ADMT: Active Directory Domain Migration Tool

Installation of PES

In order to migrate the passwords between the two forests, we will need to configure and install PES.

On the server where ADMT is installed, create a shared folder in which we will put the encryption key of the passwords.
dossier partagé / shared folder

Open a command prompt in Administrator and enter the following command, adapting to your situation:

admt key /option:create /sourcedomain:old.lan /keyfile:D:\Passwords\migpwd.pes  /keypassword:password

Check that the migpwd.pes is present in the output folder.
PES file

Run the pwdmig file on the source domain controller (old.lan), launch the installation wizard, click Next 1 .
PES - Install

Accept license 1 and click Next 2 .
Accepte license

Indicate the location of the encryption key 1 and click Next 2 .
key encrypt

Enter the password 1 and click OK 2 .
Password

Click on Install 1 .
Click on Install

Configure the service with Local System Account 1 and click OK 2 .
PES - Account service

The installation is complete, close the wizard by clicking Finish 1 .
PES - installed

PES asks to restart, click Yes 1 .
Restart server

After the restart, find the Password Export Server Service service and start it.
Start service

Resolve the error during installation

It is possible that the password verification fails with the following message:

The supplied password does not match this encryption key’s password.
ADMT’s Password Migration Filter DLL will not install without a valid encryption key.

PES - Error install

Close the installation wizard, open a command window in Administrator and enter the following command to adapt according to the location of the pwdmig.msi file:

msiexec -i C:\Apps\pwdmig.msi

 



Related Posts


Azure AD Connect: Installing and configuring synchronization
Azure AD Connect Overview In this article, I will explain how to install and configure Azure AD Connect. This solution allows you to synchronize your local directory (AD) to the Azure platform and use the same user accounts. In the following procedur

Active directory: Delete a child domain
In the article Active directory: setting up a child domain where I explain how to configure a child domain in an Active Directory environment, I will explain here how to delete a child domain. As a reminder, when setting up the child domain, a trust

Exchange 2016: Installation and Configuration
In this tutorial, we will see how to install and configure Exchange 2016. Exchange is a mail server designed by Microsoft, it is the professional version of Hotmail (Outlook). Environment An Active Directory domain. A Windows Server 2016 server that