{"id":427,"date":"2011-12-15T12:57:49","date_gmt":"2011-12-15T19:57:49","guid":{"rendered":"http:\/\/jim-zimmerman.com\/?p=427"},"modified":"2011-12-15T12:57:49","modified_gmt":"2011-12-15T19:57:49","slug":"adding-secondary-domain-controller-to-windows-2008-domain","status":"publish","type":"post","link":"https:\/\/jim-zimmerman.com\/?p=427","title":{"rendered":"Adding secondary domain controller to Windows 2008 Domain"},"content":{"rendered":"<p>I am getting caught up on some old notes I had not finished up.  The following is the procedure I used to add a second domain controller and DNS to an existing domain with one domain controller and one DNS.  This environment was all Windows 2008.  I am not sure whether it was R2 or not, but I the procedure should be very similar for either version.<\/p>\n<p>From the newly created member server:<\/p>\n<p>Go to &#8220;Server Manager&#8221; and click on &#8220;Roles.&#8221;<\/p>\n<p>Click on &#8220;Add Roles.&#8221;<\/p>\n<p>Select &#8220;Active Directory Domain Services.&#8221;  This will install the domain services.  Since this is a second domain controller being added, you will not be asked to install a DNS server like you would if it was the first domain controller in the domain.<\/p>\n<p>Once completed, you need to run dcpromo.exe to make your server an active server as an active domain controller in your domain.  I chose to &#8220;Use advanced mode installation.&#8221;<\/p>\n<p>You will need to choose your deployment configuration (Existing forest or new domain in a new forest).  Click &#8220;Existing forest&#8221; and &#8220;Add a domain controller to an existing domain.&#8221;<\/p>\n<p>Enter the name of the domain.  Note: this will already be populated correctly, if you had previously joined the domain as a server.<\/p>\n<p>Under &#8220;Alternate credentials&#8221;, click &#8220;Set&#8230;&#8221; and enter Administrator level account credentials for the domain and click &#8220;Next.&#8221;<\/p>\n<p>Under &#8220;Additional Domain Controller Options&#8221;, I unchecked &#8220;Global catalog&#8221; but left &#8220;DNS server&#8221; checked because I wanted to add another DNS to the domain.  I did not want a &#8220;Read-only domain controller (RODC).&#8221;  <\/p>\n<p>If you receive the following message, you need to choose appropriately.  I decided to &#8220;Transfer the infrastructure master role to this domain controller.&#8221;<\/p>\n<p><a href=\"http:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/InfrastructureMasterConflictError.jpg\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/InfrastructureMasterConflictError-300x133.jpg\" alt=\"\" title=\"Infrastructure Master Configuration Conflict Error\" width=\"300\" height=\"133\" class=\"alignnone size-medium wp-image-428\" srcset=\"https:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/InfrastructureMasterConflictError-300x133.jpg 300w, https:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/InfrastructureMasterConflictError.jpg 561w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><\/p>\n<p>For some reason, I got the following message regarding my IP address assignment.  I only had one NIC, and while the interface was using DHCP, I configured the interface with a static address before I started this process.<\/p>\n<p><a href=\"http:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/DynamicAddressMessage.jpg\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/DynamicAddressMessage-300x141.jpg\" alt=\"\" title=\"Dynamic Address Message\" width=\"300\" height=\"141\" class=\"alignnone size-medium wp-image-429\" srcset=\"https:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/DynamicAddressMessage-300x141.jpg 300w, https:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/DynamicAddressMessage.jpg 505w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><\/p>\n<p>I decided to chose &#8220;No, I will assign static IP addresses to all physical adapters.&#8221;  This took me backup to dcpromo wizard, which I promptly canceled to check my configuration.<\/p>\n<p>I verified my IP address configuration and rebooted.  The same thing happened.  I went on with dynamic option, then got an message regarding DNS delegation. <\/p>\n<p><a href=\"http:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/DNSError.jpg\"><img loading=\"lazy\" decoding=\"async\" src=\"http:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/DNSError-300x146.jpg\" alt=\"\" title=\"DNS Error\" width=\"300\" height=\"146\" class=\"alignnone size-medium wp-image-430\" srcset=\"https:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/DNSError-300x146.jpg 300w, https:\/\/jim-zimmerman.com\/wp-content\/uploads\/2010\/11\/DNSError.jpg 419w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/a><\/p>\n<p>It turns out that I had couple issues to deal with.  I needed to disable IPv6, and I had a reference to an old secondary DNS.  I removed old secondary by right mouse clicking on the domain name in &#8220;DNS Manager&#8221; on the primary DNS, and going to properties.  From here, I chose &#8220;Name Servers&#8221; and removed the old DNS.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>I am getting caught up on some old notes I had not finished up. The following is the procedure I used to add a second domain controller and DNS to an existing domain with one domain controller and one DNS. This environment was all Windows 2008. I am not sure whether it was R2 or [&#038;hellip<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[164,221,128],"class_list":["post-427","post","type-post","status-publish","format-standard","hentry","category-documentation","tag-dns","tag-domain-controller","tag-windows-2008"],"share_on_mastodon":{"url":"","error":""},"_links":{"self":[{"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=\/wp\/v2\/posts\/427","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=427"}],"version-history":[{"count":3,"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=\/wp\/v2\/posts\/427\/revisions"}],"predecessor-version":[{"id":630,"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=\/wp\/v2\/posts\/427\/revisions\/630"}],"wp:attachment":[{"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=427"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=427"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jim-zimmerman.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=427"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}