I have 5 domain controllers:
3 x Windows Server 2008
2 x Windows Server 2003
The FSMO roles are split between the 2008 servers.
How can I safely ensure the three 2008 servers take priority over the 2003 servers for processing logons?
I could just demote and decommission the 2003 servers but we rely on them for DNS as various systems still point to them.
A google search showed that someone disabled the netlogon service to achieve this and others disabled the Active Directory services. But I still need them to function as DNS servers and our zones are AD-integrated.