Windows Server 2003


hello guys...i have last dc/dns running win server 2003. (which file server)

all others dcs/dns running win server 2012r2.

since old dc win server 2003 first 1 created long time back, want ensure no services/configs still using server dc or ldap server. before decommissioning 2003 server want stop dns/ad/ldap service on server , see if issues arises.

can safely stop kerberos key distribution center service on 2003 server stop server acting dc in environment??

an urgent reply appreciated.


> can safely stop kerberos key distribution center service on the
> 2003 server stop server acting dc in environment??
 
yes , no.
 
stopping kdc prevent server issuing kerberos tickets.
 
but not remove server "nltest /dsgetdc" , other
functions related dc location.
 
in experience, there's 2 ways this:
 
a) hard way: demote. catch issues :)
what do, , never experienced critical issues it.
 
b) expensive way: create separate ip network , new site in ad,
then move server site (in ad sites , services) , shut
down temporarily.
 
the separate site - if ad healthy - prevent clients
chose dc.
 
ah, , btw:
 > before demoting server take backup of share , security
permission backup.
 
this of course not neccessary. acls not changing due
promotion/demotion. either implement dfs replication migrate
data (and dfs namespaces access it, of course) or "robocopy /copyall".
 

greetings/grüße, martin

mal ein gutes buch über gpos lesen?
good or bad gpos? - blog…
, if bothers me - coke bottle design refreshment (-:


Windows Server  >  Directory Services



Comments

Popular posts from this blog

Round Robin is killing performance on our network

WMI Repository 4GB limit - Win 2003 Ent Question

Change home folder default permission?