Microsoft Active Directoryã¯ããŠãŒã¶ãŒèªèšŒãšéäžç®¡çã®æ¥çæšæºã§ãã ã·ã¹ãã 管çè
ããã®ãã¯ãããžãŒãªãã§äœæ¥ã管çããæ¹æ³ãæ³åããããšã¯ã»ãšãã©äžå¯èœã§ãã ãã ããActive Directoryã䜿çšããããšã«ã¯å€§ããªã¡ãªãããããã ãã§ãªããå€å€§ãªè²¬ä»»ã課ããããããªãã®æéãšäœæ¥ããã»ã¹ã®ç解ãå¿
èŠã«ãªããŸãã ãããã£ãŠãVeeamãœãªã¥ãŒã·ã§ã³ã䜿çšããŠActive Directoryãæ£åžžã«ããã¯ã¢ããããã³åŸ©å
ããæ¹æ³ã説æããèšäºãããã€ã玹ä»ããŸãã ç¹ã«ãVeeamããã¡ã€ã³ã³ã³ãããŒã©ãŒïŒDCïŒãŸãã¯åã
ã®ADãªããžã§ã¯ãã®ã³ããŒãäœæããå¿
èŠã«å¿ããŠãããã埩å
ããæ¹æ³ã説æããŸãã
ä»æ¥ã®æçš¿ã§ã¯ãVeeamãæäŸããç©çããã³ä»®æ³ãã¡ã€ã³ã³ã³ãããŒã©ãŒã®ããã¯ã¢ããæ©èœãšãããã¯ã¢ããäžã«èŠããŠããå¿
èŠãããããšã«ã€ããŠèª¬æããŸãã 詳现-ç«ã®äžã

Active DirectoryãµãŒãã¹ã¯åé·æ§ãèæ
®ããŠèšèšãããŠãããããéåžžã®ããã¯ã¢ããã«ãŒã«ãšæŠè¡ãããã«å¿ããŠèª¿æŽããå¿
èŠããããŸãã ãã®å ŽåãSQLãŸãã¯ExchangeãµãŒããŒã§æ¢ã«æ©èœããŠããã®ãšåãããã¯ã¢ããããªã·ãŒã䜿çšããã®ã¯æ£ãããããŸããã Active Directoryã®ããã¯ã¢ããããªã·ãŒã®èšèšã«åœ¹ç«ã€ã¬ã€ãã©ã€ã³ã次ã«ç€ºããŸãã
- ç°å¢å
ã®ã©ã®ãã¡ã€ã³ã³ã³ãããŒã©ãŒãFlexible Single Master OperationsïŒFSMOïŒãšããŠæ©èœãããã確èªããŸãã
䟿å©ïŒã³ãã³ãã©ã€ã³ã§ç¢ºèªããç°¡åãªã³ãã³ãïŒ > netdom query fsmo
å®å
šãªãã¡ã€ã³å埩ãå®è¡ããå ŽåãFSMOã®åœ¹å²ãæãå€ããã¡ã€ã³ã³ã³ãããŒã©ãŒããéå§ããã®ãæé©ã§ããããã¯éåžžããã©ã€ããªãã¡ã€ã³ã³ã³ãããŒã©ãŒïŒPDCïŒã®ãšãã¥ã¬ãŒã¿ãŒã®åœ¹å²ãæã€ãµãŒããŒã§ãã ãã以å€ã®å Žåã¯ãå埩åŸãé©åãªåœ¹å²ãæåã§åå²ãåœãŠããå¿
èŠããããŸãïŒntdsutil seizeã³ãã³ãã䜿çšïŒã
- åã
ã®ãªããžã§ã¯ããä¿è·ããå Žåãæ¬çªãµã€ãã§äœ¿çšå¯èœãªãã¹ãŠã®ã³ã³ãããŒã©ãŒãããã¯ã¢ããããå¿
èŠã¯ãããŸããã åã
ã®ãªããžã§ã¯ãã埩å
ããã«ã¯ãActive DirectoryããŒã¿ããŒã¹ã®ã³ããŒïŒntds.ditãã¡ã€ã«ïŒã§ååã§ãã
- ADãªããžã§ã¯ãã誀ã£ãŠãŸãã¯æå³çã«åé€ãŸãã¯å€æŽãããªã¹ã¯ãæžããæ©äŒã¯åžžã«ãããŸãã 管çæš©éã®å§ä»»ãææ Œããæš©éã§ã®ã¢ã¯ã»ã¹ã®å¶éãããã³äºåå®çŸ©ãããé
延ã䌎ãããã¯ã¢ãããµã€ããžã®è€è£œãæšå¥šã§ããŸãã
- éåžžããã¡ã€ã³ã³ã³ãããŒã©ãŒã1ã€ãã€ããã¯ã¢ããããDFSã¬ããªã±ãŒã·ã§ã³ãšéè€ããªãããã«ããããšããå§ãããŸãã çŸä»£ã®ãœãªã¥ãŒã·ã§ã³ã¯ãã®åé¡ã解決ããæ¹æ³ãç¥ã£ãŠããŸããã
- ä»®æ³VMwareç°å¢ã䜿çšããŠããå Žåããããã¯ãŒã¯çµç±ã§ãã¡ã€ã³ã³ã³ãããŒã©ãŒã«ã¢ã¯ã»ã¹ã§ããªãå ŽåããããŸãïŒããšãã°ãDMZãŸãŒã³ã«ãããŸãïŒã ãã®ç¶æ³ã§ã¯ãVeeamã¯VMware VIXãä»ããŠæ¥ç¶ã«åãæ¿ãããã®ã³ã³ãããŒã©ãŒãåŠçã§ããããã«ãªããŸãã
ä»®æ³DCãããå Žå
Active DirectoryãµãŒãã¹ã¯ã·ã¹ãã ãªãœãŒã¹ã®ããäžéšãæ¶è²»ãããããéåžžããã¡ã€ã³ã³ã³ãããŒã©ãŒã¯ä»®æ³åã®æåã®åè£ã«ãªããŸãã Veeamã§ä»®æ³åãããã³ã³ãããŒã©ãŒãä¿è·ããã«ã¯ãVeeam BackupïŒReplicationãã€ã³ã¹ããŒã«ããŠæ§æããå¿
èŠããããŸãã
éèŠïŒ ãã®ãœãªã¥ãŒã·ã§ã³ã¯ãWindows Server 2003 SP1以éã®ãã¡ã€ã³ã³ã³ãããŒã©ãŒVMã§åäœããŸãããµããŒããããæå°ã®ãã©ã¬ã¹ãæ©èœã¬ãã«ã¯Windows 2003ã§ããã¢ã«ãŠã³ãã«ã¯Active Directory管çè
æš©éãå¿
èŠã§ãããšã³ã¿ãŒãã©ã€ãºãŸãã¯ãã¡ã€ã³ç®¡çè
ã®ã¢ã«ãŠã³ãã§äœæ¥ã§ããŸãã
Veeam BackupïŒReplicationã®ã€ã³ã¹ããŒã«ããã³æ§æããã»ã¹ã¯ããã§ã«äœåºŠã説æãããŠããŸããããšãã°ãVeeamã·ã¹ãã ãšã³ãžãã¢ãäœæãã
ãããªã§ã詳现ãªãã§å®è¡ã§ããŸãã ãã¹ãŠãã»ããã¢ãããããæºåãã§ããŠãããšä»®å®ããŸãã 次ã«ããã¡ã€ã³ã³ã³ãããŒã©ãŒã®ããã¯ã¢ããã¿ã¹ã¯ãäœæããå¿
èŠããããŸãã ã»ããã¢ããããã»ã¹ã¯éåžžã«ç°¡åã§ãã
- ããã¯ã¢ããã¿ã¹ã¯äœæãŠã£ã¶ãŒããå®è¡ããŸãã
- ãã¡ã€ã³ã³ã³ãããŒã©ãŒãéžæããŸãã
- ããã¯ã¢ãããã§ãŒã³ã®ä¿æããªã·ãŒãå®çŸ©ããŸãã
- ã¢ããªã±ãŒã·ã§ã³ã®ç¶æ
ãèæ
®ããŠããŒã¿åŠçæ©èœããªã³ã«ãïŒå³1ïŒãVMäžã§å®è¡ãããŠããOSããã³ã¢ããªã±ãŒã·ã§ã³ïŒActive DirectoryããŒã¿ãšSYSVOLãã£ã¬ã¯ããªã®ããŒã¿ããŒã¹ãå«ãïŒã®ãã©ã³ã¶ã¯ã·ã§ã³ã¬ãã«ã®äžè²«æ§ã確ä¿ããŸãã ãããè¡ãã«ã¯ã[ ã¢ããªã±ãŒã·ã§ã³å¯Ÿå¿ç»ååŠç ïŒAAIPïŒãæå¹ã«ãã ]ãªãã·ã§ã³ãéžæããŸãã
AAIPã¯ãã¢ããªã±ãŒã·ã§ã³ã¹ããŒã¿ã¹ã«åºã¥ããŠVMããã¯ã¢ãããæäŸããVeeamãã¯ãããžãŒã§ãã ã²ã¹ãOSã¢ããªã±ãŒã·ã§ã³ãæ€çŽ¢ãããã®ã¡ã¿ããŒã¿ãåéããé©åãªã¡ã«ããºã ïŒMicrosoft VSSã©ã€ã¿ãŒïŒã䜿çšããŠãããªãŒãºããã埩å
ãããVMã®ååèµ·åæã«å®è¡ãããã¢ããªã±ãŒã·ã§ã³ã®VSSã䜿çšããå埩æé ãæºåããæåããå Žåã¯ãã©ã³ã¶ã¯ã·ã§ã³ãã°ãåãæšãŠãŸãããã¯ã¢ããå®äºã AAIPãæå¹ã«ãªã£ãŠããªãå Žåããã¡ã€ã³ã³ã³ãããŒã©ãŒã®ã²ã¹ãOSã¯ãããã¯ã¢ããããã³ä¿è·ãããŠããããšãèªèããŸããã ãã®ããããã°ãããããšã ã€ãã³ãID 2089ãµãŒããŒãã°ã§å
éšèŠåã衚瀺ãããå ŽåããããŸãïŒããã¯ã¢ããé
延éé ïŒã€ãŸããããã¯ã¢ããé
延ééäžã«ããã¯ã¢ãããå®è¡ãããªãã£ãïŒã
- ã¿ã¹ã¯ã®ã¹ã±ãžã¥ãŒã«ãèšå®ããããæåã§å®è¡ããŸãã
- ãžã§ããæ£åžžã«å®äºããããšã確èªããŸãã

- ãªããžããªã§æ°ããäœæãããããã¯ã¢ãããã¡ã€ã«ãèŠã€ããŸã-å®äºïŒ
ããã¯ã¢ããã¯ãVeeam Cloud ConnectãµãŒãã¹ãããã€ããŒïŒVCCïŒã䜿çšããŠã¯ã©ãŠãã«ããã¯ã¢ããããããšãã§ããŸãã ããã¯ã¢ããã¢ãŒã«ã€ãã¿ã¹ã¯ãŸãã¯ç£æ°ããŒãã®ã¢ãŒã«ã€ãæ©èœã䜿çšããŠãå¥ã®ããã¯ã¢ãããªããžããªã«è»¢éããããšãã§ããŸãã æãéèŠãªããšã¯ãããã¯ã¢ããã³ããŒãå®å
šãªå Žæã«ä¿åãããå¿
èŠãªããŒã¿ããã€ã§ã埩å
ã§ããããšã§ãã
ç©ççãªDCãããå Žå
æ£çŽã«èšã£ãŠãããªããæ代ã«é
ããã«ã€ããŠããããšãé¡ã£ãŠããŸãããããŠããªãã®äŒç€Ÿã§ã¯ãã¡ã€ã³ã³ã³ãããŒã©ãŒã¯é·ãéä»®æ³åãããŠããŸãã ããã§ãªãå Žåã¯ãå®æçã«æŽæ°ããæ¯èŒçææ°ã®ããŒãžã§ã³ã®Windows ServerïŒWindows Server 2008ïŒR2ïŒä»¥éïŒã§åäœããããšãé¡ã£ãŠããŸãã ïŒå€ãã·ã¹ãã ã§ã®äœæ¥ã®ãã¥ã¢ã³ã¹ã«é¢ããå¥ã®èšäºããããŸãïŒã
ãããã£ãŠãWindows Server 2008 R2以éã§å®è¡ãããŠãã1ã€ä»¥äžã®ç©çãã¡ã€ã³ã³ã³ãããŒã©ãŒããããããããä¿è·ããå¿
èŠããããŸãã ãã®å Žåãç©çã³ã³ãã¥ãŒã¿ãŒãšãµãŒããŒã®ããŒã¿ãä¿è·ããããã«ç¹å¥ã«èšèšããããœãªã¥ãŒã·ã§ã³ã§ããVeeam Endpoint Backupãå¿
èŠã§ãã Veeam Endpoint Backupã¯ãå¿
èŠãªããŒã¿ãç©çãã·ã³ããã³ããŒããããã¯ã¢ãããã¡ã€ã«ã«ä¿åããŸãã äºæ
ãçºçããå ŽåãããŒã¿ãããã¢ã¡ã¿ã«ã«ã埩å
ããããè«çãã©ã€ãã¬ãã«ã§ãªã«ããªãå®è¡ã§ããŸãã ããã«ãVeeam Explorer for Microsoft Active Directoryã䜿çšããŠåã
ã®ãªããžã§ã¯ãã埩å
ã§ããŸãã
次ã®ããšãè¡ããŸãã
- Veeam Endpoint Backup FREEãããŠã³ããŒãããã€ã³ã¹ããŒã©ãŒãç®çã®ãµãŒããŒã«ã³ããŒããŸãã
- ã€ã³ã¹ããŒã«ãŠã£ã¶ãŒããå®è¡ããã©ã€ã»ã³ã¹å¥çŽã«åæããŠããã°ã©ã ãã€ã³ã¹ããŒã«ããŸãã
泚ïŒã€ã³ã¹ããŒã«ãèªåçã«å®äºããã«ã¯ã é©åãªæ瀺ã䜿çšããŠãã ããã
- ç®çã®ã¢ãŒããéžæããŠãããã¯ã¢ããã¿ã¹ã¯ãäœæããŸãã æãç°¡åã§æšå¥šãããæ¹æ³ã¯ãã³ã³ãã¥ãŒã¿ãŒå
šäœãããã¯ã¢ããããããšã§ãã ãã¡ã€ã«ã¬ãã«ã§ããã¯ã¢ããã¢ãŒãïŒãã¡ã€ã«ã¬ãã«ã¢ãŒãïŒã䜿çšããŠããªãã¬ãŒãã£ã³ã°ã·ã¹ãã ãã³ããŒãªããžã§ã¯ããšããŠéžæããŸãã ãã®å Žåãããã°ã©ã ã¯ããã¢ã¡ã¿ã«ãã®åŸ©å
ã«å¿
èŠãªãã¹ãŠã®ãã¡ã€ã«ãã³ããŒããŸãã Active DirectoryããŒã¿ããŒã¹ãšSYSVOLãã£ã¬ã¯ããªãä¿åãããŸãã 詳现ã¯ãããšãã°ãã®æçš¿ã§èªãããšãã§ããŸãã

æ³šïŒ Veeam BackupïŒReplicationãç°å¢ã«æ¢ã«ã€ã³ã¹ããŒã«ãããŠãããæ¢åã®Veeamãªããžããªã䜿çšããŠç©çãã·ã³ã®ããã¯ã¢ããã³ããŒãä¿åããå ŽåãVeeam BackupïŒReplicationããçŽæ¥åæ§æã§ããŸãã ãããè¡ãã«ã¯ãCtrlããŒãæŒããªããç®çã®ãªããžããªãå³ã¯ãªãã¯ããéãããã€ã¢ãã°ã§ç®çã®ãªãã·ã§ã³ãéžæããŠãªããžããªãžã®ã¢ã¯ã»ã¹ãèš±å¯ããŸãã å¿
èŠã«å¿ããŠããã®ãªããžããªã«ä¿åãããŠããããã¯ã¢ããã®æå·åãéžæããŠãããã§æå·åãæå¹ã«ããŸãã

- ã¿ã¹ã¯ãå®è¡ãããšã©ãŒãªãã§æåããããšã確èªããŸãã

ããã ãã§ããããã¯ã¢ãããå®äºãããã¡ã€ã³ã³ã³ãããŒã©ãŒãä¿è·ãããŸãã ãªããžããªã«ç§»åããŠãç®çã®ããã¯ã¢ãããŸãã¯ããã¯ã¢ãããã§ãŒã³ãèŠã€ããŸãã

Veeam BackupïŒReplicationãªããžããªãããã¯ã¢ããã®ã¿ãŒã²ããã¹ãã¬ãŒãžãšããŠèšå®ããå Žåãæ°ããäœæãããããã¯ã¢ããã¯ãã€ã³ãã©ã¹ãã©ã¯ãã£ããã«ã®[ããã¯ã¢ãã]> [ãã£ã¹ã¯]ã«è¡šç€ºããã[ãšã³ããã€ã³ãããã¯ã¢ãã]ããã€ã³ãããŸãã

çµè«ã®ä»£ããã«
ãã¡ãããæåããããã¯ã¢ããã¯è¯ãã¹ã¿ãŒãã§ããããã¹ãŠã§ã¯ãããŸããã æããã«ãããŒã¿ã埩å
ã§ããªãå Žåãããã¯ã¢ããã¯äŸ¡å€ããããŸããã ãããã£ãŠã次ã®èšäºã§ã¯ããã¡ã€ã³ã³ã³ãããŒã©ãŒã®åŸ©å
ãMicrosoftç¬èªã®ããŒã«ãšVeeam Explorer for Active Directoryã䜿çšããåã
ã®åé€ããã³å€æŽããããªããžã§ã¯ãã®åŸ©å
ãªã©ãããŸããŸãªActive Directoryã®å埩ã·ããªãªã«ã€ããŠèª¬æããŸãã