<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Vmware &#8211; RICKARD NOBEL AB</title>
	<atom:link href="https://rickardnobel.se/category/vmware/feed/" rel="self" type="application/rss+xml" />
	<link>https://rickardnobel.se</link>
	<description>Specialists in IT infrastructure services</description>
	<lastBuildDate>Tue, 01 Apr 2025 20:38:17 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.6</generator>

<image>
	<url>https://rickardnobel.se/wp-content/uploads/2021/05/cropped-RN-logo-1-small-2-32x32.png</url>
	<title>Vmware &#8211; RICKARD NOBEL AB</title>
	<link>https://rickardnobel.se</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>The Active Directory VM Generation-ID, part 4</title>
		<link>https://rickardnobel.se/the-active-directory-vm-generation-id-part-4/</link>
					<comments>https://rickardnobel.se/the-active-directory-vm-generation-id-part-4/#respond</comments>
		
		<dc:creator><![CDATA[Rickard Nobel]]></dc:creator>
		<pubDate>Tue, 01 Apr 2025 14:57:26 +0000</pubDate>
				<category><![CDATA[Vmware]]></category>
		<category><![CDATA[Windows]]></category>
		<guid isPermaLink="false">https://rickardnobel.se/?p=3223</guid>

					<description><![CDATA[How to disable the feature. The VM GenerationID acts as an important safeguard feature when virtualizing Domain Controllers. The operations are described here. Without this protection, the DC cannot detect that a snapshot-restore has occurred and cannot take the necessary recovery actions. Typically, the VM GenerationID feature should be enabled in all production environments. However,...]]></description>
										<content:encoded><![CDATA[
<p><strong>How to disable the feature.</strong></p>



<p>The<strong> VM GenerationID</strong> acts as an important safeguard feature when virtualizing Domain Controllers. The operations are described <strong><a href="https://rickardnobel.se/the-active-directory-vm-generation-id-part-1/">here</a></strong>. Without this protection, the DC cannot detect that a snapshot-restore has occurred and cannot take the necessary recovery actions.</p>



<p>Typically, the VM GenerationID feature should be enabled in all production environments.</p>



<p>However, in certain setups, for example, controlled lab setups, you might want to remove this option. If running multiple virtual Domain Controllers in lab scenarios, you might want to be able to repeatably return to one consistent base configuration.</p>



<p>This could, for example, be accomplished by shutting down all virtual machines in the lab environment and take &#8220;cold&#8221; snapshots on all VMs in an offline state. The VMs could then be started and various experiments conducted, later to be snapshot-restored to the same base state &#8211; running various scenarios multiple times.</p>



<p>In such lab setup, the hypervisor-intervention of signalling the snapshote-restore action into the guest Domain Controller, triggering the DC repair mechanism might not be required, which may instead interfere with the lab process.</p>



<figure class="wp-block-image size-full is-resized"><a href="https://rickardnobel.se/wp-content/uploads/2025/04/device-man.png"><img fetchpriority="high" decoding="async" width="583" height="550" src="https://rickardnobel.se/wp-content/uploads/2025/04/device-man.png" alt="" class="wp-image-3225" style="width:475px;height:auto" srcset="https://rickardnobel.se/wp-content/uploads/2025/04/device-man.png 583w, https://rickardnobel.se/wp-content/uploads/2025/04/device-man-300x283.png 300w" sizes="(max-width: 583px) 100vw, 583px" /></a></figure>



<p>The VM GenerationID device is a virtual unit, presented to the guest operating system as a device attached to the virtual motherboard. The item can be viewed, in the guest operating system, through the<strong> Device Manager</strong> control panel tool.</p>



<figure class="wp-block-image size-full"><a href="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-5.png"><img decoding="async" width="489" height="420" src="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-5.png" alt="" class="wp-image-3226" srcset="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-5.png 489w, https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-5-300x258.png 300w" sizes="(max-width: 489px) 100vw, 489px" /></a></figure>



<p>Open Device Manager and select &#8220;<strong>Show hidden devices</strong>&#8220;.</p>



<figure class="wp-block-image size-full"><a href="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-6-2.png"><img decoding="async" width="417" height="244" src="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-6-2.png" alt="" class="wp-image-3227" srcset="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-6-2.png 417w, https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-6-2-300x176.png 300w" sizes="(max-width: 417px) 100vw, 417px" /></a></figure>



<p>Expand &#8220;<strong>System devices</strong>&#8221; and find the item named &#8220;<strong>Microsoft Hyper-V Generation Counter</strong>&#8220;. (Note that this device name will be the same in non-Microsoft hypervisors too.)</p>



<figure class="wp-block-image size-full is-resized"><a href="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-1.png"><img loading="lazy" decoding="async" width="481" height="390" src="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-1.png" alt="" class="wp-image-3228" style="width:391px;height:auto" srcset="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-1.png 481w, https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-1-300x243.png 300w" sizes="auto, (max-width: 481px) 100vw, 481px" /></a></figure>



<p>Examining the <strong>Details </strong>tab of the virtual device and selecting the “<strong>Service</strong>” property, we can note the value &#8220;<strong>gencounter</strong>&#8220;. This is the internal service/driver name of this device (as opposed to the Display Name which is &#8220;Microsoft Hyper-V Generation Counter&#8221;).</p>



<figure class="wp-block-image size-full"><a href="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-2.png"><img loading="lazy" decoding="async" width="924" height="370" src="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-2.png" alt="" class="wp-image-3229" srcset="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-2.png 924w, https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-2-300x120.png 300w, https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-2-768x308.png 768w, https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-2-850x340.png 850w" sizes="auto, (max-width: 924px) 100vw, 924px" /></a></figure>



<p>Now, open the Registry Editor and locate the following path:</p>



<p><strong>HKLM\System\CurrentControlSet\Services\gencounter</strong></p>



<p>The &#8220;<strong>Type</strong>&#8221; value of 1 indicates a system-level driver, to be loaded by the operating system kernel at boot time.</p>



<p>The &#8220;<strong>Start</strong>&#8221; value of 3, combined with the Type, means &#8220;Load automatically by PnP if needed for this device.&#8221;</p>



<figure class="wp-block-image size-full is-resized"><a href="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-3.png"><img loading="lazy" decoding="async" width="511" height="316" src="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-3.png" alt="" class="wp-image-3233" style="width:440px;height:auto" srcset="https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-3.png 511w, https://rickardnobel.se/wp-content/uploads/2025/04/gencounter-3-300x186.png 300w" sizes="auto, (max-width: 511px) 100vw, 511px" /></a></figure>



<p>To disable the virtual device, set the <strong>Start </strong>value to<strong> 4</strong>, meaning &#8220;Disabled&#8221;.<br>The change will take effect at the next Domain Controller restart.</p>



<p class="has-vivid-red-color has-text-color has-link-color wp-elements-1159fea6d20b399c7418b53aa46ccfd6"><strong>NOTE: Do not conduct this action in an Active Directory production environment.<br>Disabling this feature should only be used in well-controlled lab scenarios.</strong></p>



<p></p>



<figure class="wp-block-image size-full"><a href="https://rickardnobel.se/wp-content/uploads/2025/04/Dev-man-DIS.png"><img loading="lazy" decoding="async" width="543" height="359" src="https://rickardnobel.se/wp-content/uploads/2025/04/Dev-man-DIS.png" alt="" class="wp-image-3234" srcset="https://rickardnobel.se/wp-content/uploads/2025/04/Dev-man-DIS.png 543w, https://rickardnobel.se/wp-content/uploads/2025/04/Dev-man-DIS-300x198.png 300w, https://rickardnobel.se/wp-content/uploads/2025/04/Dev-man-DIS-350x230.png 350w" sizes="auto, (max-width: 543px) 100vw, 543px" /></a></figure>



<p>After restart, in Device Manager, with hidden devices enabled, the now disabled state of the VM GenerationID item can be verified.</p>



<p><strong>Now, snapshots can be taken which will not be &#8220;protected&#8221; when reverted.</strong></p>



<p>If later reverting the lab machines to a previous snapshot state, the DC will not be triggered by the hypervisor and will not conduct any of the actions described in part 3.</p>



<p>Additionally, if you would wish to return to the default protected state, simply reverse the registry change, replacing the modified value 4 with the original value of 3.</p>



<p><strong>Summary of part 4:</strong></p>



<ul class="wp-block-list">
<li>The VM GenerationID is an important safeguard in all virtualized Domain Controller production environments.</li>
</ul>



<ul class="wp-block-list">
<li>In controlled and isolated lab setups, the protection mechanisms might cause issues, where repeated snapshot reverts are indeed expected.</li>
</ul>



<ul class="wp-block-list">
<li>By altering the registry key locally on each DC, the safeguard can be disabled.</li>
</ul>



<p></p>
]]></content:encoded>
					
					<wfw:commentRss>https://rickardnobel.se/the-active-directory-vm-generation-id-part-4/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>

<!--
Page Caching using Disk: Enhanced 

Served from: rickardnobel.se @ 2026-07-25 00:35:28 by W3 Total Cache
-->