:00</app:edited><title>Lync2010 Certificate import failes</title><content type="html">In previous article I explained a few issues which i encountered while trying to publish the Lync2010 topology. The next step was to install the lync server itself. This spindled off pretty well and ran as expected. The next step however gave me a bit of a challenge. 
&lt;br /&gt;
&lt;br /&gt;Microsoft did a good job in creating a wizard that addresses every step of the installation process in the correct order. After Lync has been installed it is time to request and assign a certificate to the Lync server. This can be performed by using powershell or the GUI. I choose to run the GUI (lazy; i know) in stead of the poowershell commandlets. 
&lt;br /&gt;
&lt;br /&gt;The wizard however failed, claiming that the RPC server of the       
&lt;br /&gt;CA is unavailable.
&lt;br /&gt;
&lt;br /&gt;RPC error usually point to network and/or DNS problems, so started troubleshooting network or dns issues. Whatever i tested all tests returned positive, meaning i could not discover any network or dns issues. This started to look as the ghost in the machine case. Checking the certificate request log clearly states that the CA in unavailable (C:\Users\%username%\Appdata\Local\Temp\Request-CSCertificate-[2011_08_21][16_01_34].html); but as i couldn't discover any i decided to alter the certificate request. I changed certain parameters as adding credentials to the request, but they all failed to make the difference. In a final attempt i enable the check-mark to make the private key exportable, which eventually resolved the issue.
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt; 
&lt;br /&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-2803357127879458811?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/KMqd0KvGYF7csOZSszm30i_iHy8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KMqd0KvGYF7csOZSszm30i_iHy8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/KMqd0KvGYF7csOZSszm30i_iHy8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KMqd0KvGYF7csOZSszm30i_iHy8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/-_zkhf5JeCE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/2803357127879458811/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/08/lync2010-certificate-import-failes.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/2803357127879458811?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/2803357127879458811?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/-_zkhf5JeCE/lync2010-certificate-import-failes.html" title="Lync2010 Certificate import failes" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/08/lync2010-certificate-import-failes.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEcHQ3Y_fyp7ImA9WhdQF0g.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-3081593804820942751</id><published>2011-08-18T16:14:00.008+02:00</published><updated>2011-08-19T13:07:12.847+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-08-19T13:07:12.847+02:00</app:edited><title>Lync2010</title><content type="html">Been a while since I posted something on my blog. It could be that I was missing the inspiration or lacking interesting stuff to blog about.  
&lt;br /&gt;
&lt;br /&gt;Recently I did my first steps in the world of Lync2010. Prepared a server for a fresh install of the lync2010 standard server. read the prerequisites and installed them as required. Everything ran smooth until it was time to publish my Topology. It kept failing with following message "An error occurred: “Microsoft.Rtc.Management.Deployment.DeploymentException” “Cannot determine where to install database files because Windows Management Instrumentation on the database server is unavailable from your computer or user account. To continue, you can resolve this issue, or you can specify where you want to install the files."". 
&lt;br /&gt;
&lt;br /&gt;Searching google directed me to a Microsoft article stating that the Windows Firewall is blocking the remote administration ports. Now this could not be the case as the firewall is disabled by policy in my lab environment. As it was already late, I decided to give it a rest until the following morning. 
&lt;br /&gt;
&lt;br /&gt;The following morning I tried several other steps, but they kept failing with the same error message. Decided to place my hopes on google again, which led me to the following article: "http://jthys.wordpress.com/2010/12/02/lync-server-2010-topology-deployment-error/"
&lt;br /&gt;
&lt;br /&gt;Eureka, modified my pool name to the host name of the standard server, which enabled me to publish my topology.
&lt;br /&gt;
&lt;br /&gt;Now we are off to installing the First Lync2010 standard server within the pool. Installing the Standard server requires some prerequisites to be installed prior to installing Lync2010. I have taken the liberty to provide the correct command here:
&lt;br /&gt;[Code]
&lt;br /&gt;servermanagercmd -i web-static-content web-default-doc web-dir-browsing web-http-errors Web-Http-Redirect Web-Asp-Net Web-ISAPI-Ext Web-ISAPI-Filter Web-Http-Logging Web-Request-Monitor Web-Http-Tracing Web-Client-Auth Web-Basic-Auth Web-Windows-Auth Web-Stat-Compression Web-Mgmt-Console Web-Scripting-Tools MSMQ-Directory
&lt;br /&gt;[/Code]
&lt;br /&gt;The installation required two other options which need to be installed earlier:
&lt;br /&gt;In order to run the Lync installation wizzard .net-frameworks is required:
&lt;br /&gt;[Code]
&lt;br /&gt;Servermanagercmd -i Net-Framework
&lt;br /&gt;[/code]
&lt;br /&gt;For the Active Directory Forest/domain extension the AD Rsat tools are required:
&lt;br /&gt;[Code]
&lt;br /&gt;Servermanagercmd -i rsat-adds
&lt;br /&gt;[/code]
&lt;br /&gt;      
&lt;br /&gt;I found a nice set of articles on installing a Lync2010 lab environment, a big thanks to the author Jeff Schertz.
&lt;br /&gt;http://blog.schertz.name/2010/09/lync2010rc-deployment-part1/&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-3081593804820942751?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Pxrk9HPLHvtfN7DRBswnQWFYIKg/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Pxrk9HPLHvtfN7DRBswnQWFYIKg/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Pxrk9HPLHvtfN7DRBswnQWFYIKg/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Pxrk9HPLHvtfN7DRBswnQWFYIKg/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/8yor9-MiV78" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/3081593804820942751/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/08/lync2010.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/3081593804820942751?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/3081593804820942751?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/8yor9-MiV78/lync2010.html" title="Lync2010" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/08/lync2010.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkINSHk7eip7ImA9WhZTFEg.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-5680895225038028989</id><published>2011-03-18T13:11:00.003+01:00</published><updated>2011-03-18T14:23:19.702+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-03-18T14:23:19.702+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2010" /><title>Online Archive - Office 2007 support</title><content type="html">Today a customer called me to ask if Microsoft Office 2007 Standard edition supports the Exchange 2010 on-line archive.  &lt;br /&gt;&lt;br /&gt;As I recalled a message on the Exchange team blog, telling that Office 2007 finally supported the Exchange on-line Archive. I replied "Yes, Outlook 2007 supports the Exchange 2010 On-line archive". http://blogs.technet.com/b/exchange/archive/2010/12/20/3411710.aspx&lt;br /&gt;&lt;br /&gt;He replied a bit surprised claiming that all his Office 2007 professional Editions see the on-line archive, while all the standard editions do not. &lt;br /&gt;&lt;br /&gt;My first hunch was that those clients must be missing the patch which enables the on-line archive. Yet the customer replied that all patches where installed, even the February roll up for office 2007 (http://support.microsoft.com/hotfix/KBHotfix.aspx?kbnum=2475891&amp;kbln=en-us). &lt;br /&gt;&lt;br /&gt;Investigating the issue a bit further revealed that not all Outlook 2007 versions are the same. Following link explains that Office 2010/2007 standard editions do not support the Exchange 2010 On-line Archive:&lt;br /&gt;http://office.microsoft.com/en-us/outlook-help/license-requirements-for-personal-archive-and-retention-policies-HA102576659.aspx&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-5680895225038028989?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/ktKOXRJXmilBgnMBax3fYC9wwEA/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/ktKOXRJXmilBgnMBax3fYC9wwEA/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/ktKOXRJXmilBgnMBax3fYC9wwEA/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/ktKOXRJXmilBgnMBax3fYC9wwEA/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/rlAc31lWcDM" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/5680895225038028989/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/03/online-archive-office-2007-support.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/5680895225038028989?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/5680895225038028989?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/rlAc31lWcDM/online-archive-office-2007-support.html" title="Online Archive - Office 2007 support" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/03/online-archive-office-2007-support.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUcBQn47cSp7ImA9Wx9UGUs.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-6047522433493812039</id><published>2011-02-16T19:33:00.008+01:00</published><updated>2011-02-17T19:24:13.009+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-17T19:24:13.009+01:00</app:edited><title>Exchange 2010 Prerequisites</title><content type="html">I have created yet another script that installs the Exchange 2010 Prerequisites on Windows Server 2008 R2.&lt;br /&gt;&lt;br /&gt;[Code]&lt;br /&gt;#JUDG Therealshrimp.blogspot.com 2011#&lt;br /&gt;&lt;br /&gt;#This script installs the Exchange prerequisites according to roll#&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Write-host "This script will install the Exchange 2010 prerequisites according to the role(s) you sellect." -ForegroundColor Blue -BackgroundColor White&lt;br /&gt;&lt;br /&gt;   Write-Host "********************************************************************************************"  &lt;br /&gt;&lt;br /&gt;#----------------------------------------------------------------------------------------------------------#&lt;br /&gt;&lt;br /&gt;# Patches Required for Exchange 2010 on Windows Server 2008 R2                                             #&lt;br /&gt;&lt;br /&gt;#----------------------------------------------------------------------------------------------------------#&lt;br /&gt;&lt;br /&gt;Write-Host "This script Presumes that following prerequisites have been met:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;The following hotfixes are required for the Client Access server for Windows Server 2008 R2:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;   * Install the update described in Knowledge Base article 979099, An update is available to remove the application manifest expiry feature from AD RMS clients. Without this update, the AD RMS features may stop working.&lt;br /&gt;&lt;br /&gt;   * Install the hotfix described in Knowledge Base article 982867, WCF services that are hosted by computers together with a NLB fail in .NET Framework 3.5 SP1. For more information, see these MSDN Code Gallery pages:&lt;br /&gt;&lt;br /&gt;         o For additional background information, see KB982867 - WCF: Enable WebHeader settings on the RST/SCT.&lt;br /&gt;&lt;br /&gt;         o For the available downloads, see KB982867 - WCF: Enable WebHeader settings on the RST/SCT.&lt;br /&gt;&lt;br /&gt;   * Install the update described in Knowledge Base article 979744, A .NET Framework 2.0-based Multi-AppDomain application stops responding when you run the application.&lt;br /&gt;&lt;br /&gt;   * Install the update described in Knowledge Base article 983440, An ASP.NET 2.0 hotfix rollup package is available for Windows 7 and for Windows Server 2008 R2. For more information, see these MSDN Code Gallery pages:&lt;br /&gt;&lt;br /&gt;         o For additional background information, see KB983440 - Win7 rollup package (PR for QFE 810219).&lt;br /&gt;&lt;br /&gt;         o For the available downloads, see KB983440 - Win7 rollup package (PR for QFE 810219).&lt;br /&gt;&lt;br /&gt;   * Install the update described in Knowledge Base article 977020, FIX: An application that is based on the Microsoft .NET Framework 2.0 Service Pack 2 and that invokes a Web service call asynchronously throws an exception on a computer that is running Windows 7." -foregroundcolor Yellow -backgroundcolor Blue&lt;br /&gt;&lt;br /&gt;Write-Host "************************************************************************************************"&lt;br /&gt;&lt;br /&gt;#-----------------------------------------------------------------------------------------------------------#&lt;br /&gt;&lt;br /&gt;# Roles selection                                                                                           #&lt;br /&gt;&lt;br /&gt;#-----------------------------------------------------------------------------------------------------------#&lt;br /&gt;&lt;br /&gt;Write-host "Please select the role(s) you wish to install"&lt;br /&gt;&lt;br /&gt;   Write-Host "1: Base (Cas, Hub, Mailbox)"&lt;br /&gt;&lt;br /&gt;       Write-Host "2: Client Access Server"&lt;br /&gt;&lt;br /&gt;           Write-host "3: Hub Transport Server"&lt;br /&gt;&lt;br /&gt;               Write-host "4: Mailbox Server"&lt;br /&gt;&lt;br /&gt;                   Write-host "5: Hub Transport/Client Access Server"&lt;br /&gt;&lt;br /&gt;#------------------------------------------------------------------------------------------------------------#&lt;br /&gt;&lt;br /&gt;# Function                                                                                                   #&lt;br /&gt;&lt;br /&gt;#------------------------------------------------------------------------------------------------------------#&lt;br /&gt;&lt;br /&gt;function ProcessAnswer1&lt;br /&gt;&lt;br /&gt;   {&lt;br /&gt;&lt;br /&gt;       Import-Module ServerManager&lt;br /&gt;&lt;br /&gt;           Add-WindowsFeature NET-Framework,RSAT-ADDS,Web-Server,Web-Basic-Auth,Web-Windows-Auth,Web-Metabase,Web-Net-Ext,Web-Lgcy-Mgmt-Console,WAS-Process-Model,RSAT-Web-Server,Web-ISAPI-Ext,Web-Digest-Auth,Web-Dyn-Compression,NET-HTTP-Activation,RPC-Over-HTTP-Proxy -Restart&lt;br /&gt;&lt;br /&gt;    }&lt;br /&gt;&lt;br /&gt;function ProcessAnswer2&lt;br /&gt;&lt;br /&gt;   {&lt;br /&gt;&lt;br /&gt;       Import-Module ServerManager&lt;br /&gt;&lt;br /&gt;           Add-WindowsFeature NET-Framework,RSAT-ADDS,Web-Server,Web-Basic-Auth,Web-Windows-Auth,Web-Metabase,Web-Net-Ext,Web-Lgcy-Mgmt-Console,WAS-Process-Model,RSAT-Web-Server,Web-ISAPI-Ext,Web-Digest-Auth,Web-Dyn-Compression,NET-HTTP-Activation,RPC-Over-HTTP-Proxy -Restart&lt;br /&gt;&lt;br /&gt;    }&lt;br /&gt;&lt;br /&gt;function ProcessAnswer3&lt;br /&gt;&lt;br /&gt;   {&lt;br /&gt;&lt;br /&gt;       Import-Module ServerManager&lt;br /&gt;&lt;br /&gt;           Add-WindowsFeature NET-Framework,RSAT-ADDS,Web-Server,Web-Basic-Auth,Web-Windows-Auth,Web-Metabase,Web-Net-Ext,Web-Lgcy-Mgmt-Console,WAS-Process-Model,RSAT-Web-Server -Restart&lt;br /&gt;&lt;br /&gt;    }&lt;br /&gt;&lt;br /&gt;function ProcessAnswer4&lt;br /&gt;&lt;br /&gt;   {&lt;br /&gt;&lt;br /&gt;       Import-Module ServerManager&lt;br /&gt;&lt;br /&gt;          Add-WindowsFeature NET-Framework,RSAT-ADDS,Web-Server,Web-Basic-Auth,Web-Windows-Auth,Web-Metabase,Web-Net-Ext,Web-Lgcy-Mgmt-Console,WAS-Process-Model,RSAT-Web-Server -Restart&lt;br /&gt;&lt;br /&gt;    }&lt;br /&gt;&lt;br /&gt;function ProcessAnswer5&lt;br /&gt;&lt;br /&gt;   {&lt;br /&gt;&lt;br /&gt;       Import-Module ServerManager&lt;br /&gt;&lt;br /&gt;           Add-WindowsFeature NET-Framework,RSAT-ADDS,Web-Server,Web-Basic-Auth,Web-Windows-Auth,Web-Metabase,Web-Net-Ext,Web-Lgcy-Mgmt-Console,WAS-Process-Model,RSAT-Web-Server,Web-ISAPI-Ext,Web-Digest-Auth,Web-Dyn-Compression,NET-HTTP-Activation,RPC-Over-HTTP-Proxy -Restart&lt;br /&gt;&lt;br /&gt;    }       &lt;br /&gt;&lt;br /&gt;$Choise = read-host "Make a sellection between 1 and 5"&lt;br /&gt;&amp;amp; "ProcessAnswer$Choise"&lt;br /&gt;[/Code]&lt;div id="ui-datepicker-div" style="display: none;"&gt;&lt;/div&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-6047522433493812039?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/bBFbcCQJK9OtOR4Y0qcGBfCwF5I/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/bBFbcCQJK9OtOR4Y0qcGBfCwF5I/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/bBFbcCQJK9OtOR4Y0qcGBfCwF5I/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/bBFbcCQJK9OtOR4Y0qcGBfCwF5I/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/LpDmRYD2UOE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/6047522433493812039/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/02/exchange-2010-prerequisites.html#comment-form" title="4 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/6047522433493812039?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/6047522433493812039?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/LpDmRYD2UOE/exchange-2010-prerequisites.html" title="Exchange 2010 Prerequisites" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>4</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/02/exchange-2010-prerequisites.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CU4DRH0zeyp7ImA9Wx9UE04.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-4360189104573212883</id><published>2011-02-10T11:30:00.002+01:00</published><updated>2011-02-10T11:32:55.383+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-02-10T11:32:55.383+01:00</app:edited><title>Windows Server 2008 R2 SP1</title><content type="html">The official release of SP1 for Windows Server 2008 R2/Windows 7 is anounced to be on the 22 of Februari.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://blogs.technet.com/b/virtualization/archive/2011/02/09/windows-7-and-windows-server-2008-r2-sp1-add-new-virtualization-innovations.aspx"&gt;http://blogs.technet.com/b/virtualization/archive/2011/02/09/windows-7-and-windows-server-2008-r2-sp1-add-new-virtualization-innovations.aspx&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-4360189104573212883?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/-5ONsYklLZLZkIg9v42aujqeznU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/-5ONsYklLZLZkIg9v42aujqeznU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/-5ONsYklLZLZkIg9v42aujqeznU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/-5ONsYklLZLZkIg9v42aujqeznU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/0hksVM-hLxc" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/4360189104573212883/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2011/02/windows-server-2008-r2-sp1.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/4360189104573212883?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/4360189104573212883?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/0hksVM-hLxc/windows-server-2008-r2-sp1.html" title="Windows Server 2008 R2 SP1" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2011/02/windows-server-2008-r2-sp1.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CE4CQnw-eip7ImA9Wx9QE0o.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-6040610843352333790</id><published>2010-12-09T23:40:00.005+01:00</published><updated>2010-12-26T15:16:03.252+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-12-26T15:16:03.252+01:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2010" /><title>Configure CAS virtual directories</title><content type="html">In some cases you need to define the external as internal url for your client access servers. This is the case when you use a wild card certificate. I thought of creating a script that asks for the url, and implements that url for all your virtual directories on all you client access servers.&lt;br /&gt;&lt;br /&gt;[Code]&lt;br /&gt;&lt;br /&gt;#TheRealShrimp.blogspot.com 8/12/2010#&lt;br /&gt;&lt;br /&gt;Write-host "Please fill in the url you wish to use. Use the world wide web name (www.host.com)."&lt;br /&gt;$url = Read-Host&lt;br /&gt;#------------------------------------------------------------------------------------#&lt;br /&gt;#Set the owa virtual directories#&lt;br /&gt;#------------------------------------------------------------------------------------#&lt;br /&gt;$Cas = get-owavirtualdirectory&lt;br /&gt;Foreach ($_.Name in $Cas) {set-owavirtualdirectory $_.Name -internalurl https://"$url"/owa -externalurl https://"$url"/owa}&lt;br /&gt;$Show = get-owavirtualdirectory | Select-Object Name, Internalurl, Externalurl&lt;br /&gt;write-host "Following url's have been set for Outlook Web App"&lt;br /&gt;    Write-Host $Show&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;#Set the ActiveSync virtual directories#&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;$Active = Get-ActiveSyncVirtualDirectory&lt;br /&gt;Foreach ($_.name in $Active) {Set-ActiveSyncVirtualDirectory $_.Name -internalurl https://"$url"/MicrosoSelect-Object-Server-ActiveSync -externalurl https://"$url"/MicrosoSelect-Object-Server-ActiveSync}&lt;br /&gt;$Show =  Get-ActiveSyncVirtualDirectory | Select-Object Name, Internalurl, Externalurl&lt;br /&gt;write-host "Following url's have been set for Outlook Web App"&lt;br /&gt;    Write-Host $Show&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;#Set the Offline Address Book#&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;$Book = Get-OabVirtualDirectory&lt;br /&gt;Foreach ($_.Name in $Book) {Set-OabVirtualDirectory $_.name -Internalurl https://"$url"/Oab -externalurl https://"$url"/Oab}&lt;br /&gt;$Show = Get-OabVirtualDirectory | Select-Object Name, Internalurl, Externalurl&lt;br /&gt;write-host "Following url's have been set for Outlook Web App"&lt;br /&gt;    Write-Host $Show&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;#Set the Exchange Control Panel#&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;$ExCoP = Get-EcpVirtualDirectory&lt;br /&gt;Foreach ($_.Name in $ExCop) {Set-ecpVirtualDirectory $_.name -Internalurl https://"$url"/Ecp -externalurl https://"$url"/Ecp}&lt;br /&gt;$Show = Get-EcpVirtualDirectory | Select-Object Name, Internalurl, Externalurl&lt;br /&gt;write-host "Following url's have been set for Outlook Web App"&lt;br /&gt;    Write-Host $Show&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;#Set-Offline Address Book SCP&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;$Cas = Get-ClientAccessServer&lt;br /&gt;ForEach ($_.Name in $Cas) {Set-ClientAccessServer $_.Name -AutoDiscoverServiceInternalUri  https://"$Url"//Autodiscover/Autodiscover.xml}&lt;br /&gt;#-------------------------------------------------------------------------------------#&lt;br /&gt;[/Code]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-6040610843352333790?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/xr-KKUq5RJ-eeBJd0o7ATa8yK5k/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/xr-KKUq5RJ-eeBJd0o7ATa8yK5k/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/xr-KKUq5RJ-eeBJd0o7ATa8yK5k/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/xr-KKUq5RJ-eeBJd0o7ATa8yK5k/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/qXcX8EwIn1s" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/6040610843352333790/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/12/configure-cas-virtual-directories.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/6040610843352333790?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/6040610843352333790?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/qXcX8EwIn1s/configure-cas-virtual-directories.html" title="Configure CAS virtual directories" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/12/configure-cas-virtual-directories.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0AGRXs7fSp7ImA9Wx5aE0U.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-2395535180158966674</id><published>2010-11-08T19:59:00.003+01:00</published><updated>2010-11-10T12:48:44.505+01:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-11-10T12:48:44.505+01:00</app:edited><title>Cannot move and/or delete items in OWA after installing Exchange 2010 SP1</title><content type="html">Users report that they are unable to move and or delete items when using Outlook Web App. When they try to move or delete a message they get an unspecified error.&lt;br /&gt;&lt;br /&gt;Open IIS manager, go to your default website, right click on it and select "Edit Bindings".&lt;br /&gt;Check if any binding has a hostname configured. If one does, remove the hostname. You probably cannot remove the hostname, because the binding already exists. If so, remove the binding completly (where the hostname is specified). Restart IIS (IISRESET).&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-2395535180158966674?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/-zNldFmzmDveirGchIHpucdXOC4/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/-zNldFmzmDveirGchIHpucdXOC4/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/-zNldFmzmDveirGchIHpucdXOC4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/-zNldFmzmDveirGchIHpucdXOC4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/DysV2sKjYnE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/2395535180158966674/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/11/cannot-move-andor-delete-items-in-owa.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/2395535180158966674?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/2395535180158966674?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/DysV2sKjYnE/cannot-move-andor-delete-items-in-owa.html" title="Cannot move and/or delete items in OWA after installing Exchange 2010 SP1" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/11/cannot-move-andor-delete-items-in-owa.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Ak4GSX8ycSp7ImA9Wx5UF0o.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-1246826934343617806</id><published>2010-10-22T22:14:00.005+02:00</published><updated>2010-10-22T22:22:08.199+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-10-22T22:22:08.199+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Hyper-V" /><title>Corrupt VHD's</title><content type="html">I had a power failure on my test machine which is running Windows Server 2008 R2 Hyer-V.&lt;br /&gt;It had seven virtual machines, and one of them was configured as a file server with 4 VHD's of 200GB. Due to the power-failure 3 VHD's o this file server became corrupt.&lt;br /&gt;&lt;br /&gt;I managed to repair 2 of them by compressing them in Hyper-V. The data of the 3rd i was able to recover through WinImage, which is able to open VHD files in an explorer like window.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-1246826934343617806?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/dZA1sZ3e41tNSS08a764akQ4xaU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/dZA1sZ3e41tNSS08a764akQ4xaU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/dZA1sZ3e41tNSS08a764akQ4xaU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/dZA1sZ3e41tNSS08a764akQ4xaU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/6Et6DRka-q4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/1246826934343617806/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/10/corrupt-vhds.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/1246826934343617806?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/1246826934343617806?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/6Et6DRka-q4/corrupt-vhds.html" title="Corrupt VHD's" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/10/corrupt-vhds.html</feedburner:origLink></entry><entry gd:etag="W/&quot;Dk4NRXc4fyp7ImA9WxFWEkk.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-2550842728412724112</id><published>2010-05-30T18:07:00.006+02:00</published><updated>2010-05-30T20:43:14.937+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-05-30T20:43:14.937+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Terminal Services/Citrix" /><title>Remote Desktop Web Access browser compatibility (Part 1)</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_lW1-vfuQSp0/TAKwu-vmiTI/AAAAAAAAAL4/S48HKOCywpY/s1600/2.bmp"&gt;&lt;br /&gt;&lt;/a&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_lW1-vfuQSp0/TAKij3932iI/AAAAAAAAALw/Pq4DMB9JqUk/s1600/1.bmp"&gt;&lt;br /&gt;&lt;/a&gt;&lt;br /&gt;As Microsoft Internet explorer is loosing its position on the market, we have to look in to other browsers and there compatibility with features we use in the Enterprise environment. One of them is the remote desktop services (formerly known as terminal services). Since Windows Server 2008 RTM the Microsoft Terminal Services has been extended with new features. One of these new features is called Remote Desktop Web Access, which provides a web interface where the user can access his or her applications.&lt;br /&gt;&lt;br /&gt;First the basics: The Remote Desktop Web Access provide a web interface where you can get access to your Remote Desktop applications after being successfully authenticated.&lt;br /&gt;In order to use the Remote Desktop Web Access Interface your browser must be able to use ActiveX controls. And that is where the most other browsers have a problem. Well the browsers do not have a problem, it is only that ActiveX is a closed standard used by Microsoft alone.&lt;br /&gt;&lt;br /&gt;I have tested 4 browsers:&lt;br /&gt;1) Internet Explorer (8.0)&lt;br /&gt;2) Mozilla FireFox (3.6.3)&lt;br /&gt;3) Opera (10.53)&lt;br /&gt;4) Google Chrome (5.0.375.55)&lt;br /&gt;&lt;br /&gt;We will look into each browser and look if it is able to use ActiveX controls and if it can be managed by group policies. Why look into group policies you might ask, well as a remote desktop administrator you cannot live without them (if you want to handle it propperly).&lt;br /&gt;&lt;br /&gt;We do not really test Internet Explorer because there is no need to. Remember this browser is built by Microsoft, so totally relies on ActiveX and is fully manageable by GPO's. We will use Internet Explorer as are reference and see if the other bowsers can provide a equally look and feel as Internet Explorer when using the Remote Desktop Web Access.&lt;br /&gt;&lt;br /&gt;Mozilla FireFox&lt;br /&gt;Well this is really my personal favorite at the moment. At first we just fire up the browser and see if we could use the Remote Desktop Web Access interface. When browsing to the server hosting the Remote Desktop Web Access role, we nicely get our website which kindly reminds us to login. The look and the feel is what we expect and are used to see in Internet Explorer. After providing our credentials we are redirected to the page that should display the published applications.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/_lW1-vfuQSp0/TAKij3932iI/AAAAAAAAALw/Pq4DMB9JqUk/s1600/1.bmp"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 320px; height: 242px;" src="http://3.bp.blogspot.com/_lW1-vfuQSp0/TAKij3932iI/AAAAAAAAALw/Pq4DMB9JqUk/s320/1.bmp" alt="" id="BLOGGER_PHOTO_ID_5477118834038528546" border="0" /&gt;&lt;/a&gt;As you see in the picture the website is what we are used to get when using Internet Explorer, but no applications are shown. Aven after refreshing the browser the applications are not shown. Now we know that the Remote Desktop Web interface requires ActiveX, so we look if FireFox support ActiveX in any way.  The support pages of Mozilla are pretty clear whether or not they support ActiveX.&lt;br /&gt;[quote]&lt;br /&gt;&lt;p&gt;&lt;a class="wiki" href="http://en.wikipedia.org/wiki/ActiveX"&gt;ActiveX&lt;/a&gt;  is a Microsoft technology that is used to add functionality to Windows  programs. &lt;/p&gt;  &lt;p&gt;ActiveX "controls" are often used to enable Microsoft's Internet  Explorer browser to view and use multimedia content embedded in web  pages (for example, &lt;a title="Using the Flash plugin with Firefox  " href="http://support.mozilla.com/en-US/kb/Flash" class="wiki"&gt;Flash&lt;/a&gt;  applications). They are also used to add new functions to the browser  (for example, toolbars). &lt;/p&gt;  &lt;p&gt;&lt;b&gt;Firefox does not support ActiveX technology&lt;/b&gt; for multiple  reasons.&lt;br /&gt;&lt;/p&gt;&lt;p&gt;[/quote]&lt;/p&gt;&lt;p&gt;http://support.mozilla.com/en-US/kb/ActiveX&lt;/p&gt;&lt;p&gt;But often there are some mystified way to make certain things work although they are not supported by the vendor. We look around and found that it could be possible through certain add-ons for FireFox. The two we tested where:&lt;/p&gt;&lt;p&gt;1) IE View&lt;br /&gt;&lt;/p&gt;&lt;p&gt;2) Open in IE&lt;/p&gt;&lt;p&gt;3) Mediawrap&lt;/p&gt;&lt;p&gt;Mediawrap looked the most promising as according to the addon explanation, the addon allowed to translate ActiveX controls to Firefox compatible controls. Although the addon is still available you cannot install it in FireFox version 3.6.X as it isn't compatible. The other two options are not very seamless as they allow a link to be opened in Internet Explorer from the FireFox Browser. So redirecting an HTML link from FireFox to Internet Explorer. This is not helpfull as we would need a page that would refference a link to are Remote Desktop Web Access, that we would choose to open with Internet Explorer. If that where the case we would use Internet Explorer in the first case and not try to open FireFox first.&lt;/p&gt;&lt;p&gt;A major setback as we could not find ActiveX Support in FireFox. Now what about Group Policies? Can Mozilla Firefox be managed by policies?&lt;br /&gt;&lt;/p&gt;&lt;p&gt;Yes it can! A company called FrontMotion provided a custom ADM file to manage FireFox through Group Policy. you can find the ADM file here: http://www.frontmotion.com/Firefox/fmfirefox.htm&lt;/p&gt;&lt;p&gt;It are still ADM files, so not yet available to the newer ADMX standard. But you could probably migate the ADM file using &lt;a href="http://www.microsoft.com/downloads/en/confirmation.aspx?familyId=0f1eec3d-10c4-4b5f-9625-97c2f731090c&amp;amp;displayLang=en"&gt;AMDX Migrator&lt;/a&gt; from Microsoft.&lt;/p&gt;&lt;p&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/_lW1-vfuQSp0/TAKwu-vmiTI/AAAAAAAAAL4/S48HKOCywpY/s1600/2.bmp"&gt;&lt;img style="display: block; margin: 0px auto 10px; text-align: center; cursor: pointer; width: 158px; height: 320px;" src="http://2.bp.blogspot.com/_lW1-vfuQSp0/TAKwu-vmiTI/AAAAAAAAAL4/S48HKOCywpY/s320/2.bmp" alt="" id="BLOGGER_PHOTO_ID_5477134417999071538" border="0" /&gt;&lt;/a&gt;&lt;/p&gt;&lt;p&gt;The fact that Mozilla FireFox is managable through GPO's does provide a big plus to it being adopted in more and more larger Enterprises.  &lt;br /&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-2550842728412724112?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/r6OOwARJW2yNfUXgFozAT3rZY18/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/r6OOwARJW2yNfUXgFozAT3rZY18/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/r6OOwARJW2yNfUXgFozAT3rZY18/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/r6OOwARJW2yNfUXgFozAT3rZY18/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/WwVrEphWyiI" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/2550842728412724112/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/05/remote-desktop-web-access-browser.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/2550842728412724112?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/2550842728412724112?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/WwVrEphWyiI/remote-desktop-web-access-browser.html" title="Remote Desktop Web Access browser compatibility (Part 1)" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/_lW1-vfuQSp0/TAKij3932iI/AAAAAAAAALw/Pq4DMB9JqUk/s72-c/1.bmp" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/05/remote-desktop-web-access-browser.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkcFRnw7eyp7ImA9WxFVEEU.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-4769234725746010743</id><published>2010-05-28T10:52:00.003+02:00</published><updated>2010-06-09T13:46:57.203+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-06-09T13:46:57.203+02:00</app:edited><title>Windows 2008 R2 domain controllers and 3th part DNS servers</title><content type="html">After promoting a Windows Server 2008 R2, we saw that the machine is unable to register the Key Management Service in DNS.&lt;br /&gt;Following event appears in the event log:&lt;br /&gt;Event ID 12293&lt;br /&gt;Source Security-SPP&lt;br /&gt;Publishing the Key Management Service (KMS) to DNS in the '%DomainName%' domain failed.&lt;br /&gt;Info:&lt;br /&gt;0x8007251E&lt;br /&gt;&lt;br /&gt;It appears that this is a glitch in Windows Server 2008 R2 and Windows Seven when working with 3rth party DNS servers. Microsoft has acknowledged the issue and provided a patch. The patch and description can be found here:&lt;br /&gt;http://support.microsoft.com/kb/977158&lt;br /&gt;&lt;br /&gt;DNS updates may be incorrectly reported as failed when you use a third-party DNS server application for DNS registration on a computer that is running Windows Server 2008 R2 or Windows 7&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-4769234725746010743?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/eGXcbfy_gXOj2orbFAGQX2YuuMU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/eGXcbfy_gXOj2orbFAGQX2YuuMU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/eGXcbfy_gXOj2orbFAGQX2YuuMU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/eGXcbfy_gXOj2orbFAGQX2YuuMU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/QSUGIxi3pPM" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/4769234725746010743/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/05/windows-2008-r2-domain-controllers-and.html#comment-form" title="2 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/4769234725746010743?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/4769234725746010743?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/QSUGIxi3pPM/windows-2008-r2-domain-controllers-and.html" title="Windows 2008 R2 domain controllers and 3th part DNS servers" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>2</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/05/windows-2008-r2-domain-controllers-and.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CU4ARHg-fSp7ImA9WxFXEE8.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-5466925130488268945</id><published>2010-05-16T17:22:00.003+02:00</published><updated>2010-05-16T17:32:25.655+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-05-16T17:32:25.655+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2010" /><title>Microsoft.Exchange.Search.ExSearch.exe</title><content type="html">The process Microsoft.Exchange.Search.ExSearch.exe which is used for indexing the data in the user's mailboxes in Exchange 2010 can cause 100% CPU usage when one of the mailbox databases is dismounted.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-5466925130488268945?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/rU3MtbQ6UK4p191WSm6Cjycsf84/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/rU3MtbQ6UK4p191WSm6Cjycsf84/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/rU3MtbQ6UK4p191WSm6Cjycsf84/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/rU3MtbQ6UK4p191WSm6Cjycsf84/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/XbE2EVwgyAM" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/5466925130488268945/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/05/microsoftexchangesearchexsearchexe.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/5466925130488268945?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/5466925130488268945?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/XbE2EVwgyAM/microsoftexchangesearchexsearchexe.html" title="Microsoft.Exchange.Search.ExSearch.exe" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/05/microsoftexchangesearchexsearchexe.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0EAQnY7eSp7ImA9WxFSGUo.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-4328489728619257989</id><published>2010-04-22T22:30:00.005+02:00</published><updated>2010-04-22T23:27:23.801+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-04-22T23:27:23.801+02:00</app:edited><title>Exchange 2010 SP1, what will be new?</title><content type="html">This short article shows some of the features that will be added with SP1 of Exchange 2010. At this moment in time it is still unclear of what the complete package encloses, but this is what i found scrolling the net:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Improved Archiving:&lt;/span&gt; This is surely an absolute favorite. When the official Exchange 2010 public Beta was released i was kind of disappointed in the archiving feature. Mainly because it needs to be kept in the same mailbox database as the users active mailbox. &lt;br /&gt;If you think about it, why did we start to use PST's in the first place? Right, to keep our mailbox databases from growing beyond manageable capacity. So why should we than allow our users to have an archive mailbox on the same database again? For that matter we could allow our users to own a bigger mailbox, instead of giving them a archive mailbox. In this case we would only have to worry about one mailbox per user in stead of two. &lt;br /&gt;If we where allowed to keep it in another mailbox database, well that would be an improvement. Then we could keep these archive mailboxes on cheaper storage, where there would really be some use for the archive mailbox. Well Microsoft has announced that with the release of Exchange SP1 the archive mailbox of the user can be placed on alternative mailbox database. So it will be possible to place the archive mailbox on cheaper storage (yea!).&lt;br /&gt;The archive mailbox is only viewable when using Outlook 2010 or Outlook Web Access. Well with the release of Exchange SP1, the archive mailbox will be visible in Outlook 2007 also.  &lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Exchange Control Panel (ECP):&lt;/span&gt; Well my beloved Exchange Control Panel will get more functionality: With the release of SP1 we will be able to manage following features through the ECP:&lt;br /&gt;. Exchange Transport Rules&lt;br /&gt;. Mailtips&lt;br /&gt;. Journaling&lt;br /&gt;. Archive policies (?)&lt;br /&gt;. Group Naming Policies&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;The multi-mailbox search &lt;/span&gt;: Well the multi mailbox search which we know today will be extended with 3 nice features:&lt;br /&gt;. Search Preview: Will display a raw estimation of items that will be found matching the query.&lt;br /&gt;. Search Deduplication: Since the queried e-mail get sent to multiple mailboxes, search queries often pull duplicate files. The de-duplication feature ends such redundancies. &lt;br /&gt;. Notes: Ad notes to the items found. &lt;br /&gt;More info can be found&lt;a href="http://download.microsoft.com/download/4/3/A/43ABF6CF-B8FE-45B3-9196-21B1F0C52E43/E2010-Archiving-WhitePaper.docx"&gt; here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-4328489728619257989?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/OJkPLfp4tYTzw1CMQ-PCptL_oIU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/OJkPLfp4tYTzw1CMQ-PCptL_oIU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/OJkPLfp4tYTzw1CMQ-PCptL_oIU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/OJkPLfp4tYTzw1CMQ-PCptL_oIU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/GW95bS2g1do" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/4328489728619257989/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/04/exchange-2010-sp1-what-will-be-new.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/4328489728619257989?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/4328489728619257989?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/GW95bS2g1do/exchange-2010-sp1-what-will-be-new.html" title="Exchange 2010 SP1, what will be new?" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>1</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/04/exchange-2010-sp1-what-will-be-new.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUYDQX4zcSp7ImA9WxFSGUk.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-8992048215121642678</id><published>2010-04-22T16:33:00.003+02:00</published><updated>2010-04-22T16:39:30.089+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-04-22T16:39:30.089+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2010" /><title>Group Naming Policies in Exchange 2010 SP1 ECP</title><content type="html">Today the Exchange team showed some of the new exiting features which will become available in Exchange Server SP1. Read all about it &lt;a href="http://msexchangeteam.com/archive/2010/04/21/454693.aspx"&gt;here&lt;/a&gt;.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-8992048215121642678?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/YgClkIMyq7W-4Q5Wjd4z5oY3c14/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YgClkIMyq7W-4Q5Wjd4z5oY3c14/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/YgClkIMyq7W-4Q5Wjd4z5oY3c14/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YgClkIMyq7W-4Q5Wjd4z5oY3c14/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/0pJj5WSIgZg" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/8992048215121642678/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/04/group-naming-policies-in-exchange-2010.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8992048215121642678?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8992048215121642678?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/0pJj5WSIgZg/group-naming-policies-in-exchange-2010.html" title="Group Naming Policies in Exchange 2010 SP1 ECP" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/04/group-naming-policies-in-exchange-2010.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0INQXc-eSp7ImA9WxFXGUk.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-1584915095687351101</id><published>2010-04-20T17:28:00.006+02:00</published><updated>2010-05-27T09:33:10.951+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-05-27T09:33:10.951+02:00</app:edited><title>SID translation Windows Server 2008 in a Windows 2000 native domain.</title><content type="html">&lt;meta equiv="Content-Type" content="text/html; charset=utf-8"&gt;&lt;meta name="ProgId" content="Word.Document"&gt;&lt;meta name="Generator" content="Microsoft Word 14"&gt;&lt;meta name="Originator" content="Microsoft Word 14"&gt;&lt;link rel="File-List" href="file:///C:%5CUsers%5Cadamar%5CAppData%5CLocal%5CTemp%5Cmsohtmlclip1%5C01%5Cclip_filelist.xml"&gt;&lt;!--[if gte mso 9]&gt;&lt;xml&gt;  &lt;o:officedocumentsettings&gt;   &lt;o:allowpng/&gt;  &lt;/o:OfficeDocumentSettings&gt; &lt;/xml&gt;&lt;![endif]--&gt;&lt;link rel="themeData" href="file:///C:%5CUsers%5Cadamar%5CAppData%5CLocal%5CTemp%5Cmsohtmlclip1%5C01%5Cclip_themedata.thmx"&gt;&lt;link rel="colorSchemeMapping" href="file:///C:%5CUsers%5Cadamar%5CAppData%5CLocal%5CTemp%5Cmsohtmlclip1%5C01%5Cclip_colorschememapping.xml"&gt;&lt;!--[if gte mso 9]&gt;&lt;xml&gt;  &lt;w:worddocument&gt;   &lt;w:view&gt;Normal&lt;/w:View&gt;   &lt;w:zoom&gt;0&lt;/w:Zoom&gt;   &lt;w:trackmoves/&gt;   &lt;w:trackformatting/&gt;   &lt;w:hyphenationzone&gt;21&lt;/w:HyphenationZone&gt;   &lt;w:punctuationkerning/&gt;   &lt;w:validateagainstschemas/&gt;   &lt;w:saveifxmlinvalid&gt;false&lt;/w:SaveIfXMLInvalid&gt;   &lt;w:ignoremixedcontent&gt;false&lt;/w:IgnoreMixedContent&gt;   &lt;w:alwaysshowplaceholdertext&gt;false&lt;/w:AlwaysShowPlaceholderText&gt;   &lt;w:donotpromoteqf/&gt;   &lt;w:lidthemeother&gt;NL-BE&lt;/w:LidThemeOther&gt;   &lt;w:lidthemeasian&gt;X-NONE&lt;/w:LidThemeAsian&gt;   &lt;w:lidthemecomplexscript&gt;X-NONE&lt;/w:LidThemeComplexScript&gt;   &lt;w:compatibility&gt;    &lt;w:breakwrappedtables/&gt;    &lt;w:snaptogridincell/&gt;    &lt;w:wraptextwithpunct/&gt;    &lt;w:useasianbreakrules/&gt;    &lt;w:dontgrowautofit/&gt;    &lt;w:splitpgbreakandparamark/&gt;    &lt;w:enableopentypekerning/&gt;    &lt;w:dontflipmirrorindents/&gt;    &lt;w:overridetablestylehps/&gt;   &lt;/w:Compatibility&gt;   &lt;m:mathpr&gt;    &lt;m:mathfont val="Cambria Math"&gt;    &lt;m:brkbin val="before"&gt;    &lt;m:brkbinsub val="&amp;#45;-"&gt;    &lt;m:smallfrac val="off"&gt;    &lt;m:dispdef/&gt;    &lt;m:lmargin val="0"&gt;    &lt;m:rmargin val="0"&gt;    &lt;m:defjc val="centerGroup"&gt;    &lt;m:wrapindent val="1440"&gt;    &lt;m:intlim val="subSup"&gt;    &lt;m:narylim val="undOvr"&gt;   &lt;/m:mathPr&gt;&lt;/w:WordDocument&gt; &lt;/xml&gt;&lt;![endif]--&gt;&lt;!--[if gte mso 9]&gt;&lt;xml&gt;  &lt;w:latentstyles deflockedstate="false" defunhidewhenused="true" defsemihidden="true" defqformat="false" defpriority="99" latentstylecount="267"&gt;   &lt;w:lsdexception locked="false" priority="0" semihidden="false" unhidewhenused="false" qformat="true" name="Normal"&gt;   &lt;w:lsdexception locked="false" priority="9" semihidden="false" unhidewhenused="false" qformat="true" name="heading 1"&gt;   &lt;w:lsdexception locked="false" priority="9" qformat="true" name="heading 2"&gt;   &lt;w:lsdexception locked="false" priority="9" qformat="true" name="heading 3"&gt;   &lt;w:lsdexception locked="false" priority="9" qformat="true" name="heading 4"&gt;   &lt;w:lsdexception locked="false" priority="9" qformat="true" name="heading 5"&gt;   &lt;w:lsdexception locked="false" priority="9" qformat="true" name="heading 6"&gt;   &lt;w:lsdexception locked="false" priority="9" qformat="true" name="heading 7"&gt;   &lt;w:lsdexception locked="false" priority="9" qformat="true" name="heading 8"&gt;   &lt;w:lsdexception locked="false" priority="9" qformat="true" name="heading 9"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 1"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 2"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 3"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 4"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 5"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 6"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 7"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 8"&gt;   &lt;w:lsdexception locked="false" priority="39" name="toc 9"&gt;   &lt;w:lsdexception locked="false" priority="35" qformat="true" name="caption"&gt;   &lt;w:lsdexception locked="false" priority="10" semihidden="false" unhidewhenused="false" qformat="true" name="Title"&gt;   &lt;w:lsdexception locked="false" priority="1" name="Default Paragraph Font"&gt;   &lt;w:lsdexception locked="false" priority="11" semihidden="false" unhidewhenused="false" qformat="true" name="Subtitle"&gt;   &lt;w:lsdexception locked="false" priority="22" semihidden="false" unhidewhenused="false" qformat="true" name="Strong"&gt;   &lt;w:lsdexception locked="false" priority="20" semihidden="false" unhidewhenused="false" qformat="true" name="Emphasis"&gt;   &lt;w:lsdexception locked="false" priority="59" semihidden="false" unhidewhenused="false" name="Table Grid"&gt;   &lt;w:lsdexception locked="false" unhidewhenused="false" name="Placeholder Text"&gt;   &lt;w:lsdexception locked="false" priority="1" semihidden="false" unhidewhenused="false" qformat="true" name="No Spacing"&gt;   &lt;w:lsdexception locked="false" priority="60" semihidden="false" unhidewhenused="false" name="Light Shading"&gt;   &lt;w:lsdexception locked="false" priority="61" semihidden="false" unhidewhenused="false" name="Light List"&gt;   &lt;w:lsdexception locked="false" priority="62" semihidden="false" unhidewhenused="false" name="Light Grid"&gt;   &lt;w:lsdexception locked="false" priority="63" semihidden="false" unhidewhenused="false" name="Medium Shading 1"&gt;   &lt;w:lsdexception locked="false" priority="64" semihidden="false" unhidewhenused="false" name="Medium Shading 2"&gt;   &lt;w:lsdexception locked="false" priority="65" semihidden="false" unhidewhenused="false" name="Medium List 1"&gt;   &lt;w:lsdexception locked="false" priority="66" semihidden="false" unhidewhenused="false" name="Medium List 2"&gt;   &lt;w:lsdexception locked="false" priority="67" semihidden="false" unhidewhenused="false" name="Medium Grid 1"&gt;   &lt;w:lsdexception locked="false" priority="68" semihidden="false" unhidewhenused="false" name="Medium Grid 2"&gt;   &lt;w:lsdexception locked="false" priority="69" semihidden="false" unhidewhenused="false" name="Medium Grid 3"&gt;   &lt;w:lsdexception locked="false" priority="70" semihidden="false" unhidewhenused="false" name="Dark List"&gt;   &lt;w:lsdexception locked="false" priority="71" semihidden="false" unhidewhenused="false" name="Colorful Shading"&gt;   &lt;w:lsdexception locked="false" priority="72" semihidden="false" unhidewhenused="false" name="Colorful List"&gt;   &lt;w:lsdexception locked="false" priority="73" semihidden="false" unhidewhenused="false" name="Colorful Grid"&gt;   &lt;w:lsdexception locked="false" priority="60" semihidden="false" unhidewhenused="false" name="Light Shading Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="61" semihidden="false" unhidewhenused="false" name="Light List Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="62" semihidden="false" unhidewhenused="false" name="Light Grid Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="63" semihidden="false" unhidewhenused="false" name="Medium Shading 1 Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="64" semihidden="false" unhidewhenused="false" name="Medium Shading 2 Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="65" semihidden="false" unhidewhenused="false" name="Medium List 1 Accent 1"&gt;   &lt;w:lsdexception locked="false" unhidewhenused="false" name="Revision"&gt;   &lt;w:lsdexception locked="false" priority="34" semihidden="false" unhidewhenused="false" qformat="true" name="List Paragraph"&gt;   &lt;w:lsdexception locked="false" priority="29" semihidden="false" unhidewhenused="false" qformat="true" name="Quote"&gt;   &lt;w:lsdexception locked="false" priority="30" semihidden="false" unhidewhenused="false" qformat="true" name="Intense Quote"&gt;   &lt;w:lsdexception locked="false" priority="66" semihidden="false" unhidewhenused="false" name="Medium List 2 Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="67" semihidden="false" unhidewhenused="false" name="Medium Grid 1 Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="68" semihidden="false" unhidewhenused="false" name="Medium Grid 2 Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="69" semihidden="false" unhidewhenused="false" name="Medium Grid 3 Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="70" semihidden="false" unhidewhenused="false" name="Dark List Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="71" semihidden="false" unhidewhenused="false" name="Colorful Shading Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="72" semihidden="false" unhidewhenused="false" name="Colorful List Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="73" semihidden="false" unhidewhenused="false" name="Colorful Grid Accent 1"&gt;   &lt;w:lsdexception locked="false" priority="60" semihidden="false" unhidewhenused="false" name="Light Shading Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="61" semihidden="false" unhidewhenused="false" name="Light List Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="62" semihidden="false" unhidewhenused="false" name="Light Grid Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="63" semihidden="false" unhidewhenused="false" name="Medium Shading 1 Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="64" semihidden="false" unhidewhenused="false" name="Medium Shading 2 Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="65" semihidden="false" unhidewhenused="false" name="Medium List 1 Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="66" semihidden="false" unhidewhenused="false" name="Medium List 2 Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="67" semihidden="false" unhidewhenused="false" name="Medium Grid 1 Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="68" semihidden="false" unhidewhenused="false" name="Medium Grid 2 Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="69" semihidden="false" unhidewhenused="false" name="Medium Grid 3 Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="70" semihidden="false" unhidewhenused="false" name="Dark List Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="71" semihidden="false" unhidewhenused="false" name="Colorful Shading Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="72" semihidden="false" unhidewhenused="false" name="Colorful List Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="73" semihidden="false" unhidewhenused="false" name="Colorful Grid Accent 2"&gt;   &lt;w:lsdexception locked="false" priority="60" semihidden="false" unhidewhenused="false" name="Light Shading Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="61" semihidden="false" unhidewhenused="false" name="Light List Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="62" semihidden="false" unhidewhenused="false" name="Light Grid Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="63" semihidden="false" unhidewhenused="false" name="Medium Shading 1 Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="64" semihidden="false" unhidewhenused="false" name="Medium Shading 2 Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="65" semihidden="false" unhidewhenused="false" name="Medium List 1 Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="66" semihidden="false" unhidewhenused="false" name="Medium List 2 Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="67" semihidden="false" unhidewhenused="false" name="Medium Grid 1 Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="68" semihidden="false" unhidewhenused="false" name="Medium Grid 2 Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="69" semihidden="false" unhidewhenused="false" name="Medium Grid 3 Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="70" semihidden="false" unhidewhenused="false" name="Dark List Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="71" semihidden="false" unhidewhenused="false" name="Colorful Shading Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="72" semihidden="false" unhidewhenused="false" name="Colorful List Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="73" semihidden="false" unhidewhenused="false" name="Colorful Grid Accent 3"&gt;   &lt;w:lsdexception locked="false" priority="60" semihidden="false" unhidewhenused="false" name="Light Shading Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="61" semihidden="false" unhidewhenused="false" name="Light List Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="62" semihidden="false" unhidewhenused="false" name="Light Grid Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="63" semihidden="false" unhidewhenused="false" name="Medium Shading 1 Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="64" semihidden="false" unhidewhenused="false" name="Medium Shading 2 Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="65" semihidden="false" unhidewhenused="false" name="Medium List 1 Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="66" semihidden="false" unhidewhenused="false" name="Medium List 2 Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="67" semihidden="false" unhidewhenused="false" name="Medium Grid 1 Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="68" semihidden="false" unhidewhenused="false" name="Medium Grid 2 Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="69" semihidden="false" unhidewhenused="false" name="Medium Grid 3 Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="70" semihidden="false" unhidewhenused="false" name="Dark List Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="71" semihidden="false" unhidewhenused="false" name="Colorful Shading Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="72" semihidden="false" unhidewhenused="false" name="Colorful List Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="73" semihidden="false" unhidewhenused="false" name="Colorful Grid Accent 4"&gt;   &lt;w:lsdexception locked="false" priority="60" semihidden="false" unhidewhenused="false" name="Light Shading Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="61" semihidden="false" unhidewhenused="false" name="Light List Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="62" semihidden="false" unhidewhenused="false" name="Light Grid Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="63" semihidden="false" unhidewhenused="false" name="Medium Shading 1 Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="64" semihidden="false" unhidewhenused="false" name="Medium Shading 2 Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="65" semihidden="false" unhidewhenused="false" name="Medium List 1 Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="66" semihidden="false" unhidewhenused="false" name="Medium List 2 Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="67" semihidden="false" unhidewhenused="false" name="Medium Grid 1 Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="68" semihidden="false" unhidewhenused="false" name="Medium Grid 2 Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="69" semihidden="false" unhidewhenused="false" name="Medium Grid 3 Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="70" semihidden="false" unhidewhenused="false" name="Dark List Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="71" semihidden="false" unhidewhenused="false" name="Colorful Shading Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="72" semihidden="false" unhidewhenused="false" name="Colorful List Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="73" semihidden="false" unhidewhenused="false" name="Colorful Grid Accent 5"&gt;   &lt;w:lsdexception locked="false" priority="60" semihidden="false" unhidewhenused="false" name="Light Shading Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="61" semihidden="false" unhidewhenused="false" name="Light List Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="62" semihidden="false" unhidewhenused="false" name="Light Grid Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="63" semihidden="false" unhidewhenused="false" name="Medium Shading 1 Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="64" semihidden="false" unhidewhenused="false" name="Medium Shading 2 Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="65" semihidden="false" unhidewhenused="false" name="Medium List 1 Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="66" semihidden="false" unhidewhenused="false" name="Medium List 2 Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="67" semihidden="false" unhidewhenused="false" name="Medium Grid 1 Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="68" semihidden="false" unhidewhenused="false" name="Medium Grid 2 Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="69" semihidden="false" unhidewhenused="false" name="Medium Grid 3 Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="70" semihidden="false" unhidewhenused="false" name="Dark List Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="71" semihidden="false" unhidewhenused="false" name="Colorful Shading Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="72" semihidden="false" unhidewhenused="false" name="Colorful List Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="73" semihidden="false" unhidewhenused="false" name="Colorful Grid Accent 6"&gt;   &lt;w:lsdexception locked="false" priority="19" semihidden="false" unhidewhenused="false" qformat="true" name="Subtle Emphasis"&gt;   &lt;w:lsdexception locked="false" priority="21" semihidden="false" unhidewhenused="false" qformat="true" name="Intense Emphasis"&gt;   &lt;w:lsdexception locked="false" priority="31" semihidden="false" unhidewhenused="false" qformat="true" name="Subtle Reference"&gt;   &lt;w:lsdexception locked="false" priority="32" semihidden="false" unhidewhenused="false" qformat="true" name="Intense Reference"&gt;   &lt;w:lsdexception locked="false" priority="33" semihidden="false" unhidewhenused="false" qformat="true" name="Book Title"&gt;   &lt;w:lsdexception locked="false" priority="37" name="Bibliography"&gt;   &lt;w:lsdexception locked="false" priority="39" qformat="true" name="TOC Heading"&gt;  &lt;/w:LatentStyles&gt; &lt;/xml&gt;&lt;![endif]--&gt;&lt;style&gt; &lt;!--  /* Font Definitions */  @font-face 	{font-family:Calibri; 	panose-1:2 15 5 2 2 2 4 3 2 4; 	mso-font-charset:0; 	mso-generic-font-family:swiss; 	mso-font-pitch:variable; 	mso-font-signature:-520092929 1073786111 9 0 415 0;}  /* Style Definitions */  p.MsoNormal, li.MsoNormal, div.MsoNormal 	{mso-style-unhide:no; 	mso-style-qformat:yes; 	mso-style-parent:""; 	margin-top:0cm; 	margin-right:0cm; 	margin-bottom:10.0pt; 	margin-left:0cm; 	line-height:115%; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	font-family:"Calibri","sans-serif"; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-fareast-font-family:Calibri; 	mso-fareast-theme-font:minor-latin; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin; 	mso-bidi-font-family:"Times New Roman"; 	mso-bidi-theme-font:minor-bidi; 	mso-fareast-language:EN-US;} .MsoChpDefault 	{mso-style-type:export-only; 	mso-default-props:yes; 	font-family:"Calibri","sans-serif"; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-fareast-font-family:Calibri; 	mso-fareast-theme-font:minor-latin; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin; 	mso-bidi-font-family:"Times New Roman"; 	mso-bidi-theme-font:minor-bidi; 	mso-fareast-language:EN-US;} .MsoPapDefault 	{mso-style-type:export-only; 	margin-bottom:10.0pt; 	line-height:115%;} @page WordSection1 	{size:612.0pt 792.0pt; 	margin:70.85pt 70.85pt 70.85pt 70.85pt; 	mso-header-margin:35.4pt; 	mso-footer-margin:35.4pt; 	mso-paper-source:0;} div.WordSection1 	{page:WordSection1;} --&gt; &lt;/style&gt;&lt;!--[if gte mso 10]&gt; &lt;style&gt;  /* Style Definitions */  table.MsoNormalTable 	{mso-style-name:"Table Normal"; 	mso-tstyle-rowband-size:0; 	mso-tstyle-colband-size:0; 	mso-style-noshow:yes; 	mso-style-priority:99; 	mso-style-parent:""; 	mso-padding-alt:0cm 5.4pt 0cm 5.4pt; 	mso-para-margin-top:0cm; 	mso-para-margin-right:0cm; 	mso-para-margin-bottom:10.0pt; 	mso-para-margin-left:0cm; 	line-height:115%; 	mso-pagination:widow-orphan; 	font-size:11.0pt; 	font-family:"Calibri","sans-serif"; 	mso-ascii-font-family:Calibri; 	mso-ascii-theme-font:minor-latin; 	mso-hansi-font-family:Calibri; 	mso-hansi-theme-font:minor-latin; 	mso-bidi-font-family:"Times New Roman"; 	mso-bidi-theme-font:minor-bidi; 	mso-fareast-language:EN-US;} &lt;/style&gt; &lt;![endif]--&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;We installed a new Windows 2008 R2 member server in a Windows 2000 Native domain. After the installation was finished we added a domain service account to the local administrators group. After adding the service account we noticed that the SID was not resolved in the display of the local administrators group. At first we suspected some issues with active directory, but all tests prove that Active Directory was able to authenticate the user and computer account without any issue. Nevertheless we knew possible issues could occur as the Windows Server 2008 R2 does no longer uses LM and NTLM, but enforces the use of Kerberos. Now Kerberos was introduced in Windows 2000 so it should be able to use Kerberos. We made sure that all domain controllers had all SP4 installed prior to installing our first Windows Server 2008 R2. After loosening the local security settings the SID where correctly resolved.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;Following Security setting need to be set in Windows Server 2008 R2 to make sure that domain SID can be resolved:&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;Click Start-&gt; Run -&gt; Windows Settings -&gt; Security Settings -&gt; Local Policies -&gt; Security Options&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;Policy: Domain Member:&lt;span style=""&gt;  &lt;/span&gt;Digitally encrypt or sign secure channel data (always) - Setting: Disabled&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;Policy: Domain Member: Digitally encrypt secure channel data (When possible) - Setting: Disabled&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;Policy: Domain Member: Digitally sign secure channel data (When Possible) - Setting: Disabled&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;&lt;o:p&gt; &lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;p class="MsoNormal"&gt;&lt;span style="" lang="EN-US"&gt;Note: these settings are all enabled by default, and are the recommended settings. Preferable you should update the domain controller and domain/forest instead of down grading the security just for compatibility. These settings will only be applied after the server has been rebooted.&lt;o:p&gt;&lt;/o:p&gt;&lt;/span&gt;&lt;/p&gt;  &lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-1584915095687351101?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Sq6AJId51xhJDE0Sd2mj4bNjTMA/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Sq6AJId51xhJDE0Sd2mj4bNjTMA/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Sq6AJId51xhJDE0Sd2mj4bNjTMA/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Sq6AJId51xhJDE0Sd2mj4bNjTMA/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/wQSCF8yA1fA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/1584915095687351101/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/04/sid-transaltion-windows-server-2008-in.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/1584915095687351101?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/1584915095687351101?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/wQSCF8yA1fA/sid-transaltion-windows-server-2008-in.html" title="SID translation Windows Server 2008 in a Windows 2000 native domain." /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/04/sid-transaltion-windows-server-2008-in.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0QFSHo8fCp7ImA9WxFSFE8.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-5360547068404562891</id><published>2010-04-16T15:03:00.004+02:00</published><updated>2010-04-16T15:41:59.474+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-04-16T15:41:59.474+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2007" /><title>Send As permission Exchange 2007</title><content type="html">A customer asked for assistance as he was having difficulties with providing the "Send-As" permissions in Exchange 2007. To clarify the story i will talk about user A and user B. User B needs to have the send as permission on the mailbox of user A. Our customer provided Full mailbox access, and send as permission for User B on the mailbox of USer A. When User B tries to send a mail from the user A mailbox, User B recieves an error stating that User B has insufficient rights to send as user A. Checking the permissions with Adsiedit and Get-AdPermission proved that User B did indeed have the send as rights. After a small search i found out that users also need the Send-On-behalve permissions:&lt;br /&gt;&lt;br /&gt;Powershell:&lt;br /&gt;&lt;br /&gt;# Grant "Send on behalf" permission&lt;br /&gt;Set-Mailbox -Id "User A" -GrantSendOnBehalfTo "User B"&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;# Grant "Send-As" permission&lt;br /&gt;Add-ADPermission -id "User A" -ExtendedRights Send-As -user "User B"&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;# Grant full mailbox access permission&lt;br /&gt;Add-MailboxPermission -id "User A" -AccessRights FullAccess -user "User B"&lt;br /&gt;&lt;br /&gt;Note:  You can add multiple users at the same time by using comma's as sepperator.&lt;br /&gt;&lt;br /&gt;Gui:&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;p&gt;&lt;img style="TEXT-ALIGN: center; MARGIN: 0px auto 10px; WIDTH: 202px; DISPLAY: block; HEIGHT: 170px; CURSOR: hand" id="BLOGGER_PHOTO_ID_5460728961376961298" border="0" alt="" src="http://4.bp.blogspot.com/_lW1-vfuQSp0/S8hoDuWPwxI/AAAAAAAAALg/mSH25cgDCPo/s320/16-04-2010+15-31-27.png" /&gt;&lt;/p&gt;&lt;img style="TEXT-ALIGN: center; MARGIN: 0px auto 10px; WIDTH: 320px; DISPLAY: block; HEIGHT: 246px; CURSOR: hand" id="BLOGGER_PHOTO_ID_5460729228019239938" border="0" alt="" src="http://1.bp.blogspot.com/_lW1-vfuQSp0/S8hoTPquDAI/AAAAAAAAALo/Jfgih45Ktp0/s320/16-04-2010+15-32-39.png" /&gt;&lt;br /&gt;&lt;p&gt;&lt;/p&gt;&lt;br /&gt;&lt;p&gt;&lt;/p&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-5360547068404562891?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Os95IWXB0k7GmHhjnPNMcVLfu6Y/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Os95IWXB0k7GmHhjnPNMcVLfu6Y/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Os95IWXB0k7GmHhjnPNMcVLfu6Y/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Os95IWXB0k7GmHhjnPNMcVLfu6Y/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/WIC8OhGqUT8" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/5360547068404562891/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/04/send-as-permission-exchange-2007.html#comment-form" title="1 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/5360547068404562891?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/5360547068404562891?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/WIC8OhGqUT8/send-as-permission-exchange-2007.html" title="Send As permission Exchange 2007" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/_lW1-vfuQSp0/S8hoDuWPwxI/AAAAAAAAALg/mSH25cgDCPo/s72-c/16-04-2010+15-31-27.png" height="72" width="72" /><thr:total>1</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/04/send-as-permission-exchange-2007.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CUYFQHszeCp7ImA9WxFTF0s.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-2708915231847614907</id><published>2010-04-08T23:38:00.002+02:00</published><updated>2010-04-08T23:45:11.580+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-04-08T23:45:11.580+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2010" /><title>Exchange 2010 SP1</title><content type="html">The MS Exchange team blog has revealed some of the new features that will be added to Exchange Server 2010 with SP1. &lt;br /&gt;http://msexchangeteam.com/archive/2010/04/07/454533.aspx&lt;br /&gt;&lt;br /&gt;And yes, the archiving feature has been extended so we can place the users archive mailbox on another mailbox database, than the mailbox database in which his primary mailbox resides.&lt;br /&gt;&lt;br /&gt;Rumors which have been living for the last 4 months are finaly confirmed.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-2708915231847614907?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/EMGL9xW82YkGXDQDdx9zVKKRf1M/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/EMGL9xW82YkGXDQDdx9zVKKRf1M/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/EMGL9xW82YkGXDQDdx9zVKKRf1M/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/EMGL9xW82YkGXDQDdx9zVKKRf1M/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/js4gCpd27lA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/2708915231847614907/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/04/exchange-2010-sp1.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/2708915231847614907?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/2708915231847614907?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/js4gCpd27lA/exchange-2010-sp1.html" title="Exchange 2010 SP1" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/04/exchange-2010-sp1.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DE4HRnY7eip7ImA9WxFTFEU.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-8209331633854964146</id><published>2010-04-05T18:20:00.003+02:00</published><updated>2010-04-05T19:02:17.802+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-04-05T19:02:17.802+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Powershell" /><title>Format-Table Export-Csv</title><content type="html">If you want to export the output of your powershell command to a csv file, you cannot use format command to pipe the output of the command. If you try to use the format command you might get a strange looking output file.&lt;br /&gt;Example:&lt;br /&gt;If you would use the following command:&lt;br /&gt;[Code]&lt;br /&gt;Get-mailbox | get-user | ft 'name','Lastname','Samaccountname' | export-csv -path c:\temp\users.csv&lt;br /&gt;[/code]&lt;br /&gt;output:&lt;br /&gt;#TYPE Microsoft.PowerShell.Commands.Internal.Format.FormatStartData&lt;br /&gt;ClassId2e4f51ef21dd47e99d3c952918aff9cd,"pageHeaderEntry","pageFooterEntry","autosizeInfo","shapeInfo","groupingEntry"&lt;br /&gt;033ecb2bc07a4d43b5ef94ed5a35d280,,,,"Microsoft.PowerShell.Commands.Internal.Format.TableHeaderInfo",&lt;br /&gt;9e210fe47d09416682b841769c78b8a3,,,,,&lt;br /&gt;27c87ef9bbda4f709f6b4002fa4af63c,,,,,&lt;br /&gt;27c87ef9bbda4f709f6b4002fa4af63c,,,,,&lt;br /&gt;27c87ef9bbda4f709f6b4002fa4af63c,,,,,&lt;br /&gt;27c87ef9bbda4f709f6b4002fa4af63c,,,,,&lt;br /&gt;27c87ef9bbda4f709f6b4002fa4af63c,,,,,&lt;br /&gt;27c87ef9bbda4f709f6b4002fa4af63c,,,,,&lt;br /&gt;..............&lt;br /&gt;The correct way to get a proper CSV is to use the select-object cmdlet.&lt;br /&gt;[Code]&lt;br /&gt;Get-mailbox | get-user | select-object 'name','Lastname','Samaccountname' | export-csv -path c:\temp\users.csv&lt;br /&gt;[/code]&lt;br /&gt;output:&lt;br /&gt;#TYPE Selected.Microsoft.Exchange.Data.Directory.Management.User&lt;br /&gt;Name,"LastName","SamAccountName"&lt;br /&gt;Alain,"De Backer","adebac"&lt;br /&gt;Anny,"De Vriendt","adevri"&lt;br /&gt;Eilish,"Bosuyt","Ebosuy"&lt;br /&gt;Thais,"Geeraerts","Tgeera"&lt;br /&gt;............&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-8209331633854964146?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Ipyv3-VzhNtNjta7tqWgCJAodl8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Ipyv3-VzhNtNjta7tqWgCJAodl8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Ipyv3-VzhNtNjta7tqWgCJAodl8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Ipyv3-VzhNtNjta7tqWgCJAodl8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/6rvkynyU8B4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/8209331633854964146/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/04/format-table-export-csv.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8209331633854964146?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/8209331633854964146?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/6rvkynyU8B4/format-table-export-csv.html" title="Format-Table Export-Csv" /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/04/format-table-export-csv.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DE4AQHs-fSp7ImA9WxBaGEQ.&quot;"><id>tag:blogger.com,1999:blog-8820695633308655530.post-1161573509790685694</id><published>2010-03-26T10:13:00.004+01:00</published><updated>2010-03-29T23:09:01.555+02:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2010-03-29T23:09:01.555+02:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Exchange 2010" /><title>Clean Removal of the first Exchange 2010 Mailbox server or mailbox database.</title><content type="html">When you try to remove the Exchange 2010 mailbox server or will remove the firstly installed mailbox database for what ever reason, you will probably find that the removal finishes unsuccessful showing you following error message:&lt;br /&gt;"Uninstall cannot continue. Database 'Mailbox Database 0186314254': This mailbox database contains one or more mailboxes or arbitration mailboxes. To get a list of all mailboxes in this database, run the command Get-Mailbox -Database . To get a list of all arbitration mailboxes in this database, run the command Get-Mailbox -Database -Arbitration. Before you can remove this mailbox database, you must disable, move, or remove user mailboxes and move arbitration mailboxes. "&lt;br /&gt;Some people tend to use ADSIEDIT, but I was wondering if there wasn’t any cleaner way to do it. Do not get me wrong, I often use ADSIEDIT and find it a very helpful tool. But Syntax without the glamor of the GUI has its own edge. Oh and by the way, you will have to use EMS (who uses EMC anyways ;)).&lt;br /&gt;But what are those Arbitration Mailboxes?&lt;br /&gt;Arbitration Mailboxes are used for the Exchange 2010 feature of Moderated Transport:&lt;br /&gt;Using the moderated transport feature in Microsoft Exchange Server 2010, you can require all e-mail messages sent to specific recipients be approved by moderators. You can configure any type of recipient as a moderated recipient, and Exchange 2010 Hub Transport servers will ensure that all messages sent to those recipients go through an approval process.&lt;br /&gt;In any type of organization, you may need to restrict access to specific recipients. The most common scenario is the need to control messages sent to large distribution groups. Depending on your organization's requirements, you may also need to control the messages sent to executive mailboxes or partner contacts. You can use moderated recipients to accomplish these tasks. &lt;br /&gt;http://technet.microsoft.com/en-us/library/dd297936.aspx&lt;br /&gt;These Arbitration Mailboxes are created in the first mailbox database on the first Exchange 2010 mailbox server in the organization. What can we do to remove or move them to another mailbox database?&lt;br /&gt;If you have installed other Exchange 2010 mailbox database in your organization you can move these arbitration mailboxes to another mailbox database.&lt;br /&gt;Move arbitration mailboxes:&lt;br /&gt;[Code]&lt;br /&gt;Get-mailbox –Arbitration | New-MoveRequest –TargetMailboxDatabase %TargetDatabase%&lt;br /&gt;[/Code]&lt;br /&gt;This will move the 3 Mailboxes to the mailbox database you have specified.&lt;br /&gt;To check the status of the move request:&lt;br /&gt;[Code]&lt;br /&gt;Get-MoveRequest –Status&lt;br /&gt;[/code]&lt;br /&gt;This move request takes a very short time you will see that the move request has already finished by the time you checked the status. Once the move request has been completed you can clear the move request.&lt;br /&gt;[Code]&lt;br /&gt;Get-MoveRequest | Remove-MoveRequest&lt;br /&gt;[/Code]&lt;br /&gt;Now what if you want to reinstall your exchange server, and do not have an Mailbox database to move these Arbitration Mailboxes to?&lt;br /&gt;If you are planning on reinstalling your Exchange Server, you need to keep these accounts to which these mailboxes are linked. These accounts are created when doing the domain prep for Exchange 2010.   &lt;br /&gt;Remove the Arbitration Mailboxes&lt;br /&gt;[Code]&lt;br /&gt;Get-Mailbox -Arbitration | Disable-Mailbox -Arbitration&lt;br /&gt;[/Code]&lt;br /&gt;By using the disable cmdlet, you will only remove the mailboxes and not the accounts which are linked to it.&lt;br /&gt;Now if you are fed up with Exchange 2010 and want to remove the whole Exchange 2010 Environment, you can always remove the Arbitration Mailboxes and accounts:&lt;br /&gt;[Code]&lt;br /&gt;Get-Mailbox -Arbitration | Remove-Mailbox -Arbitration -RemoveLastArbitrationMailboxAllowed&lt;br /&gt;[/Code]&lt;br /&gt;You can now completely remove the Exchange 2010 from the mailbox server, and remove the remaining Exchange 2010 server.&lt;br /&gt;Now what if you mistakenly have removed these arbitration accounts, and really want them back. Well than again you have several options:&lt;br /&gt;You could always return these accounts from the Active Directory Tombstone using tools as ADRESTORE, QUEST Object Restore for Active Directory..., or off course rerun the PrepareAD switch from the Exchange 2010 Setup:&lt;br /&gt;[Code]&lt;br /&gt;Setup /prepareAD&lt;br /&gt;[/Code]&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/8820695633308655530-1161573509790685694?l=therealshrimp.blogspot.com' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/DgDZ515iYa53LyBm6tPhu8uJ340/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/DgDZ515iYa53LyBm6tPhu8uJ340/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/DgDZ515iYa53LyBm6tPhu8uJ340/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/DgDZ515iYa53LyBm6tPhu8uJ340/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/TheRealShrimp/~4/AbmUwWbIb8U" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://therealshrimp.blogspot.com/feeds/1161573509790685694/comments/default" title="Post Comments" /><link rel="replies" type="text/html" href="http://therealshrimp.blogspot.com/2010/03/clean-removal-of-first-exchange-2010.html#comment-form" title="0 Comments" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/1161573509790685694?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/8820695633308655530/posts/default/1161573509790685694?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/TheRealShrimp/~3/AbmUwWbIb8U/clean-removal-of-first-exchange-2010.html" title="Clean Removal of the first Exchange 2010 Mailbox server or mailbox database." /><author><name>The Shrimp</name><uri>http://www.blogger.com/profile/01499973186099139865</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://therealshrimp.blogspot.com/2010/03/clean-removal-of-first-exchange-2010.html</feedburner:origLink></entry></feed>

