{"id":1919,"date":"2017-06-01T21:29:18","date_gmt":"2017-06-01T19:29:18","guid":{"rendered":"http:\/\/www.identitycosmos.com\/?p=1919"},"modified":"2017-06-01T21:29:18","modified_gmt":"2017-06-01T19:29:18","slug":"active-directory-replication-status-tool","status":"publish","type":"post","link":"https:\/\/identitycosmos.com\/index.php\/2017\/06\/01\/active-directory-replication-status-tool\/","title":{"rendered":"Active Directory Replication Status Tool: Back to the Future !"},"content":{"rendered":"<p><a href=\"http:\/\/www.identitycosmos.com\/http:\/www.identitycosmos.com\/strategie\/active-directory-replication-status-tool\/attachment\/backfuture_mainbanner2\" rel=\"attachment wp-att-1920\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-1920\" src=\"http:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/backfuture_mainbanner2.jpg\" alt=\"\" width=\"940\" height=\"230\" srcset=\"https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/backfuture_mainbanner2.jpg 940w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/backfuture_mainbanner2-300x73.jpg 300w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/backfuture_mainbanner2-768x188.jpg 768w\" sizes=\"auto, (max-width: 940px) 100vw, 940px\" \/><\/a><\/p>\n<p>A l&#8217;heure d&#8217;AWS, d&#8217;Azure AD, de l&#8217;IDaaS &amp; autre joyeuset\u00e9 &#8220;Cloudifiante&#8221;, il est totalement incongru de voir \u00e0 quel point l&#8217;IT interne des entreprises est pauvrement g\u00e9r\u00e9, c&#8217;est m\u00eame terrifiant&#8230; Surtout quand nous parlons d&#8217;Active Directory !<\/p>\n<p>Je viens de finir une mission chez un grand compte (bien sur je garderais pour moi le nom du coupable par charit\u00e9 intellectuelle et conscience professionnelle&#8230;) sur la gouvernance et la s\u00e9curisation de leur annuaire Active Directory: et oui ! je fais encore de l&#8217;Active Directory ! J&#8217;en fais m\u00eame encore beaucoup, mais disons que je s\u00e9lectionne les missions.<\/p>\n<p>Le pauvre responsable Active Directory n&#8217;en peut plus, je dois dire qu&#8217;il a fort \u00e0 faire&#8230; vous vous voyez jongler avec 3 parpaings en \u00e9quilibre sur un ch\u00e2teau de cartes avec un bandeau sur les yeux ? vous voyez l&#8217;id\u00e9e ? c&#8217;est son pain quotidien&#8230; Je ne suis pas sur que la direction g\u00e9n\u00e9rale est bien conscience du danger, mais bon c&#8217;est un autre probl\u00e8me, moi perso, j&#8217;ai pr\u00e9sent\u00e9\u00a0mes recommandations au CTO, il en fera bien ce qu&#8217;il veut.<\/p>\n<p>Pendant cette mission, il a fallut comprendre pourquoi la r\u00e9plication AD ne fonctionnait pas, ou peu&#8230; Alors oui, on peut faire du &#8220;repadmin \/showrepl * \/csv &gt; replsd.csv&#8221; \u00e0 tour de bras et s&#8217;amuser avec Excel pour filtrer tout cela; oui, il y a plein de moyens de superviser la chose; oui. Mais le pauvre responsable Active Directory voulait juste un tool tout simple qui le sauve de la bankrupt les soirs de pleine lune&#8230;<\/p>\n<p>C&#8217;est alors que je me suis rappel\u00e9 d&#8217;un tool Microsoft, et il se trouve que ce software\u00a0a \u00e9t\u00e9 mis \u00e0 jour il y a quelques mois:\u00a0Active Directory Replication Status Tool (ADREPLSTATUS) &#8211; t\u00e9l\u00e9chargeable [ <strong><a href=\"https:\/\/www.microsoft.com\/en-us\/download\/details.aspx?id=30005\">ICI<\/a><\/strong> ]<\/p>\n<p>Il s&#8217;agit d&#8217;un outil vraiment sympa, avec une\u00a0interface graphique remani\u00e9e qui permet d&#8217;analyser de fa\u00e7on tr\u00e8s pr\u00e9cise les r\u00e9plications AD &#8211; les options de filtre sont vraiment tr\u00e8s nombreuses et les r\u00e9sultats exportables dans un fichier CSV (pour les fans d&#8217;Excel \ud83d\ude09<\/p>\n<p>La barre de menu est tr\u00e8s claire:<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/http:\/www.identitycosmos.com\/strategie\/active-directory-replication-status-tool\/attachment\/adrt_01\" rel=\"attachment wp-att-1921\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-1921\" src=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_01.png\" alt=\"\" width=\"1196\" height=\"117\" srcset=\"https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_01.png 1196w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_01-300x29.png 300w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_01-1024x100.png 1024w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_01-768x75.png 768w\" sizes=\"auto, (max-width: 1196px) 100vw, 1196px\" \/><\/a><\/p>\n<p>Les options permettent de lancer un scan cibl\u00e9:<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/http:\/www.identitycosmos.com\/strategie\/active-directory-replication-status-tool\/attachment\/adrt_02\" rel=\"attachment wp-att-1922\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-1922\" src=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_02.png\" alt=\"\" width=\"1332\" height=\"487\" srcset=\"https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_02.png 1332w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_02-300x110.png 300w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_02-1024x374.png 1024w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_02-768x281.png 768w\" sizes=\"auto, (max-width: 1332px) 100vw, 1332px\" \/><\/a><\/p>\n<p>et de visualiser tr\u00e8s simplement les r\u00e9sultats afin de\u00a0permettre un diagnostic:<\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/http:\/www.identitycosmos.com\/strategie\/active-directory-replication-status-tool\/attachment\/adrt_03\" rel=\"attachment wp-att-1923\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-1923\" src=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_03.png\" alt=\"\" width=\"1083\" height=\"420\" srcset=\"https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_03.png 1083w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_03-300x116.png 300w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_03-1024x397.png 1024w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_03-768x298.png 768w\" sizes=\"auto, (max-width: 1083px) 100vw, 1083px\" \/><\/a><\/p>\n<p><a href=\"http:\/\/www.identitycosmos.com\/http:\/www.identitycosmos.com\/strategie\/active-directory-replication-status-tool\/attachment\/adrt_04\" rel=\"attachment wp-att-1924\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-full wp-image-1924\" src=\"http:\/\/www.identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_04.png\" alt=\"\" width=\"1079\" height=\"407\" srcset=\"https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_04.png 1079w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_04-300x113.png 300w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_04-1024x386.png 1024w, https:\/\/identitycosmos.com\/wp-content\/uploads\/2017\/06\/adrt_04-768x290.png 768w\" sizes=\"auto, (max-width: 1079px) 100vw, 1079px\" \/><\/a><\/p>\n<p>Bref, un outil vraiment sympa, mis \u00e0 jour pour Windows Server 2016, et bien sur, plus le mod\u00e8le de r\u00e9plication est complexe, plus il est utile !<\/p>\n<p>Bons tests de votre c\u00f4t\u00e9 !<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A l&#8217;heure d&#8217;AWS, d&#8217;Azure AD, de l&#8217;IDaaS &amp; autre joyeuset\u00e9 &#8220;Cloudifiante&#8221;, il est totalement incongru de voir \u00e0 quel point l&#8217;IT interne des entreprises est pauvrement g\u00e9r\u00e9, c&#8217;est m\u00eame terrifiant&#8230; Surtout quand nous parlons d&#8217;Active Directory !<\/p>\n","protected":false},"author":3,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6,7],"tags":[14,20],"class_list":["post-1919","post","type-post","status-publish","format-standard","hentry","category-strategie","category-technique","tag-active-directory","tag-adreplstatus"],"_links":{"self":[{"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/posts\/1919","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/comments?post=1919"}],"version-history":[{"count":0,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/posts\/1919\/revisions"}],"wp:attachment":[{"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/media?parent=1919"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/categories?post=1919"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/identitycosmos.com\/index.php\/wp-json\/wp\/v2\/tags?post=1919"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}