Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
?
Solved

Export Groups from old AD (windows 2000) and import into Windows 2012 AD

Posted on 2015-01-23
3
Medium Priority
?
350 Views
Last Modified: 2015-01-23
hi guys

I'm transferring people from an old system on to a new one.

The old domain is on Windows 2000 and I wanted to know how I could export all of the distribution groups and security that exist there and then have them re-imported into the new AD environment on 2012?

Otherwise it would mean having to go in and create things manually!

Thanks for your help
Yashy
0
Comment
Question by:Yashy
3 Comments
 
LVL 25

Accepted Solution

by:
Mohammed Khawaja earned 1000 total points
ID: 40566081
If you wish to migrate users, groups and potentially passwords then use ADMT (AD Migration Tools) and move objects across domains.

If that is not what you wish to do then you could use LDIFDE or CSVDE utilities to export the required objects.  Refer to following links for more info:

https://technet.microsoft.com/en-ca/library/cc731033.aspx
https://technet.microsoft.com/en-us/library/cc732101.aspx
0
 
LVL 3

Assisted Solution

by:Waddah Dahah
Waddah Dahah earned 1000 total points
ID: 40566085
Hello Yashy,

well you can use the free built-in tool LDIFDE or create a VBScript or a third party tool,

if you want to use LDIFDE tool try the following;

 Export Groups (only groups with members) from Source Domain
a.    Syntax:

ldifde -f c:\LDIFDE_export\export_Groups_WITH_Members.ldf -s <DC NAME> -d "<DOMAIN DN>" -p subtree -r "(&(ObjectCategory=group)(objectClass=group)(name=*)(member=*))" -l "member" -j c:\

Modify Process:
Search / Replace all exported data sets.  Search for old domain name DN and replace with new domain DN.  You will have to "massage" the exported data sets to properly format them so they can be used as the import source data sets.  The LDIFDE export process adds extraneous carriage return line feeds (0d0a) to the data sets.  You will have to remove those with your favorite hex editor.

Import process:

Import Groups members to destination domain
a.      Syntax:

ldifde -i -k -f c:\import\export_Groups_WITH_Members.ldf -s <domaincontroller> -v –j c:\<destinationdir>

Note: All imported users will be disabled.  This process does not import user passwords.  You will want to run a script that will set the flag to force all users to change their passwords upon initial authentication.

Third party tool;

this tool will help you to export the data from AD only.

http://www.dovestones.com/active-directory-export/

I hope this will help.
Waddah.
0
 
LVL 1

Author Closing Comment

by:Yashy
ID: 40566098
Much thanks guys.

I'll go ahead and configure the ADMT server right now!:) Good to know the LDIFDE command too. Cheers
0

Featured Post

Concerto Cloud for Software Providers & ISVs

Can Concerto Cloud Services help you focus on evolving your application offerings, while delivering the best cloud experience to your customers? From DevOps to revenue models and customer support, the answer is yes!

Learn how Concerto can help you.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Compliance and data security require steps be taken to prevent unauthorized users from copying data.  Here's one method to prevent data theft via USB drives (and writable optical media).
A bad practice commonly found during an account life cycle is to set its password to an initial, insecure password. The Password Reset Tool was developed to make the password reset process easier and more secure.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of configuring basic necessities in order to use the 2010 version of Data Protection Manager. These include storage, agents, and protection jobs. Launch Data Protection Manager from the deskt…

564 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question