Download presentation
Presentation is loading. Please wait.
Published byMervyn Chandler Modified over 9 years ago
1
11 UPGRADING AND MIGRATING TO WINDOWS SERVER 2003 Chapter 12
2
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20032 UPGRADE OR MIGRATE Clean installation Upgrade Migrate Clean installation Upgrade Migrate
3
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20033 FROM WINDOWS NT 4.0 TO WINDOWS SERVER 2003 Upgrading Preparing to upgrade Upgrading the PDC Upgrading any BDCs Completing post-upgrade tasks Migrating Upgrading Preparing to upgrade Upgrading the PDC Upgrading any BDCs Completing post-upgrade tasks Migrating
4
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20034 PREPARING TO UPGRADE Set up a test environment. Document the existing environment. Back up your data. Ensure all Windows NT 4.0 versions are running service pack 5.0 or later. Set up a test environment. Document the existing environment. Back up your data. Ensure all Windows NT 4.0 versions are running service pack 5.0 or later.
5
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20035 ADDITIONAL UPGRADE PREPARATIONS Verify hardware meets requirements winnt32 /checkupgradeonly Microsoft Web site Prepare DNS environment Plan to create a new zone Delegate DNS zone, if necessary NS record for new zone Host record (glue record) Verify hardware meets requirements winnt32 /checkupgradeonly Microsoft Web site Prepare DNS environment Plan to create a new zone Delegate DNS zone, if necessary NS record for new zone Host record (glue record)
6
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20036 LAN MANAGER REPLICATION Used to propagate read-only information. Typically user profiles and logon scripts to backup domain controllers (BDCs) May be used to copy other information to other servers and workstations Lbridge.cmd is used to copy files from Windows Server 2003 domain controllers to the Windows NT 4.0 export server. The export server copies to all remaining import servers on the Windows NT 4.0 domain. Used to propagate read-only information. Typically user profiles and logon scripts to backup domain controllers (BDCs) May be used to copy other information to other servers and workstations Lbridge.cmd is used to copy files from Windows Server 2003 domain controllers to the Windows NT 4.0 export server. The export server copies to all remaining import servers on the Windows NT 4.0 domain.
7
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20037 WINDOWS SERVER 2003 MEMBER SERVERS You can add or upgrade member servers before you upgrade the Windows NT 4.0 domain. Upgrade any Windows NT 4.0 RAS servers. Windows NT 4.0, RAS servers make NULL sessions. If you must support Windows NT 4.0 RAS, you must weaken security. You can add or upgrade member servers before you upgrade the Windows NT 4.0 domain. Upgrade any Windows NT 4.0 RAS servers. Windows NT 4.0, RAS servers make NULL sessions. If you must support Windows NT 4.0 RAS, you must weaken security.
8
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20038 UPGRADING THE PDC Domain structures: Single-domain strategy Multi-domain strategy Upgrade the PDC of the largest accounts’ domain first. Domain structures: Single-domain strategy Multi-domain strategy Upgrade the PDC of the largest accounts’ domain first.
9
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 20039 A. DATUM CORPORATION’S WINDOWS NT 4.0 NETWORK
10
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200310 A. DATUM CORPORATION’S WINDOWS SERVER 2003 DOMAIN
11
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200311 MIGRATING EXTERNAL RESOURCES Source Domains Trust the Target Domain
12
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200312 UPGRADE PROCESS
13
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200313 MIGRATION TYPES Interforest Intraforest Interforest Intraforest
14
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200314 INTERFOREST MIGRATION Windows NT 4.0 to Active Directory Between two different Active Directory forests Cloning is usually the process for this type of migration Active Directory Migration Tool (ADMT) ClonePrincipal Netdom Windows NT 4.0 to Active Directory Between two different Active Directory forests Cloning is usually the process for this type of migration Active Directory Migration Tool (ADMT) ClonePrincipal Netdom
15
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200315 INTRAFOREST MIGRATION Does not include Windows NT 4.0 domains Windows 2000 or Windows Server 2003 domains only Objects are typically moved (destructive) ADMT Movetree Netdom Does not include Windows NT 4.0 domains Windows 2000 or Windows Server 2003 domains only Objects are typically moved (destructive) ADMT Movetree Netdom
16
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200316 ACTIVE DIRECTORY MIGRATION TOOL (ADMT) ADMIGRATION.MSI Windows Server 2003 CD-ROM in the i386\admt folder Microsoft Web site Run from PDC emulator Source domain Windows NT 4.0 Service Pack 4 (SP4) Target domain in Windows 2000 native functional level ADMIGRATION.MSI Windows Server 2003 CD-ROM in the i386\admt folder Microsoft Web site Run from PDC emulator Source domain Windows NT 4.0 Service Pack 4 (SP4) Target domain in Windows 2000 native functional level
17
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200317 PREPARING TO USE ADMT Source domain must trust the target domain Source Domain Admins must be Administrators on destination domain Migrating SID History Domain$$$ group Success and Failure auditing for user and group management must be enabled on source domain TcpipClientSupport key must be set to 1 Source domain must trust the target domain Source Domain Admins must be Administrators on destination domain Migrating SID History Domain$$$ group Success and Failure auditing for user and group management must be enabled on source domain TcpipClientSupport key must be set to 1
18
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200318 ADMT AND MIGRATING SID HISTORY
19
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200319 PASSWORD OPTIONS AND MIGRATION ERRORS
20
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200320 PASSWORD MIGRATION PROCEDURES
21
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200321 MULTI-DOMAIN DOMAIN STRATEGY
22
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200322 MULTI-DOMAIN STRATEGY STEPS Create a Windows Server 2003 empty forest root domain. Modify the domain and forest function levels. Create delegation entries in DNS, as needed. Upgrade the Windows NT 4.0 PDC. Create delegation entries for BDCs and upgrade them. Create a Windows Server 2003 empty forest root domain. Modify the domain and forest function levels. Create delegation entries in DNS, as needed. Upgrade the Windows NT 4.0 PDC. Create delegation entries for BDCs and upgrade them.
23
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200323 MULTI-DOMAIN STRATEGY STEPS (continued) Raise domain functional level. Upgrade remaining domains using same procedure. Raise forest functional level. Raise domain functional level. Upgrade remaining domains using same procedure. Raise forest functional level.
24
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200324 PREPARING WINDOWS 2000 FOR THE UPGRADE Error message appears if you do not first run Adprep before a Windows 2000 upgrade Adprep /forestprep Adprep /domainprep Error message appears if you do not first run Adprep before a Windows 2000 upgrade Adprep /forestprep Adprep /domainprep
25
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200325 UPGRADING TO WINDOWS SERVER 2003 Either Windows 2000 or Windows NT 4.0 operating systems Required user rights Back up files and directories Modify firmware environment values Restore files and directories Shut down the system Default Administrator and Administrators group should have all needed permissions Either Windows 2000 or Windows NT 4.0 operating systems Required user rights Back up files and directories Modify firmware environment values Restore files and directories Shut down the system Default Administrator and Administrators group should have all needed permissions
26
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200326 WINDOWS 2000 TO WINDOWS SERVER 2003 Can be interforest or intraforest. Prerequisites for using ADMT. Administrator rights are required on all objects to be migrated Must also be a Domain Admins group member in both source and target domain Source domain must trust the target domain As discussed earlier, there are additional requirements for migrating passwords and SID History. Can be interforest or intraforest. Prerequisites for using ADMT. Administrator rights are required on all objects to be migrated Must also be a Domain Admins group member in both source and target domain Source domain must trust the target domain As discussed earlier, there are additional requirements for migrating passwords and SID History.
27
Chapter 12: UPGRADING AND MIGRATING TO WINDOWS SERVER 200327 SUMMARY Upgrade or migration decisions. Test and document before you begin. What functional level is required for migrations? What can you use to keep a Windows NT 4.0 domain replication in sync with a partially migrated network? What are the extra requirements for migrating SID History? How do you prepare a Windows 2000 forest/ domain for upgrade? Upgrade or migration decisions. Test and document before you begin. What functional level is required for migrations? What can you use to keep a Windows NT 4.0 domain replication in sync with a partially migrated network? What are the extra requirements for migrating SID History? How do you prepare a Windows 2000 forest/ domain for upgrade?
Similar presentations
© 2025 SlidePlayer.com. Inc.
All rights reserved.