Sunday, November 22, 2015

Demote Active Directory Domain controller in Server 2003/2008

Log on to that particular server with Domain Admin credentials and in run box typedcpromo (like in DC promotion process)
Demoting DC
Active Directory installation wizard will be displayed. Continue this process
Active Directory Installation wizard
you will be warned to ensure that at least one Global Catalog will be left in your environment
Active Directory Installation wizard
on the next screen do not select “This server is the last domain controller in the domain” checkbox. This option is only used when you are demoting the last Domain Controller and you also want to remove the domain. So, go further without any changes on this screen in this case
Active Directory Installation wizard
Set up a server’s password. After decommission it will be a domain member server and you need to specify local administrator’s password.
Active Directory Installation wizard
to permanently remove Active Directory role from this server click “Next”
Active Directory Installation wizard
wait until Active Directory services will be removed from the server and when your DC is decommissioned, you need to reboot it, to complete a process
Active Directory Installation wizard
Active Directory removed
As you can see, your box is a domain member now.
a domain member server
If you wish to keep this server in your environment it’s good to consider its name change (if it was related with DC – as in my example). When you don’t want to use this server anymore, you can shut it down and then clean up DNS records and Sites and Services.
To do that, open DNS management console and delete all DNS records related with removed Domain Controller. Next, run Active Directory Sites and Services console and from appropriate Site, remove a server.
Removing demoted DC from Sites and Services
Confirm that you want to remove this object and that’s it.
DC removal from Sites and Services - confirmation
It’s done.

No comments:

Post a Comment