?
Solved

Domain fqdn query

Posted on 2009-05-14
6
Medium Priority
?
727 Views
Last Modified: 2012-05-07
Hi Guys

Let's say my domain is uk.kam.com, part of the kam.com forest.

If I want to log onto a machine, I can enter uk\account

Does anyone know the reason for this shortening, why am I not forced to use the full FQDN?
0
Comment
Question by:kam_uk
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 27

Accepted Solution

by:
bluntTony earned 500 total points
ID: 24387234
The format DOMAIN\USERNAME relates back to the NetBIOS domain name. NetBIOS is a flat naming structure. Each domain in the forest must have a unique NetBIOS name, regardless of the DNS name. The two names are separate of each other.

You can use either login format really. The newer login format uses the domain UPN, e.g.

username@domain.local

This related to the domain DNS name.
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24387254
Because UK is the NetBIOS name of your domain and it understands that.  
Are you using this when you log into your box?
at logon its usually samaccountname (and then pick your domain in the drop down) or UPN (account@UPNsuffix)
Thanks
MIke
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24387263
My internet connection is slow today :)
0
Are your AD admin tools letting you down?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

 
LVL 3

Author Comment

by:kam_uk
ID: 24387279
Hi Guys

Ok, so uk.kam.com is the domain name/ DNS name...but UK is the NetBIOS name?

Where is this actually set?

Yep, for logging on, I use UK\User1...could I use uk.kam.com\User1 as well?
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24387356
If you right click on your domain name in Active Directory Users and computers you will see the General Tab
Look at the  Domain name (pre-Windows 2000) field -- that is the NetBIOS name
Thanks
Mike
0
 
LVL 27

Assisted Solution

by:bluntTony
bluntTony earned 500 total points
ID: 24393050
The two are used I assume to provide backwards compatibility with older NT4 systems which used NetBIOS.

If fact I think the NetBIOS name could be anything as long as it's unique in the forest - you can set it during DCPROMO on the first DC, so your NetBIOS name could be FRED while your DNS domain name is uk.kam.com. It's just that it defaults to the right hand element of the DNS name when you go through the wizard.

So, given my example, your two logons could be:

FRED\username
username@uk.kam.com

You can't use uk.kam.com\username. Look on the Account tab in the properties of a user. At the top it shows the two formats; the one using the UPN and the one using the NetBIOS format.
0

Featured Post

Is Your AD Toolbox Looking More Like a Toybox?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Active Directory security has been a hot topic of late, and for good reason. With 90% of the world’s organization using this system to manage access to all parts of their IT infrastructure, knowing how to protect against threats and keep vulnerabil…
Auditing domain password hashes is a commonly overlooked but critical requirement to ensuring secure passwords practices are followed. Methods exist to extract hashes directly for a live domain however this article describes a process to extract u…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
Sometimes it takes a new vantage point, apart from our everyday security practices, to truly see our Active Directory (AD) vulnerabilities. We get used to implementing the same techniques and checking the same areas for a breach. This pattern can re…
Suggested Courses

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question