?
Solved

Domain Controller Redundancy

Posted on 2010-08-15
11
Medium Priority
?
638 Views
Last Modified: 2012-05-10
How to make a domain controller in a redundancy environment?
eg: DC A down, there is a DC B to take over its job and all the user that connect to DC A are still able to do their work as usual.
0
Comment
Question by:swpui
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 4
  • 3
11 Comments
 
LVL 57

Expert Comment

by:Mike Kline
ID: 33442612
What you do is just promote a DCB.  In Active Directory all domain controllers have all the same info.   Then make DC B a global catalog server.  If you are running DNS on DC A also make DC B a DNS server.

If replication is working ok after DC B is promoted then it will have AD, DNS, and GC information.  

Then make sure all your clients (static and DHCP) have the address for DC B as another DNS server.

If DC A goes down they will continue to work.  if DC A goes down for an extend period of time or dies hard you will have to "seize the FSMO roles) but users can still work as usual if you don't do that right away.

By the way if you have a real world environment like that with only one DC....get that second one up as soon as possible.

Thanks

Mike
0
 
LVL 4

Expert Comment

by:rickybsb
ID: 33442635
Cheers SWPUI
Just put your second domain controller on the network, click START -> RUN-> and type DCPROMO and hit enter.
The wizard will guide you through and when it ends you will see the active directory icons at the administrative tools.
You need to open the active directory sites and services, click on the newly promoted domain controller, open it's properties and mark the Global catalog checkbox.
If need any aditional help let me know
0
 

Author Comment

by:swpui
ID: 33442707
Mkline71: you mean from the begining, I install DC A & DC B, whatever DC A have , DC B also must have. Both are global catalogue server. So when DC A down, I just type 'dcpromo' to promote DC B, do I still need to proceed to do FSMO....ect?
0
Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 
LVL 57

Assisted Solution

by:Mike Kline
Mike Kline earned 252 total points
ID: 33442857
You promote DC B and install the same services,  you do the dcpromo now for DC B...don't wait for DC A to go down.

As for seizing the FSMO roles  DO NOT  do that now....that is only in a disaster situation if DC A goes down and is not coming back up again only in a disaster situation (seizing them while DC A is up will cause issues)

Thanks

Mike
0
 
LVL 4

Assisted Solution

by:rickybsb
rickybsb earned 248 total points
ID: 33442877
Hi Swpui: from the beginning.

To acomplish redundancy, BEFORE DC A goes down you should already done:
dcpromo DC B as a member server
run DNS server on DC B
set the DC B as one of your DNS server on your DHCP;
set DC B as a global catalog server.

After this, in a disaster situation when DC A Goes down, you will be able to authenticate your users.

If DC A is completely unaccessible, you should seize the FSMO role so your domain will not look for the dead DC A anymore.

0
 

Author Comment

by:swpui
ID: 33443165
that meas there will still be some down time occured, how to seize the FMSO when DC A is dead?
0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 33443278
No down time at all; if DC A goes down clients still work ok and can log on.

You seize the roles using ntdsutil  http://www.petri.co.il/seizing_fsmo_roles.htm

Thanks
Mike
0
 
LVL 4

Assisted Solution

by:rickybsb
rickybsb earned 248 total points
ID: 33444816
hi SwPui,

This mean doing what i've said on last post, you will nave NO downtime at all!

You will need to seize FSMO only if your DC A goes down and you can't use it as a DC anymore. The seize FSMO is a procedure that you take in order to "tell your remaining domain controllers"  when one of the DCs is permanently dead.

For example, if DC A only suffered a hardware problem and you fixed it, there is no need to seize FSMO, just turn it ON again and everything will work great.

Regards


0
 

Author Comment

by:swpui
ID: 33481684
pls give details on how to seize FSMO
0
 
LVL 57

Accepted Solution

by:
Mike Kline earned 252 total points
ID: 33481799
See the link I left above about seizing....here it is again though   http://www.petri.co.il/seizing_fsmo_roles.htm

0
 

Author Closing Comment

by:swpui
ID: 33827719
will try it
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Always backup Domain, SYSVOL etc.using processes according to Microsoft Best Practices. This is meant as a disaster recovery process for small environments that did not implement backup processes and did not run a secondary domain controller that ne…
Had a business requirement to store the mobile number in an environmental variable. This is just a quick article on how this was done.
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Suggested Courses

649 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question