Solved

Replacing failing Domain Controller

Posted on 2009-04-13
3
277 Views
Last Modified: 2012-05-06
We have two domain controllers DC1 & DC2 in site1 both running 2003 R2 SP2 and are DNS.DC1 holds all the FSMOs and DC2 is a global cataloge.

We are observing issues with DC2 and plan to troubleshoot it.We can not bring down the global cataloge due to its heavy usage for Exchange and Sharepoint requiring it to be highly available.

1. I add another DC,DC3 as a global catalogue till the time we troubleshoot DC2 and recommission it back.
We demote DC2 ,rebuild it and join it back and then take out DC3 from the site.
 
2. I add another DC,DC3 and have two global catalogues for this site.
3. I add another server with same name & IP as DC2, unplug existing DC2 and get it replicated with other DCs

Please suggest a proper approach to go in for.
0
Comment
Question by:shsharma
3 Comments
 
LVL 11

Accepted Solution

by:
ecsrd earned 50 total points
ID: 24132003
If it is just a temporary measure, why not just make DC1 a GC?  Of course, you'd lose redundancy, but if its literally for a short term, you could most likely just do that.  As for the options you listed:

1 - This would defintely work as an option.
2 - Nothing wrong with having two servers as global catalogues for a site.
3 - DON'T do this unless you make absolutely sure all replications have removed references to the old DC INCLUDING _msdcs values in DNS - if there is any reference to the old DC, you'll have problems with replication afterwards.  Additionally, you would have to demote the old DC2 for this to work.  This would be the most work intensive option for you, though it may seem the easiest!
0
 
LVL 18

Expert Comment

by:Americom
ID: 24132026
Yeah..if you have two DCs, you should have both configured as GCs, otherwise you don't have good redundancy to begin with.
0

Featured Post

Migrating Your Company's PCs

To keep pace with competitors, businesses must keep employees productive, and that means providing them with the latest technology. This document provides the tips and tricks you need to help you migrate an outdated PC fleet to new desktops, laptops, and tablets.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
Last week, our Skyport webinar on “How to secure your Active Directory” (https://www.experts-exchange.com/videos/5810/Webinar-Is-Your-Active-Directory-as-Secure-as-You-Think.html?cid=Gene_Skyport) provided 218 attendees with a step-by-step guide for…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

830 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question