2008 R2 Domain controller - demote fail

Posted on 2010-09-22
Last Modified: 2012-08-14

I have a 2008 R2 DC that has many problems. There is already a second DC in the same forest/domain. I want to reinstall the one with the many problems but I can't demote him.
When I run dcpromo or the dcpromo unattented command line I get the following error:
- Failed to detect if Active Directory Domain Service binaries were installed. The error was: The remote procedure call failed.

I can't also open the server manager, the same problem.

Can I just format and reinstall this server or will I have problems in my domain when I do this?

PS: there is already an active second DC including DNS.
PS2: this was a Exchange 2010 + DC config. Not the best config I realize now, there for I want to reinstall the first DC and only make him Exchange 2010 server and keep the second DC as the active DC.
PS3: none of the DC's are in read only
Question by:NR_EIS
  • 3
  • 2
  • 2
  • +2
LVL 14

Expert Comment

by:Schnell Solutions
ID: 33733677

The ideal idea is that we try to repair the damaged DC and depromote it in a soft way. But some times it is not possible so in such cases we just remove the data manually, the only drawback of this is that we will need to make some additional steps, but it is not a problem for AD. One thing that we can check before formatting, demotting or removing the damaged DC is confirming how long does it have without replicate. If it has more than the thombstom life it is not worth enough to try to repair it and it should be eliminated

You can check it like this...

Go to the working DC, open a command prompt and write:

repadmin /replsummary

LVL 14

Expert Comment

by:Schnell Solutions
ID: 33733740

In case that we decide to remove that server from AD we shall be aware of the actual roles that it has, example: If it is a DNS server and there are clients pointing to this server (do the clients include the second DNS as DNS Server?), if it is a Certificate Authority (Server with ADCS installed), if there are applications pointing to that DC/GC/LDAP (hardware appliances, internal applications in servers), if there are FSMO running on it (RID, PDC, Schema, Infra, DNM).

How is it with the Exchange 2010 that it has installed, isn't it actually working?


Expert Comment

ID: 33733748
On the DC where you are running DCPROMO

Check the DCPROMO log what they are saying  and check also eventvwr


Location : %SystemRoot%\Debug

So If you decide to format the system

Then you need to manually do the metadata cleanup

PS : Check FSMO role holder before doing anything
Ransomware-A Revenue Bonanza for Service Providers

Ransomware – malware that gets on your customers’ computers, encrypts their data, and extorts a hefty ransom for the decryption keys – is a surging new threat.  The purpose of this eBook is to educate the reader about ransomware attacks.

LVL 59

Expert Comment

by:Darius Ghassem
ID: 33734204
First run dcpromo /forceremoval to remove AD from this server you can just format if you want but you need to run metadata cleanup to remove any lingering objects from AD.

Good graphical view of metadata cleanup steps

Go into DNS delete all records for this DC.

Author Comment

ID: 33737809
@ schnellsolutions: the replication has no problem, and the Exchange 2010 still does it core services but the ecp panel doesn't work anymore along with some other problems
@ ChandarS: I've transferred all the master configurations the my other DC (RID, PDC, Inf)
@ dariusg: the force removal doesn't work also, same problem as opening dcpromo standard. I'm going with the reinstall and the metadata cleanup, thanks for the post from Petri

I'm going to leave this open until everything is done. Thanks for the posts already...
More information is still welcome.

Expert Comment

ID: 33742825
Hvae you checked the DCPromos.log and DCPromo.log
Location : %SystemRoot%\Debug

Or event viwever what is saying.

If you are getting any thing odd then post here...

Author Comment

ID: 33750151
@ ChandarS: Yes I have checked my logs and after the METADATA clean up there is no error anymore. Also all the records to my previous DC in AD & DNS are gone.

But I still have a big problem. After installing Exchange 2010 again on a different server I got my previous sever also in my databases. With a mention of his database store, the store can't be deleted because there is no connection anymore to the previous one.

I've tried to delete everything (accepted domains, send connectors) and re adding them, but still my incoming doesn't come in. In is received by the exchange but the connector have the following problem: "451 4.4.0 DNS query failed. The error was: SMTPSEND.DNS.NonExistentDomain; nonexistent domain"

I've searched a bit and all the posts I came along mention an availability group with one server down, what in this case isn't the problem.

Any advice?
LVL 14

Expert Comment

by:Schnell Solutions
ID: 33785263
Hello NR

You are telling that you installed Exchange 2010 again on a different server. What happened with the Exchange server on the original server? is it online? If that server is permanently offline the best option is to recover it using setup /recoverserver option. But if it is not possible the data in the Configuration partition of AD shall be removed and just in that way you are going to eliminate the apperance of that old server. What is the actual status?

Send us the following information after running these commands in Exchange Management Shell:

Get-ExchangeServers | fl
Get-ReceiveConnectors | fl
Get-SendConnectors | fl


Accepted Solution

Vishal Patel earned 500 total points
ID: 33980368
You can try following links:


Let me see if problem persists.

Featured Post

NFR key for Veeam Backup for Microsoft Office 365

Veeam is happy to provide a free NFR license (for 1 year, up to 10 users). This license allows for the non‑production use of Veeam Backup for Microsoft Office 365 in your home lab without any feature limitations.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Possible fixes for Windows 7 and Windows Server 2008 updating problem. Solutions mentioned are from Microsoft themselves. I started a case with them from our Microsoft Silver Partner option to open a case and get direct support from Microsoft. If s…
This article explains how to install and use the NTBackup utility that comes with Windows Server.
This tutorial will give a an overview on how to deploy remote agents in Backup Exec 2012 to new servers. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as connecting to a remote Back…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

792 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question