Release Notes
These release notes provide information about the Quest® Recovery Manager for Active Directory Forest Edition 10.1 release.
Recovery Manager for Active Directory enables fast, online recovery. Comparison reports highlight what objects an attributes have been changed and deleted in Active Directory enabling efficient, focused recovery at the object or attribute level. Accurate backups and a quicker recovery enable you to reduce the time and costs associated with AD outages and reduce the impact on users throughout your organization.
Recovery Manager for Active Directory is based on patented technology.
Recovery Manager for Active Directory 10.1 is a maintenance release with new features and functionality. See New Features and Enhancements.
This section covers new features and enhancements in Quest® Recovery Manager for Active Directory 10.1.
FEATURE PREVIEW: Support for Broadcom Endpoint Security Recovery Manager for Active Directory supports malware scan for BMR and Active Directory backups using Broadcom Endpoint Security (former name: Symantec Endpoint Protection 15).
Support for VMware vCenter/ESX version 6.7 in Active Directory Virtual Lab
Recovery Manager for Active Directory supports VMware vCenter/ESX version 6.7 for creating virtual test environments in Active Directory Virtual Lab.
Scan Active Directory backups for viruses
Malware scan is now supported for Active Directory backups.
FEATURE PREVIEW: Support for Symantec Endpoint Protection version 14.x
From this version, Recovery Manager for Active Directory supports malware scan for BMR and Active Directory backups using Symantec Endpoint Protection.
Phased restore
This feature lets you perform the initial forest recovery during the first phase to make the forest function as soon as possible. The second phase can be postponed, and the full forest structure can be restored later.
Install AD and Reinstall AD recovery methods support read-only domain controllers and Install from Media (IFM)
Now the Install AD and Reinstall AD recovery methods support installing a read-only DC using a backup created from a read-only DC, or installing a writable DC using a backup created from a writable DC.
Added support for SQL Server 2017 and 2019
From this version, Recovery Manager for Active Directory supports SQL Server 2017 and SQL Server 2019.
Enhancement | Story ID |
---|---|
Recovery Manager for Active Directory 10.1 HF2 | |
The computer collection type (System State and Bare Metal) is displayed in the Recovery Manager Console. | RMADFE-2133 |
The "PassedWithWarnings" antivirus scan status is shown if your antivirus database is older than the specified time limit. From this version, this limit is set to 3 days by default. | RMADFE-3230 |
Hide replication sessions older than X days shown under Replication > History in Recovery Manager Console Introduced a new registry key named "ReplicationSessionLimitDays" that allows you to specify the number of days (Default: 10). The new registry key only limits the replication history shown in the Recovery Manager Console, and it does not work with the relevant PowerShell cmdlets. | RMADFE-2910 |
Full replication: A user can view collection properties and global settings in the console that is used as a replication target. All of these settings are read-only, except Logging in global settings. | RMADFE-2874 |
Recovery Manager for Active Directory 10.1 | |
Alternative backup path An alternative backup location can be specified on the DC storage tab of the Collection Properties in Recovery Manager Console. | RMADFE-2280 |
Automatically refresh Computer Collections and Backups upon completion of replication The lists of Computer Collections and Backups can now automatically refresh in the target Recovery Manager Console when the replication completes | RMADFE-2872 |
Enhancement | Story ID |
---|---|
Recovery Manager for Active Directory 10.1 HF2 | |
Opening large projects in the Forest Recovery Console is speeded up by running the DNS cache update in the background. | RMADFE-3107 |
Default states of checkboxes on the General tab now depend on the original DC type "Install the domain controller as a read-only" - This option is selected by default if the original DC was a read-only DC. Applicable methods include Install/Reinstall Active Directory, and Install/Reinstall Active Directory from Media. "Configure the domain controller as a global catalog server" - This option is selected by default if the original DC was a global catalog. Applicable methods include Install/Reinstall Active Directory, Install/Reinstall Active Directory from Media, and Restore Active Directory on Clean OS. | RMADFE-2904 |
Recovery Manager for Active Directory 10.1 HF1 | |
Auto-select a manually-registered backup for Install and Reinstall AD from Media recovery methods Now the Forest Recovery Console can automatically select a manually-registered backup for the recovery methods Install and Reinstall AD from Media. | RMADFE-2905 |
Active Directory backups for a DC with custom DNS suffix now contain correct domain names Now such Active Directory backups have correct domain names and can be selected for the recovery methods Install and Reinstall AD from Media in the Forest Recovery Console when performing forest recovery in an environment with disjoint namespace. | RMADFE-2850 |
Support for restore of custom Primary DNS suffixes for domain controllers from a disjoint namespace The Install Active Directory (including the Install from Media option) and Restore Active Directory on Clean OS recovery methods support restore of custom Primary DNS suffixes for domain controllers from a disjoint namespace. | RMADFE-2911 |
The Reset Passwords option is not available for the Repromotion mode The Reset Passwords dialog is not displayed during the Phase 2 recovery because this feature is not available for the Repromotion mode. | RMADFE-2903 |
Recovery Manager for Active Directory 10.1 | |
Support Windows Server 2019 domain controllers for System Center Virtual Machine Manager (SCVMM) Active Directory Virtual Lab supports Windows Server 2019 domain controllers only for SCVMM. | RMADFE-2171 |
Reset a password for domain users in privileged groups during forest recovery Recovery Manager for Active Directory now includes a new step "Reset Passwords" in the wizard after you start or resume a forest recovery. This step allows you to reset a password for domain users in privileged groups for security reasons. | RMADFE-1785 |
Resolved Issue | Issue ID |
---|---|
Recovery Manager for Active Directory 10.1 HF2 | |
Cannot replicate a password from the E-mail tab in the Recovery Manager for Active Directory Settings dialog during full replication. | RMADFE-2999 |
Recovery Manager Console cannot replicate AD LDS (ADAM) instances from an untrusted domain in a collection. | RMADFE-3099 |
Recovery Manager Portal installation using SQL Server authentication fails with an error indicating the specified credentials do not have sufficient privileges on target SQL Server. | RMADFE-3064 |
Recovery Manager for Active Directory 10.1 HF1 | |
Now the backup collecting schedule can be configured for the selected day of the week. | RMADFE-3029 |
Recovery Manager for Active Directory does not restore GPO template files because they are considered as DFSR conflicts and are removed. | RMADFE-2800 |
The Group Policy Restore Wizard cannot connect to a domain controller because it mistakenly tries to connect to another domain controller that is not available. | RMADFE-2554 |
Full replication fails with the "No such host is known" error when the slave console has an unreachable DC in the Backup Agent Management list. | RMADFE-2625 |
The Online Restore Wizard cannot accept long paths (longer than 22 symbols) to the Change Auditor database. | RMADFE-2567 |
A list of registered backups opens with a delay in Online Restore Wizard. | RMADFE-2715 |
The text on the "Unpacked Backups" (global settings) tab in the "Settings" dialog box has been improved. | RMADFE-2775 |
Recovery Manager Console cannot replicate AD sites from an untrusted domain in a collection. | RMADFE-2844 |
Recovery Manager for Active Directory 10.1 | |
Recovery Manager for Active Directory uses the wrong credentials when applying a retention policy for backup storage on a domain controller. | RMADFE-2759 |
Now Recovery Manager for Active Directory opens the DIT database as Read/Write from backups made on other versions of the operating system. | RMADFE-2091 |
Online Restore Wizard does not work on Windows Server 2019 with LSA protection enabled. | RMADFE-2182 |
Recovery Manager Console may show empty license violation warning if licenses overused count is small. | RMADFE-2249 |
Unable to change the account name used for the restore operation. | RMADFE-2259 |
The specified port does not work for Offline Restore Agent. | RMADFE-2289 |
Now Recovery Manager for Active Directory does not show 'Boot Files' and 'IIS Metabase' backup components. | RMADFE-2343 |
Recovery Manager for Active Directory cannot process large .dit files. | RMADFE-2349 |
Recovery Manager for Active Directory does not restore attributes because of matching them as cloud attributes. | RMADFE-2499 |
Recovery Manager for Active Directory cannot backup a DC if SYSVOL is placed on a deduplicated volume. | RMADFE-2582 |
Recovery Manager for Active Directory cannot perform a lot of simultaneous backup sessions. | RMADFE-2732 |
Hybrid restore may not work on several versions of Azure AD Connect. | RMADFE-2750 |
Full replication fails when a DC is selected for the option 'Unpack each backup upon its creation' in the master console. | RMADFE-1858 |
Full replication fails with the error "No such host is known" when the slave console has an unreachable DC in the Backup Agent Management list. | RMADFE-2625 |
Resolved Issue | Issue ID |
---|---|
Recovery Manager for Active Directory 10.1 HF2 | |
Restore to Clean OS does not restore SYSVOL contents if custom SYSVOL path was specified in the project settings. | RMADFE-3231 |
The "Verify selected DCs" operation shows zero progress for all other domain controllers. | RMADFE-2649 |
The "Elapsed time" counter in the Forest Recovery Console stops after DC failure even when the verify operation continues. | RMADFE-2925 |
When every DC in the domain is marked as "Do not recover" it implies that the domain will be removed during the recovery process. But it is a forest-wide operation and should be prohibited in the "Domain Recovery" mode. | RMADFE-2988 |
Forest Recovery Console cannot open a project file saved with UTF-8 BOM. | RMADFE-3083 |
Forest Recovery console mistakenly performs user authentication during health check for a read-only domain controller. | RMADFE-2015 |
Opening a saved project in Active Directory Virtual Lab fails with the "This implemention is not part of the Windows Platform FIPS validated cryptographic algorithms" error when FIPS compliance is enabled in the server where Recovery Manager Console is installed. | RMADFE-3060 |
DC access credentials cannot be reset if they are specified in the "domain\username" format on the General tab or on the Recovery Mode tab in the Recovery Project Settings dialog. | RMADFE-3104 |
If the domain access account is entered in the "domain\username" format on the General tab, this account will not be automatically excluded from the password reset operation when the "Reset password for domain users in privileged groups" option is enabled in the Reset Passwords dialog. | RMADFE-3189 |
Recovery Manager for Active Directory 10.1 HF1 | |
Forest Recovery scheduled verification fails if Persistence is enabled but the Persistence SQL server is not accessible. | RMADFE-2831 |
Reinstall of read-only DC may not work. | RMADFE-2996 |
Install Active Directory may fail due to the Select DNS operation cannot restart the Netlogon service. | RMADFE-3031 |
Forest Recovery Console correctly displays a type of scanned backup in warnings if the backup is infected. | RMADFE-3008 |
Recovery Manager for Active Directory should clean the 'selected backup' field in the Forest Recovery Console when no backups pass the backup selection criteria filter. | RMADFE-2932 |
Do not validate a backup password if the backup is not specified for the Install Active Directory or Renstall Active Directory method. | RMADFE-2987 |
Cannot select the "Do nothing" option for a read-only domain controller (RODC) in the second phase. | RMADFE-2915 |
DNS A record of a domain may not be deleted during DNS cleanup. | RMADFE-2860 |
The "Install from Media" option on the General tab of the Forest Recovery Console gets unchecked when you check or uncheck the "Use backup criteria to automatically select a backup" option. | RMADFE-2906 |
In the "Adjust to Active Directory changes" recovery method only credentials in the Normal mode should be available. | RMADFE-2843 |
The CD-ROM device must be added (if it is absent on the source machine) to an instance converted with ADVL to install VMware Guest Tools on the target machine. | RMADFE-2786 |
It is required to limit the maximum number of automatically selected DNS servers on the domain controller. | RMADFE-2608 |
Automatic DNS configuration can choose an unrestored DNS server. | RMADFE-2714 |
Recovery Manager for Active Directory 10.1 | |
Settings verification may fail with "the same backup path specified" error while changing the recovery method from Install Active Directory from Media to Install/Reinstall/Uninstall Active Directory. | RMADFE-2137 |
NIC teaming is not supported in case of RMAD bare metal recovery to the same machine. | RMADFE-2139 |
Recovery Manager for Active Directory does not send the SMTP notification after the Verify settings operation is complete. | RMADFE-2181 |
In some cases, Forest Recovery may get stuck when BitLocker is enabled. | RMADFE-2420 |
The "No DNS servers specified in your recovery project" error might appear before starting recovery. | RMADFE-2482 |
Forest recovery may hang at the "Restart domain controller in normal mode" step with a disabled network adapter. | RMADFE-2546 |
Recovery with Install Active Directory or Install Active Directory from Media method may fail with the "Unable to check forest upgrade status" error at "Install Active Directory" step. | RMADFE-2552 |
Forest recovery for Read-only Domain Controller fails if the 'Install Active Directory' recovery method is used. | RMADFE-2568 |
Forest recovery for Read-only Domain Controller fails if the 'Reinstall Active Directory' recovery method is used. | RMADFE-2571 |
Automatic DNS configuration cannot handle loopback addresses in the DNS client settings. | RMADFE-2605 |
Automatic DNS selection can choose the wrong DNS server. | RMADFE-2633 |
Reboot to DSRM or reboot to Normal mode takes about 15 minutes doing nothing. | RMADFE-2655 |
Cannot recover Read-only DC using Reinstall Active Directory method on Windows Server 2012 R2 or higher systems. | RMADFE-2693 |
Cannot recover writable DC using Install Active Directory or Install From Media recovery method. | RMADFE-2703 |
DNS delegation does not work if it was configured before the forest recovery. | RMADFE-2789 |
The Forest Recovery Console refreshes status for all DCs in the "Manage Domain Controllers" dialog box when only one of them is selected to refresh. | RMADFE-2950 |
Known Issue | Issue ID |
---|---|
Backups may contain invalid FQDNs that are registered automatically, so they cannot be selected in the Forest Recovery Console. Workaround: Use the Active Directory browse method tо add the DCs to a collection when creating backups, or perform backup creation for the DCs (with correct FQDN) directly. To use the Active Directory browse method, click All Domain Controllers in the console tree, right-click a domain controller on the right pane and press Add to Collection. | RMADFE-2851 |
Recovery Manager for Active Directory does not show changes to GPO administrative templates in the GPO comparison report. | RMADFE-805 |
Cannot perform RMAD upgrade if the SQL Server Always On group is enabled for the reporting database. | RMADFE-1146 |
When a user cancels the data replication process by Ctrl + C, by logoff, etc, the status of the replication session is stuck at "Running". | RMADFE-1271 |
Customer can add a few instances of the same RMAD console (by domain name and by IP). | RMADFE-1276 |
Cannot disable replication schedule when there is no replication console (the replication console was deleted). | RMADFE-1283 |
Group Policy restore might fail with the error "Network access is denied” if you run the RMAD console under a local account, and this account has the same username and password as the domain account you use to restore Group Policy in the domain. | RMADFE-2162 |
Online Restore Wizard (agent-based restore) does not work on Windows Server 2016 with Local Security Authority (LSA) protection and Secure Boot enabled. | RMADFE-1996 |
Known Issue | Issue ID |
---|---|
SYSVOL may not work correctly if a domain controller that was selected for the authoritative SYSVOL restore cannot be restored. | RMADFE-1111 |
Recovery Manager for Active Directory Forest Edition (Disaster Recovery Edition) does not check version of Forest Recovery Agent inside the ISO image file. | RMADFE-2220 |
The start type of Windows Defender Firewall service cannot be restored in Windows Server 2019. | RMADFE-2228 |
© ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center