Skip to main content

How to change what is stored in the Global Catalog

The Global Catalog (GC) is used for searching objects in other domains in your forest.  Also some applications, like Exchange, use the Global Catalog to help provide their services.  The Global Catalog contains a Partial Attribute Set (PAS) of all the objects in a domain that users generally search for.  The GC is configurable in that you can choose to add properties of objects to be replicated in the GC.  Below is the step by step procedure to do so.

Step 1 – Locate the Schema Operations Master
You should perform this step on the Domain Controller that holds the Schema Operations Master Role.  It is true that Windows Domain Controllers are multi-master.  This means that a change on one will replicate to all.  However, there are certain functionalities that can only be performed by one DC at a time.  To get a list of the current FSMO (Flexible Single Master Operation) role holders:

Click Start.

Type CMD and press Enter.

Type netdom query fsmo and press Enter.  You will get a list like the one below:
image

Notice that the Schema Master is being held by a Domain Controllers called MCT-1.

Step 2 – Register the Schema Snap-in
The Schema Snap-in is one, if not the least used of all the Active Directory Snap-ins.  Generally you only modify the schema when upgrading a domain or adding a major product like Exchange.  These products modify the Schema for you.  In this situation, we need to access it for manual modifications.  Just a word of caution, improperly modifying your Schema can cause problems.  Be careful.

Log into the Domain Controller holding the Schema Master role.
Click Start.

Type CMD and press Enter.

Type regsvr32 schmmgmt.dll and press Enter.
This will register the Active Directory Schema


Step 3 – Specify the properties that you want to be a part of the PAS.

On the Schema Master Domain Contoller, click Start.

Type MMC and press Enter.

Click File \ Add-Remove Snap-ins…

Click Active Directory Schema and then Add.

Click OK.

Expand Active Directory Schema (DomainName).

Click Attributes.

Locate the attribute that you want to replicate in the PAS.  For this example, we will select Title

Double click Title to open its properties.
image

Check Replicate this attribute to the Global Catalog.

Click OK.

Once replication has completed, your users will be able to search by title for objects in other domains inside your forest.  Remember, this is a forest wide replication, it may take some time before it is in effect in all domains.

Comments

Popular posts from this blog

How to list all the AD LDS instances on a server

AD LDS allows you to provide directory services to applications that are free of the confines of Active Directory.  To list all the AD LDS instances on a server, follow this procedure: Log into the server in question Open a command prompt. Type dsdbutil and press Enter Type List Instances and press Enter . You will receive a list of the instance name, both the LDAP and SSL port numbers, the location of the database, and its status.

How to run GPResult on a remote client with PowerShell

In the past, to run the GPResult command, you would need to either physically visit this client, have the user do it, or use and RDP connection.  In all cases, this will disrupt the user.  First, you need PowerShell remoting enabled on the target machine.  You can do this via Group Policy . Open PowerShell and type this command. Invoke-Command –ScriptBlock {GPResult /r} –ComputerName <ComputerName> Replace <ComputerName> with the name of the target.  Remember, the target needs to be online and accessible to you.

Error icon when creating a GPO Preference drive map

You may not have an error at all.  Take a look at the drive mapping below. The red triangle is what threw us off.  It is not an error.  It is simply a color representation of the Replace option of the Action field in the properties of the drive mappings. Create action This give you a green triangle. The Create action creates a new mapped drive for users. Replace Action The Replace action gives you a red triangle.  This action will delete and recreate mapped drives for users. The net result of the Replace action is to overwrite all existing settings associated with the mapped drive. If the drive mapping does not exist, then the Replace action creates a new drive mapping. Update Action The Update action will have a yellow triangle. Update will modify settings of an existing mapped drive for users. This action differs from Replace in that it only updates settings defined within the preference item. All other settings remain as configured on the mapped drive. If the