Windows Server 2003


hello guys...i have last dc/dns running win server 2003. (which file server)

all others dcs/dns running win server 2012r2.

since old dc win server 2003 first 1 created long time back, want ensure no services/configs still using server dc or ldap server. before decommissioning 2003 server want stop dns/ad/ldap service on server , see if issues arises.

can safely stop kerberos key distribution center service on 2003 server stop server acting dc in environment??

an urgent reply appreciated.


> can safely stop kerberos key distribution center service on the
> 2003 server stop server acting dc in environment??
 
yes , no.
 
stopping kdc prevent server issuing kerberos tickets.
 
but not remove server "nltest /dsgetdc" , other
functions related dc location.
 
in experience, there's 2 ways this:
 
a) hard way: demote. catch issues :)
what do, , never experienced critical issues it.
 
b) expensive way: create separate ip network , new site in ad,
then move server site (in ad sites , services) , shut
down temporarily.
 
the separate site - if ad healthy - prevent clients
chose dc.
 
ah, , btw:
 > before demoting server take backup of share , security
permission backup.
 
this of course not neccessary. acls not changing due
promotion/demotion. either implement dfs replication migrate
data (and dfs namespaces access it, of course) or "robocopy /copyall".
 

greetings/grüße, martin

mal ein gutes buch über gpos lesen?
good or bad gpos? - blog…
, if bothers me - coke bottle design refreshment (-:


Windows Server  >  Directory Services



Comments

Popular posts from this blog

directory stack

After enabling Windows Server 2012 R2 DHCP Failover Getting Packet dropped because of Client ID hash mismatch

WMI Repository 4GB limit - Win 2003 Ent Question