Solved

upgrading Server 2003 to Server 2008 R2

Posted on 2011-02-15
5
318 Views
Last Modified: 2012-05-11
We are switching our servers to 2008 R2 and I need to move the certificates from a 2003 32-bit server to a 2008 R2 64-bit server.  I am actually building a new 2008 R2 DC and I was planning on moving the certs to that and decommissioning the 2003 DC.  What is the best way to go about doing this?

Thanks,
Jon
0
Comment
Question by:Tim Lewis
  • 3
5 Comments
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 34898806
0
 
LVL 10

Expert Comment

by:kgreeneit
ID: 34898844
Hi there the best way to do this would be as follows:

build your 2008 R2 dc

update the AD schema as required

install Certificate Services on the 2008 R2 DC

export all of the relevant certificates from the Windows 2003 server ensuring you export the 'Private Key' with them

Import these certificates into the new Windows 2008 R2 DC's CA store

Uninstall the CA from the Windows 2003 DC

Backup any important files on the Windows 2003 DC

DCPROMO the Windows 2003 DC to remove it from the domain as a DC

Remove the old Windows 2003 DC from the domain

Power down the old Windows 2003 DC

This should do the job for you then!
0
 

Author Comment

by:Tim Lewis
ID: 34910209
We moved the CA but now it is not handing out certificates.  Please help.

Thanks,
Jon
0
 

Accepted Solution

by:
Tim Lewis earned 0 total points
ID: 34917235
found solution:


Paranormastic:
Confirm that the domain controllers group for this domain is a member of the CERTSRV_DCOM_ACCESS group - this is a local group on the CA server unless the CA is on a DC, then is an AD group.

Run these, in order:
certutil -dcinfo deletebad
certutil -pulse
gpupdate /force

Reboot the DC.

If still giving you problems look into DNS and firewall issues.
0
 

Author Closing Comment

by:Tim Lewis
ID: 34949695
found answer
0

Featured Post

Best Practices: Disaster Recovery Testing

Besides backup, any IT division should have a disaster recovery plan. You will find a few tips below relating to the development of such a plan and to what issues one should pay special attention in the course of backup planning.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Learn about cloud computing and its benefits for small business owners.
You might have come across a situation when you have Exchange 2013 server in two different sites (Production and DR). After adding the Database copy in ECP console it displays Database copy status unknown for the DR exchange server. Issue is strange…
This tutorial will walk an individual through locating and launching the BEUtility application and how to execute it on the appropriate database. Log onto the server running the Backup Exec database. In a larger environment, this would generally be …
This tutorial will give a short introduction and overview of Backup Exec 2012 and how to navigate and perform basic functions. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as conne…

831 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question