Expiring Today—Celebrate National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

what is the best way to export prod AD and all objects including GPOs to the test lab for testing?

Posted on 2014-12-10
6
Medium Priority
?
109 Views
Last Modified: 2014-12-14
what is the best way to export prod AD and all objects including GPOs to the test lab for testing?

Could you please let me know the possible scenarios such as coping AD database, using scripts, etc What are the best way to export AD into the isolated lab for testing the restructure. Thank you very much.
0
Comment
Question by:claudiamcse
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 2
6 Comments
 
LVL 37

Expert Comment

by:Neil Russell
ID: 40492633
take a backup of the AD server and restore it to a Virtual machine in an isolated network that can not connect to anything AT ALL.
You now have an exact copy of your AD server.  No real way to copy it in any other form really.
0
 

Author Comment

by:claudiamcse
ID: 40492780
What back up do you recommend so that it restores AD database with all GPOs?
0
 
LVL 37

Expert Comment

by:Neil Russell
ID: 40493617
Depends on where you are going to restore it to.
You could just use a windows server backup,  you could do a P2V migration, you can use ANY BACKUP SOFTWARE that will do a barebones recovery onto new hardware or into a Virtual machine if thats what you are doing.

If you backup and restore the AD Controller just be 100% sure that it can NOT talk on the same network as your normal computers and AD controllers.  That would be a disaster.
0
Introducing the WatchGuard 420 Access Point

WatchGuard's newest access point includes an 802.11ac Wave 2 chipset, providing the fastest speeds for VoIP, video and music streaming, and large data file transfers. Additionally, enjoy the benefits of strong security as the 3rd radio delivers dedicated WIPS protection!

 
LVL 37

Expert Comment

by:Neil Russell
ID: 40493623
Is your current DC a physical server or on VMWare/Hyper-V?
0
 

Author Comment

by:claudiamcse
ID: 40494643
THank you! Our DC is VMware esxi. Also, would it back up and restore all GPOs with ALL its links?

GPOs and links are most important in our case since we are doing GPOs consolidation and restructure.

Please let me know if by restoring from backup would recreate all GPOs and links in the test lab.

Also, unfortunately we will be utilizing a computer joined to the workgroup with VMs running on it. Will it work in this scenario?
0
 
LVL 37

Accepted Solution

by:
Neil Russell earned 2000 total points
ID: 40494665
If you clone the vm and then set it up with a different virtual NIC BEFORE you ever power it on, making sure that that virtual network has NO connection at all to your actual live network you are done.
A full back up and restore will include everything, including gpo but best would be to Clone the vm

Just remember to change it to a seep rate network before you first power it on.
0

Featured Post

Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Had a business requirement to store the mobile number in an environmental variable. This is just a quick article on how this was done.
Compliance and data security require steps be taken to prevent unauthorized users from copying data.  Here's one method to prevent data theft via USB drives (and writable optical media).
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

719 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question