Windows 8.1 Professional users from a Windows 2003 domain to Microsoft IDs

We've had a Windows 2003 domain for about 10 years. The original reason we created the Windows 2003 domain is no longer valid. (SQL Server integrated security)
We would like to convert the domain user profiles on the Windows 8.1 boxes to user profiles associated with Microsoft ID's.
I tested http://www.forensit.com/domain-migration.html but did not have good results. The challenge was the functionality provided by doing Windows Key + W and entering commands such as user, etc did not work. (ie: the store was messed
up)
So I am thinking the best way to do this is to convert the domain users to local users and then convert the local users to Microsoft ID users. I believe the conversion from local users to Microsoft ID users is native to Windows 8.1.
Questions:
1) Is the Windows 8.1 conversion from local users to Microsoft ID users reliable?
2) What is the best method to convert a domain user provide to a local user profile on Windows 8.1?
Thank you in advance for any assistance you may provide.
Thank you, Bill

Karen & Milos,
Thank you for your assistance on this matter.
Unfortunately, Windows 8.1 Store Apps represent such a massive change in architecture that I don't believe anyone can be 100% positive that copying user profiles will work properly.
In summary, I've tried the following:
1) User Profile Wizard v3.7 from Forensit.com - this was the closest but the Windows Store Apps did not work properly
2) USMT v5.0 - missed many folders and settings
3)
http://www.shofkom.com/2009/03/14/how-to-convert-your-domain-profile-to-a-local-profile/ - had to reconfigure many applications and the Start screen and Task bars were not set properly
4) Variations of
http://www.nextofwindows.com/how-to-change-user-profile-location-in-windows-8-without-registry-hack/ - same as #3
5)
http://social.technet.microsoft.com/Forums/windowsserver/en-US/fac17d6a-3c1b-4188-913e-ac2ec45b3ad6/transferring-from-workgroup-to-domain-keeping-user-profile?forum=winservergen - same as #3
In summary, I've decided to create the Local User as a Microsoft ID and then manually copy the Documents, Pictures, Downloads, Music, Pictures and Videos. The other settings such as Outlook, Startup, Task Bar, Desktop, and other app settings will be manually
configured. :-(
Thank you, Bill

Similar Messages

  • How to use CSACS 3.3 to authenticate users from multiple windows domain?

    Can Cisco Secure ACS 3.3 be used to authenticate users from another Windows domain that is not a child nor a trusted domain???
    hello, here is my scenario:
    ACS 3.3 was installed on a member server on domain1. I need to authenticate and ultimately populate the users into ACS from another domain. The service already works perfect on just domain1, but now I need to authenticate users from another domain.
    And adding those domains as trusted domains in domain1 is not an option.
    Is Generic LDAP my only other option? Any config guides that you guys know with regard to doing this?
    Any input is much appreciated.

    Hi Betcy,
    I am not familiar with sharepoint solutions, but as you mentioned about windows credentials I believe it refers to kerberos tokens. On this case you can take advantage of SPNego authentication.
    You can find more details on following SAP note:
    #[1488409|https://service.sap.com/sap/support/notes/1488409] - New SPNego Implementation
    I hope it helps.
    Kind regards,
    Lisandro Magnus

  • Disabling user from resizing window?

    Hello. How do I stop users from being able to resize the window?
    Also, how can I set the default size of my window?
    Heres a sample...
    import javax.swing.*;
    import java.awt.event.*;
    import java.awt.*;
    public class gui extends JFrame
         public gui()
              super("GUI");
         public static void main(String[] args)
         JFrame frame = new gui();
         WindowListener l = new WindowAdapter() {
              public void windowClosing(WindowEvent e) {
                   System.exit(0);
         frame.addWindowListener(l);
         frame.pack();
         frame.setVisible(true);

    Sorry, I told you the wrong thing there (I didn't look up the API docs before I posted, so I guess I did the same thing as you ;)
    You can call setSize(...) for sure. The methods that I cited (setPreferred, setMinimum, and setMaximum) don't exist (but their 'get' counterparts do, so that's why I got confused).
    In any case, you can use 'getSize(...)'. This doesn't exist in the Frame class itself, but in the Component class. If I am looking for a method sometimes I do a Ctrl-F search in IE to look for a method name, because sometimes ut's hidden away in the super-class(es) method list.
    Hope that helps.
    Ben

  • Missing user from login window at startup

    I upgraded to Yosemite a few weeks ago and have had a problem with a user I migrated from Mavericks. The user won't show up in the login window at startup but will once I login with a different user and then logout back to the login window. How can I get my migrated user to show up in the login window at startup?
    I did a clean install of Yosemite and then used Migration Assistant to move over my old user from a Mavericks install. My original plan was to import my old user's Document and other data directories and copy them over to a new user's home directory so that my data would be available but I'd clean out old application settings  by not moving that as well. Due to how Migration Assistant worked and my disinterest in diving into the details to make this work, I ended up using the migrated account instead.
    Here's the problem, the migrated account was using a different home directory path than I preferred ("user_migrated" rather than "user"). I modified pertinent settings in the advanced configuration form available in the Users & Groups preference pane. Everything appears to work fine, except this user does not show up in the login window when I first boot up the machine. If I login to another user, then log out, my migrated user appears and I'm able to login.
    I've looked around in Users & Groups and checked settings, but I'm not seeing any difference between my migrated user's settings and other user's (who does show up in the login window) settings.
    If anyone has any suggestions, please share!

    Found the answer in a post from 2012:
    User accounts not appearing in login window
    The problem was the migrated user was not authorized to unlock the disk. This is easily fixed by opening up FileVault settings and enabling the missing users.

  • Oracle Database XE - apex on Windows 7 - Problem with Connection from another Windows 7 Computer

    Hello,
    I started with Oracle Database XE 11g, with apex, did the upgrade to Apex 4.2.6 and started in developing a small Application.
    I wanted to Connect to my Computer A (with Database runing on it) from another Windows 7 Computer B.
    So I put in in Firefox: //A:8080/apex but I only received a timeout.
    Of course on both Computers there is a windows-Firewall running, so I stopped on both Systems the Firewall, but its the same still.
    In the windows explorer running on Computer B , I can see the data of Computer A and both Computers are in the same home-net-group. (sorry for my poor english).
    Is there anyone who cann tell me how to get the Connection running ?
    Maybe I didn't see the info about this in the manuals, if it is there, please give me a hint.
    many thanks
    Wilhelm Kästner Salzburg

    Hi,
    Check if this helps
    https://docs.oracle.com/cd/E17781_01/install.112/e18803/toc.htm#XEINW127
    Regards,
    Jari

  • Transfer of user from one AD / Exchange domain to another AD / Exchange domain

    Hi All,
    I want evaluate transfer of user scenario from one AD domain to Another AD domain using out of box AD connector.I have three AD domain in one Forest as below.
    Root -  example.com
               |_____domain1.example.com
               |_____domain2.example.com
               |_____domain3.example.com
    In my case i have two attributes on which I need to transfer user from one AD domain to another AD domain. e.g. suppose from trusted source if I changed the MINOR_ORG_CODE and MAJOR_ORG_CODE, transfer of user event should get initialized and user should transfer from one AD domain to another AD domain.Once user transfer from one AD domain to another AD domain, he/she should be de-provision from previous domain.While transfer his mail box or exchange account should also be transfer from one exchange domain to another exchange domain.Exchange domain is also in same forest.
    Thanks in advance.
    Regards,
    Nitin Natekar

    Case 1:
    Here you can written pre-update event handler which will check whether minor and major org code changed or not.
    If changed then first starts de-provisioning and then start provisioning.
    If not changed then do nothing.
    This approach will not transfer accounts from one domain to another but it will create fresh accounts and remove accounts from old domain.
    Case2:
    If you want to transfer accounts from one domain to another in that on pre-update you have to change OU of user on process which automatically move to another domain.
    but not sure about exchange it is possible to move to another domain.
    hopping that all domains under same forest otherwise same Connector Sever will not work.

  • Printing Unix to Windows getting all the printers from the Windows machine

    Hi,
    My application prints Unix to Windows using the name of the machine and a generic virtual printer, but now I need to do some improvements, and I really don't know if it is possible to do what I've been asked to.
    A browsable page (jsp, html, applet, whatever) has to show all the available desktop printers and print a document that can be a .prn or a .pcl to the chosen printer.
    I've done a pilot project just to check what happens in Windows and what happens in Unix.
    when the server is Windows, everything works just fine, but when the server is Unix, of course, I get the " javax.print.PrintException: Printer is not accepting job.at sun.print.UnixPrintJob.print(UnixPrintJob.java:295 )" error.
    Is it possible to do something like this with only free software or I rather abandon the idea and face the users reaction? (upps!)

    Thanks for the answer.
    I think I'm not very lucky because SAMBA is not in place in my company...

  • Photoshop CS5 64 bit tools window, why Crop tool disappeared from tools window?

    I am using the above version of Photoshop in windows 7 64 bit.  A few week ago the crop tool just disappeared from the Tools window.  The crop tool is just below move tool and just above the rectangular marquis tool.  I have been using various versions of photoshop for over 15 years and have never had a tool disappear from the preset tools window.  Does anyone have any idea how to restore the crop tool to it's original location?  I have tried the help file, and I guess I don't know how to phrase the question properly to get any useful answers.  Also, is there any way to add additional tools to the tools window?  This windows installation is on a computer that is usually not conected to the internet for security reasons.  If anyone has a solution, an email to [email protected] would really be appreciated.
    Thanks in advance,
    Jeff Warren1983

    I suspect the crop tool is not missing but just not selected. In cs4/cs5 the crop tool is grouped with the slice tools in the toolbox, much
    like older versions such as ps4 had the crop tool grouped with the marquee selection tools in the toolbox.
    Location of all the tools in the cs5 toolbox:
    http://help.adobe.com/en_US/photoshop/cs/using/WSfd1234e1c4b69f30ea53e41001031ab64-74f6a.h tml
    I don't think you can add any tools that aren't already there, but you can use configurator to make your own panel having
    the tools arranged the way you see fit.
    http://labs.adobe.com/technologies/configurator/
    MTSTUNER

  • Windows via scripting is different from frontend window

    greetings,
    this is really not a show stopper since my code works like a charm. 
    I'm curious as to why the SAP window look different when running a transaction when I log on to the frontend GUI as opposed to running that same transaction through VBS.
    version is 7100.2.8.3083
    many thanks.
    cg

    Hi lacourc,
    If you log via VBS in SAP, then SAP GUI is running in so-called classical design. This also appears to selected design, if the following to be set:
    START -> All programs -> SAP Front End -> SAP GUI Configuration -> Applications -> Add -> wscript.exe -> Open -> OK-Button
    Regards,
    ScriptMan

  • Error message when accessing Cluster Manager (Windows Server 2012-based) console from a Windows 8 system

    Hi all;
    Please look at the following figures:
    Any ideas?
    Thanks
    Please VOTE as HELPFUL if the post helps you and remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading
    the thread.

    Hi,
    I am trying to involve someone familiar with this topic to further look at this issue. There might be some time delay. Appreciate your patience.
    Thanks for your understanding and support.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Where to find "Windows Mobile 6 Professional Images"?

    Hi All,
    I do have a problem where the sun_jcw won't start on my iPAQ/HP 214 device running Windows Mobile 6.0 2007 because the executable is not signed with a trusted certificate.
    I think I found almost the answer where Terrance states in http://weblogs.java.net/blog/terrencebarr/archive/2009/07/just_released_j.html the following:
    ==========================
    Took me a while to figure out
    Submitted by fatbuttlarry on Thu, 2010-01-14 21:47.
    For those using the Windows Mobile 6 emulator and are receiving the message:
    "The file 'JavaFX' can not be opened. Either it is not signed with a trusted certificate, or one of its components can not be found. You migth need to reinstall or restore the file" Make sure you are using the Windows Mobile 6 Professional Images. The Windows Mobile 6 Classic image would cause this error every time!!!! -Tres
    Login or register to post comments
    ==========================
    What does he mean with "Windows Mobile 6 Professional Images" exactly?
    Any help is greatly appreciated because this problem is blocking any further progress.
    Regards
    André
    p.s. I embedded this question in http://weblogs.java.net/blog/2009/07/26/just-released-javafx-mobile-12-ea-windows-mobile#comment-809581
    p.p.s : I hope that I don't need a full Windows Mobile 6 SDK with all the other pre-req's
    Edited by: 830814 on 24-Jan-2011 13:51
    Edited by: 830814 on 24-Jan-2011 14:53

    tarheel2013 wrote:
    I have a Mac OS X 10.5.8 Leopard and just partitioned my disk to download Windows with Boot Camp. I found the student discount for Windows 7 Professional Upgrade on Digital River but since it's a Digital download it won't work with the Mac because of the .exe file. Everyone who has installed Windows, did you pay full price for a new disk? Is there a way to get a disk without paying extra? And Windows 7 64-bit works with Boot Camp 2.0 on a Mac OS X 10.5 right? Just curious because I don't want to spend a lot of money only to find out something doesn't work
    You can probably get Windows 7 to work with Boot Camp 2.0, but it is definitely not supported. I don't believe that Windows 7 was officially supported until Boot Camp 3.
    As for your 64-bit windows, that would depend upon the age of your Mac. I seem to recall that with some of the older MacBook Pros, 64-Bit windows is not supported, and doesn't work for many who have tried.
    Perhaps if you could give us a little more detail about your Mac, we could tell you what your odds are in getting it all to work together.

  • AD Group Membership with User From Domain Outside of Forest

    Here's one to twist your brain around -
    I have kerberos authentication using Active Directory working between a client's web browser and my web-app hosted in JBoss. I also have limited authorization working by checking group memberships using LDAP. This currently only works if all users are in the same domain. The ever-helpful adler_steven has detailed in another thread (http://forum.java.sun.com/thread.jspa?threadID=603815&tstart=15) how to do a group membership check for all Users/Groups in a single forest using the Global Context.
    I need to go beyond the domain and even beyond the forest and try to authorize a user from a trusted domain by checking if the user is a member of a group in my domain. Authentication works fine using kerberos. It's the authorization by group check I am having trouble with. I believe there are two ways to approach this:
    Approach #1
    Access the MS-specific PAC in the kerberos token from the client to get the group SIDs. The structure of the PAC is nicely defined in this article: http://appliedcrypto.com/spnego/pac/ms_kerberos_pac.html. However, I have no idea how to access the decrypted token. I pass the encrypted token that I receive from the browser to myGssContext.acceptSecContext(...) to complete the authentication.
    Question: Does anyone know how to get the decrypted kerberos ticket from there, specifically the authorization-data field?
    Approach #2
    Try to walk through the Active Directory structures in both domains using LDAP. In the domain group that I am checking, I can see a member attribute that references a foreignSecurityPrincipal object. The CN of this object happens to be the objectSID of the user I am looking for in the remote domain. Unfortunately, I have to check the remote domain server directly to verify that. The foreignSecurityPrincipal object itself does not contain any hint about what user it refers to aside from the SID (no originalDomainName attribute or something similar). It is feasible that I could walk the chain of references back to the remote domain AD server. That would require that my configuration include a list of remote domain servers to check (since I could have users from multiple trusted domains) and that my JBoss server have access to those servers.
    Question: Does anyone know of some other LDAP-related way of finding information about a user from a remote, trusted domain without having to hit the server for that domain directly?
    adTHANKSvance
    Eric

    You should be able to work back from the foreignSecurityPrincipal object :-) He says with a wry smile..
    This post prompts me to think whether one day someone will draw the entity relationship diagram for AD. Oh well, I've been procrastinating for years, a few more won't hurt !
    If it was a user from within the same forest, you should just be able to perform a search against a GC using the objectSID as the search filter. I've forgotten, but I don't think they will be represented as foreign security principals.
    Have a look at the post titled JNDI, Active Directory and SID's (Security Identifiers) available at
    http://forum.java.sun.com/thread.jspa?threadID=585031&tstart=150 that describes how to search for an object based on their SID.
    Now if it is a user from another forest, with which you have a trust relationship, then we begin the navigation excercise.
    You'll need obtain the user's SID (either from the cn or from the objectSID attributes) from the foreignSecurityPrincipal object. For example CN=S-1-5-21-3771862615-1804478405-1612909269-2143,CN=ForeignSecurityPrincipals,DC=antipodes,DC=com
    objectSID=S-S-1-5-21-3771862615-1804478405-1612909269-2143Then obtain the domain RID, eg.S-1-5-21-3771862615-1804478405-1612909269Next you will have to recurse each of the crossRef objects in the Partitions container, in the configuration naming context (which you will find listed in the RootDSE). The crossref objects that represent trusted domains or forests will have values for their trustParent attributes. A sample query would be something like//specify the LDAP search filter
    String searchFilter = "(&(objectClass=crossRef)(trustParent=*))";
    //Specify the Base for the search
    String searchBase = "CN=Partitions,CN=Configuration,DC=antipodes,DC=com";For each crossRef object, you can then use the dnsRoot attribute to determine the dns domain name of the forest/domain (if you want to later use dns to search for the dns name,ip address of the domain controllers in the trusted domains/forests), and then use the nCName attribute to determine the distinguished name of the trusted forest/domain.dnsRoot = contoso.com
    ncName = dc=contoso,dc=comPerform another bind to the ncName for the trusted domain/forest and retrieve the objectSID attribute, which will be the domain's RID. You may want to cache this information as a lookup table to match domain RID's with domain distingusihed names and dns names.String ldapURL = "ldap://contoso.com:389";
    Attributes attrs = ctx.getAttributes("dc=contoso,dc=com");
    System.out.println("Domain SID: " + attrs.get("objectSID").get());Once you find out which domain matches the RID for the foreignSecurityPrincipal, you can then perform a search for the "real user" .And then finally you should have the user object that represents the foreign security principal !
    Just one thing to note. Assume that CONTOSO and ANTIPODES are two separate forests. If you bind as CONTOSO\cdarwin against the CONTOSO domain, the tokenGroups attribute (which represents teh process token) will contain all of the group memberships of Charles Darwin in the CONTOSO domain/forest. It will not contain his memberships if any, of groups in the ANTIPODES forest. If Charles Darwin accesses a resource in ANTIPODES, then his process token used by the ANTIPODES resource will be updated with his group memberships of the ANTIPODES forest. Also you can have "orphaned foreignn security principal", where the original user object has been deleted !
    BTW, If I was doing this purely on Windows, IIRC, you just use one API call DsCrackNames, to get the "real user", and then the appropriate ImpersonateUser calls to update the process token etc..
    Good luck.

  • Switch Oracle user (Oracle 11g Win 2003)

    Hi guys,
    How do I switch between users on windows
    Unix: su - ora11g
    Windows:
    Thank you.

    hi try this:--
    You can switch users from the Windows Command Prompt without logging off—if say,
    you need to access folders or files for another Windows user account.
    1. Quit explorer.exe
    2. Open Command Prompt
    3. Navigate to C:\WINDOWS\system32
    4. Enter the following command: runas /user:*computer name\*account name explorer.exe
    Make sure you are cognizant of which user is logged in because this process
    will not change the Windows theme when the user changes
    thanks.

  • Cannot share documents with few users in one way trusted domain

    Hello
    I am running in a wiered issue. I setup people picker in SP 2013 foundation version to lookup the user from one way trusted domains after which I started getting all the users from that domain in my intranet. I can also share or modify the permission of
    users being administrator. However when I try to add 2 specific users as site collection administrator or try sharing a document, I get error.
    I can lookup their name but when I try changing their permission or share document with them, I get error. It's wiered because it is only with this two users. there is no difference from Active Directory point of view between these and other users. Please
    help or suggest some trouble shooting steps.
    Regards,
    Hardik Bhilota.

    Hi Hardik,
    What was the error message when sharing documents with the two users?
    Please also check the ULS log for detailed error message which is located at C:\Program Files\Common Files\Microsoft Shared\Web Server Extensions\15\LOGS.
    What is the permission of the two users in SharePoint site? Can they access the site?
    Please also run the two commands below to see if the issue still occurs:
    First, on every front-end Web server on a farm run this command:
    STSADM.exe -o setapppassword -password key
    Second, on a front-end Web server run this command:
    STSADM.exe -o setproperty -pn peoplepicker-searchadforests -pv domain:DnsName,user,password -url http:// webapp
    Best regards.
    Thanks
    Victoria Xia
    TechNet Community Support

  • I am trying to transfer my files and settings from a windows 7 Ultimate 32bit machine to a windows Professional 64 bit machine

    used easy transfer both machines are on a domain both are the same user yet i get an error message that says
    " Windows Easy transfer can't log onto your domain"
    Your new computer might not be connected to the domain.
    Tried via the network same message yet both machines can see each other.
    Tried saving it to a file on my external buffalo drive (Same message)
    Downloaded it to the new machines Desktop (Same Message)
    Can any one helps given up trying to talk to Support they want a Mortgage just to speak to them Grr

    Hi,
    Have a try to change the user account from the current user account.
    You can do this by pressing the advanced button at the bottom of the screen where you see the transfer button.
    Please refer to this thread:
    Windows Easy Transfer can't log on to your domain account
    http://answers.microsoft.com/en-us/windows/forum/windows_7-windows_install/windows-easy-transfer-cant-log-on-to-your-domain/da341b4e-9f10-4334-a7a3-0f743dd08910
    Meanwhile as this is a Windows 7 related issue so it is recommanded to post to Windows 7 forum.
    http://social.technet.microsoft.com/Forums/en-US/category/w7itpro/
    TechNet Subscriber Support in forum |If you have any feedback on our support, please contact [email protected]

Maybe you are looking for

  • Photo synchronization problem in the iPhone

    Hi: This afternoon, going to update the iPhone has left me a strange message saying: "The iPhone" XXXXXXX "can not synchronize. There was an unknown error (-50)" Then I realized that it has updated everything but the parts of the image and I've notic

  • BT Total Broadband CD

    Hi all, I have just received my BT Broadband and managed to install the wireless and are now connected to the Internet. My problem is: I can't play the CD that came with the package, I get this message, (Windows cannot load the device driver for this

  • PIX 501 Flash Image Download

    Hoping someone can help. I have a PIX 501 and I am looking to download an OS as my current image is corrupt and the PIX will not boot. Would anyone know where I can download the O/S from so I can tftp it across to the router. The router is a few year

  • Not enough disk space on imovie?

    i have imovie from the ilife '09 package. i make a lot of videos and upload them to youtube all of the time, but just recently i went to upload a 50 second video to youtube and it said "The operation could not be completed because there is not enough

  • The environment set

    I do not how to set in java 1.5.0 Could someone help me? I use XP . Thank you very much.