Migration Proposel

...s we installed Server 2000 and then ran DCPROMO to promote it to its own domain. We then made sure it could see the Toledo servers by forwarding DNS traffic though the Toledo DNS server. After all DC’s were communicating we used ADMT to migrate Dayton’s AD directory structure over to the main Acme.local domain. We migrated all user and group accounts over to the Toledo DC’s. Once the migration process was completed and Toledo had all of Dayton’s users and groups we ran DCPROMO again to demote to Dayton DC. After demotion we ran DCPROMO again to promote and added Dayton to the Acme.local domain. To make sure all DC’s were talking to each other we used DNS forwarding on the Toledo and Dayton DC’s. We forwarded each of them to each other. Organizational Unit Configuration Since all users and groups were migrated over during the upgrade process we moved straight to the design of the OU’s. There were 3 main groups of users and domain/global security groups. First we created an OU for each: Toledo, Dayton, and Corp. Under each of those departments there were other users and groups. This is the OU structure used: CORP: IT services Executive Services Human Resources Legal Services Toledo: Sales Dept. Inside Sales Outside Sales Engineering Dept. Manufacturing Dept Dayton: Sales Dept. Inside Sales Outside Sales Engineering Dept. Manufacturing Dept Group Policy One of the main focuses of Acme Machine was security, mainly password security. To standardize password security a GPO object was created for the entire domain. This is used to put all users on the same policy. We set password enforcement to 10, minimum password length was set to 8 characters, minimum password age was set to 30 days and maximum password age was set to 45 days. To prevent intruders from using brute force attacks to get users passwords we also instituted Account lockout policies. We set the account lockout duration to 30 minutes, account lockout threshold was set to 3 attempts and the account lockout counter wasn’t reset until 30 minutes. Acme Machine wanted all users to have the same desktop for each department. We used group policy to achieve this. We setup folders for each department containing the desktop icons that were suppose to be used by each department. To keep users from changing their desktops we hid the background, appearance, settings, and screensaver tab. We also disabled the changing of wallpaper. Certain other changes were also made. We removed the start menu and disabled any taskbar changes. The command prompt and the regedit.exe program were also disabled. Application Installation Acme Machine wanted to have software automatically installed for each department, location, and as a whole. We used group policy to set ...

Essay Information


Words: 874
Pages: 3.5
Rating: None

All Papers Are For Research And Reference Purposes Only. You must cite our web site as your source.