Need Help on adding Active Directory server in DR data center

Posted on 2014-09-03
Last Modified: 2014-09-08
We have Data Center in Office and DR in Remote Location. We have dedicated AD servers globally in different sites. We are working on moving one of our data center to new location. We will move all our servers to new data center and to perform same we need to shutdown the AD server too for 10 hours. So far we don't have a DR server for active directory in our current location. I am planning to deploy a new AD server in DR location to fail over the domain controller requests for 10 hours until the current server comes up. Need help to setup new AD server in our environment.

- Plan to add new AD server in DR location
- Steps to configure the AD server in DR location
- Pre & Post steps to deploy the AD server
- Post Verification steps \ Replication Verification
- Possibilities of issues when we add new server in DR
- DR exercise (How can I validate the new server is accepting the AD requests when my current server goes down)
Question by:Sekar Chinnakannu
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3

Expert Comment

ID: 40300407
If i understood right your AD Server in the dr location will be shut down and moved.

So you do not need a AD Server while moving. Its the location concept or low cost settings in your domain.

It means if a client needs AD Information like auth its looking for the nearest (low cost) AD Server. For performance reasons you should have that server near by your clients. But if you do not have then the client is asking the next one when he could reach it.

So in your case if there is no server or client at DR location why you should need a AD server?
If all of your other AD Server have a global catalog then you are already redundant in any desaster case. This is for the AD objects only. For DHCP etc you need another concept.

All your requestet stept are belonging to the dcprome.exe command. You should take some time to understand the FSMO Roles in a domain and if the moved server has non of them then just move them to the new location.
LVL 25

Author Comment

by:Sekar Chinnakannu
ID: 40300438
We are not moving our server DR server, I am looking for a plan to deploy an new server in DR to take care of fail over process when we move the current AD server to new DC and when the current DC goes down.

Expert Comment

ID: 40300449

You can add the new server in DR location and then move the fsmo roles

then shut down the server. After you restarted in the new location you can move again the fsmo roles to the original one.
PeopleSoft Has Never Been Easier

PeopleSoft Adoption Made Smooth & Simple!

On-The-Job Training Is made Intuitive & Easy With WalkMe's On-Screen Guidance Tool.  Claim Your Free WalkMe Account Now

LVL 25

Author Comment

by:Sekar Chinnakannu
ID: 40300460
Ok how can I confirm when I shutdown my current AD server and automatically fail over goes to new DR AD server and also Post Verification steps &  Possibilities of issues when we add new server in DR

Expert Comment

ID: 40300470
There are no automatic fail over. All you have to do is manual work. The only concept i know for automatic failover is the combination of windows 2012 Server and hyper-v. Because this server typ you are able to boot and its regetting the sync files of the dc cluster.

For verification you can take from the MS blog:

There are no issues when you add a ad server to an existing forest. If the network is accessable for all ports needed its working like a charm.
LVL 25

Author Comment

by:Sekar Chinnakannu
ID: 40300477
ok but still when my current DC goes down I want all my connection need to redirect\fail over to DR AD server. not to next available DC or other site

Accepted Solution

Wilder_Admin earned 500 total points
ID: 40301014

Featured Post

Free NetCrunch network monitor licenses!

Only on Experts-Exchange: Sign-up for a free-trial and we'll send you your permanent license!

Here is what you get: 30 Nodes | Unlimited Sensors | No Time Restrictions | Absolutely FREE!

Act now. This offer ends July 14, 2017.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A project that enables an administrator to perform actions within a user session context not just at the time of login but any time later on day(s) or week(s) later.
Resolving an irritating Remote Desktop connection that stops your saved credentials from being used.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

729 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question