Re: 1 parent and 2 child domains in to 1 main domain

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



"Candie" <Candie@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:8E314E7B-DDF2-4B9E-9C9C-EFA44D7C62CA@xxxxxxxxxxxxxxxx
> Hi All,
> I currently have one parent domain running mixed mode and 2 child
domains
> with one domain controller on each domain, both running native mode. I
don't
> having any NT 4.0 bdc's in the parent domain and I want to use admt to
> consolidate so I'm going to switch the parent to native mode. Once I run
admt
> and all users and computers are on the parent domain, what is the best way
to
> remove the child domain and domain controller server?

DCPromo each DC while online so that they can update
the Enterprise AD when the last (only in your case) DC
of each domain leaves.

Proper demotion of the last DC will remove it from the
Forest AD.

(Technically the Domain Naming Master must be online
and available.)

> I would like to still
> replicate AD for additional backups should my PDC emulator die for some
> reason or my isp have issues and we loose connectivity to a remote office.

Then you should have (additional) DCs for the domain
your are keeping in each site.

> I would still want my users to be able to log in.

With a single domain (or even a small multi-domain
small forest) then all DCs should likely be GCs.

> Do I run Dcpromo on the 2
> child domain controllers and change them to member servers?

Yes, when "finished" with those domains.

> Will that also
> remove the 2 child domains from AD

Yes.

> ...or is there additional steps to completely
> get rid of all signs of the old domains?

Only if it is done offline (when the departing DC-domain
cannot contact the remaining DCs, especially the Domain
Naming Master.)

In that case you use NTDSUtil but this isn't necessary if
you DCPromo is done with all DCs online and DNS
working properly.


> Thanks in advance for all help!
> Candie

The KEYS to removing them manually are below -- BUT
you REALLY should not need this:


NTDS metadata cleanup

Search Google for:

[ NTDS "metadata cleanup" remove DC Domain ]

No need to add either site:microsoft.com OR microsoft:
since the NTDS and other terms make it Microsoft specific
by itself.

Unless you WISH to restrict answers to the site:microsoft.com
for some reason.

[ NTDS "metadata cleanup" remove DC Domain site:microsoft.com ]

Key points to NOTE when doing the metadata cleanup:

You CONNECT to a WORKING DC.
You SELECT the missing/dead DC or DOMAIN

'Connect' and 'Select' are technical terms in this context.


.



Relevant Pages

  • Re: Event ID 1645 - SPN Problem
    ... You can also verify secure channel between your child and parent domain by ... for the destination domain controller is not registered on the ...
    (microsoft.public.windows.server.active_directory)
  • Re: Zone cannot be created
    ... I have a parent domain and a child ... All the DCs has DNS active directory intergrated. ... > I want to create a zone on one of the DC from the child ...
    (microsoft.public.windows.server.dns)
  • Re: issue with Child and Parent Domains
    ... logon to that domain. ... That is will GPO still be able to work?. ... No the computer will be a member of the child and the user the PD. ... > you have a child domain CHILD, and you wish to logon to the PARENT domain ...
    (microsoft.public.windows.server.active_directory)
  • Re: Changing Child domain from mixed to native mode
    ... > breaks in parent domain if a child domain is native mode ... The switch to native mode from mixed mode ONLY affects replication between ... DCs, member servers, clients in trusted Win 2k or NT 4.0 domains ... > The parent domain still has a NT 4 bdc. ...
    (microsoft.public.win2000.active_directory)
  • Missing Server in Default-First-Site-Name
    ... Services when viewed from / connected to a parent domain controller. ... We have a parent domain with three child domains in our ... manually add the a connection with "repadmin /add" but I get error ...
    (microsoft.public.windows.server.active_directory)