ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Raising Domain/Forest from 2008 to 2016: What do I need to know?

    IT Discussion
    active directory
    7
    47
    2.9k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • scottalanmillerS
      scottalanmiller
      last edited by

      Just important when asking what needs to be known going to 2016 that an existing option, a really major one that can save a lot of money and add a lot of flexibility, will go away by making this specific move.

      ObsolesceO 1 Reply Last reply Reply Quote 0
      • ObsolesceO
        Obsolesce @scottalanmiller
        last edited by Obsolesce

        @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

        Just important when asking what needs to be known going to 2016 that an existing option, a really major one that can save a lot of money and add a lot of flexibility, will go away by making this specific move.

        Yes, that is a very important consideration to be aware of.

        If I were to make a move like that as far as replacing Windows AD with SAMBA, I would prefer to do it in parallel with Windows AD.

        What's the benefit of having Windows Server 2012 R2 servers running AD along with Linux Samba servers?

        Does that allow for seamless migration with no down time for example?

        If not, I'd rather do them in parallel. For example, if running a Windows 2016 AD environment, spin up a Samba server and slowly build it up in parallel to the WinAD.

        Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

        scottalanmillerS 2 Replies Last reply Reply Quote 0
        • scottalanmillerS
          scottalanmiller @Obsolesce
          last edited by

          @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

          Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

          Never tried, but should, as it is just AD. It shouldn't be able to tell that it isn't Windows.

          DashrenderD 1 Reply Last reply Reply Quote 1
          • scottalanmillerS
            scottalanmiller @Obsolesce
            last edited by

            @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

            What's the benefit of having Windows Server 2012 R2 servers running AD along with Linux Samba servers?

            None, I believe.

            1 Reply Last reply Reply Quote 0
            • DashrenderD
              Dashrender @scottalanmiller
              last edited by

              @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

              @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

              Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

              Never tried, but should, as it is just AD. It shouldn't be able to tell that it isn't Windows.

              Well - that depends, does the sync client have to run on a Windows AD server? If not, then you probably can sync a Samba solution to Azure AD.

              scottalanmillerS dbeatoD 2 Replies Last reply Reply Quote 0
              • scottalanmillerS
                scottalanmiller @Dashrender
                last edited by

                @dashrender said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

                Never tried, but should, as it is just AD. It shouldn't be able to tell that it isn't Windows.

                Well - that depends, does the sync client have to run on a Windows AD server? If not, then you probably can sync a Samba solution to Azure AD.

                Last I knew, it wasn't even supposed to run on an AD server 🙂

                DashrenderD dbeatoD 2 Replies Last reply Reply Quote 0
                • DashrenderD
                  Dashrender @scottalanmiller
                  last edited by Dashrender

                  @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                  @dashrender said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                  @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                  @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                  Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

                  Never tried, but should, as it is just AD. It shouldn't be able to tell that it isn't Windows.

                  Well - that depends, does the sync client have to run on a Windows AD server? If not, then you probably can sync a Samba solution to Azure AD.

                  Last I knew, it wasn't even supposed to run on an AD server 🙂

                  aww - I've never used it.. in that case - run it from any other Windows server, and bob's your uncle. If Samba is doing their job right, the sync client won't know the difference.

                  The next question is - does MS have any licensing around the use of the sync client as a gotcha?

                  1 Reply Last reply Reply Quote 0
                  • dbeatoD
                    dbeato @Dashrender
                    last edited by

                    @dashrender said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                    @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                    @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                    Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

                    Never tried, but should, as it is just AD. It shouldn't be able to tell that it isn't Windows.

                    Well - that depends, does the sync client have to run on a Windows AD server? If not, then you probably can sync a Samba solution to Azure AD.

                    You can run it on any Windows server, but the problem with Samba is the password hash doesn't get sync to Azure.
                    https://lists.samba.org/archive/samba/2016-November/204564.html

                    dbeatoD DashrenderD 2 Replies Last reply Reply Quote 0
                    • dbeatoD
                      dbeato @dbeato
                      last edited by

                      @dbeato said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                      @dashrender said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                      @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                      @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                      Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

                      Never tried, but should, as it is just AD. It shouldn't be able to tell that it isn't Windows.

                      Well - that depends, does the sync client have to run on a Windows AD server? If not, then you probably can sync a Samba solution to Azure AD.

                      You can run it on any Windows server, but the problem with Samba is the password hash doesn't get sync to Azure.
                      https://lists.samba.org/archive/samba/2016-November/204564.html

                      BY this I mean, everything works but password synchronization doesn't work same as Server 2008 running the Azure AD sync tool as well.

                      1 Reply Last reply Reply Quote 0
                      • dbeatoD
                        dbeato @scottalanmiller
                        last edited by dbeato

                        @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                        @dashrender said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                        @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                        @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                        Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

                        Never tried, but should, as it is just AD. It shouldn't be able to tell that it isn't Windows.

                        Well - that depends, does the sync client have to run on a Windows AD server? If not, then you probably can sync a Samba solution to Azure AD.

                        Last I knew, it wasn't even supposed to run on an AD server 🙂

                        Yes, it is not supposed to run in an AD server because the app needs SQL Express to work.

                        1 Reply Last reply Reply Quote 0
                        • DashrenderD
                          Dashrender @dbeato
                          last edited by

                          @dbeato said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                          @dashrender said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                          @scottalanmiller said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                          @tim_g said in Raising Domain/Forest from 2008 to 2016: What do I need to know?:

                          Does Samba / Azure AD Sync allow you to Sync back passwords (and/or accounts) from O365 (to Samba)? I've never looked into that.

                          Never tried, but should, as it is just AD. It shouldn't be able to tell that it isn't Windows.

                          Well - that depends, does the sync client have to run on a Windows AD server? If not, then you probably can sync a Samba solution to Azure AD.

                          You can run it on any Windows server, but the problem with Samba is the password hash doesn't get sync to Azure.
                          https://lists.samba.org/archive/samba/2016-November/204564.html

                          That thread is kinda old - I wonder if 4.5 fixed that?

                          1 Reply Last reply Reply Quote 0
                          • 1
                          • 2
                          • 3
                          • 3 / 3
                          • First post
                            Last post