server 2003 migrate to server 2008 r2

When the server reboots review the Default Domain Controllers policy settings
a. Microsoft network server: Digitally sign communications (always)
b. Domain member: Digitally encrypt or sign secure channel data (always)
c. If these values changed (to enabled) then you may need to verify that all your clients and servers can still communicate to the domain, or you can revert the settings back to their previous value.
6) Review the Allow cryptography algorithms compatible with Windows NT 4.0 setting.
a. This setting only applies to Windows 2008 DC’s, thus clients authenticating to Windows 2003 DC’s are not affected by this new setting.
b. Change this setting as needed to support NT 4.0 or non-Microsoft SMB clients.
c. The default setting is Not Configured, which means the policy is Disabled. You must configure the option as Enabled to actually change the setting.

You may also like...