[Webinar] Streamline your web hosting managementRegister Today

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 180
  • Last Modified:

How to migrate windows 2000 DC and Exchange 2000 on 2003 changing hardware

Hello all !

I'm planning how to migrate my server. I want to migrate one Server (PDC w2k + AD + Exchange 2000) on two differents servers.

I want a new Windows 2003 server with AD and a new Exchange 2003 with back-end/front-end technology.

Note : I'm configuring a DMZ. So, my new Exchange server will be configured in back-end and I will install Exchange front-end on my webserver.

I'have read a lot of informations about that and I finally decided to use ADMT v.2.

Have you an idea about the order I must proceed ?

Of course, in first I will install my 2 news servers in windows 2003 server. But after ? What must I migrate from my W2k server in first ? What the order ?

Note : I must change my domain name, so... When i do then change ? Before or after migration ? Are there any links between W2k old server and W2k3 new server during the migration ?

For Exchange 2003 configuration, which network ports must be blocked or not between the DMZ and the LAN considering there is a Front-end and a back-end server ?

Thanks a lot !

Gaël
0
s2000_com
Asked:
s2000_com
1 Solution
 
SembeeCommented:
First.
Forget about installing Exchange in the DMZ. A member of the domain does not belong in the DMZ and no one has given me any convincing reasons to do so. The number of holes required in a firewall makes it look like swiss cheese, you have to compromise security (changing dynamic ports to static) and if the DMZ machine is compromised the attacker can walk straight in to your network.

Put both servers inside your network, allow port 443 (https) and 25 (smtp) ONLY into the network.

If you are wary of Exchange being directly exposed to SMTP then a plain Windows 200x server makes an excellent relay. Make sure that it is part of a workgroup not your domain. If it gets attacked then the attacker hasn't gained anything.

As you want to change the domain name, the order doesn't really matter. Build the new domain, two way trust with the old domain and then move everything across.

Simon.
0

Featured Post

Take Control of Web Hosting For Your Clients

As a web developer or IT admin, successfully managing multiple client accounts can be challenging. In this webinar we will look at the tools provided by Media Temple and Plesk to make managing your clients’ hosting easier.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now