廣告樹系修復 Windows Server 2003 修復AD Forest Recovery - Windows Server 2003 Recovery

適用於: Windows Server 2003Applies To: Windows Server 2003

本主題包含網域控制站 (網域控制站),執行 Windows Server 2003 的樹系修復程序。This topic includes forest recovery procedures for domain controllers (DCs) that run Windows Server 2003. 一般的樹系修復程序不不同與 Windows Server 2003 Dc,但特定程序可以不同的工具而有所不同。The general process for forest recovery is no different with Windows Server 2003 DCs, but specific procedures can differ because of different tools. 例如,Ntdsutil.exe 可以用於備份及還原 Dc 執行 Windows Server 2003 Dc,而 Windows Server 備份或 Wbadmin.exe 是執行 Windows Server 2008 的網域控制站用於或更新版本。For example, Ntdsutil.exe can be used to backup and restore DCs that run Windows Server 2003 DCs, whereas Windows Server Backup or Wbadmin.exe is used for DCs that run Windows Server 2008 or later.

備份資料Backing up the System State data

使用下列程序資料備份系統狀態,以及您已經選取目前的備份操作,DC 執行 Windows Server 2003 的任何其他資料。Use the following procedure to back up the System State data, along with any other data you have selected for the current backup operation, of a DC that runs Windows Server 2003. Windows Server 2003 包含 Ntbackup 工具,您可以用來資料備份系統狀態。Windows Server 2003 includes the Ntbackup tool, which you can use to back up System State data.

資格在系統管理員備份電信業者,或等的最低需求備份的檔案和資料夾。Membership in Administrators or Backup Operators, or equivalent, is the minimum required to back up files and folders.

如果您的備份資料磁帶,備份程式指出不未使用的 media 可用,您可能必須使用抽取式存放裝置。If you are backing up the System State data to a tape, and the Backup program indicates that there is no unused media available, you might have to use Removable Storage. 這會將磁帶的免費媒體集區加入備份使用。This adds your tape to the free media pool so that Backup can use it.

您只備份本機電腦上的資料。You can only back up the System State data on a local computer. 您無法備份遠端電腦上。You cannot back it up on a remote computer.

若要備份資料網域控制站在執行 Windows Server 2003To back up the System State data on a domain controller that runs Windows Server 2003

  1. 按一下[開始],指向 [所有程式,指向 [附屬應用程式],指向 [系統工具,,然後按一下 [備份Click Start, point to All Programs, point to Accessories, point to System Tools, and then click Backup.

  2. 歡迎頁面上,按進階模式On the Welcome page, click Advanced Mode.

  3. 備份索引標籤上,選取您想要備份的檔案、 資料夾,或磁碟機] 核取方塊。On the Backup tab, select the check box for any drive, folder, or file that you want to back up.

  4. 選取 [系統狀態核取方塊。Select the System State check box.

  5. 按一下開始備份]Click Start Backup.

執行未授權還原Performing a nonauthoritative restore

使用下列程序未授權的執行 Windows Server 2003 俠還原。Use the following procedure to perform a nonauthoritative restore of a DC that runs Windows Server 2003. 在 Windows Server 2003 Active Directory 執行未授權的還原,自動執行未授權的 SYSVOL 還原。By performing a nonauthoritative restore on Active Directory in Windows Server 2003, you automatically perform a nonauthoritative restore of SYSVOL. 不所需的任何額外的步驟。No additional steps are required.

注意

如果您也會重新安裝 Windows Server 2003 作業系統,您可能會或可能不加入網域的電腦,您可以命名任何到電腦時設定的作業系統。If you are also reinstalling the Windows Server 2003 operating system, you might or might not join the computer to the domain and you can give any name to the computer during setup of the operating system. 無法安裝 Active Directory。Do not install Active Directory. 之後重新安裝作業系統,直接移至步驟 4。After reinstalling the operating system, go directly to step 4.

在 Windows Server 2003 網域控制站還原系統狀態資料,您需要也重新安裝前修復 Dc 執行的任何軟體應用程式。On Windows Server 2003 domain controllers where you have restored only system state data, you need to also reinstall any software applications that were running on DCs before recovery. 還原 AD DS 網域中的第一個 DC 上也會還原登錄因為兩者是系統狀態資料的一部分。Restoring AD DS on the first DC in the domain also restores the registry because they both are part of System State data. 如果您有任何這些 Dc 上執行的應用程式,以及他們必須登錄中儲存的任何資訊,請牢記這點。Keep this in mind if you had any applications running on these DCs and if they had any information stored in the registry.

來節省時間需要重新安裝軟體判斷需要網域控制站上安裝的應用程式是否與 virtual 俠複製相容。To save time required to re-install software, determine if applications that need to be installed on the DCs are compatible with virtual DC cloning. 這類應用程式可以來源 DC 上安裝之前複製以節省時間和為了需要複製 virtual 網域控制站在您安裝它們。Such applications can be installed on the source DC prior to cloning in order to save the time and effort required to install them on the cloned virtual DCs.

若要還原未授權To perform a nonauthoritative restore

  1. 開始 DC 之後,長按 F8 中 Directory 服務還原模式 (DSRM) 重新開機。After you start the DC, press F8 to restart the computer in Directory Services Restore Mode (DSRM).

  2. 選取 [ Directory 服務還原模式 (Windows 只有網域控制站)Select Directory Services Restore Mode (Windows domain controllers only).

  3. 選取您想要還原模式中的 [開始] 的作業系統。Select the operating system that you want to start in restore mode.

  4. (您可以只使用本機電腦帳號,不網域登入選項可) 以系統管理員身分登入。Log on as an administrator (you can only use a local computer account, no domain logon option is available).

  5. 在命令提示字元中,輸入ntbackup,然後按 ENTER 鍵。At a command prompt, type ntbackup, and then press ENTER.

  6. 歡迎頁面上,按一下 [進階模式,],然後選取還原和管理 」 媒體索引標籤。On the Welcome page, click Advanced Mode, and then select the Restore and Manage Media tab. (不要選取 [還原精靈]。)(Do not select Restore Wizard.)

  7. 選取適當的備份還原的並確保檔案系統磁碟系統狀態核取方塊已經選取。Select the appropriate backup file to restore from and ensure that the System disk and System State check boxes are selected.

  8. 按一下開始還原]Click Start Restore.

  9. 還原完成時,將電腦重新開機。When the restore operation is complete, restart the computer.

    使用下列程序上執行 Windows Server 2003 俠執行的 SYSVOL 授權 (也稱為主要) 還原。Use the following procedure to perform an authoritative (also known as primary) restore of SYSVOL on a DC that runs Windows Server 2003. 僅第一個 Windows Server 2003 DC 還原網域中的執行此程序。Perform this procedure only on the first Windows Server 2003 DC that is restored in the domain.

若要執行的 SYSVOL 授權還原To perform an authoritative restore of SYSVOL

  1. 執行步驟 1 到 8 之前的程序。Perform steps 1 through 8 in the previous procedure.

  2. 確認還原對話方塊中,按進階]In the Confirm Restore dialog box, click Advanced.

  3. 若要執行的 SYSVOL 授權,選取核取方塊還原複製資料集,還原的資料標示為所有複本主要資料To perform an authoritative restore of SYSVOL, select the check box When restoring replicated data sets, mark the restored data as the primary data for all replicas.

    注意

    將還原的資料的主要資料備份相當設定為BurFlags下下列子機碼 D4 到的項目:Marking the restored data as the primary data in the Backup is equivalent to setting the BurFlags entry to D4 under the following registry subkey:

    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NtFrs\Parameters\Cumulative 複本 Sets\ GUIDHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\NtFrs\Parameters\Cumulative Replica Sets\ GUID

  4. 還原完成時,將電腦重新開機。When the restore operation is complete, restart the computer.

安裝和設定的 DNS 伺服器服務Install and configure the DNS Server service

如果您已從備份還原俠執行的 Windows Server 2003,您可以安裝不需要任何網路來連接 DC 的 DNS 伺服器。If the DC that you restored from backup is running Windows Server 2003, you can install DNS server without connecting the DC to any network.

安裝和設定的 DNS 伺服器服務To install and configure the DNS Server service

  1. 打開 Windows 元件精靈。Open Windows Components Wizard. 打開精靈:To open the wizard:

    • 按一下[開始],按一下 [ [控制台],然後按一下 [新增或移除程式Click Start, click Control Panel, and then click Add or Remove Programs.

    • 按一下[新增/移除 Windows 元件Click Add/Remove Windows Components.

  2. 元件,請選取網路服務]核取方塊,並按詳細資料In Components, select the Networking Services check box, and then click Details.

  3. 的網路服務的元件,請選取網域名稱系統 」 (DNS)核取方塊、 按一下 [ [確定],然後按一下下一步In Subcomponents of Networking Services, select the Domain Name System (DNS) check box, click OK, and then click Next.

  4. 如果您的提示,請在複製檔案的,輸入完整 distribution 檔案的路徑,然後按[確定]If you are prompted, in Copy files from, type the full path of the distribution files, and then click OK.

    安裝之後,請完成下列步驟來設定 DNS 伺服器。After the installation, complete the following steps to configure the DNS server.

  5. 按一下[開始],指向 [所有程式,指向 [系統管理工具],,然後按一下DNSClick Start, point to All Programs, point to Administrative Tools, and then click DNS.

  6. 重要故障之前的 DNS 伺服器建立已裝載的相同 DNS 網域名稱 DNS 區域。Create DNS zones for the same DNS domain names that were hosted on the DNS servers before the critical malfunction. 如需詳細資訊,查看 [新增正向對應區域 (http://go.microsoft.com/fwlink/?LinkId=74574)。For more information, see Add a Forward Lookup Zone (http://go.microsoft.com/fwlink/?LinkId=74574).

  7. 設定存在之前重要故障 DNS 資料。Configure the DNS data as it existed before the critical malfunction. 例如:For example:

  8. 確定家長 DNS 區域包含委派資源記錄 (伺服器 (奈秒) 和名稱黏附主機的資源 (A) 記錄) 子女區此 DNS 伺服器上。Ensure that the parent DNS zone contains delegation resource records (name server (NS) and glue host (A) resource records) for the child zone that is hosted on this DNS server. 如需詳細資訊,請建立區域委派 (http://go.microsoft.com/fwlink/?LinkId=74562)。For more information, see Create a Zone Delegation (http://go.microsoft.com/fwlink/?LinkId=74562).

  9. 設定 DNS 之後,在命令提示字元中,輸入下列命令,,然後按 ENTER 鍵:After you configure DNS, at the command prompt, type the following command, and then press ENTER:

    網路停止 netlogonnet stop netlogon

  10. 輸入下列命令,並按一下 ENTER:Type the following command, and then press ENTER:

    網路的 [開始] 畫面 netlogonnet start netlogon

    注意

    網路登入將進行登記 DC 定位資源記錄 DNS 在這個網域控制站。Net Logon will register the DC Locator resource records in DNS for this DC. 如果您的子女網域中的伺服器上安裝的 DNS 伺服器服務,此 DC 將無法立即登記其記錄。If you are installing the DNS Server service on a server in the child domain, this DC will not be able to register its records immediately. 這是因為它是目前隔離的修復程序,並為主要的 DNS 伺服器的一部分森林根 DNS 伺服器。This is because it is currently isolated as part of the recovery process, and its primary DNS server is the forest root DNS server. 如同之前嚴重損壞,以避免 DC 服務查詢失敗相同的 IP 位址設定這部電腦。Configure this computer with the same IP address as it had before the disaster to avoid DC service lookup failures.

後續步驟Next Steps