Getting a Better Understanding of Active Directory

Posted on 2011-03-15
Last Modified: 2012-05-11
Can some one please explain the functional difference between the sysvol and netlogon shares.

For example in my 2008 domain all of my script and login script reside in my sysvol folder yet my netlogon folder is blank?

What is the difference between the ntfrsutl and repadmin tools?

I having a really hard time understaninf A.D junctions points. CAn anyone please explain to me in simple terms what this is who how I can view one
Question by:compdigit44
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
  • 2
LVL 11

Expert Comment

ID: 35138083
I can answer one of those questions for you:

SYSVOL contains login scripts, group policy settings, and much more info about AD.

NETLOGON is just a copy of anything you have in the folder SYSVOL\\scripts
LVL 20

Author Comment

ID: 35138599
if netlolgon is a copy of the sysvol folder then why is it even needed????
LVL 11

Accepted Solution

TheGorby earned 250 total points
ID: 35138933
Windows NT and older clients use the NETLOGON share for login scripts , Windows 2000 and newer clients use SYSVOL. This article has a bit more detail:
Windows Server 2016: All you need to know

Learn about Hyper-V features that increase functionality and usability of Microsoft Windows Server 2016. Also, throughout this eBook, you’ll find some basic PowerShell examples that will help you leverage the scripts in your environments!

LVL 21

Assisted Solution

snusgubben earned 250 total points
ID: 35140065
What is the difference between the ntfrsutl and repadmin tools

ntfrsutl is a command line tool used with FRS, while repadmin is used more with AD replication and other directory service tasks.

I having a really hard time understaninf A.D junctions points

They are used in i.e. the SYSVOL replica tree. A JP is a physical location on a hard disk that points to another location on a disk. Think of it as a link.

See SYSVOL folder domain controllers

if netlolgon is a copy of the sysvol folder then why is it even needed????

It sounds like you provide logon scripts through GPOs, then your NETLOGON (scripts folder) will be empty. If you provide logon scripts directly on the user object (Profile tab), the scripts is located in the NETLOGON folder/share.
LVL 20

Author Comment

ID: 35150919
Actually I misspoke before I just created our Sysvol and Netlogon shares and they both are mirror images of one another and contain the same information.

I'm not using GP's to assign logon scripts but they are assigned via the Profile -> logon script on the users accot tab..

I'm still having a hard time understanding J.P's? IN WIndows 2008 the only documents and settings folder is a shorcut to USERS , could this be considers a J.P?
LVL 21

Expert Comment

ID: 35152716
Did you created the SYSVOL and NETLOGON share manually??

Profile -> logon script on the users accot tab..

This points to the NETLOGON share (Scripts folder), so if this field says i.e. "logon.bat" this script should be located in the NETLOGON share.

In Win2008, C:\Documents and Settings is a JP that points to C:\Users

Featured Post

Online Training Solution

Drastically shorten your training time with WalkMe's advanced online training solution that Guides your trainees to action. Forget about retraining and skyrocket knowledge retention rates.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Auditing domain password hashes is a commonly overlooked but critical requirement to ensuring secure passwords practices are followed. Methods exist to extract hashes directly for a live domain however this article describes a process to extract u…
Here's a look at newsworthy articles and community happenings during the last month.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

717 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question