Domain Controller Cross Forest migration Part 1

&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2528 " id&equals;"quads-ad2528" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;<p>In this series of articles I will demonstrate the Cross forest migration for Microsoft Windows Active directory 2012 R2&period;<&sol;p>&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2525 " id&equals;"quads-ad2525" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2531 " id&equals;"quads-ad2531" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2522 " id&equals;"quads-ad2522" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;&NewLine;&NewLine;&NewLine;<p>Before starting any step&comma; I will have to do a revision for the current environment and check what is there&comma; what can be migrated and what can not be&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<h2 class&equals;"wp-block-heading"><strong>Revisions&colon;<&sol;strong><&sol;h2>&NewLine;&NewLine;&NewLine;&NewLine;<ol class&equals;"wp-block-list"><li>Check if the environment is using an old cryptographic algorithms that&&num;8217&semi;s not supported during the migration &period;e&period;g&period; &lpar;SHA-1 1024bit Certification authorities&rpar;&period;<&sol;li><li>Notice that Group Policy user profile folder redirection might have a bug from SCCM&period; To fix this the SCCM needs to be checked for one option needs to be disabled<&sol;li><li>Under the SCCM Configuration manager&comma;<&sol;li><&sol;ol>&NewLine;&NewLine;&NewLine;&NewLine;<p>&&num;8211&semi; Select Administration<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>&&num;8211&semi; Select Client Settings<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>&&num;8211&semi; Pull up PROPERTIES of Default Client Settings configuration and click on Compliance Settings<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>From &lt&semi;<a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Fblogs&period;technet&period;com&percnt;2Fb&percnt;2Faskds&percnt;2Farchive&percnt;2F2013&percnt;2F12&percnt;2F13&percnt;2Fan-update-for-admt-and-a-few-other-things-too&period;aspx&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNE-iN3sv084A2spKTMvkgoR5mIfZg" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">http&colon;&sol;&sol;blogs&period;technet&period;com&sol;b&sol;askds&sol;archive&sol;2013&sol;12&sol;13&sol;an-update-for-admt-and-a-few-other-things-too&period;aspx<&sol;a>&gt&semi;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>&&num;8211&semi; Enable User Data and Profiles mentioned above is the setting which drives the control of Folder Redirection and Remote User Profiles&period; <&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>The above configuration by Default is set to NO&period; Once enabled &lpar;set to YES&rpar;&comma; it passes the control of Folder Redirection&comma; Offline Files&comma; and Remote User Profiles to WMI and stores this configuration under the registry path&colon; HKEY&lowbar;LOCAL&lowbar;MACHINE&bsol;SOFTWARE&bsol;Microsoft&bsol;Windows&bsol;CurrentVersion&bsol;UserState&bsol;UserStateTechnologies&bsol;ConfigurationControls<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>TCP&sol;IP crashes and errors&colon; Hotfix released to correct a crash in TCP&sol;IP&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<h2 class&equals;"wp-block-heading">Ref&colon;<&sol;h2>&NewLine;&NewLine;&NewLine;&NewLine;<p><a href&equals;"http&colon;&sol;&sol;blogs&period;technet&period;com&sol;b&sol;askds&sol;archive&sol;2013&sol;12&sol;13&sol;an-update-for-admt-and-a-few-other-things-too&period;aspx">http&colon;&sol;&sol;blogs&period;technet&period;com&sol;b&sol;askds&sol;archive&sol;2013&sol;12&sol;13&sol;an-update-for-admt-and-a-few-other-things-too&period;aspx<&sol;a><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<h2 class&equals;"wp-block-heading"><strong>Hardware Requirements<&sol;strong><&sol;h2>&NewLine;&NewLine;&NewLine;&NewLine;<ol class&equals;"wp-block-list"><li>Windows 2008 R2 DC on the destination forest&period;<&sol;li><li>Windows 2012 R2 ADMT and SQL express 2008 R2 or 2012 R2 express or full&period;<&sol;li><&sol;ol>&NewLine;&NewLine;&NewLine;&NewLine;<p>Reference&colon;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><a href&equals;"https&colon;&sol;&sol;support&period;microsoft&period;com&sol;en-us&sol;kb&sol;2753560">https&colon;&sol;&sol;support&period;microsoft&period;com&sol;en-us&sol;kb&sol;2753560<&sol;a><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<h2 class&equals;"wp-block-heading"><strong>Software Requirements<&sol;strong><&sol;h2>&NewLine;&NewLine;&NewLine;&NewLine;<p>1- Rights Management Services Analyzer Tool<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p> From &lt&semi;<a href&equals;"http&colon;&sol;&sol;www&period;google&period;com&sol;url&quest;q&equals;http&percnt;3A&percnt;2F&percnt;2Fwww&period;microsoft&period;com&percnt;2Fen-us&percnt;2Fdownload&percnt;2Fdetails&period;aspx&percnt;3Fid&percnt;3D46437&amp&semi;sa&equals;D&amp&semi;sntz&equals;1&amp&semi;usg&equals;AFQjCNFqbNE-X3Wzj7pKrUEUjUxeKxX9sg" target&equals;"&lowbar;blank" rel&equals;"noreferrer noopener">http&colon;&sol;&sol;www&period;microsoft&period;com&sol;en-us&sol;download&sol;details&period;aspx&quest;id&equals;46437<&sol;a>&gt&semi;<&sol;p>&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2526 " id&equals;"quads-ad2526" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;&NewLine;&NewLine;&NewLine;<h2 class&equals;"wp-block-heading"><strong>RMS Analyzer provides the following features&colon;<&sol;strong><&sol;h2>&NewLine;&NewLine;&NewLine;&NewLine;<p>• Support for Azure RMS and AD RMS diagnostics<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>• Prerequisite checks for Azure RMS integration &lpar;such as any required hotfixes&comma; registry key settings&comma; Microsoft Online Sign-In Assistant&rpar;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>• Ability to collect trace logs to capture real-time problems<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>• Diagnostics and remediation for Office 2013 and Office 2010<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>• Basic diagnostics for federation services<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>• Group membership check&comma; based on groups and policy templates<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>• Display of your RMS configuration settings and verification tests to validate service health for RMS<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>• Ability to monitor multiple servers and find all RMS servers in trusted forests<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>By installing and using the software you accept the License terms which are located in the zip folder download&period; If you do not accept the terms&comma; do not install or use the software&period;<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>2- Password Export Server &lpar;PES&rpar; – x64<&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p><a href&equals;"http&colon;&sol;&sol;www&period;microsoft&period;com&sol;en-us&sol;download&sol;details&period;aspx&quest;id&equals;46437">http&colon;&sol;&sol;www&period;microsoft&period;com&sol;en-us&sol;download&sol;details&period;aspx&quest;id&equals;46437<&sol;a><&sol;p>&NewLine;&NewLine;&NewLine;&NewLine;<p>3- Active Directory Migration Tool &lpar;ADMT&rpar; QFE – x86<&sol;p>&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2527 " id&equals;"quads-ad2527" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;&NewLine;&NewLine;&NewLine;<p><a href&equals;"https&colon;&sol;&sol;connect&period;microsoft&period;com&sol;site1164&sol;content&sol;content&period;aspx&quest;ContentID&equals;30561&amp&semi;IsDraft&equals;False>&&num;8220&semi;>https&colon;&sol;&sol;connect&period;microsoft&period;com&sol;site1164&sol;content&sol;content&period;aspx&quest;ContentID&equals;30561&amp&semi;IsDraft&equals;False&gt&semi;<&sol;a><&sol;p>&NewLine;&NewLine;<&excl;-- WP QUADS Content Ad Plugin v&period; 2&period;0&period;92 -->&NewLine;<div class&equals;"quads-location quads-ad2524 " id&equals;"quads-ad2524" style&equals;"float&colon;none&semi;margin&colon;0px 3px 3px 3px&semi;padding&colon;0px 0px 0px 0px&semi;" data-lazydelay&equals;"0">&NewLine;&NewLine;<&sol;div>&NewLine;&NewLine;

moh10ly

Recent Posts

Reset passwords for Active Directory Users

Reset and manage your Active Directory users' Passwords Active Directory is one of the most…

3 years ago

Finding Exchange Database hidden mailboxes. ​

Finding Exchange Database hidden mailboxes. Story:Maybe you have been in this situation before, trying to…

3 years ago

Setting up ADConnect and PTA (Password auth through) servers agents behind proxy

If you're using a Proxy server in your firewall or in your network and have…

3 years ago

Get Report of Active Directory Locked Accounts and Machine they logged in from

Story:I got some clients  that have reported some of their users being locked out and…

3 years ago

Checking and Providing Full and SendAs delegate access on O365 Exchange Online

Delegate Permissions This is a code that I have wrote recently to check if an…

3 years ago

Retrieving attachments from Exchange mailbox using python

Story: I got a request from a client who constantly gets CVs and have to…

4 years ago

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298

Warning: Undefined array key "adsense_ad_type" in /www/wwwroot/www.moh10ly.com/wp-content/plugins/quick-adsense-reloaded/includes/amp-condition-display.php on line 298