Home | Sitemap | Contact    
Visual Click Home
Our Customers Include
Companies
DSRAZOR - Delegate, Administer and Audit Acitive Diretory, NDS/eDirecory Windows and NetWare File Systems

DSRAZOR Updates in 2008

Last Update

Description

2008.07.09

DSRAZOR for NetWare

[FIX]
Removed an unhandled Edit error message.

2008.06.18

DSRAZOR for NetWare Console

[NEW]
Treewalk style applet for finding GroupWise accounts that do not have an eDirectory/NDS Object, with the option of deleting them. [GWNONDS.DSR]

[NEW]
Direct style applet for finding GroupWise accounts that do not have an eDirectory/NDS Object, with the option of deleting them. [CGWNONDS.DSR]

[NEW]
List the username and the groups they belong to. [USERGM.DSR]

[UPDATED]
The "Find Accounts unused for 30, 90, or X days" applet now has the ability to enter the number of days you want to search for at runtime.  Many other DSRAZOR applets can also be modified to allow values of rules to be entered at runtime.  [3090D.DSR]

2008.06.12

DSRAZOR for Windows

[UPDATE]
Made improvements to the "AD:IMPORT:Mass User Attribute Update (existing accounts only), use with "receive CSV file service" button service. When encountering an account in the CSV file that does not already exist, an applet using this service will no longer generate popup messages. It will quickly skip the account and log a message in the DSRAZOR audit log indicating "Account not found - no update processed".

2008.06.03

DSRAZOR for Windows

[FIX]
Corrected a problem that sometimes occurred when setting a user account to never expire.

2008.04.24

DSRAZOR for NetWare

[FIX]
Corrected an issue when editing the surname attribute via an import.

2008.03.28

DSRAZOR for Windows

[FIX]
Corrected a redraw issue with the Console when running on Vista.

2008.03.13

DSRAZOR for Windows

[NEW]
Services help is now available for all of the DSRAZOR for Windows Services. In the Designer, just right click on the service to view the help for that service. Also in the Designer select the menu option "Help/Search for Windows Services" to view help for all the services.

[NEW]
New service is available for reporting share permissions:
FS:ACE:List ACE AccessMask (simple) of Trustee (use with "FS:List Trustees ... service")

This service differs from the NTFS permissions service used previously. It does not show the data mask for the permission and it does not show if the permission was inherited or explicit. Share permissions are always explicit.

[NEW]
New applet for reporting share permissions. [NTSharePerms.dsr] can be accessed by double-clicking "Shares Permissions on Servers and Workstations" in the "Assess AD/NTFS Security" section of the Console.

[UPDATE]
Modified two applets in the Console that report Share permissions. The applets now use a new service to display permissions granted.
[fsListShareACLp3.dsr] and [fsListShareACLp3.dsr]

2008.02.22

DSRAZOR for Windows

[FIX]
Modified Active Directory button search service. Under certain circumstances, the first search performed after opening the applet would return no results, but all subsequent searches would return results. This update resolves that problem.

2008.02.15

DSRAZOR for Windows

[FIX]
Corrected a problem with updating AD attributes.

[FIX]
Search Manual Entry for "AD:Edit selected single-valued Attribute [Clear All Previous Values]" will now list all attributes defined in the schema.

2008.02.07

DSRAZOR for NetWare

[FIX]
Search by attribute services are now working correctly.

2008.02.05

DSRAZOR for Windows

[UPDATE]
Made enhancements to certain Active Directory connection methods. Connecting to External Forests across a Trust is now more robust. These updates enable connecting to another Forest across an External Trust in certain circumstances where settings were preventing some services from working.

2008.01.25

DSRAZOR for GroupWise

[FIX]
DSRAZOR for GroupWise no longer leaves the "Loading GWCHECK Data" window on screen when complete.

DSRAZOR Updates in 2007


Click here to see updates from 2006

Last Update

Description

2007.12.14

DSRAZOR for Windows

[FIX]
Removed a debug message.

2007.12.13

DSRAZOR for NetWare

[FIX]
Removed a debug message.

2007.12.11

DSRAZOR for NetWare

[NEW]
You can remove members from groups by using a CSV import.

[FIX]
Searching by name now works when entering the whole name as the search string.

[FIX]
Searching will no longer use the cache if the previous search was canceled.

2007.10.25

DSRAZOR for Windows

[FIX]
Now correctly reports group membership if the group contains only one member.

2007.10.19

DSRAZOR for GroupWise

[Update]
DSRAZOR for GroupWise applets will now only search the GroupWise Domain you select (instead of searching all Domains before producing results for the selected Domain). This may improve speed of running the applets in environments with multiple GroupWise Domains.

2007.10.03

DSRAZOR for Windows

[Update]
Removed 'AD:Display User's Logon Workstation' service because Microsoft does not populate the 'logonWorkstation' attribute. Alternatively, use the 'AD:List User's Workstations where logon is permitted' service which reports the values in the 'userWorkstation' attribute.

2007.09.28

DSRAZOR for NetWare

[NEW]
DSRAZOR will now report the associated value for "DirXML-Associations" attribute(s).

2007.09.27

DSRAZOR for Windows

[FIX]
When limiting the listing of directories in a file system tree to a specified depth, you may now add a display column that shows the aggregate size of the files and folders contained within each directory path. This enhancement allows the service "FS:List ALL Directories from current directory (or Root if none specified) by full name to specified directory depth" to work together with the service "FS:Display Size of Files on selected Path (in KB)".

DSRAZOR for NetWare

[NEW]
You can now enter a partial name when searching for objects with this service: "Search for any object by Name beginning at selected container or [Root] if no container selected [CLEAR RESULTS FIRST]" For example, you could find a workstation called "111ABCworkstation" by just searching for "ABC".

2007.09.26

DSRAZOR for NetWare

[NEW]
When remote controlling/viewing ZEN workstations via CVMONE.NLM, if you load the NLM with the /L switch you can now see the remote activity in the CVMONE.LOG file.  This requires CVMONE.NLM version 1.72.03 be run on a NetWare 5.x or NetWare 6.x server (this activity is not logged if CVMONE.NLM is on a NetWare 4.x server).

[NEW]
When creating eDirectory/NDS accounts, this service can be used to limit the User ID/Login Name (CN) to a maximum of 8 characters:
"NDS:Edit User's name to Create (8 Characters or less) - must be used with Button Service: NDS:Create User + Require EDIT Service..."

2007.09.21

DSRAZOR for Windows

[FIX]
Corrected an issue where local time was sometimes being reported as UTC time for last login.

DSRAZOR for NetWare and
DSRAZOR for GroupWise

[NEW]
The following is a new rule that will commit changes in GroupWise once updated in eDirectory:
NWGWC:RULE:Automatically Commit NDS Change to GroupWise for selected GroupWise Account when editing NDS attribute starting "NGW:"

2007.09.20

DSRAZOR for Windows

[New Button Service]
AD:Change User Password - Requires Verification of Existing Password

Allows applet user to reset his or her own password if current password is known.  This service should be connected to a 'AD:Display Who Am I (distinguished name of current user)' service.

2007.09.13

DSRAZOR

[FIX]
Corrected a problem with date sorting introduced in the September 7 build.

2007.09.11

DSRAZOR for Windows

[FIX]
Removed repeated lines from Output To File (OTF) when reporting disk space usage.

2007.09.07

DSRAZOR for Windows

[FIX]
This update resolves a problem displaying group membership.  This is a fix for the oleaut32.dll problem that was introduced with the latest Windows Update (KB921503).

DSRAZOR for NetWare

[NEW]
You can specify multiple servers to check for CVMONE.NLM by using this new text service:
"NDS:Server to interact with to change selected NDS attribute via NLM [Allow Multiple Servers]"

[NEW]
You can count the number of objects of each object class per container by using this new button service:
"NDS:Add Column for each Object Class and show count of objects found for each NDS container in selected list"

[NEW]
You can list partitions with servers and replica types using this new button service:
"NDS:Add Column for each Server Host with Replica Type for Partitions in selected list"

2007.08.23

DSRAZOR for NetWare and
DSRAZOR for GroupWise

[NEW]
New service that will update the GroupWise Phone Number at the same time that you update the eDirectory/NDS Phone Number.

New service that will update the GroupWise Given Name at the same time that you update the eDirectory/NDS Given Name.

New service that will update the GroupWise Last Name at the same time that you update the eDirectory/NDS Last Name.

New service that will update the GroupWise Full Name at the same time that you update the eDirectory/NDS Full Name.

New service that will update the GroupWise Title at the same time that you update the eDirectory/NDS Title.

New service that will update the GroupWise Department (OU) at the same time that you update the eDirectory/NDS Department (OU).

New service that will update the GroupWise Facsimile Telephone Number at the same time that you update the eDirectory/NDS Facsimile Telephone Number.

2007.08.21

DSRAZOR for Windows

[FIX]
Updated a licensing issue.

2007.08.13

DSRAZOR for NetWare

[FIX]
Mass change of "Password Expiration Time" is no longer an hour off.

2007.08.02

DSRAZOR

[NEW]
In the Designer you can now export the Window/Control Map.


DSRAZOR for NetWare

[NEW]
The new text service "NDS:RULE:When NDS Attribute has no value, display nothing at all instead of the default <None>" can be added to an applet so that attributes with no value will not get "<None>" written in when applying edit changes. 


[FIX]
When creating an EXE version of an applet that needs VCSGW.DLL and SNAPIN32.DLL, the distribution notes will now say that those DLLs are needed. 


[FIX]
When browsing to select an extensionless file, DSRAZOR now shows all files of all types (previously no files were shown). 


2007.07.10

DSRAZOR for Windows

[FIX]
Fixed popup error 800500d that occurs in some environments when reporting lastLogon values using a scan across all domain controllers. 


2007.05.29

DSRAZOR for Windows Services

[NEW]
AD:Include in the List, Home Directory Path for use during Create User + Req'd attr.(specify full UNC path such as "\\FS1\share\path", cn will be appended)

NT:List IF selected Service is running

NT:List Service Comment

NT:List Service File Path and startup options

NT:List Service Logon As

NT:List Service Short Name

NT:List Service Start Option

NT:List Service State

[UPDATES]
AD:RULE:For Edit and Display fields: Do not show <unknown> where value is undefined
This Text Control will now hide {unknown} from applet users when ADr:Edit services have no default value set.

The change log now correctly reports changes to userAccountControl.

The service formerly called "AD:Move Home Directory for selected User Account(s)" has been renamed "AD:Move Home Directory for selected User Account(s) (append CN)" to identify its function more clearly.

AD:List Object's Group Membership (show groups belonged to)
Fixed a problem that caused objects' primary group not to resolve to a distinguished name.

[FIXES]
FS:Remove selected Trustee from selected controlled object(s) (use with "FS:List All Controlled File System Objects of selected Trustee" service)
Corrected a problem that prevented button service from removing trustees.

Corrected a problem with time calculations that reported time one hour off in certain circumstances.

Corrected a problem with tabs and List services that would cause applets to fail on occasion.



DSRAZOR for NetWare Services

[NEW]
NDS:List Rights in single line format [SRWCEFMA] that User or other Object has to Selected Directory (use with NDS:List ALL User...)

[NEW]
FILE:Display if selected Directory has explicitly assigned trustees

DSRAZOR for NetWare

[FIX]
The service "NDS:Mass Create NDS OBJECT, SPECIFY [Object Class in
Manual Entry] - use with Receive CSV file service (No error on re-create)"
now works correctly.

[FIX]
The service "NWNDPS:Display Status of selected Printer Agent" no
longer displays ?Unknown? for iPrint printers.

[FIX]
Sending data directly out to a file now includes all of the data that
would have been displayed if the results were displayed on screen

2007.05.15

DSRAZOR

[UPDATE]
Increased the number of controls that are allowed on the opening screen of an applet.

2007.05.10

DSRAZOR for Windows Console

Assess AD/NTFS Security

[NEW]
ACL Documentation per File System Share - [fsListShareACLp1.dsr]
Document share permissions.

Examine Servers and Disks

[NEW]
Document Share Permissions - [fsListShareACLp1EXA.dsr]
Document share permissions.

AD User Maintenance

[UPDATED]
Create Users with Required Attributes - [cura04c.dsr]
Added auto-creation of user's display name based on last name, a comma, and first name.

Create Users with Required Attributes + Exchange Mailbox - [cura04exc.dsr]
Added auto-creation of user's display name based on last name, a comma, and first name.

Edit Single-Valued Attribute for Selected Accounts - [sved_text4.dsr]
Added buttons to prepend or append text to selected accounts' fax numbers.

Create Users from a Template - [UserTemplate1.dsr]
Added home directory path selection and groups to add automatically during template user creation.

DSRAZOR for Windows Services

[FIXES]
FS:List All Controlled File System Objects of selected Trustee + Description + Inherited Flag (use with "FS:SEARCH File System …" service)
Corrected a problem that limited display of controlled objects.

AD:Edit Selected Multivalued Attribute
Corrected the display of existing values when editing attribute.

AD:Move selected Object(s) (Container to move to must be specified with Display Service – Canonical Name for Move Operation
Corrected a problem with moving objects with commas embedded in the CN.

The following seven services are now properly treated as returning Boolean values:

  • AD:Display if selected Object has Domain Administrator Status (adminCount set to 1)

  • AD:Display if selected Object is critical system object (IsCriticalSystemObject attribute is TRUE)

  • AD:Display Computer's Role: Schema Master Status (whether or not is Schema Master of Forest)

  • AD:Display Computer's Role: Domain Naming Master Status (whether or not is Domain Naming Master of Forest)

  • AD:Display Computer's Role: PDC Emulator Master Status (whether or not is PDC Emulator Master of Domain)

  • AD:Display Computer's Role: RID Master Status (whether or not is RID Master of Domain)

  • AD:Display Computer's Role: Infrastructure Master Status (whether or not is Infrastructure Master of Domain)
AD:FSMO:List FSMO Roles for selected Primary Domain Root including Global Catalog Status of each DC
Corrected a problem in domains where the pre-AD domain name is different than the relative distinguished name of the AD/DNS domain name.

FS:List All Controlled File System Objects of selected Trustee (use with "FS:SEARCH File System from selected object …" service)
Corrected a problem with listing file system objects with high-bit-set ASCII characters. Such objects will now be displayed using their DOS-compatible 8.3 name.

Removed error messages when Output to File (OTF) is enabled for TreeViews with multiple services at the same level under a common parent service.

[UPDATES]
The rule service formerly titled "AD:Display Object's Distinguished Name (Canonical Name) (For Move/Copy Operation {Button Service})" has been renamed "AD:RULE:Display Object's Distinguished Name (Canonical Name) (For Move/Copy Operation {Button Service})" to more clearly indicate its function as a helper service for the "AD:Move" and "AD:Copy" button services.

AD:Erase ALL values of selected Attribute for selected Active Directory Object(s), use Manual Entry to select Attribute
Can now link to a 'AD:Display Who Am I (distinguished name of current user)' Text box to select the user. Removed a pop-up message when targeted attribute is already empty.

GC:Display number of USER objects in selected path
Can now select a domain root in the 'Connect Service to:' field, in addition to the container and Organizational Unit options previously available.

[NEW]
AD:Edit:Append value to text-based Attribute This button service will append text to the specified attribute of selected users. The text-based attribute to modify should be specified in the "Manual Entry Text" field in the Designer.

AD:Edit:Prepend value to text-based Attribute This button service will prepend text to the specified attribute of selected users. The text-based attribute to modify should be specified in the "Manual Entry Text" field in the Designer.

AD:Include in the List, Home Directory Path for use during Create User + Req'd attr.(specify full UNC path such as "\\FS1\share\path", SAMname will be appended) Use this service in a Dropdown List or ListView to display selectable home directory paths in a user creation applet. Rules are used to specify the UNC path(s) of the available home directory location(s). Upon user creation the home directory will be created using the SAM Account Name of the user account in the selected parent directory. The user will be granted permissions to create, delete, and change objects within the Home Directory, but will not be able to assign permissions to his or her Home Directory or delete the Home Directory itself.

AD:Include in the List, this Group for Membership add during Create User +Req'dattr.(specifyfullLDAPname,example:"CN=MediaGroup,DC=Staff,DC=local") This service can be used in a ListView to specify group membership upon user creation with a button service. Groups should be specified by distinguished name (full LDAP name) in the Rules for the service.

AD:RULE:For Edit and Display fields: Do not show '<unknown>' where value is undefined When this service is present in a Text box on a window with edit and display services, they will show an empty field instead of '' when a value has not been defined.

NT:List All Shares including Ownership and Permission Data This list service will display all shares defined on the selected server, and can be followed in a ListView or TreeView with services that document permissions and other data. See the Console applet "ACL Documentation per File System Share" [fslistShareACLp1.dsr] in the "Assess AD/NTFS Security" section for examples of use of this service.

New services have been added to permit the automated building of a specified attribute value from a combination other attribute values, parts of other attribute values, and static text. An example of this feature is in the applet titled "Create Users with Required Attributes" [cura04c.dsr], which can be found in the "AD User Maintenance" section of the Console. This applet constructs the created user's display name from the user's last name, a comma, and the user's first name.

AD:AUTO:Attribute Name – Auto-populate using Rules 1-5 (use with Button Service: "AD:Create User + Require EDIT Services…")
This display service specifies which attribute will be built by the following five services. It should be used with one or more of the following five services which will allow you to automate the construction of an attribute's value, as specified by the "AD:AUTO:Attribute Name – Auto-populate using Rules 1-5 (use with Button Service: "AD:Create User + Require EDIT Services…")" service, with the values of other attributes and static text:

  • AD:AUTO:Rule 1:Attribute Name – (use with Display Service "AD:AUTO:Attribute Name…")
  • AD:AUTO:Rule 2:Attribute Name – (use with Display Service "AD:AUTO:Attribute Name…")
  • AD:AUTO:Rule 3:Attribute Name – (use with Display Service "AD:AUTO:Attribute Name…")
  • AD:AUTO:Rule 4:Attribute Name – (use with Display Service "AD:AUTO:Attribute Name…")
  • AD:AUTO:Rule 5:Attribute Name – (use with Display Service "AD:AUTO:Attribute Name…")
To insert the entire value of a single-valued attribute, place the name of the attribute in the "Manual Entry Text" box in the Designer.

To insert the first five characters of an attribute, use "*5*<attributeName>" (without the quotes, and substituting an attribute name for <attributeName>).

To insert the last three characters of an attribute, use "<attributeName>*3*" (without the quotes, and substituting an attribute name for <attributeName>).

To insert static text, two asterisks should precede the static text in the "Manual Entry Text" box in the Designer, for example, "**fixed text" (without the quotes).

The rules will be executed in numerical order to build the attribute specified with the ' AD:AUTO:Attribute Name – Auto-populate using Rules 1-5 (use with Button Service: "AD:Create User + Require EDIT Services…")' service. Each auto rule service may be used only once, and any number of these AD Auto Rule services may be used to build the specified attribute's value.

DSRAZOR for NetWare

[FIX]
Creating aliases for multiple objects at the same time now works correctly when the applet has the container pre-defined to a specific container.

[FIX]
The Service applet LRGSRCH.DSR no longer reports a file over 2GB in size as a negative value.

2007.04.03

DSRAZOR

[FIX]
Corrected a problem with timezone being one hour off.

2007.03.21

DSRAZOR

[FIX]
Designer: Corrected a problem that caused the edit service setting “Select Button that applies changes” to not be retained in an applet import or window copy.

Corrected a problem with the new Daylight Saving Time rules in United States.

DSRAZOR for Windows Services

[NEW - Button Service]
AD:Add selected Active Directory Account(s) to selected Group Membership identified by ‘AD:RULE:Display..Canonical Name’

This button service allows the user to add a selected Active Directory object to a group by selecting the object and the group, then pressing the button. This new service provides an alternative to the drag and drop method and import/update method for group membership additions that were previously available.

[NEW - Display Service]
NT:Display Share’s UNC Path

This service shows the UNC path name for the selected share.

[NEW - CheckBox Services]
These checkbox edit services allow you to manage Terminal Services profile, environment, and session settings:

NTS_AD:Edit if selected User is configured to ‘Start a program at logon’

NTS_AD:Edit if selected User is configured to ‘Connect client drives at logon’

NTS_AD:Edit if selected user is configured to ‘Default to main client printer’

NTS_AD:Edit if selected User is configured to ‘Disconnect from Session’ when session limit reached or broken

NTS_AD:Edit if selected User is configured to ‘End Session’ when session limit reached or broken

NTS_AD:Edit if selected User is configured to ‘Allow reconnection from any client’

NTS_AD:Edit if selected User is configured to ‘Allow reconnection from originating client only’

DSRAZOR for Windows Console

AD User Maintenance

[NEW]
Remove SID History – [sIDHistory.dsr]
Find all users with one or more values in their SID History, with an option to clear SID History.

Manage Terminal Services Profile – [TermSvcProf.dsr]
Manage all Terminal Services profile, session, and environment settings.

[UPDATED]
Create Users with Required Attributes – [cura04b.dsr]
This applet has been updated to allow group management with the new button service.

Create Users with Required Attributes + Exchange Mailbox – [cura04exb.dsr]
This applet has been updated to allow group management with the new button service.

Helpdesk Examples

[UPDATED]
Group Membership Management via Drag-n-Drop – [grpm_dd1.dsr]
This applet has been updated to incorporate the new button service that enables adding an Active Directory object (user, computer, group, etc.) to a group.

Manage Servers/Disks

[NEW]
List NT Domain Groups Membership – [NT4_dom_groups.dsr]
Document domain-level groups in a Windows NT domain.

DSRAZOR for Windows

[FIXES]
Corrected a problem that interfered with removing trustees from Active Directory Access Control Lists (ACLs).

Corrected a problem that would list items multiple times in a TreeView if the parent level was double-clicked in rapid succession.

Corrected a problem that caused file system permissions to be misreported in specific situations.

The following service now properly displays user’s primary fax number and all other fax numbers:
AD:List Object’s Fax Numbers (all)

Removed an error message from the following service:
AD:List Object’s Email Addresses (all)

Removed an error message from the following service:
AD:List Object’s Web Addresses (all)

Corrected a data duplication problem with the following service:
AD:Include intheList,thisSpecificContainerObject(specifyfullLDAPname,example:“OU=DeptQ,DC=Staff,DC=local”)

The following service now properly erases SID History:
AD:Erase ALL valued of selected Attribute for selected Active Directory Object(s), use Manual Entry to select Attribute

The following service now displays “*multiple values found*” for sIDHistory if more than one SID is in that multi-valued attribute: AD:Display value for selected Active Directory Attribute, use Manual Entry to select Attribute

2007.02.08

DSRAZOR

[UPDATE]
The Out To File in TXT format will now have a more consistent number of records per page.

DSRAZOR for Windows

[FIX]
DSRAZOR will now give a more user friendly error when running Group Membership type applets and it cannot bind to the Global Catalog.

[FIX]
The Service "AD:Display Number of Members for selected Group" will now return the correct value.

Click here to see updates from 2006

 

 


Download Free Trial | Products | Solutions | Purchase | Support | Contact Us | Press | About Us | Sitemap
Copyright 2008 Visual Click Software, Inc. All Rights Reserved.