Presentation is loading. Please wait.

Presentation is loading. Please wait.

11 UPGRADING AND MIGRATING TO WINDOWS SERVER 2003 Chapter 12.

Similar presentations


Presentation on theme: "11 UPGRADING AND MIGRATING TO WINDOWS SERVER 2003 Chapter 12."— Presentation transcript:

1 11 UPGRADING AND MIGRATING TO WINDOWS SERVER 2003 Chapter 12

2 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20032 UPGRADE OR MIGRATE  Clean installation  Upgrade  Migrate  Clean installation  Upgrade  Migrate

3 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20033 FROM WINDOWS NT 4.0 TO WINDOWS SERVER 2003  Upgrading  Preparing to upgrade  Upgrading the PDC  Upgrading any BDCs  Completing post-upgrade tasks  Migrating  Upgrading  Preparing to upgrade  Upgrading the PDC  Upgrading any BDCs  Completing post-upgrade tasks  Migrating

4 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20034 PREPARING TO UPGRADE  Set up a test environment.  Document the existing environment.  Back up your data.  Ensure all Windows NT 4.0 versions are running service pack 5.0 or later.  Set up a test environment.  Document the existing environment.  Back up your data.  Ensure all Windows NT 4.0 versions are running service pack 5.0 or later.

5 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20035 ADDITIONAL UPGRADE PREPARATIONS  Verify hardware meets requirements  winnt32 /checkupgradeonly  Microsoft Web site  Prepare DNS environment  Plan to create a new zone  Delegate DNS zone, if necessary  NS record for new zone  Host record (glue record)  Verify hardware meets requirements  winnt32 /checkupgradeonly  Microsoft Web site  Prepare DNS environment  Plan to create a new zone  Delegate DNS zone, if necessary  NS record for new zone  Host record (glue record)

6 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20036 LAN MANAGER REPLICATION  Used to propagate read-only information.  Typically user profiles and logon scripts to backup domain controllers (BDCs)  May be used to copy other information to other servers and workstations  Lbridge.cmd is used to copy files from Windows Server 2003 domain controllers to the Windows NT 4.0 export server.  The export server copies to all remaining import servers on the Windows NT 4.0 domain.  Used to propagate read-only information.  Typically user profiles and logon scripts to backup domain controllers (BDCs)  May be used to copy other information to other servers and workstations  Lbridge.cmd is used to copy files from Windows Server 2003 domain controllers to the Windows NT 4.0 export server.  The export server copies to all remaining import servers on the Windows NT 4.0 domain.

7 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20037 WINDOWS SERVER 2003 MEMBER SERVERS  You can add or upgrade member servers before you upgrade the Windows NT 4.0 domain.  Upgrade any Windows NT 4.0 RAS servers.  Windows NT 4.0, RAS servers make NULL sessions.  If you must support Windows NT 4.0 RAS, you must weaken security.  You can add or upgrade member servers before you upgrade the Windows NT 4.0 domain.  Upgrade any Windows NT 4.0 RAS servers.  Windows NT 4.0, RAS servers make NULL sessions.  If you must support Windows NT 4.0 RAS, you must weaken security.

8 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20038 UPGRADING THE PDC  Domain structures:  Single-domain strategy  Multi-domain strategy  Upgrade the PDC of the largest accounts’ domain first.  Domain structures:  Single-domain strategy  Multi-domain strategy  Upgrade the PDC of the largest accounts’ domain first.

9 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20039 A. DATUM CORPORATION’S WINDOWS NT 4.0 NETWORK

10 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200310 A. DATUM CORPORATION’S WINDOWS SERVER 2003 DOMAIN

11 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200311 MIGRATING EXTERNAL RESOURCES Source Domains Trust the Target Domain

12 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200312 UPGRADE PROCESS

13 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200313 MIGRATION TYPES  Interforest  Intraforest  Interforest  Intraforest

14 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200314 INTERFOREST MIGRATION  Windows NT 4.0 to Active Directory  Between two different Active Directory forests  Cloning is usually the process for this type of migration  Active Directory Migration Tool (ADMT)  ClonePrincipal  Netdom  Windows NT 4.0 to Active Directory  Between two different Active Directory forests  Cloning is usually the process for this type of migration  Active Directory Migration Tool (ADMT)  ClonePrincipal  Netdom

15 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200315 INTRAFOREST MIGRATION  Does not include Windows NT 4.0 domains  Windows 2000 or Windows Server 2003 domains only  Objects are typically moved (destructive)  ADMT  Movetree  Netdom  Does not include Windows NT 4.0 domains  Windows 2000 or Windows Server 2003 domains only  Objects are typically moved (destructive)  ADMT  Movetree  Netdom

16 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200316 ACTIVE DIRECTORY MIGRATION TOOL (ADMT)  ADMIGRATION.MSI  Windows Server 2003 CD-ROM in the i386\admt folder  Microsoft Web site  Run from PDC emulator  Source domain Windows NT 4.0 Service Pack 4 (SP4)  Target domain in Windows 2000 native functional level  ADMIGRATION.MSI  Windows Server 2003 CD-ROM in the i386\admt folder  Microsoft Web site  Run from PDC emulator  Source domain Windows NT 4.0 Service Pack 4 (SP4)  Target domain in Windows 2000 native functional level

17 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200317 PREPARING TO USE ADMT  Source domain must trust the target domain  Source Domain Admins must be Administrators on destination domain  Migrating SID History  Domain$$$ group  Success and Failure auditing for user and group management must be enabled on source domain  TcpipClientSupport key must be set to 1  Source domain must trust the target domain  Source Domain Admins must be Administrators on destination domain  Migrating SID History  Domain$$$ group  Success and Failure auditing for user and group management must be enabled on source domain  TcpipClientSupport key must be set to 1

18 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200318 ADMT AND MIGRATING SID HISTORY

19 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200319 PASSWORD OPTIONS AND MIGRATION ERRORS

20 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200320 PASSWORD MIGRATION PROCEDURES

21 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200321 MULTI-DOMAIN DOMAIN STRATEGY

22 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200322 MULTI-DOMAIN STRATEGY STEPS  Create a Windows Server 2003 empty forest root domain.  Modify the domain and forest function levels.  Create delegation entries in DNS, as needed.  Upgrade the Windows NT 4.0 PDC.  Create delegation entries for BDCs and upgrade them.  Create a Windows Server 2003 empty forest root domain.  Modify the domain and forest function levels.  Create delegation entries in DNS, as needed.  Upgrade the Windows NT 4.0 PDC.  Create delegation entries for BDCs and upgrade them.

23 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200323 MULTI-DOMAIN STRATEGY STEPS (continued)  Raise domain functional level.  Upgrade remaining domains using same procedure.  Raise forest functional level.  Raise domain functional level.  Upgrade remaining domains using same procedure.  Raise forest functional level.

24 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200324 PREPARING WINDOWS 2000 FOR THE UPGRADE  Error message appears if you do not first run Adprep before a Windows 2000 upgrade  Adprep /forestprep  Adprep /domainprep  Error message appears if you do not first run Adprep before a Windows 2000 upgrade  Adprep /forestprep  Adprep /domainprep

25 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200325 UPGRADING TO WINDOWS SERVER 2003  Either Windows 2000 or Windows NT 4.0 operating systems  Required user rights  Back up files and directories  Modify firmware environment values  Restore files and directories  Shut down the system  Default Administrator and Administrators group should have all needed permissions  Either Windows 2000 or Windows NT 4.0 operating systems  Required user rights  Back up files and directories  Modify firmware environment values  Restore files and directories  Shut down the system  Default Administrator and Administrators group should have all needed permissions

26 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200326 WINDOWS 2000 TO WINDOWS SERVER 2003  Can be interforest or intraforest.  Prerequisites for using ADMT.  Administrator rights are required on all objects to be migrated  Must also be a Domain Admins group member in both source and target domain  Source domain must trust the target domain  As discussed earlier, there are additional requirements for migrating passwords and SID History.  Can be interforest or intraforest.  Prerequisites for using ADMT.  Administrator rights are required on all objects to be migrated  Must also be a Domain Admins group member in both source and target domain  Source domain must trust the target domain  As discussed earlier, there are additional requirements for migrating passwords and SID History.

27 Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200327 SUMMARY  Upgrade or migration decisions.  Test and document before you begin.  What functional level is required for migrations?  What can you use to keep a Windows NT 4.0 domain replication in sync with a partially migrated network?  What are the extra requirements for migrating SID History?  How do you prepare a Windows 2000 forest/ domain for upgrade?  Upgrade or migration decisions.  Test and document before you begin.  What functional level is required for migrations?  What can you use to keep a Windows NT 4.0 domain replication in sync with a partially migrated network?  What are the extra requirements for migrating SID History?  How do you prepare a Windows 2000 forest/ domain for upgrade?


Download ppt "11 UPGRADING AND MIGRATING TO WINDOWS SERVER 2003 Chapter 12."

Similar presentations


Ads by Google