Solved

Exchange 2010, Server 2008

Posted on 2013-07-01
8
249 Views
Last Modified: 2013-09-16
A rabid user with administrative rights was "cleaning up ADUC" and decided that the server named "EMAIL" wasn't important.  He deleted it from the domain (using ADUC tool).  This is an Exchange 2010 server (not a DC), the only one on the domain.  Looking for the best/fastest way for getting this back up and running/joined and integrated again?
0
Comment
Question by:pbenningfield
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 2
8 Comments
 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 39290969
I presume the user has been fired? If not that should be your first step.

This isn't going to be an easy restore, because you have lost the link between AD and the server. Do you have a backup of the domain that you can restore? I don't think just adding the machine back to the domain is going to work.

Personally there is only one thing I would do here - and that is call Microsoft support (ideally using the culprit's credit card). This is one of those things that you need to get right first time and any bumbling around will decrease the chances of a successful restore. Get Microsoft to do it right, do it first time and that will be the best chance you have.

Otherwise you are looking at a lot of work, building a new Exchange server, then restoring the databases to a recovery database and generally adding everything back in again.

Simon.
0
 
LVL 2

Author Comment

by:pbenningfield
ID: 39291023
Thanks Sembee, calling Microsoft was my next step.... Not my user to fire, but I hope something is done.
0
 
LVL 2

Author Comment

by:pbenningfield
ID: 39291296
Quick question-- where can I find auditing on this action?  I need to prove that this was done, and when.
0
SharePoint Admin?

Enable Your Employees To Focus On The Core With Intuitive Onscreen Guidance That is With You At The Moment of Need.

 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 39291422
Did you have auditing enabled? If not then it isn't logged. If it was, then it should be on one of the domain controllers.

Simon.
0
 
LVL 2

Author Comment

by:pbenningfield
ID: 39291429
Thanks Simon-- I did, but it doesn't go back that far.  Something as destructive as that should be logged anyway, just my 2 cents.  THANKS, ON CALL BACK WITH MICROSOFT, will advise. :-)
0
 

Expert Comment

by:nilesh9869
ID: 39291525
0
 
LVL 2

Accepted Solution

by:
pbenningfield earned 0 total points
ID: 39310912
Hi folks, thanks for the suggestions, I called Microsoft and for the first time my call was "lost" in their call volume. I called back, nagged, emailed, called again, reminded them it was a system down emergency and still nothing for two days.  I finally resolved it myself using AD recycle bin, using this article, then dropping the .local from the domain name (quick trick to try and force it to re-establish the trust.  Also instrumental
as well was this, and manually rekeying all of the attributes (referencing another server that was setup similiarly to figure out which attributes were required) after reading this reference. Last thing was to put the server object back into the correct membership groups, (exchange domain servers, exchange enterprise servers, exchange trusted subsystem, etc.).  Once all this was done, rebooted the server, the services started and all but iphones synchronization was up and running.  Readded/confirmed info in iphones, and things are back to normal.
0
 
LVL 2

Author Closing Comment

by:pbenningfield
ID: 39495672
This fixed it.
0

Featured Post

Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to resolve IMCEAEX NDRs in Exchange or Exchange Online related to invalid X500 addresses.
This article outlines the process to identify and resolve account lockout in an Active Directory environment.
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
This video shows how to quickly and easily add an email signature for all users on Exchange 2016. The resulting signature is applied on a server level by Exchange Online. The email signature template has been downloaded from: www.mail-signatures…

730 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question