none
Migrating resources to non trusted forest

    Question

  • Hello Guys,

    I have a case where I have to migrate users, workstation, mailboxes, citrix apps and other thick apps to a non trusted forest.

    Requirement-

    1. Users must be migrated in batch.

    2. Migrated users must b able to access non migrated apps

    3. Non migrated users must be able to access migrated apps.

    4. There should be no trust.

    Please suggest right approach to follow for this migration.

    Thanks

    Himanshu


    https://www.udemy.com/mastering-dns-on-windows-server-2012-r2/?couponCode=code100 MCTS|MCSE|MCSA:Messaging|CCNA

    Tuesday, March 7, 2017 9:22 AM

All replies

  • Hi

     You can export objects from source domain then import target domain with Ldifde without trust,check the article;

    https://technet.microsoft.com/en-us/library/cc816781%28v=ws.10%29.aspx?f=255&MSPPError=-2147217396

    But migrated users could not access resources without trust.


    This posting is provided AS IS with no warranties or guarantees,and confers no rights. Best regards Burak Uğur

    Tuesday, March 7, 2017 10:06 AM
  • Hello Burak,

    I am aware of export and import but I need a solution that can perfectly meet my requirement. What are the ways through which I can provide access across forest? Through account sync or something?


    https://www.udemy.com/mastering-dns-on-windows-server-2012-r2/?couponCode=code100 MCTS|MCSE|MCSA:Messaging|CCNA

    Tuesday, March 7, 2017 10:32 AM
  • You may look to MIM;

    https://www.microsoft.com/en-us/cloud-platform/microsoft-identity-manager


    This posting is provided AS IS with no warranties or guarantees,and confers no rights. Best regards Burak Uğur

    Tuesday, March 7, 2017 10:59 AM
  • Hi Himanshu,It is actually possible to perform the migration without the trust in place - for some options refer to https://social.technet.microsoft.com/Forums/windows/en-US/b835a5b9-3963-4ea4-8f55-19160f97d4d1/active-directory-migration-without-trust?forum=winserverDS

    The challenge becomes in regard to application access - however, this is application dependent and would need to be evaluated on the case by case basis

    hth
    Marcin

    Tuesday, March 7, 2017 12:31 PM
  • Hi,

    Just checking in to see if the information provided was helpful. Please let us know if you would like further assistance.

    Best Regards,

    Alvin Wang


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Monday, March 13, 2017 9:22 AM
    Moderator