LeadThem Consulting
Case study · Commercial real estate

Domain Rewrite and Microsoft 365 Migration for a Commercial Real Estate Firm

Configuring domain rewrite workflows, PowerShell CDS automation, and hybrid AD synchronization for a major real estate organization's Microsoft 365 consolidation.

TL;DR. Commercial real estate firm, 900+ users, domain rewrite migration touching every UPN, SMTP, and proxyAddress attribute. Hybrid AD and Exchange coexistence maintained throughout, PowerShell CDS automation for bulk rewrites.

What was the client environment?

A major commercial real estate and advisory firm with offices across major metropolitan markets needed to restructure its Microsoft 365 and Active Directory environment. The project required a domain rewrite migration, reconfiguring user principal names, SMTP addresses, and directory objects to align with a new domain structure, along with hybrid AD synchronization and Exchange coexistence.

What made this migration challenging?

Domain rewrite migrations are among the most technically demanding M365 migration scenarios. They touch every layer of the identity and messaging stack:

How did LeadThem approach the migration?

Domain rewrite configuration

Phase 1: Domain rewrite setup. Configured domain rewrite workflows including default OU selection for object creation across users, groups, and contacts. Set up rewrite rules for UPN, SMTP, and proxyAddress attributes. Configured PowerShell CDS accounts and worked with the client's security team to properly exclude them from MFA conditional access policies, resolving authentication failures that were blocking automated rewrite operations.

Phase 2: Pilot rewrite and validation. Executed pilot domain rewrites to validate the complete process chain (UPN changes, SMTP address updates, AD attribute modifications, and Entra ID synchronization). Verified that rewritten users could authenticate, send and receive email, and access Teams and SharePoint without disruption.

Phase 3: Production rollout. Scaled domain rewrite operations to production batches with automated PowerShell CDS execution. Monitored each batch for rewrite errors and validated mail flow, authentication, and application access after each batch completed.

What technical challenges did we solve?

What were the results?

The commercial real estate firm's domain rewrite and M365 migration was completed with all user identities, SMTP addresses, and directory objects transitioned to the new domain structure. PowerShell CDS automation handled bulk rewrite operations efficiently, and hybrid AD and Exchange coexistence was maintained throughout, ensuring zero disruption to the firm's critical real estate transaction communications.

Which tools and technologies were used?

Why LeadThem Consulting

Domain rewrite migrations require a partner who understands every layer of the Microsoft identity and messaging stack, from AD attributes to SMTP routing to Entra ID synchronization. LeadThem Consulting brings hands-on expertise in configuring domain rewrite workflows, troubleshooting CDS automation issues, and managing the hybrid coexistence complexities that make these projects technically demanding. When MFA policies blocked automation and OU configurations needed precision, our team delivered solutions, not escalations.

What is a domain rewrite migration?
A domain rewrite migration changes user principal names (UPNs), SMTP addresses, and other directory attributes from one domain namespace to another, without moving users between AD forests or M365 tenants. It is used when an organization rebrands, divests a business unit, or restructures legal entities.
Which attributes change in a domain rewrite?
UPN, primary SMTP address, proxyAddresses (secondary SMTP), and any custom attributes that reference the old domain. Mail flow, authentication, and application sign-in all depend on these values, which is why pilot validation is critical before scaling to production.
How does LeadThem automate bulk domain rewrites?
Through Quest's Custom Deployment Solution (CDS) PowerShell automation. CDS scripts execute rewrite operations in controlled batches against AD and Entra ID, with logging and error handling so failed objects can be re-run individually rather than reprocessing the entire batch.
Can mail flow stay up during a domain rewrite?
Yes. Hybrid Exchange coexistence is maintained throughout. SMTP domain transitions are sequenced with MX record changes, connector updates, and accepted domain reconfigurations so that mail flow is preserved at every phase.

Need a domain rewrite or M365 migration?

LeadThem Consulting has the deep Active Directory and M365 expertise to handle complex domain migrations.

Discuss your migration