Taking down down a Domain Controller for a short time

Discussion in 'Active Directory' started by tnt, Jan 7, 2010.

  1. tnt

    tnt Guest


    We have three DCs consisting of windows 2003 Ent. I need to relocate one DC
    to a different building.

    Would taking one DC down have any issues with user who already logged in?
    This DC has the FSMO roles. I will take it down for about 15 min.

    In the past, I never had any issues. Just thought I ask for opinions. I
    noticed in the past where one DC was down, the workstation would reroute to
    the other DC for the time server (I was testing the time server back then).

    Thanks for your time.
    tnt, Jan 7, 2010
    1. Advertisements

  2. Howdie!
    As long as there are other DCs that can service requests
    (authentication, DNS, ..) this shouldn't be an issue. Even with the FSMO
    roles owned by the machine to-be-moved.

    Microsoft MVP - Group Policy
    eMail: prename [at] frickelsoft [dot] net.
    blog: http://www.frickelsoft.net/blog.
    ANY advice you get on the Newsgroups should be tested thoroughly in your
    Florian Frommherz [MVP], Jan 7, 2010
    1. Advertisements

  3. tnt

    tnt Guest

    Thanks for your response.

    I forgot off of my head the comannd to determine that:

    logonserver to determine the RPC call, etc

    tnt, Jan 7, 2010
  4. Or:

    echo %logonserver%

    Just some advise, it would be better to do this off production hours to
    prevent any possible issues.

    I put together a blog regarding resolution process and how the client side
    resolver handles it. It has a section regarding if a DC goes down, what
    happens. Scroll down to that part to see what implications I am referring
    to. I hope you find it helpful.

    DNS, WINS & the Client Side Resolver, NetBIOS, Browser Service, Disabling
    NetBIOS, Direct Hosted SMB (DirectSMB), If One DC is Down, Does a Client
    logon to Another DC, and DNS Forwarders Algorithm


    This posting is provided "AS-IS" with no warranties or guarantees and
    confers no rights.

    Please reply back to the newsgroup or forum for collaboration benefit among
    responding engineers, and to help others benefit from your resolution.

    Ace Fekay, MVP, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007, MCSE &
    MCSA 2003/2000, MCSA Messaging 2003
    Microsoft Certified Trainer
    Microsoft MVP - Directory Services

    If you feel this is an urgent issue and require immediate assistance, please
    contact Microsoft PSS directly. Please check http://support.microsoft.com
    for regional support phone numbers.
    Ace Fekay [MVP-DS, MCT], Jan 7, 2010
  5. Hello tnt,

    As already said from the others, no problem when a DC/DNS and if you use
    universal groups a Global catalog server is available for authentication.
    If there is another subnet in use don't forget to adjust AD sites and services
    for the new subnet.

    Best regards

    Meinolf Weber
    Meinolf Weber [MVP-DS], Jan 8, 2010
  6. tnt

    Jorge Silva Guest

    When the DC is the owner of the FSMO roles and is at the client's site, you
    may have problems during that take off. Perhaps transfer the FSMO roles
    before the take off isn't a bad idea, of course, doing this at off time
    hours without transfer the FSMO may not be a bad idea as well.


    I hope that the information above helps you.
    Have a Nice day.

    Jorge Silva
    MVP Directory Services

    Please no e-mails, any questions should be posted in the NewsGroup
    This posting is provided "AS IS" with no warranties, and confers no rights.
    Jorge Silva, Jan 11, 2010
    1. Advertisements

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments (here). After that, you can post your question and our members will help you out.