troubleshooting Question

I can't remove decommissioned DC from 2012 server

Avatar of Rick Mills
Rick MillsFlag for United States of America asked on
Windows Server 2012Active Directory
5 Comments1 Solution79 ViewsLast Modified:
I took over support for a small non-profit.  The old IT company was hosting their domain controller (OldDC).  I installed a new DC (NewDC) on-premise with 2012 Foundation, joined it to the domain and made it a domain controller.  We changed Internet providers about the same time.  The old IT provider could not get the VPN to connect, after changing the Internet provider (that one still stumps me).  OldDC is still a domain controller in my AD, but I can no longer access it.
If I go to ADUC and select to delete OldDC, i get the "you are attempting to delete a Domain Controller without running the removal wizard..." message.  I check the box for Delete this DC anyway and click the Delete button.  Here's the message I get.
Windows cannot delete object
LDAP://NewDC.mydomain.org/CN=OldDC,OU=Domain Controllers,DC=mydomain,DC=org because:
Access is denied

I can't run a DCPROMO /FORCEREMOVAL because that's now incorporated into Server Manager.
I ran NTDSUTIL and when I listed the servers in site, it only lists NewDC.  I tried to select server OldDC, anyway, but it said invalid syntax.

Can anyone offer a suggestion on how to remove this old server?
ASKER CERTIFIED SOLUTION
Join our community to see this answer!
Unlock 1 Answer and 5 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 5 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros