Demotion DC

  • Thread starter Thread starter Guest
  • Start date Start date
G

Guest

Hi,

I have at this moment 2 DC's in our domain 1.1 and 1.2 last octect ip
address, but the second DC is failing (Hard Disk problems) so I will need
urgent the create a new DC I already move roles from one server to the other,
my question is:

- I'm gonna to demote the failed DC and promote a new DC , but :

Set the same hostname and ip address in the new DC of the failed DC and
rename this one?

May I use the netbios hostname of any DC to apply it to a new DC
promoted.


It might possible to have security problems or any SID problem if I try
to use the same name in the new DC.

Basically i'm trying to keep the configuration in the domain without affect
much the network performance !!

Thanks any comments !!
 
Misaro said:
Hi,

I have at this moment 2 DC's in our domain 1.1 and 1.2 last octect ip
address, but the second DC is failing (Hard Disk problems) so I will need
urgent the create a new DC I already move roles from one server to the
other,
my question is:

- I'm gonna to demote the failed DC and promote a new DC , but :

Set the same hostname and ip address in the new DC of the failed DC and
rename this one?

It doesn't work (for Win2000). You cannot even EASILY rename
domains in Win2003 except in one very special case.

You can re-install a new server with same name (after this one is gone),
or you can rename a NON-DC and promote it (after this one is gone).

If you hard drive has not yet failed (completely) you could also do a
System State backup of this running DC, or other methods of moving the
contents of the failing drive to new disk.
May I use the netbios hostname of any DC to apply it to a new DC
promoted.

Only after this DC (the machine) is removed from the network.

You cannot have two machines on the same net with the same
NetBIOS name and expect them to function -- nor two DCs with
same name.
It might possible to have security problems or any SID problem if I try
to use the same name in the new DC.

No, it's both worse AND better than that -- if you don't don it correctly
the new DC won't even promote or work; if you do it correctly you will
not have any SID problems.
Basically i'm trying to keep the configuration in the domain without
affect
much the network performance !!

Unless you have this DC doing "other things" there is no particular
reason for it to even have the same name.
 
HI,
"You can re-install a new server with same name (after this one is gone),
or you can rename a NON-DC and promote it (after this one is gone)."

According your comment what i'm looking for is to demote the DC that's
failing from the directory services functions and consecuently delete the
computer account from the domain then promote a new member server to be
domain controller and the set to it the netbios name of the failed DC had it.

ej:
dc1.abc.com = remove from domain and delete from AD
dc2.abc.com=member server new AD but with the netbios name changed
to dc1 once it was remove it from the first one.


Thanks any comments !!


Herb Martin said:
Misaro said:
Hi,

I have at this moment 2 DC's in our domain 1.1 and 1.2 last octect ip
address, but the second DC is failing (Hard Disk problems) so I will need
urgent the create a new DC I already move roles from one server to the
other,
my question is:

- I'm gonna to demote the failed DC and promote a new DC , but :

Set the same hostname and ip address in the new DC of the failed DC and
rename this one?

It doesn't work (for Win2000). You cannot even EASILY rename
domains in Win2003 except in one very special case.

You can re-install a new server with same name (after this one is gone),
or you can rename a NON-DC and promote it (after this one is gone).

If you hard drive has not yet failed (completely) you could also do a
System State backup of this running DC, or other methods of moving the
contents of the failing drive to new disk.
May I use the netbios hostname of any DC to apply it to a new DC
promoted.

Only after this DC (the machine) is removed from the network.

You cannot have two machines on the same net with the same
NetBIOS name and expect them to function -- nor two DCs with
same name.
It might possible to have security problems or any SID problem if I try
to use the same name in the new DC.

No, it's both worse AND better than that -- if you don't don it correctly
the new DC won't even promote or work; if you do it correctly you will
not have any SID problems.
Basically i'm trying to keep the configuration in the domain without
affect
much the network performance !!

Unless you have this DC doing "other things" there is no particular
reason for it to even have the same name.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
Thanks any comments !!
 
Misaro said:
HI,
"You can re-install a new server with same name (after this one is gone),
or you can rename a NON-DC and promote it (after this one is gone)."

According your comment what i'm looking for is to demote the DC that's
failing from the directory services functions and consecuently delete the
computer account from the domain then promote a new member server to be
domain controller and the set to it the netbios name of the failed DC had
it.

Not quite. If you do it that way (generally) you do the last
part in the opposite order:

Important: Set the name BEFORE you promote to DC.
ej:
dc1.abc.com = remove from domain and delete from AD
dc2.abc.com=member server new AD but with the netbios name changed
to dc1 once it was remove it from the first one.

Rename first.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
Thanks any comments !!


Herb Martin said:
Misaro said:
Hi,

I have at this moment 2 DC's in our domain 1.1 and 1.2 last octect ip
address, but the second DC is failing (Hard Disk problems) so I will
need
urgent the create a new DC I already move roles from one server to the
other,
my question is:

- I'm gonna to demote the failed DC and promote a new DC , but :

Set the same hostname and ip address in the new DC of the failed DC
and
rename this one?

It doesn't work (for Win2000). You cannot even EASILY rename
domains in Win2003 except in one very special case.

You can re-install a new server with same name (after this one is gone),
or you can rename a NON-DC and promote it (after this one is gone).

If you hard drive has not yet failed (completely) you could also do a
System State backup of this running DC, or other methods of moving the
contents of the failing drive to new disk.
May I use the netbios hostname of any DC to apply it to a new DC
promoted.

Only after this DC (the machine) is removed from the network.

You cannot have two machines on the same net with the same
NetBIOS name and expect them to function -- nor two DCs with
same name.
It might possible to have security problems or any SID problem if I
try
to use the same name in the new DC.

No, it's both worse AND better than that -- if you don't don it correctly
the new DC won't even promote or work; if you do it correctly you will
not have any SID problems.
Basically i'm trying to keep the configuration in the domain without
affect
much the network performance !!

Unless you have this DC doing "other things" there is no particular
reason for it to even have the same name.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
Thanks any comments !!
 
This article refer to move the dhcp database from a NT4 or win 2000 to win
2003 server , but I need to move the dhcp db and config fron win2000 to
other win 2000
running into Win Active Directory 2000



Herb Martin said:
Misaro said:
HI,
"You can re-install a new server with same name (after this one is gone),
or you can rename a NON-DC and promote it (after this one is gone)."

According your comment what i'm looking for is to demote the DC that's
failing from the directory services functions and consecuently delete the
computer account from the domain then promote a new member server to be
domain controller and the set to it the netbios name of the failed DC had
it.

Not quite. If you do it that way (generally) you do the last
part in the opposite order:

Important: Set the name BEFORE you promote to DC.
ej:
dc1.abc.com = remove from domain and delete from AD
dc2.abc.com=member server new AD but with the netbios name changed
to dc1 once it was remove it from the first one.

Rename first.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
Thanks any comments !!


Herb Martin said:
Hi,

I have at this moment 2 DC's in our domain 1.1 and 1.2 last octect ip
address, but the second DC is failing (Hard Disk problems) so I will
need
urgent the create a new DC I already move roles from one server to the
other,
my question is:

- I'm gonna to demote the failed DC and promote a new DC , but :

Set the same hostname and ip address in the new DC of the failed DC
and
rename this one?

It doesn't work (for Win2000). You cannot even EASILY rename
domains in Win2003 except in one very special case.

You can re-install a new server with same name (after this one is gone),
or you can rename a NON-DC and promote it (after this one is gone).

If you hard drive has not yet failed (completely) you could also do a
System State backup of this running DC, or other methods of moving the
contents of the failing drive to new disk.

May I use the netbios hostname of any DC to apply it to a new DC
promoted.

Only after this DC (the machine) is removed from the network.

You cannot have two machines on the same net with the same
NetBIOS name and expect them to function -- nor two DCs with
same name.

It might possible to have security problems or any SID problem if I
try
to use the same name in the new DC.

No, it's both worse AND better than that -- if you don't don it correctly
the new DC won't even promote or work; if you do it correctly you will
not have any SID problems.

Basically i'm trying to keep the configuration in the domain without
affect
much the network performance !!

Unless you have this DC doing "other things" there is no particular
reason for it to even have the same name.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]


Thanks any comments !!
 
Misaro said:
This article refer to move the dhcp database from a NT4 or win 2000 to
win
2003 server , but I need to move the dhcp db and config fron win2000 to
other win 2000
running into Win Active Directory 2000

There are papers on the MS website (just Google) for moving
the DHCP db to a backup DHCP server -- you can follow that
but basically these are all similar.

Backup the database. (There is a button/menu for this in DHCP).

Physically move it. Recreate the registry
entries on the new side and reconcile all of the scopes.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
Herb Martin said:
Misaro said:
HI,
"You can re-install a new server with same name (after this one is
gone),
or you can rename a NON-DC and promote it (after this one is gone)."

According your comment what i'm looking for is to demote the DC that's
failing from the directory services functions and consecuently delete
the
computer account from the domain then promote a new member server to
be
domain controller and the set to it the netbios name of the failed DC
had
it.

Not quite. If you do it that way (generally) you do the last
part in the opposite order:

Important: Set the name BEFORE you promote to DC.
ej:
dc1.abc.com = remove from domain and delete from AD
dc2.abc.com=member server new AD but with the netbios name
changed
to dc1 once it was remove it from the first one.

Rename first.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]
Thanks any comments !!


:

Hi,

I have at this moment 2 DC's in our domain 1.1 and 1.2 last octect
ip
address, but the second DC is failing (Hard Disk problems) so I will
need
urgent the create a new DC I already move roles from one server to
the
other,
my question is:

- I'm gonna to demote the failed DC and promote a new DC , but :

Set the same hostname and ip address in the new DC of the failed
DC
and
rename this one?

It doesn't work (for Win2000). You cannot even EASILY rename
domains in Win2003 except in one very special case.

You can re-install a new server with same name (after this one is
gone),
or you can rename a NON-DC and promote it (after this one is gone).

If you hard drive has not yet failed (completely) you could also do a
System State backup of this running DC, or other methods of moving the
contents of the failing drive to new disk.

May I use the netbios hostname of any DC to apply it to a new
DC
promoted.

Only after this DC (the machine) is removed from the network.

You cannot have two machines on the same net with the same
NetBIOS name and expect them to function -- nor two DCs with
same name.

It might possible to have security problems or any SID problem if
I
try
to use the same name in the new DC.

No, it's both worse AND better than that -- if you don't don it
correctly
the new DC won't even promote or work; if you do it correctly you will
not have any SID problems.

Basically i'm trying to keep the configuration in the domain without
affect
much the network performance !!

Unless you have this DC doing "other things" there is no particular
reason for it to even have the same name.

--
Herb Martin, MCSE, MVP
Accelerated MCSE
http://www.LearnQuick.Com
[phone number on web site]


Thanks any comments !!
 
Back
Top