ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Small Business Server 2003 to 2012 R2 Migration and Virtualized Domain Controller Questions

    Scheduled Pinned Locked Moved IT Discussion
    windowswindows serversbswindows server 201small business seractive directorydomain controller
    321 Posts 12 Posters 100.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • scottalanmillerS
      scottalanmiller
      last edited by

      Yes, the first one.

      garak0410G 1 Reply Last reply Reply Quote 0
      • garak0410G
        garak0410 @scottalanmiller
        last edited by

        @scottalanmiller said:

        Yes, the first one.

        OK, I realized that message was a warning so I put in my admin password and moved on...now, LOL, I get this:

        dnsOptioins01.jpg

        scottalanmillerS 1 Reply Last reply Reply Quote 0
        • DashrenderD
          Dashrender
          last edited by Dashrender

          You need to make sure the new server is pointing to the old server for DNS.

          Presumably that is the case if you already joined that domain.

          1 Reply Last reply Reply Quote 1
          • scottalanmillerS
            scottalanmiller @garak0410
            last edited by

            @garak0410 said:

            @scottalanmiller said:

            Yes, the first one.

            OK, I realized that message was a warning so I put in my admin password and moved on...now, LOL, I get this:

            dnsOptioins01.jpg

            LOL to the first bit.

            Is your 2003 box not authoritative for its zone?

            garak0410G 1 Reply Last reply Reply Quote 0
            • DashrenderD
              Dashrender
              last edited by

              In reading the last few posts - I'm wondering if you can go from 2003 directly to 2012 R2? I did a 2003 R2 (non SBS) to 2012 R2 last week with no problems.

              Is your license for Server 2012 R2 a Volume License? If so, you can download a copy of Server 2008 R2, upgrade from 2003 first, remove ADDS from 2003, then transition to the 2012 R2.

              I'll see if I can find anything to confirm going from 2003 directly to 2012 R2.

              1 Reply Last reply Reply Quote 0
              • garak0410G
                garak0410 @scottalanmiller
                last edited by

                @scottalanmiller said:

                @garak0410 said:

                @scottalanmiller said:

                Yes, the first one.

                OK, I realized that message was a warning so I put in my admin password and moved on...now, LOL, I get this:

                dnsOptioins01.jpg

                LOL to the first bit.

                Is your 2003 box not authoritative for its zone?

                This is just like parenting. No real manual on how to do it. LOL

                Well, I got to this screen (covered up the domain name but I do see my current domain in REPLICATE FROM. OK to hit next?

                additionalOptions01.jpg

                1 Reply Last reply Reply Quote 0
                • DashrenderD
                  Dashrender
                  last edited by

                  when you click Next the wizard should do the forest prep needed to allow you to install a windows 2012 server as a DC.

                  1 Reply Last reply Reply Quote 0
                  • garak0410G
                    garak0410
                    last edited by

                    Will BRB...got a heavily used printer down.

                    1 Reply Last reply Reply Quote 0
                    • garak0410G
                      garak0410
                      last edited by

                      OK, the paths looked good, so hitting next (masking out my actual domain and PC names)

                      Review Options show this:

                      Configure this server as an additional Active Directory domain controller for the domain "mydomain.local".

                      Site Name: Default-First-Site-Name

                      Additional Options:

                      Read-only domain controller: No

                      Global catalog: Yes

                      DNS Server: Yes

                      Update DNS Delegation: No

                      Source DC: domainPC.mydomain.local

                      Database folder: C:\Windows\NTDS

                      Log file folder: C:\Windows\NTDS

                      SYSVOL folder: C:\Windows\SYSVOL

                      The DNS Server service will be configured on this computer.

                      This computer will be configured to use this DNS server as its preferred DNS server.

                      So, looking good here to continue to proceed?

                      1 Reply Last reply Reply Quote 0
                      • scottalanmillerS
                        scottalanmiller
                        last edited by

                        Looks good to me.

                        DashrenderD 1 Reply Last reply Reply Quote 0
                        • DashrenderD
                          Dashrender @scottalanmiller
                          last edited by

                          @scottalanmiller said:

                          Looks good to me.

                          agreed, just like mine did.

                          1 Reply Last reply Reply Quote 0
                          • garak0410G
                            garak0410
                            last edited by

                            Ready to click FINISH

                            First part of results not in screen shot:

                            Windows Server 2012 R2 domain controllers have a default for the security setting named "Allow cryptography algorithms compatible with Windows NT 4.0" that prevents weaker cryptography algorithms when establishing security channel sessions.

                            For more information about this setting, see Knowledge Base article 942564 (http://go.microsoft.com/fwlink/?LinkId=104751).

                            preCheck.jpg

                            1 Reply Last reply Reply Quote 0
                            • DashrenderD
                              Dashrender
                              last edited by Dashrender

                              As long as you don't have any NT servers or workstations connecting you should be good.

                              I was concerned that maybe my XP machines might have an issue, but there hasn't been one!

                              Click install.

                              FYI, you might want to edit your photo, your domain name is listed there.

                              garak0410G 1 Reply Last reply Reply Quote 1
                              • garak0410G
                                garak0410 @Dashrender
                                last edited by

                                @Dashrender said:

                                As long as you don't have any NT servers or workstations connecting you should be good.

                                I was concerned that maybe my XP machines might have an issue, but there hasn't been one!

                                Click install.

                                Clicking on INSTALL. I will not be demoting the old one until Friday evening...

                                1 Reply Last reply Reply Quote 0
                                • scottalanmillerS
                                  scottalanmiller
                                  last edited by

                                  Why demote so soon? I would wait a bit longer than that.

                                  1 Reply Last reply Reply Quote 0
                                  • DashrenderD
                                    Dashrender
                                    last edited by

                                    You have at least 15 days if not longer before this server will start shutting down on it's own. Give yourself plenty of time to make sure all things work.

                                    Did you setup DHCP for the client computers?

                                    scottalanmillerS 1 Reply Last reply Reply Quote 0
                                    • Bill KindleB
                                      Bill Kindle
                                      last edited by

                                      Definitely wait a little while. My rule of thumb is no less than a week, even in really small environments. Gives me enough time to verify that there are no replication issues going on.

                                      Garak is giving me some 70-410 practice over on another forum 🙂

                                      1 Reply Last reply Reply Quote 0
                                      • garak0410G
                                        garak0410
                                        last edited by

                                        It's looking good y'all! I'm gonna buy everyone pizza or coffee when this is done!

                                        The next step on my list is this:

                                        •Transfer FSMO Roles to new Server 2012 R2 Domain Controller
                                        ◾Transfer all 5 or one at a time and start demoting your old Server 2003 DC's in the next step. But the key to remember is to NOT demote any of the current domain controllers that have any of your FSMO roles on them. Be sure to transfer them off first before proceeding to DC demotion.
                                        ◾http://blogs.technet.com/b/canitpro/archive/2013/05/27/step-by-step-active-directory-migration-from-windows-server-2003-to-windows-server-2012.aspx

                                        Stick with this?

                                        1 Reply Last reply Reply Quote 0
                                        • scottalanmillerS
                                          scottalanmiller @Dashrender
                                          last edited by

                                          @Dashrender said:

                                          You have at least 15 days if not longer before this server will start shutting down on it's own. Give yourself plenty of time to make sure all things work.

                                          90 days I think. Need to look that up.

                                          1 Reply Last reply Reply Quote 0
                                          • scottalanmillerS
                                            scottalanmiller
                                            last edited by

                                            And the timer doesn't start when this one is added. It starts when the FSMO roles are moved.

                                            1 Reply Last reply Reply Quote 1
                                            • 1
                                            • 2
                                            • 9
                                            • 10
                                            • 11
                                            • 12
                                            • 13
                                            • 16
                                            • 17
                                            • 11 / 17
                                            • First post
                                              Last post