Yashy
asked on
ADMT - migrating users from old to new domain. Groups not being associated when on new domain
hi guys,
I've set up an ADMT server and have done the following:
1. Set up trust between source and target.
2. set up auditing on both source and target
3. Disabled sid history filtering.
I have migrated groups from the source to the target and ensured I selected the 'migrate SID'...option also.
When I migrate a user from the source, it goes to the target. However, it doesn't have any of the groups associated to it on the source in the target. I've attached the ADMT log file also.
Thanks for helping
Yashy
log-from-ADMT.txt
I've set up an ADMT server and have done the following:
1. Set up trust between source and target.
2. set up auditing on both source and target
3. Disabled sid history filtering.
I have migrated groups from the source to the target and ensured I selected the 'migrate SID'...option also.
When I migrate a user from the source, it goes to the target. However, it doesn't have any of the groups associated to it on the source in the target. I've attached the ADMT log file also.
Thanks for helping
Yashy
log-from-ADMT.txt
ASKER
Yes I have done all of that also.
It is strange though why it migrates groups, users separately, but it won't migrate the actual groups associated to that user.
Could it be permissions related at all?
It is strange though why it migrates groups, users separately, but it won't migrate the actual groups associated to that user.
Could it be permissions related at all?
ASKER
Okay, one issue that I do see. When I go to the built-in Administrators on the source domain, I added the target_domain\administrato r account and it only shows it as a SID rather than a normal logo.
And I get the following:
"Some of the objects names cannot be shown in their user-friendly form.
This can happen if the object is from an external domain and that domain is
not available to translate the object's name"
Administrators.jpg
And I get the following:
"Some of the objects names cannot be shown in their user-friendly form.
This can happen if the object is from an external domain and that domain is
not available to translate the object's name"
Administrators.jpg
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Thank you for writing back.
We literally migrated all of the company with a Windows 2000 source domain to a Windows 2008 R2 target, but using ADMT 3.1.
If I did do that, can I just uninstall 3.2 and install it on the same server without having to reconfigure anything?
We literally migrated all of the company with a Windows 2000 source domain to a Windows 2008 R2 target, but using ADMT 3.1.
If I did do that, can I just uninstall 3.2 and install it on the same server without having to reconfigure anything?
ADMT 3.1 will work, however you need to install it on 2008 member server (non R2)
The PES tool version is not changed (3.1), so you can just generate new PES file from 2008 server and install it on 2000 source DC
Check below article for more info
http://blogs.technet.com/b/askds/archive/2009/10/26/using-admt-3-1-to-migrate-to-windows-server-2008-r2-domains.aspx
The PES tool version is not changed (3.1), so you can just generate new PES file from 2008 server and install it on 2000 source DC
Check below article for more info
http://blogs.technet.com/b/askds/archive/2009/10/26/using-admt-3-1-to-migrate-to-windows-server-2008-r2-domains.aspx
ASKER
I did it again and even though the PES etc and user migration itself works. the groups are not becoming associated to the user on the target domain.
This is using version 3.1 of ADMT.
This is using version 3.1 of ADMT.
I hope you installed ADMT 3.1 on 2008 server only
After you install new ADMT, you need to remigrate all groups again because this new database is empty and it do not contain previous ADMT group migration data
remigrate all groups in merge mode
Ensure you will remigrate them with sid history as well
Then try to migrate users with "Fix users group membership" along with sid history, it will work
After you install new ADMT, you need to remigrate all groups again because this new database is empty and it do not contain previous ADMT group migration data
remigrate all groups in merge mode
Ensure you will remigrate them with sid history as well
Then try to migrate users with "Fix users group membership" along with sid history, it will work
ASKER
It worked after I installed 3.1:)
Thanks again
Thanks again
Take a look at the below link to ensure that all of the steps are similar and that you have not missed anything.
Migrating User with ADMT
Will.