Active directory on win 2000 server

i'm not familier with win 2000 i need to move actove directory to another win 2000 server.
I used ntdsutil tools and try to seize the roles first to seize domain naming master i get error:

Attemting safe tranfer of domain naming FSMO before seizure.
ldap_modify_sW eror 0x35<53 (Unwilling To Perform).
Ldap extended error message is 0000214B: SvcErr: DSID-03210834, problem 5003 (Will_not_perform), Data 0
Win32 error retured is 0x214b(only DSAs configured to be Global Catalog servers should be allowed to hold the domain Naming Master FSMO role.)
Depending on the error code this may idicare a connection,
ldap, or role tranfer error.

Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Hi Aida2,

wait a second! have you promoted your second server to a DC using dcpromo?

why are you seizng the role - you should be transferring them!


Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Aida2Author Commented:
Thanks for resp.
I try transferring vi gui (from the link you gave me) i get error
The domain controller .... was not validated because: The RPC server is unavailable.
When i login to new server and i can change to another domaincontroller.!
Aida2Author Commented:
I run netdiag on the new server i get error:
 Domain membership test . . . . . . : Failed
    [WARNING] Ths system volume has not been completely replicated to the local
machine. This machine is not working properly as a DC.
NEVER seize roles unless your original Domain Controllers crash!  You must first join the server to the Domain and then install Active Directory using DCPROMO.  Then gracefully change the FSMO role holders.  

Retiring Domain Controllers and transferring FSMO roles is something that I do not recommend network admins try if they have never done it before.  It can seriously and permanently damage your network.  I would seek out a professional to help you
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows Networking

From novice to tech pro — start learning today.