Active Directory Cleanup

Dear Expert,

We have windows 2003 Active Directory in one forest.
Please let us know how often we should perform AD clean up and how to do it.
If we upgrade to windows 2008 AD, is the procedure the same.

Thanks,

Charlie Chen
chencharlie1Asked:
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

x
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

George KhairallahCTOCommented:
Depends what you mean by "Cleanup" ...
If you're talking about inactive user and things of that nature, there are a lot of different methods, and products to do this. There is one that I particularly like called AD Tiday : http://www.cjwdev.co.uk/Software/ADTidy/Info.html 

Look at the website, and see if this would do what you're looking to do ...
Brian PiercePhotographerCommented:
You need to do a metadata cleanup in AD 2003 if you remove a DC without demoting it first - if it fails for example.
In 2008 AD there is no need to do this - deleting the computer account from AD performs an automatic cleanup
chencharlie1Author Commented:
Dear Experts:
Thanks for your valuable input.
If we are moving the Domain Controller to the new facility (in different Subnet), what is the right procedure to move DC?  Some of our existing users (about 100 users) are moving to the new facility and some of them (about another 100 users) are staying where they are now?

Regards,

Charlie
robdlCommented:
In this scenario (assuming you have multiple Domain Controllers), it seems best to gracefully demote the DC (all roles will transfer automatically to the anothher DC), move it to the new location, reload the OS and promote it back to a DC. It is important that you name it differently than it's previous NETBIOS name.

You can reload the OS as 2008 and run it in 2003 Domain mode until you are ready to upgrade.

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows Server 2008

From novice to tech pro — start learning today.