Link to home
Start Free TrialLog in
Avatar of IT Guy
IT Guy

asked on

Creating an LDAP server, connect/import AD data into AD LDS and Configuring it to able to query our Domain on the JAMF Pro Cloud Instance over https and ldap ports 443 and 80

So i'm trying to setup an LDAP server that will be allowed to query from JAMF Pro's Cloud Instance. I've installed and made a unique instance for AD LDS on a server that doesn't do Active Directory Domain Services but now i'm stuck on what to do next?

Do i import the ntds.dit file into the AD LDS is there a way to link the AD LDS server to the AD DS server to get the AD information?
How am i proceed from here? Do i need to make new tcp/ldap access rules in the firewall to allow traffic out and into our server?

Whole point is to setup a Server that has LDAP services on it that reflects our Active Directory and is able to translate and make queries on the internet via ports: 80,443,389 and JAMF Pro's port 8389 and our active directory is integrated into the Jamf Pro Cloud Instance.
NJNYMDT.png
ldifde--i.png
Avatar of Peter Hutchison
Peter Hutchison
Flag of United Kingdom of Great Britain and Northern Ireland image

It is possible to sync AD LDS and ADDS domain but you need to configure your AD LDS with schema changes to accept the types of objects e.g. users to sync between them and then use a tool called AdamSync.exe to perform the sync of data from ADDS to AD LDS.

See these articles:
https://windorks.wordpress.com/2014/09/02/syncing-lds-to-ad-ds/
https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/cc770408%28v%3dws.10%29
Avatar of IT Guy
IT Guy

ASKER

Yes thanks so much, @ Peter Hutchison i was going to do the above. Quick question how do you perform the schema changes on the AD LDS and how do you see what your current Schema is on the ADDS?
Avatar of IT Guy

ASKER

@Peter Hutchison THanks i'm just following the step by step guide it answered my question
Avatar of IT Guy

ASKER

@Peter Hutchison ok i'm following the step by step guide and i'm on step 5 where i have to update the schema and i'm getting a hiccup on the target dn name where i want to sync data to njnymdt server. Is my naming convention wrong or is there somethign i need to add to the xml portion to continue along?
Errors-on-Ref-Line-on-XML.png
XML-doc.png
PC-Name.png
Server-Name-in-Servermanager.png
This question needs an answer!
Become an EE member today
7 DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform.
View membership options
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.