Win2003 VMWare DC/File server demote/promote

Posted on 2010-11-19
Last Modified: 2012-05-10
I have a 2003 DC VM that is also a file server/DNS/DHCP box.  I need to demote and promote as it was restored from an 12 day old SAN replica and is having issues replicating.  I am wondering if the demotion/promotion process will have an effect on file permissions, anything else, etc...
Question by:Humongous
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 2
  • 2
  • +1
LVL 59

Assisted Solution

by:Darius Ghassem
Darius Ghassem earned 50 total points
ID: 34176861
You should not affect the file permissions but this is why you don't use a Domain Controller for any other services like File and print sharing.

There is always the unknown

Assisted Solution

Virtalicious earned 50 total points
ID: 34176979
Technically, if you had explicitly granted permission then the SSID will still be on the object after the demotion and will work after the dcpromo.

Author Comment

ID: 34177174
Got it guys - it lived here before I moved in...  Everything I've read says it should be a piece of cake...  ;)  I have a good backup of it.  Would you suggest I do a Virtual2Virtual conversion and then try it on the new one and leave the old one intact until I've fully tested?
Manage your data center from practically anywhere

The KN8164V features HD resolution of 1920 x 1200, FIPS 140-2 with level 1 security standards and virtual media transmissions at twice the speed. Built for reliability, the KN series provides local console and remote over IP access, ensuring 24/7 availability to all servers.

LVL 59

Expert Comment

by:Darius Ghassem
ID: 34177182
No you should not have an issue.

Author Comment

ID: 34177198
OK - thanks - doing it tomorrow night - at 5pm EST
LVL 57

Accepted Solution

Mike Kline earned 400 total points
ID: 34177532
So one thing to add here, if you are having replication issues you may also have issues with a graceful demotion.   If that happens you can do a

dcpromo /forceremoval
metadata cleanup

Then add back and repromote.

Does it hold any FSMO roles?

....again this is if the normal graceful demotion using dcpromo doesn't work. I only bring it up because of the replication issues you mentioned.



Author Comment

ID: 34177836
Thanks Mike - it does not hold any FSMO roles.  I will look at the link you provided.
LVL 57

Expert Comment

by:Mike Kline
ID: 34177848
no problem...and just remember those steps are a last resort if the DC doesn't demote gracefully.

Author Closing Comment

ID: 34234135
Everyone - thanks.  

Mike - thank you, it did not demote gracefully like you suggested.  That is why I gave you the most points.  Thanks!

Featured Post

Get 15 Days FREE Full-Featured Trial

Benefit from a mission critical IT monitoring with Monitis Premium or get it FREE for your entry level monitoring needs.
-Over 200,000 users
-More than 300,000 websites monitored
-Used in 197 countries
-Recommended by 98% of users

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Active Directory security has been a hot topic of late, and for good reason. With 90% of the world’s organization using this system to manage access to all parts of their IT infrastructure, knowing how to protect against threats and keep vulnerabil…
Uncontrolled local administrators groups within any organization pose a huge security risk. Because these groups are locally managed it becomes difficult to audit and maintain them.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This Micro Tutorial steps you through the configuration steps to configure your ESXi host Management Network settings and test the management network, ensure the host is recognized by the DNS Server, configure a new password, and the troubleshooting…

624 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question