Solved

The impact of replacing the domain controller on the exchange server

Posted on 2010-08-18
10
646 Views
Last Modified: 2012-05-10
I have Exchange servers 2007 distributed in several offices, the network is a single domain (windows server 2003) and there is a domain controller in each office, one of the domain controllers need to be replaced because of hardware issues.
I want to know what is the impact of replacing the domain controller on the exchange server, and what actions need to be done on the exchange server.
0
Comment
Question by:Modey
  • 3
  • 3
  • 2
  • +2
10 Comments
 
LVL 3

Expert Comment

by:Thomas Qvidahl
ID: 33472448
You must not install a DC on a server which already has Exchange Server 2007 installed, as this is not supported and will cause all kinds of issues due to the stricter security policy on the DC.
However, If the DC is installed first, then you can install Exchange 2007 on the same box. It's not really recommended practice even if it's supported.
 
Good luck,
Snowdon
0
 
LVL 29

Expert Comment

by:mass2612
ID: 33472489
HI,

Agree completely with Snowdon but if you are simply installing a new DC and decommisioning the old one then you should make sure the Exchange server is pointing to the new DC for DNS and check the setting in the EMC under > Organization Configuration or Server Configuration node> Modify Configuration Domain Controller context menu to launch the Configuration Domain Controller.

This allows you to specify a domain controller to be used for AD read and write for organization or server configuration
0
 

Author Comment

by:Modey
ID: 33472491
Thanks Snowdon

I will not  install a DC on Exchange Server 2007 installed , I will installed  on a new server
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 
LVL 12

Expert Comment

by:Rant32
ID: 33472507
It is important to know whether you're running separate domain controllers and Exchange servers. From the wording I assume you have separate servers.
If you are able to place a new domain controller before removing the old one, you should upgrade it to a global catalog (should be the case in every site).
Once you're happy with the new one, demote the old server from a DC to member server.

As long as you keep a global catalog in the forest (and preferably in the site), Exchange will not be troubled by adding and removing domain controllers.
0
 
LVL 12

Expert Comment

by:Rant32
ID: 33472521
What snowdon means, if you are running an Exchange server that is also a domain controller, then Exchange cannot use other domain controllers than itself. Removing the DC role from an Exchange server will seriously break that Exchange server.

You will not have these issues if the Exchange server has never been a DC.
0
 
LVL 3

Accepted Solution

by:
Thomas Qvidahl earned 500 total points
ID: 33472527
Rant32 has it nailed, however the recommendation is to have one GC in each site where there is an Exchange Server. Also, if your forest consists of a single domain, you should make every DC also a GC. I multi-domain forests placing GC's is a bit more involved.
Mass2612, if you blank the "Modify Configuration Domain Controller" setting, Exchange will select it's most appropriate DC. Only populate this setting if you're experiencing problems with the default, which is blank.
0
 
LVL 29

Expert Comment

by:mass2612
ID: 33472559
Snowden and Rant32 agreed but you still need to check the setting in case its been populated in the past.
0
 
LVL 3

Expert Comment

by:Thomas Qvidahl
ID: 33472573
Rant32 - in regard to removing Exchange from a DC - I haven't tried that. I have, however tried making an Exchange 2007 Server a DC - it does break stuff. Not so much the DC, but Exchange will have some serious issues.
0
 
LVL 27

Expert Comment

by:Steve
ID: 33475808
@modey

Easy enough mate.

Create the new DC and put in on the network with the one its replacing. promote it to DC and let it replicate. Getit setup with what you need and make sure it is in the correct 'site' in AD sites and services. Make sure it replicates from the correct servers and that it is a Global catalog server.

Make sure DNS, GC and AD replication is working on the new server before doing anything else.

Once youre happy it s working, demote the old DC and remove from the network. Once done you can just restart the exchange server on the site to pick up the new DC and GC listings. You can amend the settings without rebooting it but a restart is easier.
0
 
LVL 12

Expert Comment

by:Rant32
ID: 33477928
mass2612 - absolutely right w.r.t. the Configuration DC's, good catch.
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Lotus Notes – formerly IBM Notes – is an email client application, while IBM Domino (earlier Lotus Domino) is an email server. The client possesses a set of features that are even more advanced as compared to that of Outlook. Likewise, IBM Domino is…
Last week, our Skyport webinar on “How to secure your Active Directory” (https://www.experts-exchange.com/videos/5810/Webinar-Is-Your-Active-Directory-as-Secure-as-You-Think.html?cid=Gene_Skyport) provided 218 attendees with a step-by-step guide for…
To show how to generate a certificate request in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.:  First we need to log into the Exchange Admin Center. Navigate to the Servers >> Certificates…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…

829 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question