Mastering Exchange 2000 and Active Directory with Tivoli. Bruno Friess



Similar documents
Data Protection for Exchange: A Look Under the Hood

Backup and Disaster Recovery Restoration Guide

Preface Introduction... 1 High Availability... 2 Users... 4 Other Resources... 5 Conventions... 5

SonicWALL CDP 5.0 Microsoft Exchange InfoStore Backup and Restore

Zen Internet. Online Data Backup. Zen Vault Professional Plug-ins. Issue:

Exchange 2003 Single /Mailbox Restore: From an image-level backup. Written By: Ricky El-Qasem Senior Systems Engineer Veeam Software

MOC 5047B: Intro to Installing & Managing Microsoft Exchange Server 2007 SP1

Microsoft Exchange 2003 Disaster Recovery Operations Guide

Active Directory backup and restore with Acronis Backup & Recovery 10

Symantec NetBackup Blueprints

How to use Data Protector 6.0 or 6.10 with Exchange Recovery Storage Groups to restore a single mailbox

Exchange Server Backup and Restore

Backup Exec Private Cloud Services. Planning and Deployment Guide

CA ARCserve and CA XOsoft r12.5 Best Practices for protecting Microsoft Exchange

Symantec NetBackup Blueprints

Acronis Backup & Recovery Backing Up Microsoft Exchange Server Data

VMware vsphere Data Protection 6.0

Acronis Recovery TM for Microsoft Exchange TM

Microsoft. Jump Start. M11: Implementing Active Directory Domain Services

Protecting Active Directory

SAM Backup and Restore Guide. SafeNet Integration Guide

Administration GUIDE. Exchange Database idataagent. Published On: 11/19/2013 V10 Service Pack 4A Page 1 of 233

Active Directory Disaster Recovery Workshop. Lab Manual Revision 1.7

Exchange Granular Restore User Guide

OPTIONS / AGENTS DESCRIPTION BENEFITS

Using Tivoli Data Protection for Microsoft Exchange Server

Active Directory backup and restore with Acronis Backup & Recovery 11. Technical white paper. o o. Applies to the following editions: Advanced Server

Monitoring and Troubleshooting Microsoft Exchange Server 2007 (5051A) Course length: 2 days

NovaBACKUP. Storage Server. NovaStor / May 2011

Customer Health Check Report FY 2013 Global Knowledge

Acronis Backup & Recovery 11.5

VMware vsphere Data Protection 6.1

Deploying Windows Streaming Media Servers NLB Cluster and metasan

Backup Exec System Recovery 7.0 Best Practices

VMware vsphere Data Protection 5.8 TECHNICAL OVERVIEW REVISED AUGUST 2014

BackupAssist v6 quickstart guide

Active Directory Restoration

MS Exchange Server backup with eazybackup

istorage Server: High-Availability iscsi SAN for Windows Server 2008 & Hyper-V Clustering

Acronis Backup & Recovery Update 2. Backing Up Microsoft Exchange Server Data

Directory Backup and Restore

Integrating Data Protection Manager with StorTrends itx

SonicWALL CDP 5.0 Microsoft Exchange User Mailbox Backup and Restore

Exchange Granular Restore. User Guide

Configuration Task 3: (Optional) As part of configuration, you can deploy rules. For more information, see "Deploy Inbox Rules" below.

Symantec Backup Exec 2014 Agents and Options

Microsoft Exchange Server Backup Options

MS Exchange Server backup with BackupAgent

Backup Exec 15 Agents and Options

Optimized data protection through one console for physical and virtual systems, including VMware and Hyper-V virtual systems

NetBak Replicator 4.0 User Manual Version 1.0

Active Directory Infrastructure Design Document

DNS must be up and running. Both the Collax server and the clients to be backed up must be able to resolve the FQDN of the Collax server correctly.

Module 10: Maintaining Active Directory

Tivoli Storage Manager Scalability Enhancements

VSS Backup Solution for Exchange Server 2007 and Symantec Backup Exec 12.5 using ETERNUS VSS Hardware Provider

SETTING UP ACTIVE DIRECTORY (AD) ON WINDOWS 2008 FOR EROOM

Exchange Mailbox Protection Whitepaper

Backup and Restore of CONFIGURATION Object on Windows 2008

Load Balancing Exchange 2007 SP1 Hub Transport Servers using Windows Network Load Balancing Technology

Installing Active Directory on Windows Server 2008 by Daniel Petri - January 8, 2009 Printer Friendly Version

IBM Tivoli Storage Manager for Microsoft SharePoint

IBM Tivoli Storage Manager Version Introduction to Data Protection Solutions IBM

BEST PRACTICES FOR PROTECTING MICROSOFT EXCHANGE DATA

Setting up Active Directory Domain Services

WHITE PAPER: ENTERPRISE SOLUTIONS. Quick Recovery of Microsoft Active Directory Using Symantec Backup Exec 11d Agent for Active Directory

IBM Tivoli Storage FlashCopy Manager Overview Wolfgang Hitzler Technical Sales IBM Tivoli Storage Management

Configuration Guide. Remote Backups How-To Guide. Overview

SAM 8.0 Backup and Restore Guide. SafeNet Integration Guide

IBM Tivoli Storage Manager for Mail Version Data Protection for Microsoft Exchange Server Installation and User's Guide IBM

Configuring Outlook for IMAP. Creating a New IMAP Account. Modify an Existing Account

BackupAssist v6 quickstart guide

Exchange Outlook Profile/POP/IMAP/SMTP Setup Guide

Common Backup Issues

SnapManager 6.1 for Microsoft Exchange Server

Backup Exec 12.5 Agent for Microsoft Virtual Servers FAQ

Clustering ExtremeZ-IP 4.1

How To Recover From A Disaster In An Exchange 5.5 Server

eztechdirect Backup Service Features

Acronis Backup Advanced for Exchange. Version 11.5 Update 3. Backing Up Microsoft Exchange Server Data

Symantec Backup Exec 11d for Windows Servers Sets the Standard for Exchange 2007 Server Data Protection

RDS Online Backup Suite v5.1 Brick-Level Exchange Backup

ONLINE BACKUP MANAGER MS EXCHANGE MAIL LEVEL BACKUP

FalconStor Recovery Agents User Guide

WHITE PAPER: DATA PROTECTION. Veritas NetBackup for Microsoft Exchange Server Solution Guide. Bill Roth January 2008

SmartSync Backup Efficient NAS-to-NAS backup

Rentavault Online Backup. MS Exchange Mail Level Backup

Lesson Plans Configuring Exchange Server 2007

Tivoli Storage Manager

Configuration of a Load-Balanced and Fail-Over Merak Cluster using Windows Server 2003 Network Load Balancing

Exchange Granular Restore Instructional User Guide

Trends in Application Recovery. Andreas Schwegmann, HP

Using Depositit to Backup Microsoft Exchange Server

ShadowProtect Granular Recovery for Exchange Migration Scenarios

Symantec Backup Exec 2014 Icon List

LAN/Server Free* Backup Experiences

Neoteris IVE Integration Guide

How to Configure Double-Take on Microsoft Exchange Server

Transcription:

Mastering Exchange 2000 and Active Directory with Tivoli Bruno Friess Exchange 2000 Overview STORE.EE MTA xapi MAPI DB DBDB IS Active Directory Forest Communication Layer SMTP POP3 IMAP IIS No Exchange Directory Exchange Backup without AD Mailbox is an attribut of an user Mailboxes can be transferred

Exchange 2000 Overview STORE.EE (Web Storage System) Storage Group ESE Instance LOG LOG LOG EDB EDB STM STM Information Store One STORE.EE Service for all DBs ESE = Extensible Storage Engine Up to 4 Storage Groups Up to 5 databases per Storage Group One Log per Storage Group Mount/Dismount from single DBs 1 Database consists of 1 database file (x.edb) 1 streaming file (x.stm) 1 log file (with contents from other DBs) 1 patch file Backup types What s new for backups? Backup/Restore of single databases MSExchangeIS must be started during Restore System Attendant is not in use Database must be dismounted during restore Parallel Backup/Restore Type Copies DB Copies logs Truncates logs Full Copy Incremental Differential circular logging off

TDP for Exchange - Backup process tdpexcc backup * full /tsmoptfie=galaxy.opt /excserver =galaxy Backup API Call ESE Backup-Mode Begin Backup Backup calls the IS, that a backup process starts Backup type delivered IS informs ESE and selects the backup type for each database ESE creates one patch file New generation of log files (full/copy) Flushing of contents into the database database pages are requested sequentially building a checksum for each page Backup completed ESE Normal-Mode End Backup Full/Copy/Incr/Diff/DBCopy All pages are processed Log and patch files are saved New generation of log files (incremental/differential) Old logs are deleted Closing Backup API Restore process tdpexcc restore oxford,london full /tsmoptfile=galaxy.opt /excserver=galaxy Database Offline ESE in Restore-Mode Begin Restore Backup tool or administrator dismounts the database IS informs ESE that restore starts Creation of the restore Storage group Backup tool copies EDB/STM from tape to disk Log and patch files are copied to the specified log dir Restore completed Params: /mountdb /partial /recover /templogrestorepath ESE in Normal-Mode Mounting of the database to the storage group Deletion of the temporary Log and patch files End Restore Logs are applied to databases patch files are applied to databases existing logs are applied as well Deletion of the restore storage group

Do you work with LAN or SAN? enablelanfree yes TSM Client 1) Meta data 3) Write data LAN TSM server TAPE DATA 2) Read Data FC DATA SAN FC Client moves data from disk to tape Client disk can be SCSI or FC Server manages backups Eliminates network bandwidth Frees up host cycles High speed Scalable SAN Part 2 Is it fast??? Fast-Ethernet 18GB/h Giga-Ethernet 35GB/h Fibre Channel 45GB/h If you have better results then you have better hardware. No NAS please!! (Recommendation from Microsoft)

Exchange 2000 Active-Active Cluster clusternode yes Private Network C: local: Zaphod.demo.com zaphod.opt Local Area Network Public Network C: local: Marvin.demo.com marvin.opt virtual: Galaxy.demo.com galaxy.opt Exchange: galaxy_exch.opt galaxy_full.cmd galaxy_incr.cmd R: S: FC Enclosure tdpexc.cfg virtual: Starwars.demo.com starwars.opt Exchange: starwars_exch.opt starwars_full.cmd starwars_incr.cmd Cluster Part 2 TCP/IP From TSM Server Private Network 192.1.1.1 (NIC for Heartbeat) C: local: Zaphod.demo.com zaphod.opt virtual: Galaxy.demo.com galaxy.opt Exchange: galaxy_exch.opt galaxy_full.cmd galaxy_incr.cmd Public Network R: tdpexc.cfg 192.1.1.5 port 1501 192.1.1.8 port 1502 Attention: 1503 is occupied from Win2k 192.1.1.8 is a virtual address Win2k doesn t work with this IP TSM contacts the client via 192.1.1.8 Session opens with 192.1.1.5 port 1502 For Exchange: 192.1.1.15 port 1504 192.1.1.16 port 1505

Dependency to the Active Directory Exchange 2000 uses the AD as directory database and information storage. There is a one-to-one relationship between AD forest and Exchange organization. Exchange is a Schema extension in the AD Not all attributes are replicated!! Clients must have access to the global catalog Configuration data is stored in the AD and IIS A D C Exchange 5.5 Server Have you ever deleted something?? 01:00 am Incremental Backup of all DCs 03:00 am Incremental Backup of Exchange Server Galaxy 06:00 am TSM backup db, reclamation, expire inv starts 08:34 am Admin Joe has the job to delete user Paul in the AD 08:42 am File replication has started; Paul is deleted on all DCs 08:44 am Paul s mailbox is deleted from the Exchange IS 08:45 am Paul s settings in the Terminal Server are deleted 08:45 am Paul s data is deleted in the companies SQL 2000 database 08:46 am Paul s security information (Key Management) is gone 09:10 am Paul s manager calls Joe to cancel the job: Paul stays in the company Where do you start the restore today????

Restore of the Active Directory only Non-authoritative Is used to restore the Active Directory as an older version and update this version via normal replication. Howto: Check the consistency with q systemobject As usual, the whole system state must be restored Since Version 4.2 multiple versions of the system state are supported (thanks to the TSM development) Start the Win2k machine in Safe Mode Issue restore systemobject Choose ActivateKey/Overwrite/Original Location Reboot the machine in normal mode Voilà SG24-6141 Restore of the AD Part 2 only Authoritative Is used to restore the Active Directory as the master version and update all dependent DCs via normal replication. Important: This cannot be done with TSM directly Howto: Check the consistency with q systemobject As usual, the whole system state must be restored Issue restore systemobject Choose ActivateKey/Overwrite/Original Location The files are in the correct directory and the job from TSM is over Do NOT reboot the Win2k machine The nightmare can start... SG24-6141

How to find the deleted information? (Original text from Microsoft article Q258310) Step 1 What was the distinguished name of Paul?? Very easy... 1. Start ldp.exe and connect to the DC (type connectionless) 2. Bind the correct AD version 3. Start a search in the base DN with dc=<mydomain>,dc=<com> 4. One of maybe hundreds of entries could be: B:32:18E2EA80757FG11D2B9AA00F43T88KO93F8:CN=Deleted 5. Copy the data following the second colon 6. Go back to the main view click Search, type <WKGUID=18E2EA80757FG11D2B9AA00F43T88KO93F8> Don t forget the <> 7. In the filter box type (objectclass=*) 8. In the Controls box enter 1.2.840.113556.1.4.417 9. Clear the Value box, set the Control Type to Server, click the critical check box 10. In the search call type section select Attributes only = Cleared 11. Click ok to close the search options dialog box Here comes the result: the DN of Paul was cn=paul_simon,ou=nt,ou=australia,dc=demo,dc=com. Restore of the AD object and all dependent databases Step 2 Start ntdsutil and enter the command authoritative restore restore subtree cn=paul_simon,ou=nt,ou=australia,dc=demo,dc=com. Problems: Tombstone date, USN (Update Sequence number), Type mismatches Step 3 (documented in Q216359) Restore the Sysvol folder and publish it Mapping of GUID and the restored object in Step 2 Manually copy the mapped folder to the orginal place Step 4 Restore the Exchange DB (first you have to find the mailbox of Paul) Map the mailbox to the restored user Restore the Terminal Server Settings Restore the SQL 2000 database SG24-6141 SG24-6147 6148 and 6265 Would you ever do this???

Principles of the single mailbox restore Or: How long do you want to keep a deleted email?? Use the deleted item recovery from Exchange! Doesn t use so much storage The user itself can restore the mail The problem to map SID to GUID is eliminated Together with an archiving tool!!! Another way: Restore of the database to another Exchange server is necessary Export a PST file and import this to the production system This DR Server cannot be a member of the production AD forest The DR Server needs its own AD and DNS More complicated than with Exchange 5.5 Brick Level Backup or MAPI Backup is still NOT supported from Microsoft. Complementary product Exchange 2000 Server CommonStore TSM CM CM OD Archiving of mail messages: Attachements and/or body of an email Administrator defined, fully automated Based on flexible policies Integrated indexing Retrieval/Viewing: From Outlook 2000 (web link, URL) Without Outlook/Exchange via web Windows 2000 Windows NT AI S/390 HP-U Sun Solaris Windows 2000 Windows NT AI S/390 Windows 2000 Windows NT AI HP-U Sun Solaris (product works like CS for Domino)

Thank you!!! FINISH Any questions??? bruno.friess@systematics.de