Monday, August 23, 2010

How to transfer the 5 Active Directory roles from a server to an other

The five roles
  • PDC emulator (one per domain): This role allows Windows Server to act as a Windows NT primary domain controller (PDC), and it provides replication support for Windows NT-based backup domain controllers (BDCs). In addition, this role assists with time and group policy synchronization.
  • Infrastructure master (one per domain): This role is responsible for updating the group-to-user references whenever the members of groups change or receive new names.
  • Relative ID (RID) master (one per domain): This role ensures that every object created has a unique identification number.
  • Schema master (one per forest): This role is responsible for maintaining and modifying the Active Directory schema.
  • Domain naming master (one per forest): This role is responsible for the addition and deletion of domains in a forest.

List actual roles

Schema owner server100.dpetri.net
Domain role owner server100.dpetri.net
PDC role server100.dpetri.net
RID pool manager server100.dpetri.net
Infrastructure owner server100.dpetri.net
The command completed successfully.

Diffrents ways to move the roles
  • Using NTDSUtil.exe :
    ntdsutil
    roles
    connections
    connect to server ServerName
    quit

    transfer infrastructure master
    transfer naming master
    transfer PDC
    transfer RID master
    transfer schema master
    quit

  • Using GUI
    See this article

Sources :

No comments:

Post a Comment