ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Exchange 2016 Install Issue

    IT Discussion
    7
    59
    3.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G I JonesG
      G I Jones @Dashrender
      last edited by

      And if you have so few machines that you don't mind rejoining them all - then really - Just start over. There is Zero benefit to sticking with an AD that has any potential to have problems.

      My point is that rolling back the AD to when I first built it, (pre Exchange) would both be starting over and give me the peace of mind that it’s a fresh server with no potential problems.

      scottalanmillerS 1 Reply Last reply Reply Quote 0
      • G I JonesG
        G I Jones @Dashrender
        last edited by G I Jones

        I have 120 PCs in my environment - I would never want to roll back AD and have to run around like a chicken with my head cut off rejoining those to my domain.

        I hear you on this, as I’ve got a bit more than that to deal with myself in terms of numbers. Wouldn’t I have to do that anyways if making a new AD? I feel like the process would be the same save a time change.

        scottalanmillerS 1 Reply Last reply Reply Quote 0
        • scottalanmillerS
          scottalanmiller @Dashrender
          last edited by

          @Dashrender said in Exchange 2016 Install Issue:

          @G-I-Jones said in Exchange 2016 Install Issue:

          @Dashrender said in Exchange 2016 Install Issue:

          @G-I-Jones said in Exchange 2016 Install Issue:

          @JaredBusch please elaborate.

          AD is extremely time sensitive. By default, a domain joined PC who's time is off more than 5 mins from the AD server, can not authenticate because the server will think it's being attacked.

          Computers also generate their own passwords for connectivity to AD - and they update these passwords completely autonomously. So any machine that has updated to a new password since your snapshot, would no longer work on the domain.

          There is a process for restoring an old version of AD into a network - but it is rather complex (and something I've never done or seen done).

          I literally just rolled back my AD/DC a week ago. The process was very smooth. You just change the time and Boot/re-add every machine to the domain. The latter being the most timely, but it’s really easy.

          That’s my experience at least.

          I have 120 PCs in my environment - I would never want to roll back AD and have to run around like a chicken with my head cut off rejoining those to my domain.

          Local admin account, PowerShell, SSH.... five minutes to fix 😉

          G I JonesG DashrenderD 2 Replies Last reply Reply Quote 0
          • scottalanmillerS
            scottalanmiller @G I Jones
            last edited by

            @G-I-Jones said in Exchange 2016 Install Issue:

            And if you have so few machines that you don't mind rejoining them all - then really - Just start over. There is Zero benefit to sticking with an AD that has any potential to have problems.

            My point is that rolling back the AD to when I first built it, (pre Exchange) would both be starting over and give me the peace of mind that it’s a fresh server with no potential problems.

            Jumping in late, but is that better than starting over from scratch?

            DashrenderD G I JonesG 2 Replies Last reply Reply Quote 0
            • scottalanmillerS
              scottalanmiller @G I Jones
              last edited by

              @G-I-Jones said in Exchange 2016 Install Issue:

              I have 120 PCs in my environment - I would never want to roll back AD and have to run around like a chicken with my head cut off rejoining those to my domain.

              I hear you on this, as I’ve got a bit more than that to deal with myself in terms of numbers. Wouldn’t I have to do that anyways if making a new AD? I feel like the process would be the same save a time change.

              Oh yeah, starting over either way. For sure.

              1 Reply Last reply Reply Quote 0
              • G I JonesG
                G I Jones @scottalanmiller
                last edited by

                @scottalanmiller said in [Exchange

                Local admin account, PowerShell, SSH.... five minutes to fix 😉

                I need that script

                scottalanmillerS 1 Reply Last reply Reply Quote 0
                • scottalanmillerS
                  scottalanmiller @G I Jones
                  last edited by

                  @G-I-Jones said in Exchange 2016 Install Issue:

                  @scottalanmiller said in [Exchange

                  Local admin account, PowerShell, SSH.... five minutes to fix 😉

                  I need that script

                  Do you already have a local admin account on each machine that is working and SSH enabled?

                  G I JonesG 1 Reply Last reply Reply Quote 0
                  • scottalanmillerS
                    scottalanmiller
                    last edited by

                    Also, something like SaltStack or Ansible would enable this.

                    1 Reply Last reply Reply Quote 0
                    • DashrenderD
                      Dashrender @scottalanmiller
                      last edited by

                      @scottalanmiller said in Exchange 2016 Install Issue:

                      @Dashrender said in Exchange 2016 Install Issue:

                      @G-I-Jones said in Exchange 2016 Install Issue:

                      @Dashrender said in Exchange 2016 Install Issue:

                      @G-I-Jones said in Exchange 2016 Install Issue:

                      @JaredBusch please elaborate.

                      AD is extremely time sensitive. By default, a domain joined PC who's time is off more than 5 mins from the AD server, can not authenticate because the server will think it's being attacked.

                      Computers also generate their own passwords for connectivity to AD - and they update these passwords completely autonomously. So any machine that has updated to a new password since your snapshot, would no longer work on the domain.

                      There is a process for restoring an old version of AD into a network - but it is rather complex (and something I've never done or seen done).

                      I literally just rolled back my AD/DC a week ago. The process was very smooth. You just change the time and Boot/re-add every machine to the domain. The latter being the most timely, but it’s really easy.

                      That’s my experience at least.

                      I have 120 PCs in my environment - I would never want to roll back AD and have to run around like a chicken with my head cut off rejoining those to my domain.

                      Local admin account, PowerShell, SSH.... five minutes to fix 😉

                      True enough. Assuming remote powershell is enabled - which I'm pretty sure it's not by default.

                      scottalanmillerS 1 Reply Last reply Reply Quote 0
                      • DashrenderD
                        Dashrender @scottalanmiller
                        last edited by

                        @scottalanmiller said in Exchange 2016 Install Issue:

                        @G-I-Jones said in Exchange 2016 Install Issue:

                        And if you have so few machines that you don't mind rejoining them all - then really - Just start over. There is Zero benefit to sticking with an AD that has any potential to have problems.

                        My point is that rolling back the AD to when I first built it, (pre Exchange) would both be starting over and give me the peace of mind that it’s a fresh server with no potential problems.

                        Jumping in late, but is that better than starting over from scratch?

                        Exactly! what is this pre-exchange restore point? frankly, unless that was yesterday, why do you still have that?

                        1 Reply Last reply Reply Quote 0
                        • G I JonesG
                          G I Jones @scottalanmiller
                          last edited by

                          My point is that rolling back the AD to when I first built it, (pre Exchange) would both be starting over and give me the peace of mind that it’s a fresh server with no potential problems.

                          Jumping in late, but is that better than starting over from scratch?

                          For arguments sake I would say they’re the same. But I’m gonna want to upgrade it to 2016 realistically (currently 2012).

                          Still having same issues as before the swap from H330 to H730P So I’m currently unable to build anything VM wise that’s worth a damn.. I’m sure it’s user error. Going to keep reading.

                          DashrenderD scottalanmillerS 2 Replies Last reply Reply Quote 0
                          • DashrenderD
                            Dashrender @G I Jones
                            last edited by

                            @G-I-Jones said in Exchange 2016 Install Issue:

                            My point is that rolling back the AD to when I first built it, (pre Exchange) would both be starting over and give me the peace of mind that it’s a fresh server with no potential problems.

                            Jumping in late, but is that better than starting over from scratch?

                            For arguments sake I would say they’re the same. But I’m gonna want to upgrade it to 2016 realistically (currently 2012).

                            Still having same issues as before the swap from H330 to H730P So I’m currently unable to build anything VM wise that’s worth a damn.. I’m sure it’s user error. Going to keep reading.

                            What's the issue? performance?

                            G I JonesG 1 Reply Last reply Reply Quote 0
                            • DashrenderD
                              Dashrender
                              last edited by

                              Going home I'll look at this more there. 🙂

                              1 Reply Last reply Reply Quote 0
                              • G I JonesG
                                G I Jones @scottalanmiller
                                last edited by

                                @scottalanmiller said in Exchange 2016 Install Issue:

                                @G-I-Jones said in Exchange 2016 Install Issue:

                                @scottalanmiller said in [Exchange

                                Local admin account, PowerShell, SSH.... five minutes to fix 😉

                                I need that script

                                Do you already have a local admin account on each machine that is working and SSH enabled?

                                I’d have to look into the SSH part, but yea.

                                scottalanmillerS 1 Reply Last reply Reply Quote 0
                                • G I JonesG
                                  G I Jones @Dashrender
                                  last edited by G I Jones

                                  @Dashrender said in Exchange 2016 Install Issue:

                                  @G-I-Jones said in Exchange 2016 Install Issue:

                                  My point is that rolling back the AD to when I first built it, (pre Exchange) would both be starting over and give me the peace of mind that it’s a fresh server with no potential problems.

                                  Jumping in late, but is that better than starting over from scratch?

                                  For arguments sake I would say they’re the same. But I’m gonna want to upgrade it to 2016 realistically (currently 2012).

                                  Still having same issues as before the swap from H330 to H730P So I’m currently unable to build anything VM wise that’s worth a damn.. I’m sure it’s user error. Going to keep reading.

                                  What's the issue? performance?

                                  Pretty much. I built about 12 versions with different configurations today and not one of them was strong enough to open a text document that had one line of text in less than 30 seconds. Resource Manager Disk I/O writes are spiking like crazy.

                                  I feel like it’s a BIOS/RAID setting or something. I’m honestly feeling my way through the dark at this point as I dont know a lot about RAID stuff other than memorizing the RAID levels.

                                  scottalanmillerS 1 Reply Last reply Reply Quote 0
                                  • scottalanmillerS
                                    scottalanmiller @Dashrender
                                    last edited by

                                    @Dashrender said in Exchange 2016 Install Issue:

                                    @scottalanmiller said in Exchange 2016 Install Issue:

                                    @Dashrender said in Exchange 2016 Install Issue:

                                    @G-I-Jones said in Exchange 2016 Install Issue:

                                    @Dashrender said in Exchange 2016 Install Issue:

                                    @G-I-Jones said in Exchange 2016 Install Issue:

                                    @JaredBusch please elaborate.

                                    AD is extremely time sensitive. By default, a domain joined PC who's time is off more than 5 mins from the AD server, can not authenticate because the server will think it's being attacked.

                                    Computers also generate their own passwords for connectivity to AD - and they update these passwords completely autonomously. So any machine that has updated to a new password since your snapshot, would no longer work on the domain.

                                    There is a process for restoring an old version of AD into a network - but it is rather complex (and something I've never done or seen done).

                                    I literally just rolled back my AD/DC a week ago. The process was very smooth. You just change the time and Boot/re-add every machine to the domain. The latter being the most timely, but it’s really easy.

                                    That’s my experience at least.

                                    I have 120 PCs in my environment - I would never want to roll back AD and have to run around like a chicken with my head cut off rejoining those to my domain.

                                    Local admin account, PowerShell, SSH.... five minutes to fix 😉

                                    True enough. Assuming remote powershell is enabled - which I'm pretty sure it's not by default.

                                    No, but you could have pushed it out when management was still centralized.

                                    1 Reply Last reply Reply Quote 0
                                    • scottalanmillerS
                                      scottalanmiller @G I Jones
                                      last edited by

                                      @G-I-Jones said in Exchange 2016 Install Issue:

                                      My point is that rolling back the AD to when I first built it, (pre Exchange) would both be starting over and give me the peace of mind that it’s a fresh server with no potential problems.

                                      Jumping in late, but is that better than starting over from scratch?

                                      For arguments sake I would say they’re the same. But I’m gonna want to upgrade it to 2016 realistically (currently 2012).

                                      Still having same issues as before the swap from H330 to H730P So I’m currently unable to build anything VM wise that’s worth a damn.. I’m sure it’s user error. Going to keep reading.

                                      Personally, even though I know 120 accounts sucks, I'd lean to scorched earth and start over, completely from scratch. Rebuild everything as 2019, take your lumps and accept that the benefit is a pristine, new environment. Sucks, but has a silver lining.

                                      1 Reply Last reply Reply Quote 1
                                      • scottalanmillerS
                                        scottalanmiller @G I Jones
                                        last edited by

                                        @G-I-Jones said in Exchange 2016 Install Issue:

                                        @scottalanmiller said in Exchange 2016 Install Issue:

                                        @G-I-Jones said in Exchange 2016 Install Issue:

                                        @scottalanmiller said in [Exchange

                                        Local admin account, PowerShell, SSH.... five minutes to fix 😉

                                        I need that script

                                        Do you already have a local admin account on each machine that is working and SSH enabled?

                                        I’d have to look into the SSH part, but yea.

                                        SSH is off by default. Without that, maybe PowerShell Remoting will work? You need something to let you on each machine individually to run things.

                                        G I JonesG 1 Reply Last reply Reply Quote 0
                                        • scottalanmillerS
                                          scottalanmiller @G I Jones
                                          last edited by

                                          @G-I-Jones said in Exchange 2016 Install Issue:

                                          I feel like it’s a BIOS/RAID setting or something. I’m honestly feeling my way through the dark at this point as I dont know a lot about RAID stuff other than memorizing the RAID levels.

                                          New thread for that. But something seems wrong there, even hosed RAID should be really fast for basic operations.

                                          G I JonesG 1 Reply Last reply Reply Quote 1
                                          • G I JonesG
                                            G I Jones @scottalanmiller
                                            last edited by G I Jones

                                            @scottalanmiller said in Exchange 2016 Install Issue:

                                            @G-I-Jones said in Exchange 2016 Install Issue:

                                            I feel like it’s a BIOS/RAID setting or something. I’m honestly feeling my way through the dark at this point as I dont know a lot about RAID stuff other than memorizing the RAID levels.

                                            New thread for that. But something seems wrong there, even hosed RAID should be really fast for basic operations.

                                            We’ll pick this up here:

                                            https://mangolassi.it/topic/21106/esxi-6-7-troubleshooting/77

                                            1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 3 / 3
                                            • First post
                                              Last post