do not understand what you mean. Do you mean the FSMO roles? If you want another server to be a DC then just run DCPROMO.
I think you need to expand on this question for me.
Im currently running MS active directory services on one of windows 2003 servers (Domain Controller).
I want to demote this server and migrate the entire ADS database (DNS,DHCP, OUs, users, System files, data script, services, basically everything that is running on the server) to another server.
This new server will now be functioning as the original domain controler.
You can do this easily, promote the new server using DCPROMO. Shut down old Domain Controller and disconnect permanently. You must then use the NDSUTIL utility to promote the Master Domain Controller Roles to the new server. There are around 5 roles to assign.
There is a little more to this than just running DCPROMO on each server.
You will first want to inventory the old server and duplicate any services it runs ont he new server. DHCP, DNS, WINS, printers, file shares are all things to watch out for.
If it is an Exchange box, you will also need to migrate mailboxes and don't forget about directing mail to the new server.
I prefer to transfer FSMO roles before taking down the server. This is a matter or personal taste, I feel it is more secure as I can troubleshoot easier when all servers are still up and running if anything goes wrong. Use the GUI to transfer the roles or use NTDSUTIL (GUI is easier)
Exactly, by making it an additional DC in the existing domain the AD will be duplicated and you will not loose domain memberships with the client PCs and you will not have to recreate the user objects. You can't make it a member of a child domain if you are going to remove the only DC in what would then be the root domain.
Before you shut down your old domain controller, you should transfer any FSMO roles from it to the other computer. There are 5 roles and a global catalog to consider. If the old server was the first domain controller in your domain, it will hold all 6 by default. For the global catalog, you simply add that role to another Domain controller (more than one can exist); the FSMO's must be transfered.
You would just need to rebuild that server and DCPROMO it back in and repeate the steps you did for the new server. I suggest bringing that server back in with a new name to keep it clean.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.