Customer Health Check Report FY 2013 Global Knowledge Professional Services Team Global knowledge-ksa
TABLE OF CONTENTS 1 Overall Health Status... 4 1.1 Microsoft Active Directory Service... 4 1.1.1 Active Directory Overall Health Status... 4 1.1.2 Replication Status... 5 1.2 Exchange Service... 6 1.2.1 Exchange Overall Health Status... 6 1.2.2 Exchange 2010 Basic Server Information... 6 1.2.3 Drives on Exchange Servers... 7 1.2.4 Exchange DB Statistics... 7 1.2.5 Exchange 2010 DB Status... 7 1.2.6 Exchange 2010 Active DB Not on Preferred Server... 7 1.2.7 Exchange 20xx MAPI Connectivity... 8 1.2.8 Largest es by Total Size... 8 1.2.9 Exchange 2010 Database Availability Group Info... 8 2 Environment Risks... 9 2.1 Active Directory Risks... 9 2.2 Exchange Risks... 9 3 Remediation Recommendations... 10 3.1 Active Directory Recommendations... 10 3.2 Exchange Recommendations... 10 3.3 General Recommendations... 10
1 OVERALL HEALTH STATUS 1.1 Microsoft Active Directory Service 1.1.1 Active Directory Overall Health Status Directory Service Health Status: Health Domain controllers Operating System Status: Health Operating System drive free space : More than 50% Network Communication TCP ports : Connections FSMO roles : Response Name GC Operating System Service Pack Ping FQDN Admin Shares DCOM Enabled LDAP Bind OS Support Error OS/SP RAP Support Port 88 Port 139/445 Port 389 Port 3268 Remote Registry WMI jed-root-dc- 01.root.local Windows Server 2008 R2 Non jed-root-dc- 02.root.local Windows Server 2008 R2 Standard Non jed-dc- 01.dah.root.loca l Windows Server 2008 R2 Standard Non jed-dc- 02.dah.root.loca l Windows Server 2008 R2 Standard Non
1.1.2 Replication Status Dest DC Dest DC Domain Dest DC Site Name Dest DC Is GC? Dest DC Is RODC? Partition Name Last Sync Message Source DC Source DC Domain Source DC Site NameSource DC Is GC? JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE DC=DAH,DC=Root,DC=Local JED-DC-02.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE DC=DomainDnsZones,DC=DAH,DC=Root,DC=Local JED-DC-02.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE DC=Root,DC=Local JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE CN=Configuration,DC=Root,DC=Local JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE DC=ForestDnsZones,DC=Root,DC=Local JED-DC-02.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE JED-DC-02.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE JED-DC-02.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE CN=Schema,CN=Configuration,DC=Root,DC=Local JED-DC-02.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE DC=ForestDnsZones,DC=Root,DC=Local JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE DC=Root,DC=Local JED-DC-01.DAH.Root.Local DAH.Root.Local Default-First-Site-Name TRUE FALSE CN=Configuration,DC=Root,DC=Local JED-ROOT-DC-01.Root.Local Root.Local Default-First-Site-Name TRUE JED-ROOT-DC-01.Root.Local Root.Local Default-First-Site-Name TRUE JED-ROOT-DC-01.Root.Local Root.Local Default-First-Site-Name TRUE
1.2 Exchange Service 1.2.1 Exchange Overall Health Status Exchange Organization Status : Healthy Exchange Servers Operating System Status : Healthy Operating System drive free space : Healthy Network Communication TCP ports : Healthy Send Receive response Time :Healthy Database Size and Logs Status: Healthy Database Queue Status, file Grows : Healthy DAG Status : Healthy Name Roles DAG Status es Databases Ping TCP 443 TCP 80 TCP 25 Admin Shares DCOM Remote Registry WMI OS Support Error Exchange Version Disk Space JED-HUBCAS-01 ClientAccess, HubTransport JED-HUBCAS-02 ClientAccess,HubTransport JED-MBX-01 2 5 JED-MBX-02 462 5 1.2.2 Exchange 2010 Basic Server Information Computer Name Operating System Service Pack Exchange Version Rollups Exchange Edition JED-HUBCAS-01 JED-HUBCAS-02 JED-MBX-01 Microsoft Windows Server 2008 R2 Microsoft Windows Server 2008 R2 Microsoft Windows Server 2008 R2 Service Pack 1 Service Pack 1 Service Pack 1 Version 14.1 (Build 218.15) Version 14.1 (Build 218.15) Version 14.1 (Build 218.15) Exchange Role(s) ClientAccess, HubTransport ClientAccess, HubTransport
JED-MBX-02 Microsoft Windows Server 2008 R2 Service Pack 1 Version 14.1 (Build 218.15) 1.2.3 Drives on Exchange Servers Server Name Drive Capacity (GB) Free Space % Free Space JED-HUBCAS-01 C 70 12 17 JED-HUBCAS-02 C 70 27 39 JED-MBX-01 C 70 32 45 E 146 146 100 F 244 145 59 G 377 375 99 JED-MBX-02 C 70 31 44 E 146 146 100 F 244 124 51 G 377 68 18 1.2.4 Exchange DB Statistics Server Database Count JED-MBX-01 JED-MBX-02 Database 012541832 1 Database 100254681 8 Manageme ntdb TopManage ment Database Size (GB) WhiteSpace (GB) Mounted Circular Logging Last Full Backup 2 0.383 0.327 Yes No 2/25/2013 12:05:56 PM 1 0.258 0.250 Yes No 2/25/2013 12:06:47 PM JED-MBX-02 2 0.633 0.523 Yes No 2/25/2013 12:07:21 PM JED-MBX-02 1 0.008 0.002 Yes No 2/25/2013 12:08:19 PM JED-MBX-02 UsersDB 449 96.759 1.614 Yes No 2/25/2013 12:08:41 PM JED-MBX-02 VIP 9 2.383 0.028 Yes No 2/25/2013 1:42:23 PM Last Incremental Backup 2/27/2013 11:50:33 2/27/2013 11:51:15 2/27/2013 11:51:53 2/27/2013 11:52:28 2/27/2013 11:53:04 2/27/2013 11:58:26 1.2.5 Exchange 2010 DB Status DatabaseName Status Copy Queue Replay Queue Last Inspected Log Time Index State Database 0125418321\JED-MBX-01 Mounted 0 0 Healthy Database 1002546818\JED-MBX-02 Mounted 0 0 Healthy ManagementDB\JED-MBX-01 Healthy 0 0 2/27/2013 12:39:48 PM Healthy ManagementDB\JED-MBX-02 Mounted 0 0 Healthy TopManagement\JED-MBX-01 Healthy 0 0 2/27/2013 12:39:48 PM Healthy TopManagement\JED-MBX-02 Mounted 0 0 Healthy UsersDB\JED-MBX-01 Healthy 0 1 2/27/2013 2:22:51 PM Healthy UsersDB\JED-MBX-02 Mounted 0 0 Healthy VIP\JED-MBX-01 Healthy 0 0 2/27/2013 12:39:48 PM Healthy VIP\JED-MBX-02 Mounted 0 0 Healthy 1.2.6 Exchange 2010 Active DB Not on Preferred Server
Database Server Preferred Server ManagementDB JED-MBX-02 JED-MBX-01 TopManagement JED-MBX-02 JED-MBX-01 UsersDB JED-MBX-02 JED-MBX-01 VIP JED-MBX-02 JED-MBX-01 1.2.7 Exchange 20xx MAPI Connectivity Server Database Result Latency (ms) Error JED-MBX-01 Database 0125418321 48 JED-MBX-02 Database 1002546818 17 JED-MBX-02 ManagementDB 103 JED-MBX-02 TopManagement 17 JED-MBX-02 UsersDB 17 JED-MBX-02 VIP 17 1.2.8 Largest es by Total Size DisplayName DatabaseName ItemCount Size (MB) DeletedItemCount Deleted Items Size (MB) U1 UsersDB 3965 3825 11 14 3839 U2 UsersDB 3574 3749 28 0 3749 U3 UsersDB 8691 2986 186 11 2997 U4 UsersDB 5333 2241 3251 234 2475 U5 UsersDB 6012 2281 966 2 2283 U6 UsersDB 6595 2167 409 1 2168 U7 UsersDB 13610 2031 387 1 2032 U8 UsersDB 4900 2023 34 1 2024 U9 UsersDB 5007 1984 1408 37 2021 U10 UsersDB 6361 1958 29 0 1958 Total Size (MB) 1.2.9 Exchange 2010 Database Availability Group Info Name Servers Operational Servers Witness Server Witness Dir Alt Witness Server DAH-DAG JED-MBX-01, JED-MBX-02 JED-MBX-01, JED- MBX-02 jed-hubcas- 02.dah.root.local C:\DAGFileShareWitnesses\DAH- DAG.DAH.Root.Local Alt Witness Dir
2 ENVIRONMENT RISKS 2.1 Active Directory Risks Both Domain controllers in root domain are placed in virtual machines http://technet.microsoft.com/enus/library/virtual_active_directory_domain_controller_virtualization_hyperv(v=ws.10).aspx Both Domain controllers in Child domain are placed in virtual machines Some users has password set to never expire (these are users who have been migrated from windows 2000 Domain controllers) A lot of inactive machines still appear in Active directory 2.2 Exchange Risks Some databases contain more users than other and this could affect the performance, maintenance, backup, and restore. Databases are not distributed equally on both servers which will make the whole load on one server (JED-MBX-02) and the other server (JED-MBX-01) doesn t have any load. Exchange Hub/CAS servers (JED-HUBCAS-01and JED-HUBCAS-02) currently working with 12 GB R is utilizing more than need more R due to high load during working hours and this cause a back pressure on Exchange servers. No archiving solution is applied on the current Exchange environment.
3 REMEDIATION RECOMMENDATIONS 3.1 Active Directory Recommendations Adding at least one physical Domain Controller for root and child domains Remove the check box on password never expire on all users except for services accounts. Remove old inactive users accounts to avoid compromising the security policy Remove old inactive computers accounts to compromising the security policy 3.2 Exchange Recommendations Some Databases need to be spitted into two or 4 smaller DBs for better performance and faster maintenance. DBs need to be distributed across servers by configuring the preferred servers. This will guarantee distributing the load of users across both servers Increase the R on both Hub/CAS servers by 4 GB on each server to solve the high memory utilization issue on both servers Enable Exchange Archiving for all or some users according to business needs Exchange Service Pack 3 need to be installed 3.3 General Recommendations Hyper-V environment need some enhancement by: Moving the Virtual Machines files to SAN storage Create a Hyper-V cluster and make single node machines like (SCOM, SCCM, ) high available SCOM 2007 R2 need some fine tuning to send only business critical events for the correct administrators Help Desk System is missing however System Center Service Manager 2010 is installed. Windows update policy is not defined and need to put a process to update both Servers and clients machines Backup and restore procedure is not defined and Customer in need to define the backup/restore procedures for critical applications like AD and Exchange. Disaster recovery plan is not defined for critical services in the site