Tuesday, November 1, 2016

Migrating 2003 AD to 2008 R2 (Part 1)

Force promote DC2 as PDC when DC1 who hold FSMO roles no longer exist

Symptoms:
Want to migrate DC from Windows 2003 server to Windows 2008 R2 server. But DC1 who hold PDC no longer exist.

Solution:
Force moving FSMO to DC2 using ntsdutil

  1. ntdsutil
  2. roles
  3. connections
  4. connect to server DC2
  5. quit
  6. seize PDC
  7. seize schema master
  8. seize RID master
  9. seize infrastructure master
  10. seize domain naming master
  11. quit
Remove DC1 from AD using ntdsutil
  1. ntdsutil
  2. metadata cleanup
  3. connections
  4. connect to server DC2
  5. quit
  6. select operation target
  7. list domains
  8. select domain 0
  9. list sites
  10. select site 0
  11. list servers in site
  12. select server DC1
  13. quit
  14. remove selected server
  15. Confirm by click YES in message box (make sure removing DC1 server)
Remove any trails of DC1 record in:
  1. Active Directory Sites and Services
    1. remove from server object
  2. Active Directory Users and Computers
    1. remove from server object
  3. DNS
    1. remove all DC1 ip records
    2. remove from replicate