- Challenge
- Two Windows Server 2012 domain controllers authenticating 240 staff across three branches, both out of support, with no documented Group Policy and no evidence of privileged access review.
- Solution
- Phased Active Directory migration to a supported, redundant pair of controllers with DNS and DHCP transfer, policy rationalization, privileged access attribution, and full documentation.
- Result
- Zero authentication downtime during migration, 61 stale accounts removed, and an identity platform that can be evidenced to an examiner.