Solved

Manually removing DC from Domain

Posted on 2011-03-09
8
477 Views
Last Modified: 2012-05-11
Someone previously removed an old DC (this used to be the only DC) from my domain a while back.  I keep finding remnants of this old server in AD and DNS.  What is the best practice for cleaning up AD/DNS to remove this old server.
0
Comment
Question by:emauch
  • 5
  • 3
8 Comments
 
LVL 11

Accepted Solution

by:
RickSheikh earned 500 total points
ID: 35084287
Metadata cleanup should be performed.

http://support.microsoft.com/kb/216498

http://www.petri.co.il/delete_failed_dcs_from_ad.htm

Let us know if you run into any issues.
0
 
LVL 11

Expert Comment

by:RickSheikh
ID: 35084304
Also the metadata cleanup does not always remove the DC (server object) under Sites and Services. So it should be manually removed.

What are these remnants you refer to ? the _msdcs specific records ?
0
 

Author Comment

by:emauch
ID: 35084416
Yes, there is an entry in DNS under "my domain.local" > _msdcs for the server.  The strange thing is that this is the only server listed under this section.  Should I add my 2 new DCs and remove the old one here?
0
Are your AD admin tools letting you down?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

 
LVL 11

Expert Comment

by:RickSheikh
ID: 35084524
The other two DCs should have already register these SRV records on their. Restarting Netlogon service can accomplish that unless there is any issue from DCs standpoint i.e dynamic registration

http://support.microsoft.com/kb/241505

SRV Resource Records May Not Be Created on Domain Controller
http://support.microsoft.com/?kbid=239897

Troubleshooting Common Active Directory Setup Issues in Windows 2000
http://support.microsoft.com/?kbid=260371

How to Verify the Creation of SRV Records for a Domain Controller
http://support.microsoft.com/?kbid=241515

Frequently Asked Questions About Windows 2000 DNS and Windows Server 2003 DNS
http://support.microsoft.com/?kbid=291382

Windows 2000 DNS and Active Directory Information and Technical Resources
http://support.microsoft.com/?kbid=298448
0
 
LVL 11

Expert Comment

by:RickSheikh
ID: 35084533
*The other two DCs should have already registered these SRV records on their own*.

The bunk record (old/dead DC) needs to be deleted.
0
 

Author Comment

by:emauch
ID: 35084549
The other two servers appear to have their records in all the right places, except for the one I mentioned above.  Can I just add them manually?
0
 
LVL 11

Expert Comment

by:RickSheikh
ID: 35084681
Well, they may not be needed, depending on where you are looking under the _msdcs node.

If you are looking under _sites than the only DC belonging to that site should have an SRV record there and it is possible that site only had the bad DC in it.

The _tcp node on the other hand should have all the live writable DCs with their _kerberos, _ldap, _kpassed etc SRV records.

See the fourth link provided.
0
 

Author Closing Comment

by:emauch
ID: 35085313
Thank you for all your help.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Disabling the Directory Sync Service Account in Office 365 will stop directory synchronization from working.
In this article, I am going to show you how to simulate a multi-site Lab environment on a single Hyper-V host. I use this method successfully in my own lab to simulate three fully routed global AD Sites on a Windows 10 Hyper-V host.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

776 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question