Solved

2003 AD to 2008 R2 AD upgrade

Posted on 2011-09-27
4
223 Views
Last Modified: 2012-08-13
HI Experts,
I would like to be proactive the upgrde from AD 2003 to 2008 R2. I have currently 3 2003 ADs and 4 2008 R2 ADs and eventually AD 2003 will be demoted. One of 2008 AD has a FSMO roles. I am going to demote those 2003 ADs but I don't have anything broken. Is there any thing that I have to concern? Any suggestions when I demote the last 2003 AD which had a FSMO roles before?
Thanks in advance.
0
Comment
Question by:Ksean
4 Comments
 
LVL 57

Assisted Solution

by:Mike Kline
Mike Kline earned 83 total points
ID: 36712626
Looks like you have the steps down but for anyone else.  Yes you need to prep your forest/domains, more details and step by step in the links below



High level steps:

prep your forest for 2008 R2 (adprep32 if current boxes are 32 bit)
install the 2008 R2 member server (you all have done this already)
use dcpromo to promote the box
make the box a global catalog (does it by default in the 2008 dcpromo process)
if you have DNS on your 2003 box install it on the 2008 box
At that point you have a fully functional 2008 DC
Transfer FSMO roles to 2008 box
Point clients (static and DHCP) to the new box for DNS services.
once all your 2003 DCs are demoted you can raise the functional level.

There is a lot of great info on this subject already so I won't rewrite the book.  

The official Microsoft document

·     http://www.microsoft.com/downloads/details.aspx?familyid=FA629DE2-F4DD-47AC-8D80-3DB46B2877A2&displaylang=en

 

I also really like two blog entries by MVPs on the upgrade.  One is from Meinolf the other from Sander.  

·     http://msmvps.com/blogs/mweber/archive/2010/02/10/upgrading-an-active-directory-domain-from-windows-server-2003-to-windows-server-2008-or-windows-server-2008-r2.aspx



·     http://blogs.dirteam.com/blogs/sanderberkouwer/archive/2010/05/26/transitioning-your-active-directory-to-windows-server-2008-r2.aspx

Thanks

Mike
0
 
LVL 10

Assisted Solution

by:abhijitwaikar
abhijitwaikar earned 83 total points
ID: 36714127
Is there any thing that I have to concern? Any suggestions when I demote the last 2003 AD which had a FSMO roles before?

I suggest you to run DCDIAG, NETDIAG and REPADMIN test on 2003 DC to confirm the everything is in place, If there are any error then you need to fix them before demoting the 2003.


Other things are make sure that the Global Catalog is available on 2008R2 DC, Make your 2008R2 PDC role owner DC as a authoritative time server.
http://technet.microsoft.com/en-us/library/cc728188(WS.10).aspx
http://support.microsoft.com/kb/816042
0
 
LVL 24

Accepted Solution

by:
Sandeshdubey earned 84 total points
ID: 36714330
It seems you have already win2008 R2 DC in the environment ,if this is the case you need not require to prepare the forest again.

Before you proceed with demotion check the health of DC.Ran belwo commands.
Ran repadmin /replsum to check the replication status between the dc.
Execuet dcdiag /q & netdiag /q for any error.

Do graceful demotion of the DC,forcefull demotioned is not required if the the health of DC is OK.
Kindly take the systemstate backup or full backup of DC's and then proceed with demotion.
0
 

Author Closing Comment

by:Ksean
ID: 36718386
all set
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Sometimes drives fill up and we don't know why.  If you don't understand the best way to use the tools available, you may end up being stumped as to why your drive says it's not full when you have no space left!  Here's how you can find out...
Find out how to use Active Directory data for email signature management in Microsoft Exchange and Office 365.
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

920 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now