?
Solved

Backup of AD on domain controller

Posted on 2011-02-24
7
Medium Priority
?
441 Views
Last Modified: 2012-05-11
We have a file server running windows server 2008 standard with AD on it, this is a domain controller.  We have another windows 2008 server running terminal services and is not a domain controller.  We have another server running windows 2003 server on it and it is not being used for anything nor is it a domain controller.  We would like to have either the terminal server or the 2003 server to have a backup of AD on it that could be used if the file server went down.  Can anyone give us a hand on how this would be accomplished so that replication of AD would take place and would the terminal server or the 2003 server be the best choice.
0
Comment
Question by:ine2003
7 Comments
 
LVL 3

Expert Comment

by:rabindrajha
ID: 34971863
however this is not the easy task, when you are talking about enterprise level. if you have less user, you have many choices. you might be interested in this...
http://technet.microsoft.com/en-us/library/bb727048.aspx
0
 
LVL 2

Expert Comment

by:helpdesk_ninja
ID: 34971923
I would recommend making that Terminal Services server into a Domain Controller.  I know that if you have Active Directory originally running on a 2003 server, you can replicate it to 2008... but I don't believe you can do the opposite.  Hop on your Terminal Services server and add the Domain Controller role.  It will then go through some basic questions about your AD environment and will run dcpromo at the end.  Once you reboot, it should begin replicating Active Directory data on it's own and advertise itself as a Domain Controller.  I don't know the specifics of your network setup, but this is the process we use for our environment.

Hope this helps!

Nick
0
 
LVL 27

Expert Comment

by:KenMcF
ID: 34972013
I would not put the DC on a terminal server.
What is your forest Functional level and domain level?

This will determine if you can promote the 2003 server to a DC.

follow the steps in this link but do not change the level just note what it is.

http://www.windowsnetworking.com/articles_tutorials/Determining-Functional-Level-Windows-Server-2003.html
0
Simplify Active Directory Administration

Administration of Active Directory does not have to be hard.  Too often what should be a simple task is made more difficult than it needs to be.The solution?  Hyena from SystemTools Software.  With ease-of-use as well as powerful importing and bulk updating capabilities.

 
LVL 59

Assisted Solution

by:Darius Ghassem
Darius Ghassem earned 1000 total points
ID: 34972421
You DO NOT put AD services on a Terminal Server this is a no no and you should not be done.

If your current forest and domain functional levels are set to Windows 2008 Server you would not be able to add Windows 2003 Server like Ken said.

You need to check this first.

Second if you are at a lower level you can add another DC very easily

http://technet.microsoft.com/en-us/library/cc733027(WS.10).aspx
0
 

Author Comment

by:ine2003
ID: 34972526
The functional levels are as follows

Domain - Windows Server 2008
Forest - Windows Server 2008

I guess then this rules out using either of the servers for this purpose.  I guess the next step would be buying a new server and setting it up as a DC with AD and the repication would take place automatically.
0
 
LVL 27

Accepted Solution

by:
KenMcF earned 1000 total points
ID: 34972595
Getting another server would be the best way since your DFL and FFL are 2008. You do not want a DC on a terminal server.

http://technet.microsoft.com/en-us/library/cc733027%28WS.10%29.aspx
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 34972965
I would have to agree another server would be the best solution. I would recommend installing Hyper-v so in future you could use the same hardware for multiple virtual machines
0

Featured Post

[Webinar] Improve your customer journey

A positive customer journey is important in attracting and retaining business. To improve this experience, you can use Google Maps APIs to increase checkout conversions, boost user engagement, and optimize order fulfillment. Learn how in this webinar presented by Dito.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

For anyone that has accidentally used newSID with Server 2008 R2 (like I did) and hasn't been able to get the server running again because you were unlucky (as I was) and had no backups - I was able to get things working by doing a Registry Hive rec…
Resolving an irritating Remote Desktop connection that stops your saved credentials from being used.
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…
This tutorial will walk an individual through configuring a drive on a Windows Server 2008 to perform shadow copies in order to quickly recover deleted files and folders. Click on Start and then select Computer to view the available drives on the se…
Suggested Courses

592 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question