EXL309 john.logan@education.ky.gov 1 Introduction Overview 2 4 3 Challenges and Choices Email Situation KDE’s Challenges Choosing the Cloud Planning 5 The Migration KDE Migration Planning Migration logistics Involving a Partner Post Migration Experience 6 Managing Today KDE Admin Experience KDE Recommendations Microsoft Migration Recommendations Q&A Ask us! 1,233 Schools 44,023 Teachers MS-Mail MS Exchange 4.0/5.0/5.5 MS Exchange 2003 1994 • 200 Microsoft Exchange 2003 Servers • 1250 Microsoft Mail 3.5 Servers 1996 2010 • 200 Microsoft Exchange 5.5 Servers • 0 Email Servers The beginning of me not being ‘the mailman’ 544 Domain Controllers (1 GC / 2DCs per domain with Repl Hubs) PCNS on all Extended Schema to add ‘Live@edu’ specific attributes for OLPS Designations for Staff vs Students KDE reserves Domain Admins DC DC GC DC DC ADAIR WOODFORD ROOT GC GC GC GC • 180 Domains (classic Hub&Spoke) • W2K8 (All Hyper-V) • KCC is on • 15 minute InterSite GC DC DC KDE GC MPLS 10 Mbps – 500 Mbps > 4 Gbps Autonomous with governance Advisory Committee Partners (Microsoft and Dell) Partner - FullArmor District Deployment Guide District Operations Guide BIG BANG! Created 828,000 Windows Live IDs SOWs, Requirements, Design, Test, etc Built Tenants, RBACs, etc ‘KDE Live@edu Components’ between on-prem AD and Exchange Online ‘Warmed’ cloud beforehand with users Communicated! (Implementation Guide and DOG) Pilots, then ‘Big Bang’ Districts could migrate content (FullArmour) Prior • Envisioned, designed, implemented components, tested • Gathered client usage • AD account and mailbox cleanup • Sent communications T-4 Weeks • Create new and capture existing EASI IDs • Pilots – processes, docs and technology • Users reset AD passwords T-2 Days (5/19/2010) • Distribute district admin accounts • Redirect SMTP relays • Disable Exchange 2003 provisioning (RUS, etc) • Administration moratorium • Back-up AD Day of Migration – Big Bang 5/21/2010 Tom Tom Disabled Account w/o mailbox Active Account w/ mailbox SMTP: Tom@Districtx.com SMTP: TargetAddress: Tom@Districtx.com X500=LegacyExchangeDN E-mail Bob Active Account w/ mailbox SMTP: Bob@District1.Com X500=LegacyExchangeDN E-mail E-mail E-mail Chick Chick Disabled Account mailbox Active Account w/ w/o mailbox SMTP: Chick@District174.com Chick@District174.Com SMTP: TargetAddress: X500=LegacyExchangeDN Chick@District174.com X500=LegacyExchangeDN Mail FWD Mail FWD Active Directory E-mail Ex Servers Active Directory Ex Servers Active Directory Ex Servers E-mail Bob Local Account w/o mailbox: w/ Mailbox: TargetAddr: Bob@District1.Com SMTP: Bob@District1.Com District 1 Tom Local Account w/o w/ Mailbox: mailbox: TargetAddr: SMTP: Tom@Districtx.Com Tom@Districtx.Com District x On-Premises Exchange 2003 Chick Chick Local Account w/o mailbox: Local Account w/ Mailbox: TargetAddr: SMTP: Chick@District174.Com Chick@District174.Com District 174 Messaging and Directory Services Team (4 members) KETS Service Desk KETS Engineers District Operations Guide (DOG) STUDENTS CONTACTS STUDENTS FACULTY STAFF STUDENTS DISTRIBUTION LISTS STAFF TENANT ILM ILM MV MV ILM CS METAVERSE STUDENTS STUDENTS STUDENTS STUDENT TENANTS 1 - 179 ILM ILM ILM MV MV MV CS CS User Provisioning Database Contact Group Mailbox Enabled User Mailbox Enabled Contact CONTACTS Mailbox Enabled Group FACULTY STAFF DISTRIBUTION LISTS Exchange Online 179 Domain Controllers District 1 District 1 Adair.kyschools.us Allen.kyschools.us Anchorage.kyschools.us Anderson.kyschools.us Fayette Ashland.kyschools.us . . BOB Education.ky.gov . . Woodford.kyschools.us District 178 DRAD Stu.Adair.kyschools.us AD replication (15 minutes Inter-site) Stu.Allen.kyschools.us Stu.Anchorage.kyschools.us Stu.Anderson.kyschools.us Stu.Ashland.kyschools.us stu.fayette . . TOMMY Stu.Fayette.kyschools.us . District 90 . Stu.Woodford.kyschools.us Live@edu Frankfort-based Enterprise Components JIM GC KCP SSO OLPS TOMMY JIM Fayette District 120 GALSync Staff BOB W2K8 Core w/Hyper-V JIM District 178 Students Partner Agencies TOMMY GC DC Manage their users and DGs (ADUC, ECP, KCP, PowerShell) Change domain settings KETS Control Panel KDE owns Tenant Admin management For students Manage their users (No GAL) More of a ‘full-Tenant’ admin Transport Rules (Closed Campus, or custom through PowerShell) RBACs and set Tombstoning for each… (we’re K12) (revisit our requirements) OLPS, SMTP Relay AD? What about support? ‘College/Career Ready’ 7 or our 8 ‘State’ Colleges are Live@edu Evictions are not in Live@edu Cross-Tenant mailbox moves/renames Easy, available, useful and cheap It’s a great move for some things. Your engineering and support framework will change. MCS, FullArmour Quit trying to be the experts and widget turners Give the technology to the teachers and kids Staged migration Hybrid Exchange 5.5 X Exchange 2000 X Exchange 2003 X X X X Exchange 2007 X X X X Exchange 2010 X X Notes/Domino X GroupWise X Other X IMAP migration Exchange migration New Migration Options • X formerly FullArmor MailPortal Migrator http://www.quest.com/migrator-for-cloud-email EXL310: Exchange Online and Office 365: Simple Migration Live EXL311: Microsoft Exchange Server and Office 365: How To Set Up a Hybrid Deployment EXL305: Best Practices for Successfully Transitioning to Exchage 2010 OSP325: Microsoft Office 365: Directory Synchronization EXL375-INT - Understanding Archiving and Compliance in Microsoft Exchange Online http://msexchangeteam.com http://technet.microsoft.com/exdeploy2010 http://bit.ly/iXS4EH http://www.quest.com/migrator-for-cloud-email http://northamerica.msteched.com www.microsoft.com/teched www.microsoft.com/learning http://microsoft.com/technet http://microsoft.com/msdn