Link Active Directory and SBS Server management after a NDR attack.

Posted on 2005-04-12
Medium Priority
Last Modified: 2013-12-03

One of my customers has a Windows 2003 SBS server. Problems occured when they had some form of attack on the server where it started to relay mail to 895 people 895 times!! One of the recipients was the main address of the customer@domain so this e-mail kept returning and the server was being a relay..

After stopping the SMTP & POP services, broadband came back up with an acceptable response time. However, on following the details as laid out in the Microsoft KB, we had to delete the mailstore which the customer had no problems with as they do not keep e-mails after they have been responded to and all information is held within their own business process software.

Here is the problem now.....

The users still show up in Server Management but there are no entries for them in Active Directory. Adding a new user through Server management is OK but all the settings that the users have are lost as we need to create a new computer for them. When they then login it is taking about 15 - 20 minutes.

The question that I have, is it going to be quicker and cleaner to perform a re-install of SBS after a full wipe of the server or are there any tools available to help  us in getting this customer up and running quickly with minimum data loss?

How do we link the Active Directory so that the users appear in there with Exchange? If I try and add user Carol again into the AD, it states that she already exists but she does not appear!!

Help would be really appreciated on this one as I'm out of my depth here.

Question by:tpsheehan
  • 3
  • 2
LVL 21

Assisted Solution

JBlond earned 750 total points
ID: 13760064
A restore of a backup should be the fastest solution.

If there is none, you should back it up now to save what is left. After that, try a Active Directory Recovery via the boot menu (press F8 during boot until the menu appears)...

Hope that helps...

Author Comment

ID: 13760166
Customer is using online backups for just their business process system and did not want to backup the system state with the additional costs associated with that so I can't do a restore of the system state.

We are talking about putting in a replacement server to give us time to get to the bottom of the problem to keep the customer happy.

Will try the F8 option when we have swapped out the server. Any other idea's floated will all be considered.



Expert Comment

ID: 13760254
If you get an answer indicating that a user exist when trying to create it then they maybe have been moved into another OU. Try to make a search on a few users that you know should exist and see where they are stored in AD. Also a user that appears in Exchange have to appear in AD if we talking Exchange 2000+ since there is no separate storage for users in Exchange
NEW Veeam Agent for Microsoft Windows

Backup and recover physical and cloud-based servers and workstations, as well as endpoint devices that belong to remote users. Avoid downtime and data loss quickly and easily for Windows-based physical or public cloud-based workloads!


Author Comment

ID: 13780013
Had to go to a funeral so haven't done anything els eon this yet. I'm going to do a server swapout tomorrow and have a play with their server tomorrow afternoon.

Will try the search solution first to see if we can find the users - if not will try the F8 solution.


Accepted Solution

joedoe58 earned 750 total points
ID: 13780087
Just a comment about what JBlond suggests, you are aware of that he is suggesting a Active Directory restore. That mean that you need to have a good backup of your system state to be able to perform that.
Can you also explain more what you mean that you see the users in server management but not AD. Do you have Exchange 5.5?

Author Comment

ID: 13857115
Tried the above but ended up having to do a re-install of the server. Thanks for your advice anyway.


Featured Post

What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Numerous times I have been asked this questions that what is it that makes my machine log on so slow, there have been cases where computers took 23 minute exactly after taking password and getting to the desktop. Interesting thing was the fact th…
While rebooting windows server 2003 server , it's showing "active directory rebuilding indices please wait" at startup. It took a little while for this process to complete and once we logged on not all the services were started so another reboot is …
Excel styles will make formatting consistent and let you apply and change formatting faster. In this tutorial, you'll learn how to use Excel's built-in styles, how to modify styles, and how to create your own. You'll also learn how to use your custo…
If you’ve ever visited a web page and noticed a cool font that you really liked the look of, but couldn’t figure out which font it was so that you could use it for your own work, then this video is for you! In this Micro Tutorial, you'll learn yo…

840 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question