Jump to content

azureusnation

Members
  • Posts

    99
  • Joined

  • Last visited

Everything posted by azureusnation

  1. First just to let you know best practice for a domain name is . a domain that you own. .local and .internal could eventually be registered as a TLD (top level domain). Any way, just use ADMT to migrate your machines over, it is stupidly simple and if you still have users in your old domain just set a group policy setting on your new domain that points the new domain computers to use users from the old domain: https://support.microsoft.com/en-us/help/2908796/using-gpos-to-change-default-logon-domain-name-in-the-logon-screen And also this one to allow group policies to go cross forest: https://social.technet.microsoft.com/Forums/en-US/ac99a522-7a50-48fc-8784-1f8b44a614c8/can-group-policy-apply-onto-other-forest-users-in-my-domain-?forum=winserverDS Then you can relax and just migrate your users over really easily. Once you have them in the new domain with their sid history, remove the two GP's ive said and then they will use the new domain to logon with and as you have the sid history they will still be able to access the files and folders that they used to before the domain migration. Any questions hit me up, I'm migrating 1600 users at the moment so I know what its like. Thanks Ash
  2. I take it you were on prem and then migrated to 365. What outlook version are you using, what on prem vs of exchange did you have and also what web filtering do you use? If you can answer all of these I should be able to help. Thanks Ash
  3. Sounds like some of your exclusion/inclusion filters are incorrect. Make sure they are fine then do as it says, run a sync job. Thanks Ash
  4. Okay, easy and straight forward solution here. On your Office 365 Tenant open up Security & Compliancy Centre. Head over to Search & Investigate -> eDiscovery. Create a new case and search your users and select all Emails. Then just Hit the download button and follow the instructions. After that you'll have a pst, pop that on a cd and encrypt and password protect and give that to her to her and let her take it to the new academy IT team to upload. Or even easier, get her to login to a Outlook client on mac or PC. MAke sure that all contect is kept offline so it will download the full mailbox, then file, export pst. Save that and then put that on a CD, encrypt and give that to her to give to the new academy IT team. Thanks Ash
  5. Hello there, I done this in October 2017. It was great fun. I done your second option. All schools still have their own domains and also dir sync/AD Connect is working absolutely fine across all domains. Now comes my greatest feet yet and that is migrating all domains in to one. We have all computers migrated but now just group policies and users and then its live cannot wait. But to answer your question better, when I migrated I had to do it with no external 3rd party products, I had no budget for tools so I had the super difficult route but it worked great. My steps if I remember all of them were as follow: 1. Disabled AD Connect as this takes a few hours to completely disable on each tenant You can do all these steps whilst waiting for AD Connect to completely finish disabling 2. Download all email accounts via Compliance and Security Centre. Downloaded to separate psts. 3. Because the psts that you export are in a stupid format i had to write a powershell script to open the pst in outlook and move and delete some of the folders so it would import correctly in to the tenant again. 4. Now Security Centre requires you to create a .csv for uploading .pst again and importing I made this whilst my powershell script was running. These steps need to be done after AD Connect is disabled. 5. Another powershell script this time to remove your current domains from the old tenant. You need to do this or you cant add the domains to the other tenant. 6. Add your domains to the new tenant. 7. Enable AD Connect and add your other AD Domains if you have any more. This will then mean you have one AD Connect that is linked to the MAT Tenant. It will then create the Office 365 accounts in the MAT tenant with the correct email address. 8 Last but by no means least upload all of your .psts to office 365. 9. The last horrible step, people that have office 365 emails on their phones and outlook will need to recreate the profile as it would have the wrong information for office 365. Please contact me if you need any help.
  6. To all you BYODers out there i found so rather interesting stuff... In a webinar back in december the presenter said that certain networks can be configured to disable https decryption and there for not have to install the cert on every device. Ive though of a simple solution to this, create new vlan, new dhcp scope and push proxy pac through dhcp, set netsweeper to disable https decryption on the new ip address range. I havent migrated yet but i am on tuesday but if anyone can confirm if this would work/does work that would be grand. @RobMason do you know the answer? Thanks Ash
  7. Hi Rob, Spot on. I had anonymous authentication enabled. Thanks Ash
  8. Hi All, We're migrating in the easter break and we have a more complex setup than any ive seen on here so i hope @SchoolsBroadband / @RobMason could quickly answer this. We have 4 Windows Domains that we are currently migrating in to one. We have 4 schools hence 4 domains. But we only want to run one IIS server to serve all of the requests in the cloud. Now we have all of that set up including our WPAD and PROXY.PAC and when installing the Netsweeper auth portal i didnt specify a override domain as we have multiple but when we test the authportal/whoami it doesnt bring up the username nor domain name. Have i done something wrong or is this normal until we have a portal id etc? Responce from anyone would be appreciated. Thanks
  9. Hi Guys, We need a email filtering solution hbat will be better at detecting E Safety events instead of exchange having a word list. What do you guys do or use? Thanks Ash
  10. Progress Update I did come across an artical online this morning regarding the issues im facing and it may help you in the future as well: https://social.technet.microsoft.com/Forums/en-US/7737e9b6-f5f3-4fbe-a9a3-0fdb3e134713/dpm-2016-ur2-files-fail-to-synchronize-but-log-file-is-empty?forum=dataprotectionmanager We run deduplication on the servers that are having issues and only just thought about this this morning. Sure enough Microsoft have admitted there is a bug with scdpm and deduplicated volumes that for us in DPM 2016 will be fixed in UR4... when ever that will be. There is also an update going to be published for 2012R2 DPM. I'll let you know how i get on with un deduplicating a server to see if that fixes the issues.
  11. Well after another 29 hours, got this message from the job of one of the servers: Type: Consistency check Status: Completed Description: The job completed successfully with the following warning: An unexpected error occurred while the job was running. (ID 104 Details: Cannot create a file when that file already exists (0x800700B7)) More information End time: 11/10/2017 18:48:11 Start time: 10/10/2017 13:11:02 Time elapsed: 29:37:08 Data transferred: 91,417.04 MB Cluster node - Source details: D:\ Protection group members: 1 Details Protection group: REDACTED Items scanned: 585683 Items fixed: 121972 This is soo annoying... And as soon as I try to do a Syncronization: Type: Synchronization Status: Failed Description: The replica of Volume D:\ on REDACTED is not consistent with the protected data source. (ID 91) More information End time: 11/10/2017 18:55:41 Start time: 11/10/2017 18:55:34 Time elapsed: 00:00:06 Data transferred: 0 MB Cluster node - Source details: D:\ Protection group members: 1 Details Protection group: REDACTED
  12. Evening All, Having a few issues with DPM at the moment backing up servers. I currently have two servers that no matter what I try or do always have a inconsistent replica on their D drive. Its starting to make me go crazy as we moved from Backup Exec to this thinking it would be an upgrade and a darn lot cheaper with also getting the whole system centre suite for the same cost. Both servers are 2012 R2 except DPM server on 2016 and have the latest agent installed along with windows backup. All of the VSS Writers never error and when I run a manual backup on the server with wbadmin from command prompt it all works fine. Their coming up after a consistency check stating it has completed with an unexpected error of the following: An unexpected error occurred while the job was running. (ID 104 Details: Cannot create a file when that file already exists (0x800700B7)) I've googled and googled and fine no one with this issue nor a solution. Any help will be greatly appreciated. Thanks Ashley
  13. Hi Vicky, What 2012 r2 rollup are you on? You need to be on at least rollup 10 to upgrade to 2016. Also I've PM'd you regarding a DPM issue I am having. Azure
  14. I wish Nick would put it on to GitHub though or something as codeplex is closing...
  15. I don't know why but some time ago I remember seeing nick post a post about no longer continuing the HAP+ project. I was wondering if this could be confirmed or atleast someone put my mind at ease. My Trust is currently looking for software for emote access nd this obviously ticks all of the boxes but we wanted to make sure that there will still be improvements made and bugs squashed before we roll this out to all schools in the Trust. Thanks in advance.
×
×
  • Create New...