Windows Thread, Replace Windows 2003 DC in Technical; I have a Windows 2003 Standard domain controller that I need to replace soon. The current DC runs the following ...
-
13th February 2008, 09:53 PM #1
- Rep Power
- 16
Replace Windows 2003 DC
I have a Windows 2003 Standard domain controller that I need to replace soon. The current DC runs the following services:
-Active Directory
-DNS
-DHCP
-VPN
What is the easiest way to migrate to the new server with little network downtime?
I was thinking about adding the new server to active directory as a member server. From what I have read, this should migrate user and computer accounts. After that point, I am lost.
Thank you for any advice!
-
-
IDG Tech News
-
13th February 2008, 09:59 PM #2 Hi mate
You will need to add the new server as a second DC and run your two servers together for a while. When you add your server as a DC sort out VPN, DNS etc. And when everything like that has been moved over transfer your FMSO roles to your new server. It is important you do that, if you don’t your network will collapse.
http://www.petri.co.il/transferring_fsmo_roles.htm
To Transfer the Domain-Specific RID Master, PDC Emulator, and Infrastructure Master FSMO Roles:
1. Open the Active Directory Users and Computers snap-in from the Administrative Tools folder.
2. If you are NOT logged onto the target domain controller, in the snap-in, right-click the icon next to Active Directory Users and Computers and press Connect to Domain Controller.
3. Select the domain controller that will be the new role holder, the target, and press OK.
4. Right-click the Active Directory Users and Computers icon again and press Operation Masters.
5. Select the appropriate tab for the role you wish to transfer and press the Change button.
6. Press OK to confirm the change.
7. Press OK all the way out.
Make sure you change all the roles.
When you have done that you are good to go
Z
-
2 Thanks to FN-GM:
ICT_GUY (14th February 2008), netadmin (14th February 2008)
-
14th February 2008, 09:06 AM #3 Dont forget to change your clients to use the new server for their primary DNS otherwise they may not be able to log on.
-
-
14th February 2008, 09:52 AM #4 I wil be doing this soon so thanks from me.
-
-
14th February 2008, 04:08 PM #5 You know how to contact us if you need a hand...
-
-
14th February 2008, 10:51 PM #6
- Rep Power
- 16
Thank you, FN-Greatermanchester.
That was very helpful! I'll start working on this next week. I'll post back if I run into problems.
Thanks again!
-
-
15th February 2008, 06:53 PM #7 
Originally Posted by
FN-Greatermanchester
You will need to add the new server as a second DC and run your two servers together for a while.
How long? Isn't there a command that forces the sync of the servers (last time I did this was about 7 years ago but I have to do it next week too!)
Oh, and:
I want to copy all the files (along with the permissions) from the old server to the new one, 'as is'. All the locations etc.. will be the same. I could use something like xcopy that is run from the local system account, because it'll have full access to all the files. (The Domain Admin doesn't, by default) BUT: Presumably, local\system won't have access to the new server, so won't be able to place the files there?? Is there any way around this? Or will I have to add a domain admin to all the files and run it from there. (I dont' want to f up the permissions!)
Also:
Moving the shares: Is there an easy way of taking all the old shares from the old server to the new one. Shares are held in the registry, so presumably I can just export that key and reimport it on the new server? Will that work?
Last edited by eean; 15th February 2008 at 06:59 PM.
-
-
15th February 2008, 07:15 PM #8 Hi mate
You don’t need to do any command prompts. Just do what it says above.
As for moving files i use this. It will copy your shares and permissions. http://www.microsoft.com/downloads/d...DisplayLang=en
-
Thanks to FN-GM from:
eean (16th February 2008)
-
19th April 2008, 08:54 PM #9
- Rep Power
- 16
FN-Greatermanchester, thanks you again for all of your help and advice.
I finally completed this server replacement today, and it worked fine--no major issues. I did forget to demote the old DC, so that caused a few minor issues with DNS and DHCP.
If anyone else forgets to demote their old DC in the future, I recommend looking at the "removing a dead dc from ad" pdf document on the following webpage: Remove Dead DC from AD
Thanks again for all the help!
-
-
20th April 2008, 12:40 AM #10 Did you move all the roles over to the new server? Take a look at this this wiki page.
Understanding FSMO Roles in Active Directory - EduGeek.net Wiki
-
Thanks to FN-GM from:
netadmin (20th April 2008)
-
20th April 2008, 02:24 AM #11
- Rep Power
- 16
Yes, I did get all the roles moved over. The event log now has no critical errors. 
Thanks for the link. I'm printing it out as I speak for future reference. Very handy!
-
SHARE: 
Similar Threads
-
By cgiuk in forum Hardware
Replies: 11
Last Post: 24th January 2008, 08:27 AM
-
By richard in forum General Chat
Replies: 13
Last Post: 13th March 2007, 12:54 PM
-
By woody in forum Windows
Replies: 12
Last Post: 26th September 2006, 10:40 PM
-
By Fletcher_Bravo in forum Windows
Replies: 2
Last Post: 5th July 2006, 03:44 PM
Thread Information
Users Browsing this Thread
There are currently 1 users browsing this thread. (0 members and 1 guests)
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules