Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Order to seize FSMO roles for downed DC

Posted on 2009-04-09
5
1,092 Views
Last Modified: 2012-05-06
Does it matter which order FSMO roles are seized? One of our 5 DCs failed; it had all roles except the Infrastructure Master. We need all 4 roles seized to a new, single DC.

Thanks!
0
Comment
Question by:meade470
  • 3
  • 2
5 Comments
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24107469
No the order doesn't matter, just make sure that old server is dead, buried, and wiped...don't want to ever bring it online after you seize the roles off it.  I'm sure you have seen the seize fsmo link below but I'm including it for others that may stumble on this question via google or EE search
http://support.microsoft.com/kb/255504
 
 
Thanks
Mike
0
 
LVL 2

Author Comment

by:meade470
ID: 24107737
Thank you for your feedback.  Is there a certain amount of time we should wait after seizing the roles are is it an instant change?  Also, we are under the impression we should implement KB216498 to clean data/metadata in Active Directory.  Can this be done right after the roles are seized or is it best to wait some time?  Thanks
0
 
LVL 57

Accepted Solution

by:
Mike Kline earned 500 total points
ID: 24108241
You don't have to wait long,  just let the info replicate to all your DC's.
...and yes you need to implement 216498 for that failed DC-- also known as a metadata cleanup.   Yes you can do that after you seize the roles.
I'd also wipe that failed DC, you can install Windows on it after that and use it for whatever you want.
Thanks
Mike
 
0
 
LVL 2

Author Comment

by:meade470
ID: 24118469
Mike,

Thanks for your feedback.  Yesterday afternoon we seized the FSMO roles and today we cleaned the metadata.  I guess time will tell us if everything it working correctly.  We are going to keep an eye on all the event logs on all the DC's.  Thanks for your help.
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 24118649
Good work!!  24 hours out is good
You can run a netdom /query fsmo to verify the roles from any DC.
Thanks
Mike
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
server crashed 2 48
Trying to demote an old DC 3 32
Migrating Roaming Profiles to new server 5 24
Retrieve Active Directory Groups a User belongs to in VB.NET 3 18
In this article, we will see the basic design consideration while designing a Multi-tenant web application in a simple manner. Though, many frameworks are available in the market to develop a multi - tenant application, but do they provide data, cod…
Last week, our Skyport webinar on “How to secure your Active Directory” (https://www.experts-exchange.com/videos/5810/Webinar-Is-Your-Active-Directory-as-Secure-as-You-Think.html?cid=Gene_Skyport) provided 218 attendees with a step-by-step guide for…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

839 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question