Mixed Environment Physical Win 2008 and Virtualised Win 2012R2 [Where is the Virtualisation Group!]

I am upgrading from a twin physical DC environment on win2008 (not R2) to fully virtualised DCs running 2012R2 on HyperV 2012R2. I know there is a risk running both
DCs on a single box but we don't currently have a choice. The idea is to migrate to 2012R2, then to add in an azure server and demote one of the other two to a single member server. i.e. 2 DCs. one on premise and one on Azure.
However, due to the risk of running the only 2 DCs on a single box, I was thinking perhaps to keep a physical DC on 2008 in the meantime.
I have two questions:
Q1: 2012 and above protect from USN rollback by using VM-GenerationID,
However, if we keep a 2008 DC, will this still work or do the FSMOs need to be raised to 2012 as a minimum for VM-GenerationID to be effective and thus we cannot maintain 2008 servers.
Q2: If I have both DCs on a single host and shutdown the host, the two virtual servers will be saved. I just want to be sure that these will both
come back online safely when the host starts up again and the VMs power back up without me having to shut them down first. (I’m guessing that Virtualisation safe covers this eventuality) I had a USN rollback in the past after accidently leaving the network
cable plugged in after splitting a raid1 and powering up the server to do some disk maintenance! I never want to repeat that!!
Many thanks

Q1: You do not need to raise the functional level od the domain. The hypervisor needs to be a supported one for VM-generation ID to work (Hyper-V 2012 R2 and Vmware esxi 5.1 (I am not very sure of the vmware version)) do support this, of course the schema
has to be upgraded for 2012/R2 domain controllers.
You can keep your 2008 R2, however for the virtual DC clonning you need to have the PDC on windows 2012 or later operating system and another DC to have it as source for clonning.
http://technet.microsoft.com/en-us/library/hh831734.aspx
Q2: The default automatic stop action on hyper-v is to "save" the virtual machine state. Now of course for DC this is no good, but being on a supported VM-generationID hypervisor I think you should be ok (if that happened just for a short
time),although you can set to shutdown guest OS for the VM when hypervisor shutdown.
Hope this helps.
Regards,
Calin 

Similar Messages

  • Remote desktop connection limit in windows 2003 administration as well as in the mixed environment of windows 2003 and 2008 servers

    RDP protocol i.e. Remote desktop connection is configured to perfrom and manage  software administration of ORACLE application and database servers which runs on windows 2003 server.   Two sessions are allowed on each of these servers for database
    administrators. The question is: 
    a) if network administrators who perform window server administration (50+) are included in
    2 sessions limit or do they manage all these servers through Console Session which is separate from the remote desktop connection limits of 2 sessions.  
    b) How is the 2 sessions  limit prescribed by microsoft (more of a licensing limit) handled in the mix environment of windows 2003 and 2008 server where all these servers are managed on the VMWARE?
    avnish sharma

    Hi Avnish,
    Thank you for posting in Windows Server Forum.
    By default any windows server will provide 2 remote session for administration purpose only. No matter which administrator is accessing that server. If you will connect the console session then 3.One server is accessed by 3 Session (console + Remote +
    Remote). When the particular server reached this limit then any working administrator will receive a message to log out as other user trying to access the session or if we had provided the setting then new user is restricted to login.
    If you want more than 2 remote desktop session than you need to purchase TS\RDS CAL, install TS\RD Licensing role, activate it first and then configure CAL on it. There are 2 types of CAL available (USER & DEVICE). You can purchase CAL according to your
    company requirements.
    Hope it helps to understand!
    Thanks.
    Dharmesh Solanki
    TechNet Community Support
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Type the name and password of a user in the "(null)" group to allow this.

    To connect to wifi while in the recovery partition, I'm asked to authenticate the wlan's certificate, and in order to do that I'm asked for "the name and password of a user in the "(null)" group" to make changes to the Certificate Trust Settings. Anyone know what or which user may this be?
    I'm not able to pass from the initial apple screen when I boot, so I wanted to repair or reinstall Lion, but in order to do that I need to connet to the WLAN to download it.

    Hi, I called Apple Support this day, and the answer is that enterprise WPA wireless is NOT supported by Lion Internet Recovery.
    You can find the supported configurations and protocols on Apple site:
    http://support.apple.com/kb/HT4718?viewlocale=en_US

  • Just converted word to PDF so that I can save on iPhone and subsequently use. Where is the file??

    Just converted word to PDF so that I can save on iPhone and subsequently use. Where is the file?? I have no idea where it is!! Extremely frustrating and not at all user friendly!! Took my 6.99 British pounds and not a sausage to be had!!

    It sounds like you may have purchased a CreatePDF subscription through safari, using our web interface. If this is the case, the good news is that subscription will also work with the (free) Adobe Reader. Simply install the Reader from the App Store:
    https://itunes.apple.com/us/app/adobe-reader/id469337564?mt=8
    Once installed, you can then use "Open In" from another app like Mail to open the Word document in Adobe Reader. Reader will show the word doc, but it will also show you a message pointing to the "convert" button (A document with an arrow through it in the toolbar). Pressing this button should prompt you to sign into Acrobat.com. Use the same account you used to purchase your subscription and Reader will upload the word document for conversion, placing it in the Acrobat.com and Outbox section of the Reader. Please let me know if you have trouble!

  • Can I add a WinServer 2012 into a mix child Domain with 2008 and 2003?

    The founctionall level is 2003 and the main domain is mix with 2008 and 2003. The user need the templete of Server 2012 and use the "new" group policy so that they are able to use the "new" feature in windows 8 (which I totally
    do Not think is much useful). I've a plan that join the 2012 server into a child domain as a DC but I don't know if that will cause any problems. Can I do so?
    Thanks all.
    Gary

    @Darren: http://technet.microsoft.com/en-us/library/jj592683.aspx
    For Windows 8 a change to how the TPM owner authorization value is stored in AD DS was implemented in the AD DS schema. The TPM owner authorization value is now stored in a separate object which is linked to the Computer object. This value was stored as
    a property in the Computer object itself for the default Windows Server 2008 R2 schemas.
    To take advantage of this integration, you must upgrade your domain controllers to Windows Server 2012 or extend the Active Directory schema and configure BitLocker-specific Group Policy objects.
    Windows Server 2012 domain controllers have the default schema to backup TPM owner authorization information in the separate object. If you are not upgrading your domain controller to Windows Server 2012 you need to extend the schema to support this change.
    To support Windows 8 computers that are managed by a Windows Server 2003 or Windows 2008 domain controller
    There are two schema extensions that you can copy down and add to your AD DS schema:
    TpmSchemaExtension.ldf 
    This schema extension brings parity with the Windows Server 2012 schema. With this change, the TPM owner authorization information is stored in a separate TPM object linked to the corresponding computer object. Only the Computer object that has created
    the TPM object can update it. This means that any subsequent updates to the TPM objects will not succeed in dual boot scenarios or scenarios where the computer is reimaged resulting in a new AD computer object being created. To support such scenarios, an update
    to the schema was created.
    TpmSchemaExtensionACLChanges.ldf 
    This schema update modifies the ACLs on the TPM object to be less restrictive so that any subsequent operating system which takes ownership of the computer object can update the owner authorization value in AD DS. However, this is less secure as any computer
    in the domain can now update the OwnerAuth of the TPM object (although it cannot read the OwnerAuth) and DOS attacks can be made from within the enterprise. The recommended mitigation in such a scenario is to do regular backup of TPM objects and enable auditing
    to track changes for these objects. 
    To download the schema extensions, see Schema Extensions for Windows Server 2008 R2 to support AD DS backup of TPM information from
    Windows 8 clients.
    If you have a Windows Server 2012 domain controller in your environment, the schema extensions are already in place and do not need to be updated.
    Also, if you check the GPO's in 2012, there are specific templates for Windows8/2012 and specific (legacy) templates for Windows 7.
    MCITP:SA:EA:EMA2010:VA2008R2

  • The + to add a tab is mising and I have no access to the tab grouping. I just downloaded Firefox to a new Win 7 computer.

    I am using a brand new Win 7 computer. I downloaded Firefox expecting it would be just the same as my previous version-8.?
    I have no + on the tab bar to add a new tab.
    Additionally, I loved the tabbed grouping and used it a lot. The set of boxes in the upper right corner to access the grouping page isn't even there.
    To make sure I was getting Firefox without problems, I downloaded it from Firefox. The first time I downloaded it with Google Chrome. I am familiar with the games MS Wins plays with Mozilla.
    Can you help me?

    Hi jb4long,
    You should try starting Firefox in Safe Mode by holding down shift while it is starting. Then you should choose to disable all the add-ons and use the default theme. That should put things back in order.
    You might also want to take a look at [https://support.mozilla.org/en-US/kb/how-do-i-customize-toolbars this article on customizing the toolbar]. You can put the Tab Groups icon in your toolbar or you can access it by hitting ''CTRL + SHIFT + E''
    Hopefully this helps!

  • Mixed environment 10.6.4 and 10.5.8 servers

    We have three Intel Xserves running 10.6.4 Snow Leopard server. One is an open directory master and the other two are replicas. The three servers main duties is AFP/network homes with a mix of other services.
    We have two older PPC G5 Xserves that we replaced with Intel this summer.
    We still want to use the older servers in some capacity. I am still learning, and was not sure about mixing server operating systems.
    If I would add the PPC servers, the 10.5.8 server is the highest operating system we can install. I do not believe, they cannot be OD replicas with 10.6.4 correct?
    So when setting up the old servers, I think there is an option to just add the server to the directory. Is this what I want to do?
    Can I have network homes on the old servers? Would I use WGM on the newer 10.6.4 servers and then point the home folders to the AFP shares on the older servers.
    Will the network homes on the older 10.5.8 servers play nice if the client computer is running Snow Leopard?

    If I would add the PPC servers, the 10.5.8 server is the highest operating system we can install. I do not believe, they cannot be OD replicas with 10.6.4 correct?
    No, they can not be replicas
    So when setting up the old servers, I think there is an option to just add the server to the directory. Is this what I want to do?
    Yes. They become "domain members" much like workstations, but all services are Kerberized, much like connecting a Mac server to AD.
    Can I have network homes on the old servers? Would I use WGM on the newer 10.6.4 servers and then point the home folders to the AFP shares on the older servers.
    Yes. All that is required in AFP and proper domain binding.
    Will the network homes on the older 10.5.8 servers play nice if the client computer is running Snow Leopard?
    Yes. The dependency is AFP. 10.5.8 and 10.6.4 AFP appear to play very nicely together.
    Hope this helps

  • PSE 6 on old XP computer, PSE 9 on new WIn 7 - where are the pictures?

    I am lost.  I had 9000+ pictures on the old computer outboard drive; and others copied onto the new computer (Win XPSP3.)  I am now am on the new computer (WIN7).  I just opened PSE 9 for the first time.  The guide which came with the PSE disc discussed "Catalogues" which I don't see anywhere.  In fact, there's no file>catalogue choice that I can see in Organizer.  The guide instructs how to convert a catalogue.  It makes little sense to me.
    I believe I must re-associate all my old pictures into PSE 9 but am lost in space...
    Sometime ago I had (thought I) had organized my many pictures into folders on the outboard hard drive which now appear, in many cases, empty...???
    Must I put PSE 9 on the old computer? to get the photos off of it and into PSE 9 on the new computer?
    Why won't the files (which DO contain pictures)  I CAN see, open in organizer in the new computer?
    Thanks for any info.  I am feeling really stupid.
    Bob

    http://kb2.adobe.com/cps/402/kb402894.html
    The file paths will be different in the catalog e.g. documents & settings under XP which is not part of W7.
    It’s best to use back-up and restore letting elements work out the appropriate file paths on the new machine.

  • [BB 10 Dev Aplha] Only camera and browser apps on, where's the store ?

    Hello, I received the new BB 10 Alpha, but starting in using it, I didn't found where's the store of apps ! The new phone just shows me two apps: camera and browser, how to get in to the store ?
    Guys, any clue is satisfactory, thanks in advance !

    Hello,
    Calling has been disabled in the BlackBerry Dev Alpha deviced by RIM.
    It's like that for everyone, the only point for inserting a sim card is to get internet for data.
    The Dev Alpha is a testing device and not meant for commercial purposes
    Hope this helps
    If you have an answer to your question then please click “Accept as Solution”
    Click on the LIKE on the bottom right if the post deserves credit.
    BB 8700 -> Bold 9000 -> Curve 8520 -> Bold 9700 -> Curve 9320 -> Bold 9900 -> BlackBerry Z10 + PlayBook 64 GB Wi-Fi

  • If I'm typing an email on an iphone 5 and get a call, where is the email stored... or have I lost it?

    If I'm typing an email on an iphone 5 and get a call (and answer the call), where is the email stored... or have I lost it? Thanks!

    Arrgggh! I figured it was gone, but I hoped there might be some gizmo magic. That really is a flaw you'd think the phone would be better at "multi-tasking" since I'm suing it for both calls and email. Thanks again!

  • Mixed environment of icloud incompatible and compatible devices, and Address Book

    Hello, iCloud is driving me crazy when it comes to Address Book.
    I have a Mac Mini and a Macbook that are running 10.7.2
    I also have an iPad running 5.0.1
    I also have an old iPhone and old iPod Touch that are not iCloud compatible.
    Ideally, I want to sync the iPhone and the iPod Touch on the laptop via the cable to keep my stuff in sync. I would like the iPad to sync over iCloud - and would also like the mac mini to sync over icloud. The laptop is sort of driving.
    Right now iCloud is working between the laptop and the ipad after following these instructions. Probably also working on the Mini but haven't checked.
    https://discussions.apple.com/message/16712296#16712296
    The hard part is the iPod and the iPod Touch.
    Right now they "sync" but the result is that the address book hasn't actually been updated.
    How do I make my other cabled devices sync correctly as well?

    Welcome to the Apple community.
    I can't fully tell from the information you have provided, but I suspect your duplicates resulted from having one set of contacts in your "iCloud "account and another set of contacts in your "on my Mac" account.
    I further suspect that you have then deleted the contacts from your "Icloud "account, and thereby removed them from all devices. You now need to copy the contacts from your "on my Mac" account back to your "iCloud" account and delete the originals from your "on my Mac" account. You can do this by selecting groups, selecting your "on my Mac" group, and then selecting all the contacts within it and dragging them onto your "iCloud " account.
    You might also take a look at this User Tip, to ensure you understand the differences between the different accounts in Address Book before adding the contacts back.

  • Mixed environment with Cisco 3750 and SRW248G4

    Dear Community,
    as mentioned above in the subject field, we are evaluating Linksys for Business products.
    We are using Cisco products (i.e. Cisco WS-C3750G-12S-S) for core networking, due to new investment planning, we are evaluation how to upgrade our access switches.
    In fact, we would like to implement Linksys by Cisco products,  SRW248G4 specific. These devices should be connected over fibre cabling using Linksys by Cisco MGBSX1 optical modules.
    So for these reasons, I have to check, if this design is going to work. May you give any feedback to this?
    Thank you in advance.

    Ni hao Seng,
    Without an understanding of what you are trying to achieve I can however say the following;
    I have used the wonderful SRW platform (SRW2008P) in my network for two years now. I have no difficulty in setting up VLAN tags and trunking to a traditional Cisco equipment.
    Most of the problems I have seen is not understanding how to setup VLANs correctly.  I can appreciate that as VLANs took me a long time to understand.
    I think for the benefit of the good people out there that use this community, I should put together a Video on Demand that goes through creating a VLAN that shows how to setup VLANs on a SRW switch, taking into account the three modes the switch ports can be set in (access,general and trunking modes).
    regards Dave

  • Office 2008 and Mavericks, Will it run in the new OS?

    I have an iMac running Mountain Lion and I have the Office 2008 suite.
    Will the suite continue running if I upgrade to Mavericks?
    I have a Mac Book Pro that when I upgraded to Mountain Lion from the one before a few applications including Parallels were not compatible.  I had a windows license and my other copy of Office 2008 quit working.  Dont want to pay more money for new software to Microsoft to begin with.   I gave up the Windows environment but I cannot give up Office, I can't afford to buy the newer version when what I have works for what I do
    I already lost a copy of MS office for Mac  

    See https://discussions.apple.com/message/23547845#23547845 where the answer is yes and no.  From that thread it appears Office 2008 will run on Mavericks but some people are having trouble with it. 
    Note, MS will not be supporting Office 2008 on Mavericks.  Mavericks-related updates will be applied to Office 2011.  So if you upgrage to Mavericks try Office 2008 but if there are issues be prepared to shell out $140 for the home/student 2011 version (or more for the version that includes Outlook).
    Is there a compelling feature in Maverkicks that would compel you to upgrade?  If not stick with ML to avoid giving MS more money.

  • Migration on active directory from 2003 to 2008 and SharePoint error Cannot connect to the configuration database.

    Hi all,
    In advance i`m thankful for your help,
    I come across a problem while migrating the Active Directory from Windows Server 2003 to Windows Server 2008 R2,
    SharePoint 2010 is getting this error Cannot connect to the configuration database. The same goes for the Administrative page,
    Nothing is change in the MySql database, same log in, same server name, i guess it have something to do with the SharePoint Farm,
    My question is will reinstalling the SharePoint do the job? Or is there an easy way to get back on my old track?
    I`ve try to sync users... no good
    PS C:\Users\administrator.SERVERM> if($configManager.IsSynchronizationRunning()
    -eq $false)
    >> {
    >> $configManager.StartSynchronization($true)
    >> Write-Host "Started Synchronizing"
    >> }
    >> else
    >> {
    >> Write-Host "Already Synchronizing"
    >> }
    >>
    Can someone explain a little bit more about this:
    6.     
    Can they talk to each other?
    Verify that SharePoint is using the correct IP address for the SQL server. To do this, run the ping command on the Windows SharePoint Services server.
    Verify that the SharePoint server is obtaining the correct IP address for the SQL server from DNS. To do this, run the
    nslookup command from the SharePoint Server.
    Make sure that there are no incorrect entries for the SQL server. To do this, examine the Hosts file on the SharePoint server. This file is in the following location:
    %systemroot%\system32\drivers\etc\Hosts
    On the SharePoint server, look for SQL client aliases. To do this, follow these steps: Click
    Start, click Run, and then type cliconfg in the
    open box.
    Click the Alias tab. By default, there are no SQL client aliases. If you have any aliases for the SQL server, verify that they are correct, or remove them.
    Open the SQL Server Configuration Manager (Start SQL Server 2008  Configuration Tools  SQL Server Configuration Manager
    Navigate to the SQL Server Network Configuration  Protocols for MSSQLSERVER node in the tree view
    Enable TCP/IP and Named Pipes (you’ll be warned that these changes will not apply until the service is shut down)
    Aleksandar Delcevski, Web-administrator School of Journalism and Public Relations Jurij Gagarin 17-1/1, 1000 Skopje, R. Macedonia t: + 389 2 3090 004 mob: +38972 257 565 [email protected]; www.vs.edu.mk; www.medium.edu.mk; www.unescochair-vs.edu.mk

    Hiya,
    I don't think it is necessary to reinstall.
    You should just confirm that your basic infrastructure is working.
    1: On the SharePoint server, open cmd and write ping <SQL server name>
    2: On the SharePoint server, open cmd and write nslookup <SQL server name>
    Basically the steps outlined here, is the best way to start:
    6.     
    Can they talk to each other?
    Verify that SharePoint is using the correct IP address for the SQL server. To do this, run the ping command on the Windows SharePoint Services server.
    Verify that the SharePoint server is obtaining the correct IP address for the SQL server from DNS. To do this, run the
    nslookup command from the SharePoint Server.
    Make sure that there are no incorrect entries for the SQL server. To do this, examine the Hosts file on the SharePoint server. This file is in the following location:
    %systemroot%\system32\drivers\etc\Hosts
    On the SharePoint server, look for SQL client aliases. To do this, follow these steps: Click
    Start, click Run, and then type cliconfg in the
    open box.
    Click the Alias tab. By default, there are no SQL client aliases. If you have any aliases for the SQL server, verify that they are correct, or remove them.
    Open the SQL Server Configuration Manager (Start SQL Server 2008  Configuration Tools  SQL Server Configuration Manager
    Navigate to the SQL Server Network Configuration  Protocols for MSSQLSERVER node in the tree view
    Enable TCP/IP and Named Pipes (you’ll be warned that these changes will not apply until the service is shut down)

  • I just got a MacBook pro 2008 and it won't turn on. the seller left it in the office since 2014 September still in good shap. all trouble shooting tip seems not to work. battery and charger seems ok.

    hi,
    just got a MacBook pro 2008 from a friend who bought it online. When it came we tested it and it was working. The person he wanted to supply changed his mind and my friend left the mac in the office cabinet since late last year. I decided to buy it and when I tried to turn it on it wouldn't. I charged the battery fully and checked if it was ok. I tried smc and nvram reset yet no sound or beep or any sign of life. There are no apple store around where I live in Nigeria now.
    thanks

    "Any suggestions would be great - Thanks!!!"
    Have him take it to an Apple store or AASP. (Stay away from Macs. You're a PC guy).

Maybe you are looking for