DC

  • Thread starter Thread starter John Doe
  • Start date Start date
J

John Doe

We are in the process of adding a new PDC to the domain but we would also
like to rename our domain at this time. Originally it was set as
<ourdomain.com> and we would rather it be <internal.ourdomain.com>. I
understand how to bring the new DC up as a PDC for this new domain but how
do I get the new users to this domain without having to manually copy
profiles since the old domain would be invalid?
 
John,

In W2K there is no real sense of PDC/BDC. Instead all DCs are equal in
that they all have writeable copies of the directory. Meaning updates to
objects in AD can be made on any DC. Though one DC does hold the PDC
Emulator role which performs backward compatibilty and certain other
functions.

Unfortunately in W2K once a domain is created you are unable to rename it.
The only way to have this DC part of the same domain with your current DCs
in a domain called internal.ourdomain.com would be to demote all current
DCs and repromote them all up into a new domain. You will end up deleting
all users, groups, computers, etc. Also any applications that store
objects in AD will need to be fixed and also all ACLs utilizing domain
users and groups will need to be redone.

One option in your scenario though would be to create a child domain in the
forest called internal.ourdomain.com. You would then need to use something
such as movetree or ADMT to migrate users, groups, computers, etc from the
ourdomain.com to the child domain internal.ourdomain.com.

*note, domain renames are now possible in W2K3 domains.

blim

This posting is provided "AS IS" with no warranties, and confers no rights.

--------------------
| >From: "John Doe" <[email protected]>
| >Newsgroups: microsoft.public.win2000.active_directory
| >Subject: DC
| >Lines: 9
| >X-Priority: 3
| >X-MSMail-Priority: Normal
| >X-Newsreader: Microsoft Outlook Express 6.00.2800.1158
| >X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165
| >Message-ID: <[email protected]>
| >Date: Wed, 26 Nov 2003 19:37:58 GMT
| >NNTP-Posting-Host: 24.31.104.227
| >X-Complaints-To: (e-mail address removed)
| >X-Trace: twister.southeast.rr.com 1069875478 24.31.104.227 (Wed, 26 Nov
2003 14:37:58 EST)
| >NNTP-Posting-Date: Wed, 26 Nov 2003 14:37:58 EST
| >Organization: RoadRunner - Triad
| >Path:
cpmsftngxa06.phx.gbl!TK2MSFTNGP08.phx.gbl!newsfeed00.sul.t-online.de!t-onlin
e.de!news-spur1.maxwell.syr.edu!news.maxwell.syr.edu!newshosting.com!news-xf
er2.atl.newshosting.com!diablo.voicenet.com!cycny01.gnilink.net!cyclone1.gni
link.net!cyclone.southeast.rr.com!news-post.tampabay.rr.com!twister.southeas
t.rr.com.POSTED!53ab2750!not-for-mail
| >Xref: cpmsftngxa06.phx.gbl
microsoft.public.win2000.active_directory:57655
| >X-Tomcat-NG: microsoft.public.win2000.active_directory
| >
| >We are in the process of adding a new PDC to the domain but we would also
| >like to rename our domain at this time. Originally it was set as
| ><ourdomain.com> and we would rather it be <internal.ourdomain.com>. I
| >understand how to bring the new DC up as a PDC for this new domain but
how
| >do I get the new users to this domain without having to manually copy
| >profiles since the old domain would be invalid?
| >
| >
| >
| >
 
John,

There is actually one possiblity for this. If your W2K domain is still in
mixed mode you can perform the steps outlined in KB 292541:
http://support.microsoft.com/default.aspx?scid=kb;en-us;292541

blim
This posting is provided "AS IS" with no warranties, and confers no rights.
--------------------
| >X-Tomcat-ID: 696603605
| >References: <[email protected]>
| >MIME-Version: 1.0
| >Content-Type: text/plain
| >Content-Transfer-Encoding: 7bit
| >From: (e-mail address removed) (Ben [MSFT])
| >Organization: Microsoft
| >Date: Wed, 26 Nov 2003 22:20:18 GMT
| >Subject: RE: DC
| >X-Tomcat-NG: microsoft.public.win2000.active_directory
| >Message-ID: <[email protected]>
| >Newsgroups: microsoft.public.win2000.active_directory
| >Lines: 73
| >Path: cpmsftngxa06.phx.gbl
| >Xref: cpmsftngxa06.phx.gbl
microsoft.public.win2000.active_directory:57668
| >NNTP-Posting-Host: tomcatimport2.phx.gbl 10.201.218.182
| >
| >John,
| >
| >In W2K there is no real sense of PDC/BDC. Instead all DCs are equal in
| >that they all have writeable copies of the directory. Meaning updates
to
| >objects in AD can be made on any DC. Though one DC does hold the PDC
| >Emulator role which performs backward compatibilty and certain other
| >functions.
| >
| >Unfortunately in W2K once a domain is created you are unable to rename
it.
| >The only way to have this DC part of the same domain with your current
DCs
| >in a domain called internal.ourdomain.com would be to demote all current
| >DCs and repromote them all up into a new domain. You will end up
deleting
| >all users, groups, computers, etc. Also any applications that store
| >objects in AD will need to be fixed and also all ACLs utilizing domain
| >users and groups will need to be redone.
| >
| >One option in your scenario though would be to create a child domain in
the
| >forest called internal.ourdomain.com. You would then need to use
something
| >such as movetree or ADMT to migrate users, groups, computers, etc from
the
| >ourdomain.com to the child domain internal.ourdomain.com.
| >
| >*note, domain renames are now possible in W2K3 domains.
| >
| >blim
| >
| >This posting is provided "AS IS" with no warranties, and confers no
rights.
| >
| >--------------------
| >| >From: "John Doe" <[email protected]>
| >| >Newsgroups: microsoft.public.win2000.active_directory
| >| >Subject: DC
| >| >Lines: 9
| >| >X-Priority: 3
| >| >X-MSMail-Priority: Normal
| >| >X-Newsreader: Microsoft Outlook Express 6.00.2800.1158
| >| >X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165
| >| >Message-ID: <[email protected]>
| >| >Date: Wed, 26 Nov 2003 19:37:58 GMT
| >| >NNTP-Posting-Host: 24.31.104.227
| >| >X-Complaints-To: (e-mail address removed)
| >| >X-Trace: twister.southeast.rr.com 1069875478 24.31.104.227 (Wed, 26
Nov
| >2003 14:37:58 EST)
| >| >NNTP-Posting-Date: Wed, 26 Nov 2003 14:37:58 EST
| >| >Organization: RoadRunner - Triad
| >| >Path:
|
cpmsftngxa06.phx.gbl!TK2MSFTNGP08.phx.gbl!newsfeed00.sul.t-online.de!t-onli n
|
f
|
i
|
link.net!cyclone.southeast.rr.com!news-post.tampabay.rr.com!twister.southea
s
| >t.rr.com.POSTED!53ab2750!not-for-mail
| >| >Xref: cpmsftngxa06.phx.gbl
| >microsoft.public.win2000.active_directory:57655
| >| >X-Tomcat-NG: microsoft.public.win2000.active_directory
| >| >
| >| >We are in the process of adding a new PDC to the domain but we would
also
| >| >like to rename our domain at this time. Originally it was set as
| >| ><ourdomain.com> and we would rather it be <internal.ourdomain.com>. I
| >| >understand how to bring the new DC up as a PDC for this new domain
but
| >how
| >| >do I get the new users to this domain without having to manually copy
| >| >profiles since the old domain would be invalid?
| >| >
| >| >
| >| >
| >| >
| >
| >
 
Does this mean that all client systems will have to have their profile
copied over when they logg back in?


Ben said:
John,

There is actually one possiblity for this. If your W2K domain is still in
mixed mode you can perform the steps outlined in KB 292541:
http://support.microsoft.com/default.aspx?scid=kb;en-us;292541

blim
This posting is provided "AS IS" with no warranties, and confers no rights.
--------------------
| >X-Tomcat-ID: 696603605
| >References: <[email protected]>
| >MIME-Version: 1.0
| >Content-Type: text/plain
| >Content-Transfer-Encoding: 7bit
| >From: (e-mail address removed) (Ben [MSFT])
| >Organization: Microsoft
| >Date: Wed, 26 Nov 2003 22:20:18 GMT
| >Subject: RE: DC
| >X-Tomcat-NG: microsoft.public.win2000.active_directory
| >Message-ID: <[email protected]>
| >Newsgroups: microsoft.public.win2000.active_directory
| >Lines: 73
| >Path: cpmsftngxa06.phx.gbl
| >Xref: cpmsftngxa06.phx.gbl
microsoft.public.win2000.active_directory:57668
| >NNTP-Posting-Host: tomcatimport2.phx.gbl 10.201.218.182
| >
| >John,
| >
| >In W2K there is no real sense of PDC/BDC. Instead all DCs are equal in
| >that they all have writeable copies of the directory. Meaning updates
to
| >objects in AD can be made on any DC. Though one DC does hold the PDC
| >Emulator role which performs backward compatibilty and certain other
| >functions.
| >
| >Unfortunately in W2K once a domain is created you are unable to rename
it.
| >The only way to have this DC part of the same domain with your current
DCs
| >in a domain called internal.ourdomain.com would be to demote all current
| >DCs and repromote them all up into a new domain. You will end up
deleting
| >all users, groups, computers, etc. Also any applications that store
| >objects in AD will need to be fixed and also all ACLs utilizing domain
| >users and groups will need to be redone.
| >
| >One option in your scenario though would be to create a child domain in
the
| >forest called internal.ourdomain.com. You would then need to use
something
| >such as movetree or ADMT to migrate users, groups, computers, etc from
the
| >ourdomain.com to the child domain internal.ourdomain.com.
| >
| >*note, domain renames are now possible in W2K3 domains.
| >
| >blim
| >
| >This posting is provided "AS IS" with no warranties, and confers no
rights.
| >
| >--------------------
| >| >From: "John Doe" <[email protected]>
| >| >Newsgroups: microsoft.public.win2000.active_directory
| >| >Subject: DC
| >| >Lines: 9
| >| >X-Priority: 3
| >| >X-MSMail-Priority: Normal
| >| >X-Newsreader: Microsoft Outlook Express 6.00.2800.1158
| >| >X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165
| >| >Message-ID: <[email protected]>
| >| >Date: Wed, 26 Nov 2003 19:37:58 GMT
| >| >NNTP-Posting-Host: 24.31.104.227
| >| >X-Complaints-To: (e-mail address removed)
| >| >X-Trace: twister.southeast.rr.com 1069875478 24.31.104.227 (Wed, 26
Nov
| >2003 14:37:58 EST)
| >| >NNTP-Posting-Date: Wed, 26 Nov 2003 14:37:58 EST
| >| >Organization: RoadRunner - Triad
| >| >Path:
|

cpmsftngxa06.phx.gbl!TK2MSFTNGP08.phx.gbl!newsfeed00.sul.t-online.de!t-onli
n
|

e.de!news-spur1.maxwell.syr.edu!news.maxwell.syr.edu!newshosting.com!news-x
f
|

er2.atl.newshosting.com!diablo.voicenet.com!cycny01.gnilink.net!cyclone1.gn
i
|

link.net!cyclone.southeast.rr.com!news-post.tampabay.rr.com!twister.southea
s
| >t.rr.com.POSTED!53ab2750!not-for-mail
| >| >Xref: cpmsftngxa06.phx.gbl
| >microsoft.public.win2000.active_directory:57655
| >| >X-Tomcat-NG: microsoft.public.win2000.active_directory
| >| >
| >| >We are in the process of adding a new PDC to the domain but we would
also
| >| >like to rename our domain at this time. Originally it was set as
| >| ><ourdomain.com> and we would rather it be <internal.ourdomain.com>. I
| >| >understand how to bring the new DC up as a PDC for this new domain
but
| >how
| >| >do I get the new users to this domain without having to manually copy
| >| >profiles since the old domain would be invalid?
| >| >
| >| >
| >| >
| >| >
| >
| >
 
John,

The only time you would need to copy any profiles would be if the domain SID
or the user SID has changed. If you roll back to NT4 and upgrade again to
Windows 2000, then the domain SID will remain the same. The user accounts
will remain the same as if nothing has happened and there user SID will
remain the same.


--
Mark Ramey [MSFT]

This posting is provided "AS IS" with no warranties, and confers no rights.


John Doe said:
Does this mean that all client systems will have to have their profile
copied over when they logg back in?


Ben said:
John,

There is actually one possiblity for this. If your W2K domain is still in
mixed mode you can perform the steps outlined in KB 292541:
http://support.microsoft.com/default.aspx?scid=kb;en-us;292541

blim
This posting is provided "AS IS" with no warranties, and confers no rights.
--------------------
| >X-Tomcat-ID: 696603605
| >References: <[email protected]>
| >MIME-Version: 1.0
| >Content-Type: text/plain
| >Content-Transfer-Encoding: 7bit
| >From: (e-mail address removed) (Ben [MSFT])
| >Organization: Microsoft
| >Date: Wed, 26 Nov 2003 22:20:18 GMT
| >Subject: RE: DC
| >X-Tomcat-NG: microsoft.public.win2000.active_directory
| >Message-ID: <[email protected]>
| >Newsgroups: microsoft.public.win2000.active_directory
| >Lines: 73
| >Path: cpmsftngxa06.phx.gbl
| >Xref: cpmsftngxa06.phx.gbl
microsoft.public.win2000.active_directory:57668
| >NNTP-Posting-Host: tomcatimport2.phx.gbl 10.201.218.182
| >
| >John,
| >
| >In W2K there is no real sense of PDC/BDC. Instead all DCs are equal in
| >that they all have writeable copies of the directory. Meaning updates
to
| >objects in AD can be made on any DC. Though one DC does hold the PDC
| >Emulator role which performs backward compatibilty and certain other
| >functions.
| >
| >Unfortunately in W2K once a domain is created you are unable to rename
it.
| >The only way to have this DC part of the same domain with your current
DCs
| >in a domain called internal.ourdomain.com would be to demote all current
| >DCs and repromote them all up into a new domain. You will end up
deleting
| >all users, groups, computers, etc. Also any applications that store
| >objects in AD will need to be fixed and also all ACLs utilizing domain
| >users and groups will need to be redone.
| >
| >One option in your scenario though would be to create a child domain in
the
| >forest called internal.ourdomain.com. You would then need to use
something
| >such as movetree or ADMT to migrate users, groups, computers, etc from
the
| >ourdomain.com to the child domain internal.ourdomain.com.
| >
| >*note, domain renames are now possible in W2K3 domains.
| >
| >blim
| >
| >This posting is provided "AS IS" with no warranties, and confers no
rights.
| >
| >--------------------
| >| >From: "John Doe" <[email protected]>
| >| >Newsgroups: microsoft.public.win2000.active_directory
| >| >Subject: DC
| >| >Lines: 9
| >| >X-Priority: 3
| >| >X-MSMail-Priority: Normal
| >| >X-Newsreader: Microsoft Outlook Express 6.00.2800.1158
| >| >X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1165
| >| >Message-ID: <[email protected]>
| >| >Date: Wed, 26 Nov 2003 19:37:58 GMT
| >| >NNTP-Posting-Host: 24.31.104.227
| >| >X-Complaints-To: (e-mail address removed)
| >| >X-Trace: twister.southeast.rr.com 1069875478 24.31.104.227 (Wed, 26
Nov
| >2003 14:37:58 EST)
| >| >NNTP-Posting-Date: Wed, 26 Nov 2003 14:37:58 EST
| >| >Organization: RoadRunner - Triad
| >| >Path:
|

cpmsftngxa06.phx.gbl!TK2MSFTNGP08.phx.gbl!newsfeed00.sul.t-online.de!t-onli

e.de!news-spur1.maxwell.syr.edu!news.maxwell.syr.edu!newshosting.com!news-x

er2.atl.newshosting.com!diablo.voicenet.com!cycny01.gnilink.net!cyclone1.gn

link.net!cyclone.southeast.rr.com!news-post.tampabay.rr.com!twister.southea
s
| >t.rr.com.POSTED!53ab2750!not-for-mail
| >| >Xref: cpmsftngxa06.phx.gbl
| >microsoft.public.win2000.active_directory:57655
| >| >X-Tomcat-NG: microsoft.public.win2000.active_directory
| >| >
| >| >We are in the process of adding a new PDC to the domain but we would
also
| >| >like to rename our domain at this time. Originally it was set as
| >| ><ourdomain.com> and we would rather it be
I
| >| >understand how to bring the new DC up as a PDC for this new domain
but
| >how
| >| >do I get the new users to this domain without having to manually copy
| >| >profiles since the old domain would be invalid?
| >| >
| >| >
| >| >
| >| >
| >
| >
 
Back
Top