asked on

Domain trust created by PDC name

i have only one domain and 30 domain controllers . when i am checking the AD domain and trust there i saw our pdc in outgoing trust .
question :
1:does i need this trust .
2: i installed a new server for our pdc and transfer all roles to that  now can i  shutdown our old pdc .
Active Directory* domain controllerWindows Server 2008

Avatar of undefined
Last Comment

8/22/2022 - Mon
Aanand Singh Karki

Hi Khalid,

I hope I had understood your concerns well and based on this below would be my advice -

1): By default no external trusts are created within AD forest, hence i would advice you to check in Active Directory Domain and Trust console to check if you / your team had created the external forest trust in the past or if that existed through legacy version of AD.

2): Yes if you have moved the fsmo to new server, please make sure the AD replication is completed across your AD Topology (type Netdom Query FSMO on cmd to verify the current owner). also Make sure you have not hard-coded the old DC for any services (such as Exchange or any other third party applications).

Aanand Singh Karki
Joseph Hornsey

Hello, Khalid,

Remember there are five FSMO roles you have to worry about, and the PDC Emulator is just one of those.  You also need to think about your RID Master, Domain Naming Master, Infrastructure Master and Schema Master.

@Aanand Singh Karki
thanks for the advice .
i didn't created the external trust . but may be it is created before by one of my colleague now he is not here . your first advice is not clear to me . should i delete this trust which is created by my old  PDC name if i have only one domain .

2: yes all the five roles are transferred and replication is also completed . and i didn't hard coded the old PDC to any application .
Experts Exchange is like having an extremely knowledgeable team sitting and waiting for your call. Couldn't do my job half as well as I do without it!
James Murphy

@Joseph Hornsey
thanks for the information
yes all the five roles are transferred to the new server and pdc emulator owner is also the new server .
Aanand Singh Karki

Log in or sign up to see answer
Become an EE member today7-DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform
Sign up - Free for 7 days
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
Not exactly the question you had in mind?
Sign up for an EE membership and get your own personalized solution. With an EE membership, you can ask unlimited troubleshooting, research, or opinion questions.
ask a question

Thank you Aanand Singh Karki Sir .