Solved

How to backup and restore Group Policy links?

Posted on 2009-05-13
4
2,342 Views
Last Modified: 2012-05-06
Hello,

I was wondering if it's somehow possible to backup and restore Group Policy links.
I know how to backup the GPOs using GPMC, but I never found out how to backup also the links - sometimes it might be difficult to remember, where the GPO was originally linked, especially when you have complex AD structure.

Thank you in advance.
Martin
0
Comment
Question by:martin_babarik
  • 2
  • 2
4 Comments
 
LVL 3

Expert Comment

by:a_ro_no
ID: 24377858
The links are stored in the AD Database...
So a system state backup and AD restore would make the job.
0
 
LVL 13

Author Comment

by:martin_babarik
ID: 24377941
Well that's quite clear, but one of the benefits of using GPMC backup and restore is that you don't need to restart the DC to DSRM mode and you can restore GPOs on th fly.
Also when you have multiple DCs on the network the system state recovery wouldn't help, as I'd need to perform the authoritative restore of the links - and the question is "how?".
I suppose those links are stored in AD as objects, but I'm not able to find them - to identify what exactly to be restored.

Martin
0
 
LVL 3

Accepted Solution

by:
a_ro_no earned 250 total points
ID: 24378178
Every container has an Attribute called gplink.
So if you take an ldifde dump of that attribute I guess you could reimport it later.
0
 
LVL 13

Author Closing Comment

by:martin_babarik
ID: 31581130
Yep, it seems that's what I'm looking for.
Thank you very much.
Martin
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
In-place Upgrading Dirsync to Azure AD Connect
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

821 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question