Creating an LDAP server, connect/import AD data into AD LDS and Configuring it to able to query our Domain on the JAMF Pro Cloud Instance over https and ldap ports 443 and 80

IT Guy
IT Guy used Ask the Experts™
on
So i'm trying to setup an LDAP server that will be allowed to query from JAMF Pro's Cloud Instance. I've installed and made a unique instance for AD LDS on a server that doesn't do Active Directory Domain Services but now i'm stuck on what to do next?

Do i import the ntds.dit file into the AD LDS is there a way to link the AD LDS server to the AD DS server to get the AD information?
How am i proceed from here? Do i need to make new tcp/ldap access rules in the firewall to allow traffic out and into our server?

Whole point is to setup a Server that has LDAP services on it that reflects our Active Directory and is able to translate and make queries on the internet via ports: 80,443,389 and JAMF Pro's port 8389 and our active directory is integrated into the Jamf Pro Cloud Instance.
NJNYMDT.png
ldifde--i.png
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®
Peter HutchisonSenior Network Systems Specialist

Commented:
It is possible to sync AD LDS and ADDS domain but you need to configure your AD LDS with schema changes to accept the types of objects e.g. users to sync between them and then use a tool called AdamSync.exe to perform the sync of data from ADDS to AD LDS.

See these articles:
https://windorks.wordpress.com/2014/09/02/syncing-lds-to-ad-ds/
https://docs.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/cc770408%28v%3dws.10%29

Author

Commented:
Yes thanks so much, @ Peter Hutchison i was going to do the above. Quick question how do you perform the schema changes on the AD LDS and how do you see what your current Schema is on the ADDS?

Author

Commented:
@Peter Hutchison THanks i'm just following the step by step guide it answered my question

Author

Commented:
@Peter Hutchison ok i'm following the step by step guide and i'm on step 5 where i have to update the schema and i'm getting a hiccup on the target dn name where i want to sync data to njnymdt server. Is my naming convention wrong or is there somethign i need to add to the xml portion to continue along?
Errors-on-Ref-Line-on-XML.png
XML-doc.png
PC-Name.png
Server-Name-in-Servermanager.png

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial