LDIFDE - Export

From: James Kenneth Williams (jamessr_at_ikennect.com)
Date: 05/04/04


Date: Tue, 4 May 2004 14:43:30 -0700

I am working to be able to export Active Directory
objects, including users and groups, and be able to
maintain the rights & permissions during an import.

I've run the following exports, thus far:
1). ldifde -f exportou.ldf -s wan-dev-srv -
d "dc=mydomain,dc=com" -p subtree -
r "objectclass=organizationalunit)" -l "cn,objectclass,ou"

2).ldifde -f groups1.ldf -s wan-dev-srv -t 389 -
d "dc=mydomain,dc=com" -p subtree -
r "(objectClass=group)" -
l "DN,member,info,description,groupType,instanceType,object
Class,name,sAMAccountName"

3). ldifde -f users.ldf -s wan-dev-srv -t 389 -
d "DC=mydomain,DC=com" -p subtree -r "(&
(objectCategory=person)(objectClass=user))" -
l "DN,objectClass,userAccountControl,sAMAccountName,display
Name,givenName,sn,streetAddress,l,st,postCode,c,co,countCod
e,department,company,physicalDeliveryOfficeName,telephoneNu
mber"

The rights & permissions are not carried over to the new
machine. What am I missing.

Any help that you can provide will be greatly appreciated.

Regards, James



Relevant Pages

  • Re: Prevent changes to Administrator password
    ... What I am trying to do is give Taz1972 some options to minimize the risk or make it harder for a lower-level DA to reset the password for the EA account. ... Restricted Admins group to mitigate against what you propose Deji. ... also need to make sure the DAs in question cannot elevate their rights to EA, ... > By adding the Deny Write Permissions ACE, ...
    (microsoft.public.windows.server.active_directory)
  • Re: managing huge user permissions in teamsite in SPS2003
    ... you could assign permissions to groups and then add users to the ... Yes, SharePoint has a concept of cross-site groups, provided your sites ... > Here problem is user and user rights maintenance.If anybody wants rights to ... > structure in active directory and using only groups instead of user on site ...
    (microsoft.public.sharepoint.portalserver)
  • Re: Prevent changes to Administrator password
    ... What I am trying to do is give Taz1972 some options to minimize the risk or make it harder for a lower-level DA to reset the password for the EA account. ... * This posting is provided "AS IS" with no warranties and confers no rights! ... > By adding the Deny Write Permissions ACE, ... > permission to modify the ACL on AdminSDHolder. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Why is Fedora not a Free GNU/Linux distributions?
    ... Taking away legitimate rights, yes, that would be immoral. ... specifically to be incompatible with the GPL, ... Software license) doesn't take away any right you had. ... There are other permissions that enable you to copy and distribute the ...
    (Fedora)
  • Re: Prevent changes to Administrator password
    ... Have you thought about delegating the exact permissions needed instead of using DA or restructing your forest? ... * This posting is provided "AS IS" with no warranties and confers no rights! ... > Restricted Admins group to mitigate against what you propose Deji. ...
    (microsoft.public.windows.server.active_directory)