分类: WINDOWS
2009-04-10 12:21:20
Migrating Windows Small Business Server 2003 to New Hardware
Part 1:AD Migrating
Updated:Apl-8-2009
Leo Li
1.Environment p2
2.To turn off Windows Firewall p2
3.To join the destination server to the domain p2
4.To install the DNS Server service on the destination server p6
5.To promote the destination server to be a global catalog server p7
6.To connect to the domain controller on the destination server p8
7.To transfer the RID Master role p9
8.To transfer the PDC Emulator role p10
9.To transfer the Infrastructure Master role p11
10.To transfer the Domain Naming Master role p12
11.To change DNS server addresses p13
12.Downgrade the source AD p13
1.Environment
Source server: |
Destinations server: |
OS:windows 2003 SBS |
OS:windows 2003 SBS |
Full Name:sbspdc.sbs.com |
Full Name:sbsbdc |
Domain:sbs.com |
Domain:none |
IP:192.168.1.1 |
IP:192.168.1.2 |
DNS:192.168.1.1 |
DNS:192.168.1.1 |
Client pc |
Full Name:opn81d.sbs.com |
Domain:sbs.com |
IP:192.168.1.3 |
DNS:192.168.1.1 |
2. To turn off Windows Firewall
1. On the destination server, click Start, point to Control Panel, point to Network Connections, right-click the network connection for the local area network, and then click Properties.
2. Click the Advanced tab, and then click Settings.
3. Click Off, and then click OK.
3.To join the destination server to the domain
1. On the destination server, click Start, click Run, type dcpromo, and then click OK.
2. Click Next twice.
3. Click Additional Domain Controller for an existing domain, and then click Next.
4. Enter the credentials for the domain administrator account.
5. In the Domain name text box, type the fully qualified domain name (FQDN) for the Active Directory domain where the domain administrator account is a member, and then click Next.
For example, type contoso.local.
6. In the Domain name text box, type the FQDN for which the destination server will become an additional domain controller, and then click Next.
If you are not sure of the FQDN, you can click Browse to select the correct domain. The domain name that you enter for steps 5 and 6 should be the same.
7. Click Next to accept the default locations for the Database and Log folders.
8. Click Next to accept the default location for the shared system volume.
9. Type the Directory Services Restore Mode administrator password, and then click Next.
10. In the Summary dialog box, click Next to configure AD DS. This process may take several minutes.
11. Click Finish, and then click Restart Now.
12. Log on to the computer after it restarts, and then confirm that the destination server has been successfully promoted to a domain controller. To do this, click Start, click Run, type cmd, and then click OK.
13. At the command prompt, type gettype, and then press Enter. The output should read as follows:
14. Windows Firewall is turned on again after you run the Active Directory Installation Wizard and restart the computer. You must turn off Windows Firewall on the destination server for the
15. migration process to be successful. Perform the following actions to turn off the Windows Firewall:
a. Click Start, point to Control Panel, point to Network Connections, right-click the network connection for the local area network, and then click Properties.
b. Click the Advanced tab, and then click Settings.
c. Click Off, and then click OK.
16. Use the netdiag.exe, dcdiag.exe, and repadmin.exe tools to verify that the destination server successfully joined the domain. For more information about using these tools, see Verify the health of the source server earlier in this document.
4.To install the DNS Server service on the destination server
1. On the destination server, click Start, point to Control Panel, and then click Add or Remove Programs.
2. Click Add/Remove Windows Components.
3. In the Components list, double-click Networking Services.
4. Select the Domain Name System (DNS) check box, and then click OK.
5. Click Next, and then click Finish.
5.To promote the destination server to be a global catalog server
1. On the destination server, click Start, point to Administrative Tools, and then click Active Directory Sites and Services.
2. Expand Sites, expand Default-First-Site-Name, expand Servers, expand the destination server, right-click NTDS Settings, and then click Properties.
3. Click the General tab, select the Global Catalog check box to assign the role of global catalog to the destination server, and then click OK.
4. Open Event Viewer to the Directory Services event log and wait for event 1119 or 1869. This event provides a description that states that this domain controller is now a global catalog server. This event might take several minutes to appear in the event log.
5. Restart the destination server.
6.To connect to the domain controller on the destination server
1. On the destination server, click Start, point to Administrative Tools, and then click Active Directory Users and Computers.
2. Right-click your Active Directory domain, and then click Connect to Domain Controller.
3. In the Available Domain Controller box, click the domain controller for the destination server, and then click OK.
After you connect to the domain controller on the destination server, you can transfer the RID master role.
7.To transfer the RID Master role
1. With Active Directory Users and Computers open, right-click your Active Directory domain, and then click Operations Master.
2. Click the RID tab, and then click Change.
3. Click Yes to confirm that you want to transfer the role, and then click OK.
While the Operations Master dialog box is open, you can transfer the PDC Emulator role.
8.To transfer the PDC Emulator role
1. In the Operations Master dialog box, click the PDC tab, and then click Change.
2. Click Yes to confirm that you want to transfer the role, and then click OK.
And finally, in the Operations Master dialog box, you can transfer the Infrastructure Master role.
9.To transfer the Infrastructure Master role
1. In the Operations Master dialog box, click the Infrastructure tab, and then click Change.
2. Click Yes to confirm that you want to transfer the role, and then click OK.
3. Click Close.
In Active Directory Domains and Trusts, you will transfer the Domain Naming Master role.
10. To transfer the Domain Naming Master role
1. Click Start, point to Administrative Tools, and then click Active Directory Domains and Trusts.
2. Right-click Active Directory Domains and Trusts, and then click Connect to Domain Controller.
3. In the Available Domain Controller list, click the domain controller for the destination server, and then click OK.
4. In the console pane of the Active Directory Domains and Trusts window, right-click Active Directory Domains and Trusts, and then click Operations Master.
5. In the Change Operations Master dialog box, click Change.
6. Click Yes to confirm that you want to transfer the role, and then click OK.
7. Click Close.
11.To change DNS server addresses
1. Click Start, point to Control Panel, point to Network Connections, right-click the network connection for the local area network, and then click Properties.
2. Select Internet Protocol (TCP/IP), and then click Properties.
3. Type the IP address of the destination server as the preferred DNS server.
4. Click OK twice.
12.Downgrade the source AD.
1.Run dcpromo in sbspdc.sbs.com
2.swap the sbspdc.sbs.com and sbsbdc.sbs.com ip address.
Source server: |
Destinations server: |
OS:windows 2003 SBS |
OS:windows 2003 SBS |
Full Name:sbspdc.sbs.com |
Full Name:sbsbdc.sbs.com |
Domain:sbs.com |
Domain:sbs.com |
IP:192.168.1.2 |
IP:192.168.1.1 |
DNS:192.168.1.1 |
DNS:192.168.1.1 |