AD will not demote

  • Thread starter Thread starter Richard
  • Start date Start date
R

Richard

I have a server that another tech loaded AD on. For some
reason he didn't get the DNS resolution correct and ended
up killing the AD. I have been called in to help fix the
problem. I figured since I have two of the same AD
databases (one on a temp server) I would just demote the
AD box and fix the DNS issues then promote the AD box to
gain the fresh database. What I am finding is that the
server can't find itself in the AD sturcture and worse
won't demote. I states that the server cannot resolve
Dell2k in through DNS. fix DNS and try again.

I have also tried to unplug it from the rest of the
network and do a "last domain controller demote" hoping
it would preform this option instead. I do get a
different error but it still fails to demote. I am hoping
to avoid formating the box since the server holds this
companies SQL server and most of the data.

I can ping by name and resolve anything on my network as
well as the internet through this box. DNS looks correct
and is resolving like it should. One interesting thing is
that I did a netdiag /fix command and found that the DNS
was resolving the dell2k server but failed to resolve it
with the correct GUID. Could the possibility that the
previous tech deleted the server when he relized things
were screwed up and now it is failing on that portion?

Any help from someone who knows AD or DNS better than I
would be great!

Thanks

Richard
 
Sounds like you may have already found the problem. If the server is not
resolving the correct GUID you are going to have quite a few DNS related
issues. Have you tried manually changing the GUID record to the correct
value?

A useful tool for you would be dnslint which can check DNS for any dodgy
records and point you towards any problems.

If all else fails you can use the /forceremoval switch to unceremoniously
yank AD from your server as per this KB.
http://support.microsoft.com/?id=332199
This should be a last resort though if you cannot get DNS repaired.
 
Back
Top