Sei sulla pagina 1di 23

Active Directory Upgradation 2008 to 2012

9/01/2013

TTL Delhi Data Center


Tata Teleservices Limited (TTL)

Deepak Rawat
Telecom
deepak12.r@tcs.com

Confidentiality Statement
Confidentiality and Non-Disclosure Notice
The information contained in this document is confidential and proprietary to TATA
Consultancy Services. This information may not be disclosed, duplicated or used for any
other purposes. The information contained in this document may not be released in
whole or in part outside TCS for any purpose without the express written permission of
TATA Consultancy Services.

Tata Code of Conduct


We, in our dealings, are self-regulated by a Code of Conduct as enshrined in the Tata
Code of Conduct. We request your support in helping us adhere to the Code in letter and
spirit. We request that any violation or potential violation of the Code by any person be
promptly brought to the notice of the Local Ethics Counsellor or the Principal Ethics
Counsellor or the CEO of TCS. All communication received in this regard will be treated
and kept as confidential.

TableofContents
1.

Readiness of Windows server 2008/2012 DC ......................................................................................................4

2.

Flexible Single Master Operations (FSMO) Roles Transfer..................................................................................7

3.

Legacy Domain Controller 2008 Removal.........................................................................................................14

1. Readiness of Windows server 2008/2012 DC

Windows server 2008 R2 AD DS Domain and Forest functional level must have windows server 2003 or
higher version.
Forest and Domains its forest and domains only must be prepared using adprep. In windows server
2008 R2 Domain Controller, run adprep or forestprep and adprep or domainprep from the windows
server 2012 installation DVD and navigate to support or adprep folder. In Figure 1 my installation
media is copied to D drive. In the same way adprep or domainprep should be run after adprep
/forestprep command success.

Figure1:ForestPreparation

1. Check the Schema version before and after running the command in second point.
2. Open your command prompt type regedit and navigate to the following path
HKLM\SYSTEM\CurrentControlSet\services\NTDS\Parameters
3. Check Schema Version on the right side both value should be different.
4. Join the 2012 server in existing 2008 domain.
5. Promote the 2012 domain controller in the existing 2008 domain. Ensure that 2012 server is
global catalog.
Note: All the above steps are explained in my ActiveDirectory2012Installation document.
6. Wait for some time for replication between 2008 and 2012 Domain controllers.

7. Open the active directory user computer console and check inside Domain Controller OU in
2008 DC .Both server 2008 as well as 2012 should be present in mentioned OU.

Figure2:DCLocation

8. Verify which Domain controller is holding FSMO roles by running command netdom query
fsmo on 2008 DC or 2012 DC as shown in Figure 3.

Figure3:FSMOroles

2. Flexible Single Master Operations (FSMO) Roles Transfer


TotransferFSMOroles:
1. Log on to new 2012 domain controller (DC).
2. Open the Command Prompt and type ntdsutil and press Enter.

Figure4:FSMORolesTransfer

3. Type roles and press Enter. The prompt displays fsmo maintenance:.
4. Type connections and press Enter. The prompt displays server connections:.
5. Type 2012 DC server name and press Enter.

Figure5:FSMORolesTransfer

6. Type quit and press Enter. The prompt displays fsmo maintenance:.

Figure6:FSMORolesTransfer

7. Type transfer schema master in fsmo maintenance: and press Enter. Role Transfer
Confirmation Dialog dialog box opens.
8. Click Yes in Role Transfer Confirmation Dialog dialog box to confirm the Operations Master
change.
9. Repeat steps 1 to 8 by typing transfer naming master, transfer PDC, transfer RID master and
transfer infrastructure master. The same screen appears as shown in figure 7. Only schema
master in the role transfer dialog box is replaced by naming master, PDC, RID master and
infrastructure master appears.

Figure7:FSMORolesTransfer

10

Figure8:FSMORolesTransfer

Figure9:FSMORolesTransfer

11

Figure10:FSMORolesTransfer

Figure11:FSMOrolesTransfer

12

9. Type quit and press enter; the types q and press enter again to exit the ntdsutil.Type
command netdom query fsmo to check the roles have been successfully transferred to 2012
as shown in Figure 12.

Figure12:FSMOrolesTransfer

13

3. Legacy Domain Controller 2008 Removal


To decommission the windows server 2008:
1. Go to windows server 2008 DC, Click Start, Click Run, type dcpromo and click OK.

Figure13:Decommissionof2008DC

Figure14:Decommissionof2008DC

14

Welcome to the Active Directory Installation Wizard page appears.


2. Click Next.

Figure15:Decommissionof2008DC

15

3. Click OK to continue. Delete the Domain page appears, as shown in figure 17.

Figure16:Decommissionof2008DC

Figure17:Decommissionof2008DC

16

Note: Do not check the Leave Delete the domain because this server is the last domain
controller in the domain check box.
4. Click Next.
5. Enter the password for your server new administrator account.
6. Click Next.

Figure18:Decommissionof2008DC

17

7. Click Next on the Summary page.


8. Click Finish as shown in Figure 19, Figure 20 and Figure 21 to reboot your server.

Figure19:Decommissionof2008DC

18

Figure20:Decommissionof2008DC

Figure21:Decommissionof2008DC

19

After the server restarts, 2008 DC computer account automatically moves from Domain
Controller OU to Computers OU member server.

Figure22:Decommissionof2008DC

20

Figure23:Decommissionof2008DC

9. Disjoin windows server 2008 DC from the domain to a workgroup and remove any
unnecessary record from Active Directory Sites and Services.
10. Right Click DC2008.
11. Click Delete to delete this server from site list.

21

Figure24:Decommissionof2008DC

22

Thank You

Contact
For more information, contact india.km@tcs.com

About Tata Consultancy Services (TCS)


TataConsultancyServicesisanITservices,consultingandbusinesssolutionsorganizationthatdelivers
realresultstoglobalbusiness,ensuringalevelofcertaintynootherfirmcanmatch.TCSoffersa
consultingled,integratedportfolioofITandITenabledinfrastructure,engineeringandassurance
services.ThisisdeliveredthroughitsuniqueGlobalNetworkDeliveryModelTM,recognizedasthe
benchmarkofexcellenceinsoftwaredevelopment.ApartoftheTataGroup,Indiaslargestindustrial
conglomerate,TCShasaglobalfootprintandislistedontheNationalStockExchangeandBombayStock
ExchangeinIndia.
Formoreinformation,visitusatwww.tcs.com.

ITServices
BusinessSolutions
Outsourcing

All content / information present here is the exclusive property of Tata Consultancy Services Limited (TCS). The content / information contained here is correct at the time of
publishing. No material from here may be copied, modified, reproduced, republished, uploaded, transmitted, posted or distributed in any form without prior written permission
from TCS. Unauthorized use of the content / information appearing here may violate copyright, trademark and other applicable laws, and could result in criminal or civil penalties.
Copyright 2011 Tata Consultancy Services Limited

23