Link to home
Start Free TrialLog in
Avatar of Albert Widjaja
Albert WidjajaFlag for Australia

asked on

Preparation steps and the implementation steps to decommission Windows Server 2003 AD-DNS Domain Controller ?

Hi All,

Can anyone here please share and let me know what are the preparation steps and the implementation steps to decommission Windows Server 2003 AD-DNS Domain Controller ?
ASKER CERTIFIED SOLUTION
Avatar of Manikandan Narayanswamy
Manikandan Narayanswamy
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Zacharia Kurian
If you are sure that all the FSMO roles are moved from your old DC,  and all is fine, then you can demote your old DC either gracefully or forcefully.

It is worth to read these links;

https://technet.microsoft.com/en-us/library/cc740017%28v=ws.10%29.aspx

http://www.itserveronline.com/microsoft/demote-a-windows-server-2003-r2-domain-controller/

http://blogs.technet.com/b/asiasupp/archive/2006/09/06/454327.aspx

After the removal of the server from the network, you may have to do a metadata cleanup i.e.. you may have to check your upgraded AD, if any objects, DNS records etc..

Look into the below link;

http://social.technet.microsoft.com/wiki/contents/articles/3984.domain-controller-demotion-and-metadata-cleanup.aspx

Zac.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Albert Widjaja

ASKER

OK So in this case, shall I just run the DCPromo command to demote it after all FSMO role transferred ?
Do I need to restart the exchange server service or not needed ?

Yes please, if anyone know what's the command for transferring the DNS role that'd be great.

I've created new DC as Win2k12R2 holding all the FSMO role and also DNS-AD integrated, but not sure what to do next about the oldDC DNS server role.

What about the DNS replication between this old DC and the other DC ?
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Hi,

I have already given steps on my previous post. In-case if you're using 2012 R2. Then no need for the DNS zones to be transferred. Transfer the FSMO roles mentioned on my previous post then do an uninstall of AD by running DCPROMO.

Thanks
Manikandan
last question guys,

w32tm /query /source command showing the result is still pointing to the oldDC2k3 box, so should I be worry or it will be automatically contact the other DC for time synch ?

The PDC emulator in my domain has been transferred to the new2k12R2DC server, however, some of the server that I can see from the network sniffer appliance still using this old Windows Server 2003 as the NTP source.
Once you demote your 2003dc, it should contact your new pdc. Make sure those servers DNS entry is pointed to your  new pdc

Zac
Hi,

It will contact the new DC since the pdc emulator role is now available with the new Dc. Based on the DNS records.

Thanks
Manikandan
Cool, so in this case I guess I do not need to do anything then.

I was under the impression that I must go to all of the servers in my domain and the running the below command:

w32tm /config /syncfromflags:domhier /update
w32tm /resync /rediscover
net stop w32time
net start w32time

Open in new window

SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ok, so which entries / entry here that you mean for example ?
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
thanks people,

So I guess, there is no rollback plan when the DCPROMO failed or having some issue during the Demotion.
thanks !