Link to home
Start Free TrialLog in
Avatar of 911bob
911bobFlag for United States of America

asked on

Active Directory seems to be missing.

In the process of migrating SBS2008 to W2012R2 standard.
Was getting close to removing Exchange from SBS (previously moved to cloud), deleted mailboxes from SBS. and Turned off DNS..

But then suddenly the user logged in could not execute any program or do anything (access denied)

I restarted computer and then the Domain admin could not log in and no user could log in.
I restored the SBS2008 to the state the prior morning (when it was working) and still no go.

I am now restoring the new W2012 server to see if that fixes it. If not I will re-install W2012 and add the users back in.

Any ideas what happened.

DHCP and DNS were up and running on the new server, FSMO roles had been transferred and I was getting ready to shut down / remove exchange and demote the machine

Looks like somehow AD lost all user info.. but no idea how or why.
ASKER CERTIFIED SOLUTION
Avatar of SerjTech
SerjTech

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of 911bob

ASKER

I did remove..

Maybe that did it, but wouldn't a restore from prior to "removing" them fix it?
Avatar of 911bob

ASKER

System restore from backup prior to removing mailboxes.
Avatar of SerjTech
SerjTech

Is Active Directory on the same server that you restored?

Also for more information on difference between disable / remove on exchange, good link is:
https://technet.microsoft.com/en-GB/library/jj863434(v=exchg.150).aspx

The primary difference between deleting and disabling a mailbox is that when you disable a mailbox, the Exchange attributes are removed from the corresponding Active Directory user account, but the user account is retained. When you delete a mailbox, both the Exchange attributes and the Active Directory user account are deleted. This difference also determines your options to reconnect or restore disabled and deleted mailboxes.
Hi Bob,

To make sure what is an actual reason behind all this trouble, you need to check few things first like, the server in which you are facing an issue is still maintaining the trust with Domain Controller or not, if not then you need to remove it from domain and rejoin it after login as a local administrator, second thing you need to check the ip addresses which is assigned to trouble network is correct one or not like it is able to communicate with DC? need to check DNS and preferred DNS entries are correct or not, are you able to Ping DC from that server? or vice versa.
Avatar of 911bob

ASKER

But that looks like the root cause..

Any recovery from backup?
Avatar of 911bob

ASKER

Yes AD was on the same server SBS

was in process of migration from SBS to W2012 without Exchange (mail on Office 365). Got to step of removing Exchange, but it needed to have the mailboxes "removed"

And downhill from there.
Avatar of 911bob

ASKER

Reason for the question on restoring AD from Backup (Full System Restore) is that I have started on the W2012 machine (And already done on the SBS2008).

But if it does not work, I would stop it and just re-installl Windows and then create new domain, users etc, etc. There are about 2 hrs to finish restore, but I could get machine setup in about the same time, just have to re-join 10-12 pc's
A restore from a backup should solve your issue.

To be honest, I have little experience of mass recovering AD as luckily never been in that position but you should be good.

Good luck anyway