Hello, I am looking to move off the Server 2003 R2 platform onto 2008.
The old Active Directory is very basic, lots of things not working properly, currently only using one site whereas we have 3 branches and 1 HQ. We also have no OUs setup.
It seems it would be best to just build up AD on the server 2008 box that is new hardware side by side. I will probably be importing the users at least, the groups are messed up and we will be switching to a role based access setup in the near future.
What would be the best way to do this? Has anyone else done something similar? Some ideas tossed around were to join the 2008 server to the domain, replicate, then demote the 2003, but that gets all the old stuff, which I do not want, but would be easiest solution. Another solution I suppose is to create a different domain, setup trusts between new and old, then migrate. That also isn't the greatest, but I am not sure. We are a highly operational network and need the highest uptime possible.
I can swing having to disjoin computers from old domain and join them to new domain probably, provided that is really fast.
What is best practice? What is the best solution?
Thanks in advance