Solved

Upgrade Win2003 Domain Controller to new hardware platform and upgrade to 2008 R2 at the same time. I am looking for advice on the best method.

Posted on 2010-09-13
12
310 Views
Last Modified: 2012-05-10
We have 6 or 7 other member servers in the domain and backup domain controllers and about 300 users on the system. We would appreciate some advice on the best method for doing this migration as painlessly as possible.
0
Comment
Question by:tcn_ltd
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
12 Comments
 
LVL 70

Accepted Solution

by:
KCTS earned 250 total points
ID: 33667533
Your best bet is to simply install 2008R2 on the new hardware, the process is as follows:


First you need to Adprep your 2003 Domain by running
adprep32 /forestprep    and
adprep32 /domainprep   and
adprep32 /gpprep

from the 2008 DVD on the Windows 2003 DC  - adprep32 is in the SOURCES folder on the DVD.

Next install 2008 server on the new machine. You need to assign the 2008 new computer an IP address and subnet mask on the existing network. Make sure that the preferred DNS server on new machine points to the existing DNS Server on the Domain (normally the existing domain controller)

Join the new 2008 machine to the existing domain as a member server

From the command line promote the new machine to a domain controller with the DCPROMO command from the command line Select "Additional Domain Controller in an existing Domain"

Once Active Directory is installed then check that the new machine a global catalog server (it should be as its now the default for 2008) go to Administrative Tools, Active Directory Sites and Services, Expand, Sites, Default first site and Servers. Right click on the new server and select properties and tick the"Global Catalog" checkbox. (Global catalog is essential for logon as it needs to be queried to establish Universal Group Membership)

If necessary install DNS on the new server. Assuming that you were using Active Directory Integrated DNS on the first Domain Controller, DNS will automatically replicate to the new domain controller along with Active Directory. Set up forwarders as detailed at http://www.petri.co.il/configure_dns_forwarding.htm

You must transfer the FSMO roles to the 2008 machine then the process is as outlined at http://www.petri.co.il/transferring_fsmo_roles.htm

You then need to install DHCP on the new 2008 server (if used) and set up a scope, activate it and authorize the server.

Change all of the clients (and the new 2008 DC itself), to point to the 2008 DC for their preferred DNS server this may be in DHCP options or the TCP/IP settings.

You can then transfer any data to the new server

Before removing the old DC from the domain, run DCPROMO on it to remove Active Directory.

0
 

Author Comment

by:tcn_ltd
ID: 33667581
Thanks KCTS: for the prompt and detailed reply.
I was hoping to avoid having to change all of the clients DNS settings. Is there any way of transfering the   IP address to the new server?
0
 
LVL 4

Expert Comment

by:sire_harvey
ID: 33667753
As KCTS advised: Change all of the clients (and the new 2008 DC itself), to point to the 2008 DC for their preferred DNS server this may be in DHCP options or the TCP/IP settings.

So change the preferred DNS Server in the DHCP Options in on the 2008 Server. Client machines using the Scope set up on the 2008 DHCP server will use the DNS server configured in that scope.
0
Enterprise Mobility and BYOD For Dummies

Like “For Dummies” books, you can read this in whatever order you choose and learn about mobility and BYOD; and how to put a competitive mobile infrastructure in place. Developed for SMBs and large enterprises alike, you will find helpful use cases, planning, and implementation.

 

Author Comment

by:tcn_ltd
ID: 33668251
Since there are several BDCs  running 2003 AD what would need to be done to upgrade their schema to 2008? Also, how can we retain the same machine name on 2008 that was used for the 2003 PDC?

0
 
LVL 57

Assisted Solution

by:Mike Kline
Mike Kline earned 250 total points
ID: 33668634
The schema is a one time upgrade, it is shared by all the DCs so running it once is all you need.  In order for the 2008 box to have the same name as the old PDCe you have to change the name of the PDCe box first.   You don't have a huge domain so that can be done overnight or over a weekend.   You can change its name then restart netlogon to register its DNS records again.

You can then use the old name on the 2008 box.

Thanks

Mike
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33672578
To use the old Domain Controller's name you need to take a couple of steps. First you need to demote the old server. Go into DNS delete all DNS records for this DC.

Change the IP address to the old DC's IP on the new DC. I still like to go through the 2003 link.

http://technet.microsoft.com/en-us/library/cc794931(WS.10).aspx

http://technet.microsoft.com/en-us/library/cc758579(WS.10).aspx

You can then change the name of the current DC by going through this link

http://www.petri.co.il/rename-windows-server-2008-domain-controllers.htm
0
 

Author Comment

by:tcn_ltd
ID: 33682112
mkline71 Do we not need to install anything on the 2003 BDC to allow them to accept the 2008 schema?
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33682285
No as long as you have ran adprep /forestprep on your schema master and adprep /domainprep on your infrastructure master then this will replicate the schema update to the rest of your 2003 DCs.
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 33682290
0
 

Author Comment

by:tcn_ltd
ID: 34030287
ok thanks for everyone's help
0
 
LVL 74

Expert Comment

by:Glen Knight
ID: 34689984
This question has been classified as abandoned and is being closed as part of the Cleanup Program. See my comment at the end of the question for more details.
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

This script can help you clean up your user profile database by comparing profiles to Active Directory users in a particular OU, and removing the profiles that don't match.
This article demonstrates probably the easiest way to configure domain-wide tier isolation within Active Directory. If you do not know tier isolation read https://technet.microsoft.com/en-us/windows-server-docs/security/securing-privileged-access/s…
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
This tutorial will walk an individual through setting the global and backup job media overwrite and protection periods in Backup Exec 2012. Log onto the Backup Exec Central Administration Server. Examine the services. If all or most of them are stop…

730 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question