richardhicks 

By: | 156,435 downloads | Last Updated: 2/10/2026 | Latest Version: 1.3

This script retrieves and displays Secure Boot certificates and signatures (PK, KEK, DB, and DBX) from UEFI firmware and optionally saves them to files. The DBX (forbidden signatures) database contains both certificates and hashes that are blocked by Secure Boot.

By: | 43,973 downloads | Last Updated: 2/21/2026 | Latest Version: 1.9.12

PowerShell module for configuring, optimizing, and troubleshooting Windows Server Routing and Remote Access Service (RRAS) for Always On VPN.

By: | 3,442 downloads | Last Updated: 4/27/2025 | Latest Version: 1.1

This script translates a security principal (user or computer) to its corresponding Security Identifier (SID).

By: | 1,824 downloads | Last Updated: 12/11/2023 | Latest Version: 1.2.5

PowerShell module to manage the Windows Server Routing and Remote Access Service (RRAS) inbox accounting database.

By: | 788 downloads | Last Updated: 2/20/2026 | Latest Version: 2.0.1

PowerShell module for performing administrative tasks on Microsoft Active Directory Certificate Services (AD CS) servers.

By: | 200 downloads | Last Updated: 12/27/2025 | Latest Version: 1.6.4

This script installs and configures the Network Device Enrollment Service (NDES) role on Windows Server. It also configures the server to use a specific TLS certificate and certificate template for NDES. In addition, this script performs several post-installation tasks to ensure the NDES service is properly configured, optimized, and secured.

By: | 110 downloads | Last Updated: 12/12/2023 | Latest Version: 1.1.3

The Absolute Secure Access and Insights for Networks installer will, by default, create firewall rules for the required infrastructure servers. However, these rules are not created in a firewall rule group and are not easily identifiable. This script will create a firewall rule group named "Absolute Secure Access" and add the required firewall rule... More info

By: | 85 downloads | Last Updated: 2/11/2025 | Latest Version: 1.5.3

Use this command to extract the EAP configuration from an existing VPN connection. The output XML can be copied and pasted in to ProfileXML for configuring Windows Always On VPN connections.

By: | 84 downloads | Last Updated: 12/12/2023 | Latest Version: 3.0.2

DirectAccess uses self-signed certificates when configured using the Getting Started Wizard, sometimes referred to as the "simplified deployment" method. Self-signed certificates are also an option when using the standard deployment wizard. These certificates expire 5 years from the date of installation. Microsoft currently provides no documentati... More info

By: | 60 downloads | Last Updated: 1/27/2026 | Latest Version: 2.0.2

Use this PowerShell script to install the minimum requirements for the Network Policy Server (NPS).

By: | 38 downloads | Last Updated: 1/27/2026 | Latest Version: 1.0.1

PowerShell script to install and configure an ADCS Online Responder service on a Windows Server. The script installs the Online Responder role service and configures the service to respond to certificate status requests. In addition, the script enables Windows auditing for certificate service events, auditing for the OCSP service itself, and config... More info

By: | 24 downloads | Last Updated: 6/10/2025 | Latest Version: 1.0.1

This script connects to specified NPS servers and retrieves failed authentication attempts from the Security event log, specifically looking for Event ID 6273. It extracts the username and source IP address from the event messages.

By: | 23 downloads | Last Updated: 2/22/2026 | Latest Version: 2.4.0

This PowerShell script is helpful for troubleshooting TLS issues associated with public websites or other HTTPS services like TLS VPNs. Using this script, administrators can view and optionally save the certificate returned during the TLS handshake. Administrators can confirm certificate details and perform revocation checks, if necessary.

By: | 20 downloads | Last Updated: 2/9/2026 | Latest Version: 1.1

PowerShell module for enumerating, managing, archiving, and removing Active Directory principal certificates.