question

MRPL-8502 avatar image
0 Votes"
MRPL-8502 asked DSPatrick commented

Replace faulty primary domain controller

Hi all,

because of raid problem one of my domain controller crashed (PDC on Win 2003R2). I know that it is old system but I need it for very old aplication. My question is how to configure new system to eliminate any risk problem with existing domain?
Domain is connected with others domains in other locations (trusts in AD DT)

I'm not sure if it is clear but please help

thanks in advice,
MR

windows-server
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

DSPatrick avatar image
0 Votes"
DSPatrick answered DSPatrick commented

how to configure new system to eliminate any risk problem with existing domain?

You can minimize risk by always having two or more domain controllers. In the event of a domain controller failure you can seize roles (if necessary) to another healthy one
https://docs.microsoft.com/en-us/troubleshoot/windows-server/identity/transfer-or-seize-fsmo-roles-in-ad-ds

then perform clean up to remove remnants of failed one.
https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/deploy/ad-ds-metadata-cleanup
https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-manually-removing-a-domain-controller-server/ba-p/280564

then simply rebuild the failed one.

--please don't forget to upvote and Accept as answer if the reply is helpful--











· 5
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

Hi,

If there are any questions or progress, welcome to share here!
Best Regards,

0 Votes 0 ·

Hi,
I don't have this server "in my hand" yet, I'll update topic when it arrive to me and start reinstalling

0 Votes 0 ·

Sounds good, you're welcome.

--please don't forget to upvote and Accept as answer if the reply is helpful--



0 Votes 0 ·

Hi Guys,

sorry for delay but I've been on annual leave 2 weeks :)

It look that problem is fixed, I've seize fsmo roles and deleted old server metadata. Domain is still working on second DC (I've been affraid of that). Now just left to install and configure second DC on W2k3 and send it back

Many thanks for your help,
Cheers

0 Votes 0 ·

Sounds good, you're welcome.




0 Votes 0 ·