Hello friends. I am practicing a worst-case scenario for my company and simulating a ransomware attack, simulating an environment where we have zero connectivity. I have purchased a used server identical to our production DC that holds all the FSMO roles. I have stood the test server up using the recovery media and a full backup. I am able to login to the test server but there is no active directory or dns. I see the ntds.dit file and it is same size as our production DC file. I have configured the backup job with application aware selected. Should I be able to see all of my AD objects after the restore or do I need to run through an additional restoration process once the sever has been stood up?
Thanks
-
- Lurker
- Posts: 1
- Liked: never
- Joined: Mar 23, 2024 12:29 am
- Full Name: Jason Johnson
- Contact:
-
- Chief Product Officer
- Posts: 32217
- Liked: 7583 times
- Joined: Jan 01, 2006 1:01 am
- Location: Baar, Switzerland
- Contact:
Re: Active Directory Restore/Application Aware
Veeam performs non-authoritative restore, which is what you want when restoring a failed domain controller back into the existing AD. If you're restoring into a "clean" environment with no other domain controllers present, then this a more complex process called authoritative restore which involves manually transferring the FSMO roles to the restored DC etc. So this more of an AD management task, and as such it requires decent AD expertise... otherwise you will need help from Microsoft Support. You can consult Active Directory documentation to get an idea of the whole process. Thanks
-
- VP, Product Management
- Posts: 7200
- Liked: 1547 times
- Joined: May 04, 2011 8:36 am
- Full Name: Andreas Neufert
- Location: Germany
- Contact:
Re: Active Directory Restore/Application Aware
Please find here some additional guidance and background information: https://www.veeam.com/kb2119
Who is online
Users browsing this forum: No registered users and 7 guests