Exchange Migration Case Study

advertisement
EXL309
john.logan@education.ky.gov
1
Introduction
 Overview
2
4
3
Challenges and
Choices
 Email Situation
 KDE’s Challenges
 Choosing the Cloud
Planning
5
The Migration
 KDE Migration Planning  Migration logistics
 Involving a Partner
 Post Migration
Experience
6
Managing Today
 KDE Admin Experience
 KDE Recommendations
 Microsoft Migration
Recommendations
Q&A

Ask us!
1,233 Schools
44,023 Teachers
MS-Mail
MS
Exchange
4.0/5.0/5.5
MS
Exchange
2003
1994
• 200 Microsoft
Exchange 2003
Servers
• 1250 Microsoft Mail
3.5 Servers
1996
2010
• 200 Microsoft
Exchange 5.5
Servers
• 0 Email Servers
The beginning of me not being ‘the mailman’
544 Domain Controllers (1 GC / 2DCs per domain with Repl Hubs)
PCNS on all
Extended Schema to add ‘Live@edu’ specific attributes for OLPS
Designations for Staff vs Students
KDE reserves Domain Admins
DC
DC
GC
DC
DC
ADAIR
WOODFORD
ROOT
GC GC GC GC
•
180 Domains
(classic Hub&Spoke)
•
W2K8 (All Hyper-V)
•
KCC is on
•
15 minute InterSite
GC
DC
DC
KDE
GC
MPLS
10 Mbps – 500 Mbps > 4 Gbps
Autonomous with governance
Advisory Committee
Partners (Microsoft and Dell)
Partner - FullArmor
District Deployment Guide
District Operations Guide
BIG BANG!
Created 828,000 Windows Live IDs
SOWs, Requirements, Design, Test, etc
Built Tenants, RBACs, etc
‘KDE Live@edu Components’ between on-prem AD and
Exchange Online
‘Warmed’ cloud beforehand with users
Communicated! (Implementation Guide and DOG)
Pilots, then ‘Big Bang’
Districts could migrate content (FullArmour)
Prior
• Envisioned, designed,
implemented
components, tested
• Gathered client
usage
• AD account and
mailbox cleanup
• Sent communications
T-4 Weeks
• Create new and
capture existing EASI
IDs
• Pilots – processes,
docs and technology
• Users reset AD
passwords
T-2 Days
(5/19/2010)
• Distribute district
admin accounts
• Redirect SMTP relays
• Disable Exchange
2003 provisioning
(RUS, etc)
• Administration
moratorium
• Back-up AD
Day of Migration – Big Bang 5/21/2010
Tom
Tom
Disabled Account w/o mailbox
Active Account w/ mailbox
SMTP: Tom@Districtx.com
SMTP:
TargetAddress:
Tom@Districtx.com
X500=LegacyExchangeDN
E-mail
Bob
Active Account w/ mailbox
SMTP:
Bob@District1.Com
X500=LegacyExchangeDN
E-mail
E-mail
E-mail
Chick
Chick
Disabled
Account
mailbox
Active
Account
w/ w/o
mailbox
SMTP: Chick@District174.com
Chick@District174.Com
SMTP:
TargetAddress:
X500=LegacyExchangeDN
Chick@District174.com
X500=LegacyExchangeDN
Mail FWD
Mail FWD
Active
Directory
E-mail
Ex
Servers
Active
Directory
Ex
Servers
Active
Directory
Ex
Servers
E-mail
Bob
Local Account w/o
mailbox:
w/ Mailbox:
TargetAddr:
Bob@District1.Com
SMTP: Bob@District1.Com
District 1
Tom
Local Account w/o
w/ Mailbox:
mailbox:
TargetAddr:
SMTP: Tom@Districtx.Com
Tom@Districtx.Com
District x
On-Premises Exchange 2003
Chick
Chick
Local Account w/o mailbox:
Local Account w/ Mailbox:
TargetAddr:
SMTP: Chick@District174.Com
Chick@District174.Com
District 174
Messaging and Directory Services Team (4 members)
KETS Service Desk
KETS Engineers
District Operations Guide (DOG)
STUDENTS
CONTACTS
STUDENTS
FACULTY
STAFF
STUDENTS
DISTRIBUTION LISTS
STAFF TENANT
ILM
ILM
MV
MV
ILM
CS
METAVERSE
STUDENTS
STUDENTS
STUDENTS
STUDENT TENANTS 1 - 179
ILM
ILM
ILM
MV
MV
MV
CS
CS
User
Provisioning Database
Contact
Group
Mailbox Enabled User
Mailbox Enabled Contact
CONTACTS
Mailbox Enabled Group
FACULTY
STAFF
DISTRIBUTION LISTS
Exchange Online
179 Domain Controllers
District 1
District 1
Adair.kyschools.us
Allen.kyschools.us
Anchorage.kyschools.us
Anderson.kyschools.us
Fayette
Ashland.kyschools.us
.
.
BOB
Education.ky.gov
.
.
Woodford.kyschools.us
District 178
DRAD
Stu.Adair.kyschools.us
AD replication
(15 minutes Inter-site)
Stu.Allen.kyschools.us
Stu.Anchorage.kyschools.us
Stu.Anderson.kyschools.us
Stu.Ashland.kyschools.us
stu.fayette
.
.
TOMMY
Stu.Fayette.kyschools.us
.
District 90
.
Stu.Woodford.kyschools.us
Live@edu Frankfort-based
Enterprise Components
JIM
GC
KCP
SSO
OLPS
TOMMY
JIM
Fayette
District 120
GALSync
Staff
BOB
W2K8 Core w/Hyper-V
JIM
District 178
Students
Partner
Agencies
TOMMY
GC
DC
Manage their users and DGs (ADUC, ECP, KCP, PowerShell)
Change domain settings
KETS Control Panel
KDE owns Tenant Admin management
For students
Manage their users (No GAL)
More of a ‘full-Tenant’ admin
Transport Rules (Closed Campus, or custom through PowerShell)
RBACs
and set Tombstoning for each…
(we’re K12)
(revisit our requirements)
OLPS, SMTP Relay
AD?
What about support?
‘College/Career Ready’
7 or our 8 ‘State’ Colleges are Live@edu
Evictions are not in Live@edu
Cross-Tenant mailbox moves/renames
Easy, available, useful and cheap
It’s a great move for some things. Your engineering and support
framework will change.
MCS, FullArmour
Quit trying to be the experts and widget turners
Give the technology to the teachers and kids
Staged migration
Hybrid
Exchange 5.5
X
Exchange 2000
X
Exchange 2003
X
X
X
X
Exchange 2007
X
X
X
X
Exchange 2010
X
X
Notes/Domino
X
GroupWise
X
Other
X
IMAP migration
Exchange migration
New Migration Options
•
X
formerly FullArmor MailPortal Migrator
http://www.quest.com/migrator-for-cloud-email
EXL310: Exchange Online and Office 365: Simple Migration Live
EXL311: Microsoft Exchange Server and Office 365: How To Set Up a
Hybrid Deployment
EXL305: Best Practices for Successfully Transitioning to Exchage 2010
OSP325: Microsoft Office 365: Directory Synchronization
EXL375-INT - Understanding Archiving and Compliance in Microsoft
Exchange Online
http://msexchangeteam.com
http://technet.microsoft.com/exdeploy2010
http://bit.ly/iXS4EH
http://www.quest.com/migrator-for-cloud-email
http://northamerica.msteched.com
www.microsoft.com/teched
www.microsoft.com/learning
http://microsoft.com/technet
http://microsoft.com/msdn
Download