Solved

Migration without AD

Posted on 2003-11-06
9
144 Views
Last Modified: 2012-05-04
Hello,

I have a big challenge, at least for me. Pasted december the previous administrator migrated from NT 4 to 2000. It seem like it is a mess, so I need to do a clean install. The challenge is to move users from the old intallation to the new, but I don't want to copy the AD because I don't want the same mess on another domain.

Right now we have our root domain with five child domains, and the idea is to have just one domain. So I want to do this as seemless as possible, and especially I don't want to go to each computer other than the servers (If possible).

Bottom line, I need to migrate users, computers, and shares from my old 2k installation in various domains to the new one. The new domain would have the same name as my current root domain. I don't know if I am making my self clear, but the idea is not to move the whole AD. I just want to move what I mentioned, and do the least possible on each client.

I hope anyone can help me, I'll accept other alternatives.
0
Comment
Question by:ivan_mx
  • 5
  • 4
9 Comments
 
LVL 1

Author Comment

by:ivan_mx
Comment Utility
I forgot, we do have an exchange server. We are thinking of moving to 2003 if necessary, but it really would not make a difference.
0
 
LVL 3

Expert Comment

by:Chris_Picciotto
Comment Utility
It's actually not as bad as you think.

I don't have the complete picture i guess because if you have all of these domains then the organization may be large or the IT department may have wanted some partitioning of the enterprise in some way.

First question - Would you like to keep the current name space or are you planning to change it to something else (i.e. from MessyDomain.com to PrestineDomain.Com ) ha..ha.

If you need to keep the name space than that will make things a little bit more difficult but still do able.

0
 
LVL 3

Expert Comment

by:Chris_Picciotto
Comment Utility
Sorry i didn't read your post completely.

If the root domain just a place holder or does it contain user accounts?

I have done plenty of migrations projects that seemed like a disaster but after i calmly gave it some thought i found a resolve.
0
 
LVL 1

Author Comment

by:ivan_mx
Comment Utility
I guess I have both scenarios.

root.com would stay the same.

The users, computers, and shares from:

child1.com would move to root.com
child2.com would move to root.com
child3.com would move to root.com
child4.com would move to root.com
child5.com would move to root.com

I don't know if this answers your question.
0
Enabling OSINT in Activity Based Intelligence

Activity based intelligence (ABI) requires access to all available sources of data. Recorded Future allows analysts to observe structured data on the open, deep, and dark web.

 
LVL 1

Author Comment

by:ivan_mx
Comment Utility
My root also contains users.
0
 
LVL 3

Expert Comment

by:Chris_Picciotto
Comment Utility
Before you do any kind of migration or restructure try and remove any useless junk out of the old AD so that you have less to deal with.

Is there group policy set on any of the child domains? Do you know if there was any NT policies?


0
 
LVL 3

Accepted Solution

by:
Chris_Picciotto earned 450 total points
Comment Utility
....and the plot thickens.

Here is what i would do despite not having the whole picture clearly in mind.

I would first remove all useless crap (Users, computer icons, ect..).

I would then consolodate the domains by migrating the user accounts from the child domains to the root domains using the ADMT tool (First i would test this by copying a user account with many settings and then migrating that account and test it)

- I assume your exchange server is in the root domain.

Use another machine as an additional domain controller in the root domain. Consider transfering all the roles to that machine and demoting the original if it contains operating system problems.

Moving the exchange server is more difficult.

Before you remote any NT servers that are domain controllers deactivate any policies that the NT machines have on them. (Simply delete them with cause the policies to be Tatooed on to the machine's registries and then you'll be hurtin)

NOTE: Don't make too many changes too soon or you my have problems. Document everything you are doing so that you have reference info. Try and use a program like Visio to create flow charts to get a clearer picture. Get a copy of Norton Ghost so that you can image machine incase there is a disaster. Perform backups if possible.


Hope any of this helps.





0
 
LVL 1

Author Comment

by:ivan_mx
Comment Utility
Ok, I checked the Group Policy and I don't have any. We don't have any NT server running now.
 
But if I move the users would I still have the same SID, or would I need to do some extra work at the clients' computers.?
0
 
LVL 1

Author Comment

by:ivan_mx
Comment Utility
I created a new domain and I'm trying to change users from my old domain to the new. I'm trying to use netdom to migrate one user, just as a test. Does anybody knows how to do this?

Thanks
0

Featured Post

Get up to 2TB FREE CLOUD per backup license!

An exclusive Black Friday offer just for Expert Exchange audience! Buy any of our top-rated backup solutions & get up to 2TB free cloud per system! Perform local & cloud backup in the same step, and restore instantly—anytime, anywhere. Grab this deal now before it disappears!

Join & Write a Comment

NTFS file system has been developed by Microsoft that is widely used by Windows NT operating system and its advanced versions. It is the mostly used over FAT file system as it provides superior features like reliability, security, storage, efficienc…
Marketing can be an uncomfortable undertaking, especially if your material is technology based. Luckily, we’ve compiled some simple and (relatively) painless tips to put an end to your trepidation and start your path to success.
Access reports are powerful and flexible. Learn how to create a query and then a grouped report using the wizard. Modify the report design after the wizard is done to make it look better. There will be another video to explain how to put the final p…
This video demonstrates how to create an example email signature rule for a department in a company using CodeTwo Exchange Rules. The signature will be inserted beneath users' latest emails in conversations and will be displayed in users' Sent Items…

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now