Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Server > DNS Server > Re: After the Domain Rename...

Reply
Thread Tools Display Modes

Re: After the Domain Rename...

 
 
Ace Fekay [Microsoft Certified Trainer]
Guest
Posts: n/a

 
      05-09-2009
"aftrshock" <> wrote in message
news:...
>
> Issues still continue.
>
> Let me start: I removed the backup DC and performed the domain rename,
> essentially from olddomain to newdomain, both .local (not internet
> domains).
>
> when I lock the machine, and when I ping the machines, I sitll get
> computername.olddomain.local, not new, and also these errors from
> netdiag.
>
> Also if I run a /fix, I get more errors, stating the server is 0.0.0.0
>
> I have manually tried moving and changing everything over in the DNS
> records, no go. Ideas?
>
> I'd hate to have to reinstall AD if I didn't have to.
>
>
> This is from netdiag /test:dns
>
> ........
>
> Computer Name: servername
> DNS Host Name: servername.newdomain.local
> System info : Windows 2000 Server (Build 3790)
> Processor : x86 Family 15 Model 4 Stepping 1, GenuineIntel
> List of installed hotfixes :
> KB921503
> KB925398_WMP64
> KB925902
> KB926122
> KB927891
> KB929123
> KB930178
> KB931768
> KB931784
> KB931836
> KB932168
> KB933566
> KB933729
> KB933854
> KB935839
> KB935840
> KB935966
> KB936021
> KB936357
> KB936782
> KB937143
> KB938127
> KB938464
> KB941202
> KB941568
> KB941569
> KB941644
> KB941672
> KB941693
> KB942763
> KB942830
> KB942831
> KB942840
> KB943055
> KB943460
> KB943484
> KB943485
> KB944338
> KB944533
> KB944653
> KB945553
> KB946026
> KB947864
> KB948496
> KB948590
> KB948745
> KB948881
> KB949014
> KB950762
> KB950974
> KB951066
> KB951072-v2
> KB951698
> KB951746
> KB951748
> KB952069
> KB952954
> KB954211
> KB954600
> KB955069
> KB955839
> KB956390
> KB956391
> KB956802
> KB956803
> KB956841
> KB957095
> KB957097
> KB958215
> KB958644
> KB958687
> KB958690
> KB960225
> KB960714
> KB960715
> KB961063
> KB961064
> KB967715
> Q147222
>
>
> Netcard queries test . . . . . . . : Passed
> [WARNING] The net card 'Microsoft Tun Miniport Adapter' may not be
> working.
>
>
>
> Per interface results:
>
> Adapter : Local Area Connection
>
> Netcard queries test . . . : Passed
>
>
> Global results:
>
>
> Domain membership test . . . . . . : Passed
>
>
> NetBT transports test. . . . . . . : Passed
> List of NetBt transports currently configured:
> NetBT_Tcpip_{C4644C1F-38D5-4A9F-8E51-4C08052A526A}
> 1 NetBt transport currently configured.
>
>
> DNS test . . . . . . . . . . . . . : Failed
> [WARNING] Cannot find a primary authoritative DNS server for
> the name
> 'servername.newdomain.local.'. [WSAEADDRNOTAVAIL
> ]
> The name 'servername.newdomain.local.' may not be
> registered in DNS.
> [WARNING] Cannot find a primary authoritative DNS server for
> the name
> 'servername.newdomain.local.'. [ERROR_TIMEOUT]
> The name 'servername.newdomain.local.' may not be
> registered in DNS.
> [WARNING] Cannot find a primary authoritative DNS server for
> the name
> 'servername.newdomain.local.'. [WSAEADDRNOTAVAIL
> ]
> The name 'servername.newdomain.local.' may not be
> registered in DNS.
> [WARNING] Cannot find a primary authoritative DNS server for
> the name
> 'servername.olddomain.local.'. [WSAEADDRNOTAVAIL
> ]
> The name 'servername.olddomain.local.' may not be
> registered in DNS.
> [WARNING] Cannot find a primary authoritative DNS server for
> the name
> 'servername.newdomain.local.'. [ERROR_TIMEOUT]
> The name 'servername.newdomain.local.' may not be
> registered in DNS.
> [WARNING] The DNS entries for this DC are not registered correctly
> on DNS server '0.0.0.0'. Please wait for 30 minutes for DNS server
> replication.
> [FATAL] No DNS servers have the DNS records for this DC
> registered.
>
>
> The command completed successfully




It's difficult to figure out what went wrong not knowing how you proceded
with the preparation for the rename, and other steps.

Did you create a new zone?
Did you make sure the Primary DNS Suffix was changed?
Is DNS only pointing to your DNS address in IP properties, or is there an
ISP's DNS in IP properties?
Is the DC multihomed (more than one NIC)? If so, this is problematic in
itself.
Is Exchange installed? If so, what version?

Bigger question, what prompted you to rename the domain? What was the old
name?

--
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSA Messaging, MCT
Microsoft Certified Trainer


For urgent issues, you may want to contact Microsoft PSS directly. Please
check http://support.microsoft.com for regional support phone numbers.

"Efficiency is doing things right; effectiveness is doing the right
things." - Peter F. Drucker
http://twitter.com/acefekay


 
Reply With Quote
 
 
 
 
Ace Fekay [Microsoft Certified Trainer]
Guest
Posts: n/a

 
      05-10-2009
"aftrshock" <> wrote in message
news:...
>
> Meinolf and Ace;
>
> thanks for the replies.
>
> The walkthru I followed did not mention resetting the DNS suffix nor
> creating a new zone; I thought that would be done with the rename.
>
> Most of my progress is on another bbs; essentially, what happened was
> exactly as you're describing.
>
> I did the rename, the domain broke, the GPs broke, DNS in its entirity
> broke, in essence, the functionality was gone. The only thing that
> worked was my TS servers into the system, and remote desktop from there,
> but no workstations could log on.
>
> After modifying the domain suffix on the DC, I also had to modify the
> domain suffix given in DHCP, which was run by the server.
>
> I think I will be making a full checklist of what all I would do if I
> were to do it again, in hopes that someone else undertaking this task
> would avoid the conflicts and issues I had.
>
> I tell you, there was nothing good about a financial institution losing
> $$$s by the minute because the web surfing took forever from an issue w/
> DNS, and having the fella breathing down my neck.
>
> All in all, it was sorted out in about an hour and a half, once I was
> physically there.
>
> I will post my steps in an update; for now its the weekend, and this
> was in my inbox.
>
> Thanks much for looking to help me and provide assistance to people;
> without these BBS's I never would've found ADSIedit, and without that, I
> coudlnt' have copied over all of the items (kerberos and ldap and all of
> these things I have no idea about) and reset them to work for my new
> domain.
>



Unfortunate this all occured. FWIW, I'm posting my blog on domain renames
below, if it will help any further, as a guideline for renames and what to
do to ensure all works. Yes, it is a big task, and glad you got it going,
for now.

================================================== ================================================== ==
================================================== ================================================== ==
Domain Rename Procedure and Notes:


First, are you sure you want to rename the domain? Read up on it first:
How Domain Rename Works:
http://technet.microsoft.com/en-us/l.../cc738208.aspx

Note: The Domain and Forest functional levels must be set to minimal 2003.
This means no Windows 2000 domain controllers can exist in the Forest. Also,
if you have Exchange 2003, make sure it is minimal SP1 in order to support a
domain rename. If Exchange 2000, either upgrade to 2003, or Exmerge all of
your mailboxes to PSTs, uninstall Exchange 2000, run the domain rename
operation, then reinstall Exchange 2000, and use Exmerge to pump the
mailboxes back in the user's newly created mailbox accounts.
How to raise domain and forest functional levels in Windows Server ...The
attribute is msDS-Behavior-Version on the CN=Partitions, CN=Configuration,
DC=ForestRootDom, DC=tld object. Value of 0 or not set=mixed level forest
....
http://support.microsoft.com/kb/322692

Also, if a PKI infrastructure was installed (Certificate Services), it will
need to be removed first prior to a domain rename:

How to decommission a Windows enterprise certification authority:
http://support.microsoft.com/kb/889250

819145 - Support WebCast Microsoft Windows Server 2003 Implementing an
Active Directory Domain Rename Operation:
http://support.microsoft.com/default...uct=winsvr2003

Windows Server 2003 Active Directory Domain Rename Tools:
http://technet.microsoft.com/en-us/w.../bb405948.aspx

Domain Rename – Rename a Windows 2003 Forest with Exchange 2003 installed
(ifyou don't have Exchange, you can ignore the Exchange part)
http://www.msexchange.org/tutorials/Domain-Rename.html

Domain Rename Part 1 - Setup
http://thelazyadmin.com/blogs/thelaz...00_-Setup.aspx

Domain Rename Part 2 - Renaming
http://thelazyadmin.com/blogs/thelaz...-Renaming.aspx

Domain Rename Part 3 - Exchange 2003
http://thelazyadmin.com/blogs/thelaz...ange-2003.aspx

Now if you have Exchange 2003, here is what you need as well:
Supplemental steps for using the Exchange Server Domain Rename Fixup tool
together with the Windows Server 2003 domain rename tools:
http://support.microsoft.com/kb/842116/

Domain Rename – Rename a Windows 2003 Forest with Exchange 2003 installed
http://www.msexchange.org/tutorials/Domain-Rename.html

Error messages encountered on renaming domain
http://support.microsoft.com/kb/891370

---
The following was quoted from:
http://technet.microsoft.com/en-us/l.../cc738208.aspx

Keep in mind after a rename procedure, the DC's Primary DNS Suffix is not
automatically changed to match the new domain name. You are required to
change the Primary DNS Suffix to match the new name. In other words, unlike
the names of member computers, the DNS names of domain controllers in a
renamed domain will remain unchanged. The domain controllers can be renamed
in a separate step, using a special domain controller rename procedure,
after the domain rename operation is complete. You must double-check ALL
domain members to insure that their Primary DNS Suffix matches the new
domain name.

257623 The DNS suffix of the computer name of a new domain controller may
not match the name of the domain after you upgrade a Windows NT 4.0 primary
domain controller to Windows 2000
http://support.microsoft.com/default...b;EN-US;257623

If Exchange 2007 is involved, it is not supported at this time. You must
uninstall Exchange 2007, then rename the domain, then reinstall Exchange
2007. I know it is easier said then done, but that seems to be the only
option at this time.

Exchange 2007 installed is not supported:
The Microsoft Exchange System Attendant service does not start on a
computer that is running Exchange Server 2007 after you rename a Windows
Server 2003 domain
http://support.microsoft.com/kb/925822

Exchange 2007 and Domain Rename
http://theessentialexchange.com/blog...in-rename.aspx


---

ADMT to migrate into a new forest/domain:

For 2003:
ADMT v3 Migration Guide
http://www.microsoft.com/downloads/d...displaylang=en

Active Directory Migration Tool v3.0
http://www.microsoft.com/downloads/d...displaylang=en

For 2008:

ADMT v3.1 Guide: Migrating and Restructuring Active Directory Domains
http://www.microsoft.com/downloads/d...displaylang=en

Active Directory Migration Tool version 3.1
http://www.microsoft.com/downloads/d...displaylang=en

Password Export Server version 3.1 (x86)
http://www.microsoft.com/downloads/d...displaylang=en

Password Export Server version 3.1 (x64)
http://www.microsoft.com/downloads/d...displaylang=en

Domain Migration Cookbook - Index and Cover:
http://www.microsoft.com/technet/pro.../cookintr.mspx
================================================== ================================================== ==
================================================== ================================================== ==

Ace

 
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
adding demoted DC back to domain - rename or not to rename Gary Windows Server 1 08-01-2008 07:34 PM
Post-Domain Rename - Old Domain Lingers Colin Bowern DNS Server 2 02-08-2006 06:23 PM
rename AD 2003 Domain from domain.org to domain.local SSDSMike Active Directory 3 09-05-2005 10:25 PM
Domain Rename-Rename Domain Controller Bob Williamson Windows Server 0 01-25-2005 11:05 PM
Re: Similar domain names and the domain rename tool Steve Bruce, mct Active Directory 0 09-15-2004 08:22 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59