Solved

exporting active driectory users

Posted on 2007-03-19
5
188 Views
Last Modified: 2013-12-05
I have a Windows 2000 Server (PDC) I am planning to re-build (we'll call it serverA).  While I'm rebuilding my main server, I have a backup machine with Windows 2000 server loaded on it (we'll call it serverB).  I'd like to make serverB a temporary PDC, and would like to transefer all login information from serverA to serverB so that it while I'm working on serverA users will be able to work as they normally would.  

Is there a way I can do this?  If so, please list the process step by step.
0
Comment
Question by:npinfotech
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 
LVL 71

Accepted Solution

by:
Chris Dent earned 500 total points
ID: 18747050

Hello there,

Add ServerB onto the existing Domain as a Domain Controller. You will need to follow a few steps so it can neatly take over everything. Once you've completed those steps you can run DCPromo on ServerA to demote it cleanly prior to rebuilding it.

First of all, make sure you setup the new server completely. Install the DNS Service (which should be just a case of installing it then waiting a while). During installation you should have ServerB set to use DNS on ServerA (in TCP/IP Configuration), this can be reset after it's all setup.

Do you use DHCP? If you want to transfer that over to the new server you can use this KB Article:

http://support.microsoft.com/kb/325473

Make ServerB a Global Catalog:

Open AD Sites and Services, expand Sites, then (unless you've changed it) Default-First-Site-Name, then Servers, then ServerB and open the Properties for NTDS Settings. Tick the box for Global Catalog.

Transfer the FSMO Roles:

http://support.microsoft.com/kb/324801

Make sure you transfer those, rather than Seize.

Make sure you alter any settings in your DHCP scope so any network clients get the right DNS server and such.

As above, when you've done all that feel free to do Start, Run and DCPromo on ServerA and demote it before rebuilding.

Does all that make sense?

Chris
0
 
LVL 8

Author Comment

by:npinfotech
ID: 18748975
I think I get it.  I'll give ti a try.
0
 
LVL 71

Expert Comment

by:Chris Dent
ID: 18749000

Good luck :) Yell if you bump into any issues.

Chris
0
 
LVL 8

Author Comment

by:npinfotech
ID: 18774986
It worked out well.
0
 
LVL 71

Expert Comment

by:Chris Dent
ID: 18775166

Great :)

Chris
0

Featured Post

Edgartown IT Case Study

Learn about Edgartown's quest to ensure the safety and security of the entire town's employee and citizen data. Read the case study!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Migrate PKI into AWS - lift and shift. 1 55
need assistance with a VBscript 3 42
Measure time after installing Antivirus 8 59
Local admin account 3 43
This script can help you clean up your user profile database by comparing profiles to Active Directory users in a particular OU, and removing the profiles that don't match.
This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question