Domain Controllers Migration

Namless Shelter 231 Reputation points
2022-03-22T00:47:56.35+00:00

Dear Friends,

Please help.

We are a big organisation with 1600 + Users.

Now I am planning to migrate two Domain Controllers (server 2012 r2) dc01 (192.168.2.45) and dc02(192.168.2.46) to two Server 2019 boxes.

In order to have less impact on updating Appliance and other windows servers' DNS entries, my plan is:

  1. Demote DC02, remove it and power off the server.
  2. Set up a new DC03 server 2019 box with the same IP with DC02. And set up as secondary DC server.
  3. Migrate FSMO roles to DC03 as primary DC server. So, DC03 becomes domain master.
  4. Migrate DHCP from DC01 to DC 03. Demote DC01 and power off.
  5. Set up DC04 server 2019 and set up as secondary domain for load balancing etc.
  6. Done

Can we practically do this?

Thanks a lot,
ML

Windows DHCP
Windows DHCP
Windows: A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.DHCP: Dynamic Host Configuration Protocol (DHCP). A communications protocol that lets network administrators manage centrally and automate the assignment of Internet Protocol (IP) addresses in an organization's network.
1,034 questions
Windows Server Migration
Windows Server Migration
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Migration: The process of making existing applications and data work on a different computer or operating system.
413 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Dave Patrick 426.4K Reputation points MVP
    2022-03-22T00:56:26.737+00:00

    The two prerequisites to introducing the first 2019 or 2022 domain controller are that domain functional level needs to be 2008 or higher and older sysvol FRS replication needs to have been migrated to DFSR
    https://techcommunity.microsoft.com/t5/Storage-at-Microsoft/Streamlined-Migration-of-FRS-to-DFSR-SYSVOL/ba-p/425405

    Yes, your plan sounds good. You can also check in between steps in case some cleanup were necessary to remove remnants of demoted one.
    https://video2.skills-academy.com/en-us/windows-server/identity/ad-ds/deploy/ad-ds-metadata-cleanup
    https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-manually-removing-a-domain-controller-server/ba-p/280564

    It's also recommended to confirm domain health is 100% (dcdiag, repadmin tools) before starting and precautionary in between steps.

    --please don't forget to upvote and Accept as answer if the reply is helpful--

    1 person found this answer helpful.