Possible Migration Methods After Server Is Infected With Ransomware

Jonny Gunawan 1 Reputation point
2022-09-23T08:40:06.193+00:00

Dear All,

One of my customers is presently using Azure AD and they are syncing with their On Premise AD using Azure AD Connect.
The problem now is that my server was hit by Eight Ransomware and corrupted the Domain Controller Server sync with Azure AD Connect.

After Read this Article
https://www.sikich.com/insight/office-365-convert-an-active-directory-synced-account-to-cloud-only/

Should I continue with On Premise Server or can I stop using Azure AD Connect and use Azure ADDS Service.
And is there a relevant article that I can implement with the conditions I experienced assuming the Domain Controller Server Syncing with Azure AD Connect is corrupt

Best Regards,
John.

Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
19,867 questions
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. JimmySalian-2011 41,936 Reputation points
    2022-09-23T09:47:04.43+00:00

    Hi,

    It depends what solution was want to implement and the requirements? Do you have onpremise users and groups that were sync across ? Are you looking for cloud only solution after the ransomware?

    The approach will be to rebuild the AAD Connect server import the configuration if you have from previous setup and match the users via UPN or whatever attribute you set - how-to-connect-install-custom

    ADDS Service is Cloud managed domain service with some limitations however it depends what your end goal is so design and plan it accordingly.

    917392

    ==
    Please "Accept the answer" if the information helped you. This will help us and others in the community as well.


  2. Jonny Gunawan 1 Reputation point
    2022-09-27T02:07:14.797+00:00

    Dear Jimmy,

    Thank you for your quick response and explanation.

    Do you have local users and groups synced? Yes, there is

    Are you looking for a cloud only solution after ransomware? if still using On Premise Server with AD Connect how do I synchronize the server while my On Premise Server has been damaged before because of Ransomware.

    If I Create a new Server On Premise and re-sync, it means I will lose the Synchronization of User Properties from the previous Server On Premise.

    Is there any Idea that can be used so that I have Option for AD On Premise Server recovery.

    Best Regards,
    John.

    0 comments No comments

  3. Jonny Gunawan 1 Reputation point
    2022-10-04T07:49:27.193+00:00

    Dear All,

    I have a question like the following, if in my current state, I enable Azure ADDS, will the configuration use the existing configuration in Azure AD or will it automatically create a new Domain?
    And what if I want to use Azure ADDS is there any reference especially in the case I'm having now?

    Best Regards,
    John.

    0 comments No comments