Univention Bugzilla – Bug 34019
UMC wizard for AD Takeover
Last modified: 2014-04-22 06:47:41 CEST
A UMC wizard for AD Takeover should be implemented. If univention-ad-takeover needs to be adjusted for this another bug should be cloned.
Frontend is nearly finished. Backend does not work yet, just some dummy functions in univention-management-console-module-adtakeover 1.0.5-1.5.201402171529
An additional backend state "done" now indicates that a takeover has been completed already before. In this case an initial info dialog is shown before the "start" dialog can be accessed. Advisory: 2014-03-05-univention-management-console-module-adtakeover.yaml
The UMC command adtakeover/connect returns the number of licensed users and the number of user accounts found in the Active Directory. The user should be informed in case the estimated number of users after the takeover exceedes the license. Maybe the backend function needs to be adjusted a bit to properly return the number of computer accounts as well.
Fixed in univention-management-console-module-adtakeover 1.0.10-16.20.201404031237 A bold warning is shown with a message: Number of %(object_name)s after takeover would be %(sum)s. This would exceed the number of licensed objects (%(max)s). You may proceed with the takeover, but the domain management may be limited afterwards until a new license is installed. Only users are checked at the moment.
I've added univention-management-console-module-adtakeover to the trigger list and the cd-contents list. So it will be announced as maintained.
AD-Takeover: OK, tested with W2K12, W2K8, W2K8R2 (english), W2K12 (french, without windows clients) and W2K3 as AD Domain Controller. Created users/groups/policies and joined windows clients to the AD domain. => adtakeover OK - users/groups/policies are synced OK - create users/groups/policies with RSAT-Tools OK - logon to already joined windows client (new and old users) OK - join of a new windows client OK - GPO's are applied on the windows clients FAIL - W2K12 (french) robocopy failed (wrong ntacl's on the default policy container and not mapping for "Administrateur" in samba/adminuser to override ntacl's) -> bug #34527 UMC: OK - states OK - time diff test OK - GPO test OK - function level test OK - license test OK - ldap base test
http://errata.univention.de/ucs/3.2/88.html