廣告樹系修復-抓取作業主角AD Forest Recovery - Seizing an operations master role

適用於: Windows Server 2016、 Windows Server 2012 和 2012 R2、 Windows Server 2008 和 2008 R2Applies To: Windows Server 2016, Windows Server 2012 and 2012 R2, Windows Server 2008 and 2008 R2

使用下列程序抓取作業主角 (也稱為彈性的單一主機操作 (FSMO) 角色)。Use the following procedure to seize an operations master role (also known as a flexible single master operations (FSMO) role). 您可以使用 Ntdsutil.exe,會自動安裝所有網域控制站在命令列工具。You can use Ntdsutil.exe, a command-line tool that is installed automatically on all DCs.

若要抓取作業主角To seize an operations master role

  1. 在命令提示字元中,輸入下列命令,,然後按 ENTER 鍵:At the command prompt, type the following command, and then press ENTER:

    ntdsutil  
    
  2. ntdsutil:提示,輸入下列命令,然後按 ENTER 鍵:At the ntdsutil: prompt, type the following command, and then press ENTER:

    roles  
    
  3. FSMO 維護:提示,輸入下列命令,然後按 ENTER 鍵:At the FSMO maintenance: prompt, type the following command, and then press ENTER:

    connections  
    
  4. 伺服器連接:提示,輸入下列命令,然後按 ENTER 鍵:At the server connections: prompt, type the following command, and then press ENTER:

    Connect to server ServerFQDN  
    

    其中ServerFQDN是完整的網域名稱 (FQDN),此 dc,例如:連接伺服器 nycdc01.example.comWhere ServerFQDN is the fully qualified domain name (FQDN) of this DC, for example: connect to server nycdc01.example.com.

    如果ServerFQDN未成功,使用 NetBIOS DC 的名稱。If ServerFQDN does not succeed, use the NetBIOS name of the DC.

  5. 伺服器連接:提示,輸入下列命令,然後按 ENTER 鍵:At the server connections: prompt, type the following command, and then press ENTER:

    quit  
    
  6. 根據您要抓取的角色, FSMO 維護:提示輸入適當的命令下表中所述,然後按 ENTER 鍵。Depending on the role that you want to seize, at the FSMO maintenance: prompt, type the appropriate command as described in the following table, and then press ENTER.

    角色Role 認證Credentials 命令Command
    網域命名主機Domain naming master 企業系統管理員Enterprise Admins 抓取命名主機Seize naming master
    架構主機Schema master 架構系統管理員Schema Admins 抓取架構主機Seize schema master
    基礎結構主機請注意:您抓取基礎結構主角之後,您可能會收到一則錯誤稍後如果您需要執行 Adprep /Rodcprep。Infrastructure master Note: After you seize the infrastructure master role, you may receive an error later if you need to run Adprep /Rodcprep. 如需詳細資訊,查看知識庫文章949257For more information, see KB article 949257. 網域系統管理員 」Domain Admins 抓取基礎結構主機Seize infrastructure master
    Pdc 模擬器PDC emulator master 網域系統管理員 」Domain Admins 抓取 pdcSeize pdc
    RID 的主要RID master 網域系統管理員 」Domain Admins 抓取 rid 的主機Seize rid master

    在確認此要求之後,嘗試轉移 Active Directory 或 AD DS。After you confirm the request, Active Directory or AD DS attempts to transfer the role. 轉送失敗時,顯示的一些資訊時發生錯誤,並 Active Directory 或 AD DS 繼續進行抓取。When the transfer fails, some error information appears, and Active Directory or AD DS proceeds with the seizure. 抓取完成後,就會出現的角色與輕量型 Directory 存取通訊協定 (LDAP) 的名稱會保留目前每個角色伺服器清單。After the seizure is complete, a list of the roles and the Lightweight Directory Access Protocol (LDAP) name of the server that currently holds each role appears. 您也可以執行Netdom 查詢 FSMO在已提升權限的命令提示字元驗證目前角色位置。You can also run Netdom Query FSMO at an elevated command prompt to verify current role holders.

    注意

    如果這部電腦不是 RID 主機失敗之前,您嘗試抓取 RID 主角電腦就會與複寫合作夥伴接受此角色前進行同步處理。If this computer was not a RID master before the failure and you attempt to seize the RID master role, the computer tries to synchronize with a replication partner before accepting this role. 不過,因為隔離電腦時執行此步驟,它就會失敗與協力廠商同步處理中。However, because this step is performed when the computer is isolated, it will not succeed in synchronizing with a partner. 因此,會顯示對話方塊中,詢問您是否要繼續使用許可與合作夥伴同步無法這台電腦操作。Therefore, a dialog box appears asking you whether you want to continue with the operation despite this computer not being able to synchronize with a partner. 按一下[是]Click Yes.

後續步驟Next Steps