Solved

2 Servers - Domain Controller

Posted on 2016-10-26
9
43 Views
Last Modified: 2016-11-22
Hi All

We have taken over the IT for a company, basically their old IT company have sold them a new Dell Server which hasn't been setup right.

Server01 - running Print Server, DHCP and Exchange 2010 currently
Server02 - a mirror of the AD on Server01 but all client machines are using this for authentication to AD, DNS and GPO etc.

Our client is running out of space on Server01 (1.9Gb free on C) which is stopping emails from being received, this was the main reason for the new server, however because this hasn't been setup right they have now decided to move to Office365 and shut Server01 down, which is around 5-6 years old anyway.

Of course before we do that I will install DHCP onto Server02 along with the Shared Printers.
 
When I run NetDOM /query FSMO from one of the machines it comes back with:

Schema master              SERVER01.domain.local
Domain naming master        SERVER01.domain.local
PDC                         SERVER01.domain.local
RID pool manager            SERVER01.domain.local
Infrastructure master       SERVER01.domain.local

Does this mean if we turn Server01 off AD will not work on Server02

thanks
R
0
Comment
Question by:ryank85
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
9 Comments
 
LVL 28

Expert Comment

by:Michael Pfister
ID: 41859858
Yes. You have to demote Server01 before turning it off. This will transfer all AD roles to Server02.

Whats the OS on Server01?
0
 

Author Comment

by:ryank85
ID: 41859866
Thanks for quick reply

Server01 - SBS 2008
Server01 - Windows Server 2008 R2 Standard
0
 
LVL 30

Accepted Solution

by:
Scott C earned 250 total points (awarded by participants)
ID: 41859907
I would never demote a server and depend on that to transfer the FSMO roles.

You need to transfer them manually and make sure they are transferred to the new server BEFORE demoting.

Here are the steps to do this:  http://www.techunboxed.com/2012/07/how-to-transfer-fsmo-roles-in-windows.html

In addition, BEFORE you do anything... make a full backup of BOTH servers.  If something goes wrong, and believe me it can and recently has for me in a similar situation, you will be grateful that you can return to your starting point.

I have also added a couple of more topics that are appropriate.
0
Edgartown IT Case Study

Learn about Edgartown's quest to ensure the safety and security of the entire town's employee and citizen data. Read the case study!

 

Author Comment

by:ryank85
ID: 41859914
thanks Scott - do I need to do anything with Server02 before start this process on Server01
0
 
LVL 30

Expert Comment

by:Scott C
ID: 41859921
No, as long as Server02 is healthy (look through the logs) you should be good to do.

But, again, please make a backup.  I only stress this because I had a similar situation and I dodged a bullet.

Also, it's a matter of personal preference, but I always run these commands from the target server, in your case, Server02.

Once the roles have been transferred, make sure by running the netdom /query fsmo command again.  Take a screenshot for documentation.
0
 

Author Comment

by:ryank85
ID: 41859937
thanks Scott

I think I will move the client to 365 this weekend and then demote the old SBS server

I will keep you updated, thanks again.
0
 
LVL 95

Assisted Solution

by:Lee W, MVP
Lee W, MVP earned 250 total points (awarded by participants)
ID: 41860184
SBS is not standard server.  Furthermore, it runs exchange!  You BREAK exchange if you demote (or promote) it!  Once Exchange is installed you CANNOT promote or demote the server.  PERIOD.  What you are doing is a migration from SBS which requires you to migrate everyone OFF the Exchange server, UNINSTALL EXCHANGE, and Migrate ALL data OFF the server THEN demote the SBS server.

Further, you CANNOT transfer the FSMO roles without violating licensing and initiating a 21 day countdown that will result in the server shutting itself down every hour or two.  Once everything is off the server THEN you can transfer the FSMO roles and demote.  

Please, for your client's sake, if you don't understand SBS, Active Directory, or Exchange, partner with someone who does so you don't cripple them!
0
 
LVL 30

Expert Comment

by:Scott C
ID: 41860990
Thanks for adding those points Lee.  I was on the computer late and wasn't as thorough as I should have been.
0
 
LVL 30

Expert Comment

by:Scott C
ID: 41887607
Complete solution with explanations provided.
0

Featured Post

Announcing the Most Valuable Experts of 2016

MVEs are more concerned with the satisfaction of those they help than with the considerable points they can earn. They are the types of people you feel privileged to call colleagues. Join us in honoring this amazing group of Experts.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Learn how to PXE Boot both BIOS & UEFI machines with DHCP Policies and Custom Vendor Classes
Active Directory security has been a hot topic of late, and for good reason. With 90% of the world’s organization using this system to manage access to all parts of their IT infrastructure, knowing how to protect against threats and keep vulnerabil…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

749 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question