Link to home
Start Free TrialLog in
Avatar of Steve Cowan
Steve CowanFlag for United Kingdom of Great Britain and Northern Ireland

asked on

Upgrading AD to 2008 from existing 2003/2000 level

Hi There,

Currently we are running a Windows 2003 Server and a Windows 2000 Server as Domain Controllers.  As far as I remember the 2003 server is the FSMO role holder, but I will check this and make it so if it isn't.

I am looking to make our new Windows 2008 member server into a domain controller and demote the existing controller.

Having done some reading on this I want to confirm that the following steps are correct.

1. Ensure the 2003 server is the FSMO role holder and transfer the roles to it if not.

2. On the 2003 server run the forest prep and domain prep commands from the 2008 server DVD.

3. Promote the new 2008 server to be a DC.

4. Install and configure DNS on the new 2008 server.

5. Demote the 2000 server and uninstall the DNS role from it.

6. Install the DNS role on the new 2008 server and configure it.

7. Transfer the FSMO roles to the new 2008 server.

I know step 7 isn't required here but I also need to rename my existing 2003 server to bring it in line with parent company naming convention so I will have to demote it, rename it then promote it again.

If I have missed anything, or got the order wrong I would be very grateful for any corrections or hints.

Many Thanks

Steve
ASKER CERTIFIED SOLUTION
Avatar of Chris Dent
Chris Dent
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Steve Cowan

ASKER

Thanks for all the help guys.

Chris, I must have had a "moment" when I duplicated the DNS bit. Doh!

Looking in AD Domains and Trusts I can see the forest functional level is currently 2000.  Obviously I can't raise that until I get rid of the old 2000 DC.  The domain functional level is currently 2000 mixed.  Should that be changed to Native and will there be any problems in doing this?

Matt, looking in the DNS manager I can see that my forward lookup zone is AD Integrated primary as are the 4 reverse lookup zones.  We have 4 different IP subnets across the company.  Hopefully this means that DNS won't be an issue.

Cheers so far.

Steve
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
OK, domain moved to native mode.  Nothing broken yet ;o)
Just checked the FSMO role holders and got this.

C:\>netdom query fsmo
Schema owner                2003 DC

Domain role owner           2003 DC

PDC role                    2003 DC

RID pool manager            2003 DC

Infrastructure owner        2000 DC

The command completed successfully.


Do I need to change the Infrastructure owner before I start the 2008 adprep?
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Cool.  I have looked into transferring the Infrastructure owner to the 2003 server, however when I tried to do it I got a warning that the 2003 server was a global catalog server and that the two shouldn't be the same.

Given that I will eventually demote the 2000 DC, will the infrastructure owner be transferred to either the 2003 DC or the new 2008 DC automatically?
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Thanks for all the help, especially to Chris.  Job Done. :o)