Home > Ask the Windows Server Experts > Archive: Microsoft Active Directory Questions & Answers > Duplicating Windows 2000 domain as Windows 2003 test environment
Ask The Windows Server Expert: Questions & Answers
EMAIL THIS

Duplicating Windows 2000 domain as Windows 2003 test environment

Paul Hinsberg EXPERT RESPONSE FROM: Paul Hinsberg

Pose a Question
Other Windows Server Categories
Meet all Windows Server Experts
Become an Expert for this site


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


>
QUESTION POSED ON: 13 November 2004
We have a Windows 2000 domain in place with Exchange 2000. We would like to duplicate this domain into Windows 2003 including all the mailboxes in a test environment. We have about 20,000 OUs and account combine. What is the best way to approach this?

>
There are at least a couple of options.
You could do a backup and a restore
If you have the same hardware in the test domain and the test network is isolated from the production network, you can just restore the system from a backup. Everything will be there and you will be ready to go. It's good to practice an AD restore once in a while. Once it is restored, you can upgrade the systems to Windows 2003. After the upgrade you would likely want to elevate the domain function to Windows 2003 Native. You would of course, do a backup and restore of the Exchange server as well.
You could build the test servers in production and move them to the lab.
You would build your Windows 2000 server and promote it to being a DC in the production directory. Then, you could power it off and move it to the lab. In this way you have a copy of the AD in the lab that matches production at some point in time. You will need to perform some specific steps to clean up residual issues with this type of operation. First, you will need to clean the production AD of any remnants of the AD server you moved to the lab. You are cleaning an orphaned object from the AD. Otherwise the remaining domain controllers will get caught up into trying to replicate to a server that is not there. This is a manual process but is well documented: http://support.microsoft.com/kb/216498

In the test lab you will need to seize all of the FSMO roles for the directory. Remember the test network and the production network CANNOT be connected to one another. You can do a similar operation with Exchange. You can see though that in any complex type of environment, this becomes complex. If you are only testing AD and not Exchange this isn't a bad way to go. Option 1 is still best.
Recreate Domain objects
You can build your Windows 2003 system and use LDIFDE.exe to export and import the objects. While this will roughly reproduce the objects you are not likely to get an environment that is truly in line with the production.

Paul Hinsberg

Additional Expert Help:
Be sure to check our Answer FAQ for more expert advice.
For faster answers, visit ITKnowledge Exchange.


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



RELATED CONTENT
Archive: Microsoft Active Directory
Creating user home directories on a Windows 2003 network
Changing NTDS links with Active Directory
Can I add a Win2003 Server to an NT4 domain without AD?
Filtering workstation logon events to log only user activity
Error of event ID 7031 when attempting to move mailboxes
Finding the creation date of objects
Backward checking permission for groups in Active Directory
Child domains not finding global catalog
How can I configure user profiles on a Windows 2000 Server?
Changing domain controller names in Windows 2000 Server

Microsoft Active Directory Replication
Tracking a deleted Active Directory object's replication status
How to build redundancy in Active Directory replication
Bad external time source stops Active Directory replication
Unwinding USN rollback when faced with AD replication failure
Solving Active Directory replication failure
ReplMon still tops for troubleshooting Active Directory replication
Active Directory Replication Guide
Understanding DFSR for easy configuration of Active Directory replication groups
Distributed File System feature prioritizes target servers in Active Directory
Case Study: How to force immediate Active Directory replication for all core sites

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice



Windows Server Solutions - Intel Hardware Solutions
HomeTopicsBlogsITKnowledge ExchangeTipsNewsMultimediaWhite PapersIT Downloads
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2004 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts