How to recover FSMO Role Holder DC
Posted on 2008-06-20
I am in deep doo-doo.
Environment: 3 DC's with one DC (Main DC) having all the fsmo roles. All DCs have a copy of the GC.
The Main DC began to reboot continuously and get Directory service errors on the login page. I couldn't even login.
The error was
" Directory Services could not start because of the following errors: A transaction recover failed. Error status 0x0000227."
Rebooted into SAFE Directory Services Mode. I ran: ntdsutil files info. Some of my NTDS files were missing including the NTDS.dit file.
Went to my most recent backup and restored the NTDS folder. However the edb.log and temp.edb were missing from the backup so I just re-created them with nothing in them.
Still in DS mode, I restarted the DFS services, just to make sure.
I rebooted into normal mode. Same problem.
I rebooted into DS mode and went into System and saw the main DC was assigned to an "unknown domain". It did not even recognize the server as a DC.
So....I decided to clean everything off and start over. I went to one of my other DC's to try to seize the FSMO roles using ntdsutil, but I got the message that the server was unavailble.
My question is what do I do now?
I can't do a dcpromo /forceremoval and then ntdsutil metadata cleanup from one of the other DCs. I've bit the bullet and decided to spend 4 hours this weekend building the server up again(different name :)) but how do I get the FSMO roles over to one of my other DCs?