Want to win a PS4? Go Premium and enter to win our High-Tech Treats giveaway. Enter to Win

x
?
Solved

I am unable to DCPROMO my additional server

Posted on 2007-11-28
4
Medium Priority
?
635 Views
Last Modified: 2011-10-03
I am currently trying to DCPROMO my new server. I would eventually like to phase out the old windows server 2000 machine and consolidate. The new machine is currently joined to my domain.. along with the current existing DC with windows server 2000. The new machine (Server2003)- is a memer server right now, with the primary dns server pointing to the old machine, of course.

I run the wizard, it goes through a few things- stopping net logon service and such...then the error-
New Credentials
The operation failed because:
The Active Directory Installation Wizard was unable to convert the computer account Server2003$ (Server2003 is the name of my new machine) to a domain controller account. "Access denied"

Type the username and password of an account with sufficient privileges to create an additional DC for the Team.local domain.

I am using my administrator account...for everything...is a member of DomainAdmins group
I am also using the correct password..The Server2003 machine is in the DNS snapin on the old 2000 server. I am done with adprep/at least i think so...but stuck at what i thought was going to be an easy step....any help?
0
Comment
Question by:TVanLanen
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
4 Comments
 
LVL 70

Expert Comment

by:KCTS
ID: 20370349
You have done Adprep /forestprep and Adprep /domainprep from the W2003 CD on the 2000 DC?

If the new Windows 2003 server is the ‘R2’ version then you need to run Adprep  from CD2 of the R2 disks on the existing Domain controller. Adprep is in the \CMPNENTS\R2\ folder on CD2
0
 

Accepted Solution

by:
TVanLanen earned 0 total points
ID: 20370555
alright, turns out i needed to add the admin account into a group policy on the old server, then force the update and reboot...figured it out thanks anyways

delgation privilage grouppolicy if curious
0
 
LVL 1

Expert Comment

by:Vee_Mod
ID: 20395497
Closed, 500 points refunded.
Vee_Mod
Community Support Moderator
0

Featured Post

What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
In the absence of a fully-fledged GPO Management product like AGPM, the script in this article will provide you with a simple way to watch the domain (or a select OU) for GPOs changes and automatically take backups when policies are added, removed o…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
Suggested Courses

650 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question