Tombstone
By Simon Bisson & Mary Branscombe in Editorial
Posted in Enterprise, Windows, Server, Microsoft on
The other day I made a stupid mistake.
This one was particularly stupid, as in a momentary fit of neatness, I deleted all the old Small Business Server Group Policy Objects from my main office server.
The AD looked a lot neater now.
However I’d just given myself a whole new world of hurt.
I’d upgraded our network earlier in the year, and had replaced the SBS 2003 box with a Windows Server 2008 machine. In the migration, all the old GPOs had made their way across to the server, and one or two of them weren’t suitable for the current network configuration. Deleting them shouldn’t mean too much disruption - or so I thought.
I was very very wrong indeed.
Deleting the GPOs also took out the associated Active Directory objects.
That wasn’t good at all.
Bang went all the users, all the mailboxes, and all my domain attached PCs were left unable to log in.
Ooops.
Luckily for me, Windows Server is designed to help deal with that sort of mistake. Active Directory Tombstone Recovery stores deleted AD objects - the trick, of course is to find a way to undelete them.
Again, luckily for me, the folk at Quest have a free tool to do just that. It’s not their full-featured Active Directory Recovery Manager, which is an excellent AD management tool. Object Restore for Active Directory is a simple tool that scans a server’s tombstoned objects, and gives you a list of what’s been deleted. Windows Server’s Tombstone Reanimation interfaces let you recover stored objects, and the Quest tool simplifies the recovery process, quickly dropping your recovered objects back in the Active Directory.
You can then move them into the appropriate place. My users could now log back into the server. However, that was only part of the story, as I had to recover the mailboxes and reconnect them to the user accounts. Again, the tools built into the server saved the day, as Exchange 2007’s wizards quickly put user and mail back in touch.
I was lucky. It took less than an hour to get everything back in place - thanks to the tools built into my server, and the free applications I found online.
The moral?
Don’t rush at things - and make sure you know exactly what a change means to your server, and to your users.
Trackback by - February 9, 2012 on 5:45 am
will smith and jada divorce 2011…
[…]gentle Lennox right after he heard 3 varying and absolutely different statements from 3 […]…
Trackback by - February 9, 2012 on 7:13 am
greenpeace organization environment…
[…]took the item. ” In reality, no matter whether it can be about your mouth officer, or tibia and leg guards, it is […]…
Make a comment
Tag cloud
Archives
- September 2009
- August 2009
- July 2009
- June 2009
- May 2009
- April 2009
- March 2009
- February 2009
- January 2009
- December 2008
- November 2008
- October 2008
- September 2008
- August 2008
- July 2008
- June 2008
- May 2008
- April 2008
- March 2008
- February 2008
- January 2008
- December 2007
- November 2007
- October 2007
- September 2007
- August 2007
- July 2007
- June 2007
- May 2007
- April 2007
- March 2007
- February 2007
- January 2007
- December 2006
- November 2006
- October 2006
- September 2006
Most commented posts
- Java's SSVAGENT.EXE: training the monkey
128 comments
- When Windows 7 upgrades won’t hibernate (the solution)
- Do you need IPv6 for DirectAccess? Yes and No
- Chrome OS: what happens when "always connected", isn't?
- The ColdFusion Renaissance
- Make Adobe Acrobat Pro deactivate
- Is there a showstopper bug in Windows 7 CHKDSK?
- There’s a reason smartphones are locked down
- At sixes and Windows 7s
- The LHC isn
Highest Rated Blog Posts
- Songs of distant satellites (100%)
- Nobody knows what Web 2.0 really is (100%)
- Log in and lock in (100%)
- Top tips for speeding up Vista (100%)
- Mommy, why is there a home server in the office? (100%)
- Employees are our most valuable asset (snigger) (100%)
- Locking down IT or blocking creativity (100%)
- Consumer BlackBerrys are good for business (100%)
- HD Trek (100%)
- Join the (beta) community (100%)

