Virtual domain controllers

We have a Windows 2003 domain controller physical and a virtual domain controller. We are in the process of upgrading our domain to Windows 2008. We plan race for prep AD this weekend stuff. However, we are seeking emergency plans in case there is a problem and we must return to how the area looked before execution of the preparation.

A plan is that if there is a problem that brings us back we close the physical DC and restore the virtual domain from backup controller, clean the virtual domain controller and then rebuild the physical DC. It has also been suggested that we just instant the DC before we do the preparation and then return back from the snapshot (physical DC could be rebuilt). My thought is that we do not want to go back to a snapshot on a domain controller, but I can't get people to accept this without being able to explain why. I have been asked how it's different from restoring a backup VMDK.

Can anyone help with a good easy to understand explanations of why we do not want to come back from a snapshot and how restoring a VMDK backup is different than using the snapshot? Someone at - it the right best practices documents from VMWare that could explain it better? I found a document that talks about Virtualization ActiveDirectory and I read that but I'm looking for as much information as I can get.

Thank you.

Hello.

A plan is that if there is a problem that brings us back we close the physical DC and restore the virtual domain from backup controller, clean the virtual domain controller and then rebuild the physical DC. It has also been suggested that we just instant the DC before we do the preparation and then return back from the snapshot (physical DC could be rebuilt). My thought is that we do not want to go back to a snapshot on a domain controller, but I can't get people to accept this without being able to explain why. I have been asked how it's different from restoring a backup VMDK.

Ask them to read Microsoft kb 875495.  Just because something can or could work, does mean it's going to keep you in a State supported.

Good luck!

Tags: VMware

Similar Questions

  • conversion of 2 virtual domain controllers

    Hello

    I have 2 windows 2008R2 dc installed on an ESX 3.5 server, so that they are already VM and not physical and I want to transfer them to my new ESX 4.1 server.  The method I've taught using turn off the dc converter and use of article 4.1 of the Vcenter to 'copy' my DC from one host to another

    Is this a good idea, because I know that PTV for domain controller is not recommended but VTV is it?

    Thank you

    Hello

    everything you said is ok

    Do virtual sql server is not so problematic as a domain controller. It is recommended to stop the sql server service before performing the conversion with vmware converter.

    Here, you can check some best practices with vmware converter:

    http://KB.VMware.com/selfservice/microsites/search.do?language=en_US&cmd=displayKC&externalID=1004588

    In any case, you can move just the sql server server on the new server as a domain controller.

    Please, remember to mark an answer useful/correct. This is the way for users of price that help others.

    Hope this helps

    Best wishes / Saludos.
    Pablo

    Please consider awarding

    all useful or correct answer. Thank you!! -

    Por favor considered premiar

    any respuesta correcta o util. ¡¡MUCHAS gracias!

    Virtually noob blog

  • If all the domain controllers reside in the VMWare environment

    I was curious to know if there is someone who can give their opinion about the location of the domain controllers in the VMWare community.  I had 2 DCs before the introduction of VMWare and pulling on servers inside.  I created 2 new controllers domain in VMWare and then retrograde 2 those outside so that only there are only virtual domain controllers.  It seemed to work very well, but I had to turn off equipment running VMWare, and when it started, the storage device that the accessible ESX host has launched a mistake because he could not find a domain controller.

    Most people remove all external domain controllers and go with only VMWare virtual DCs, or is it better to always keep an external domain controller upwards and running?  Any advice is welcome.

    Thank you.

    I always advise to keep the domain controller hosting your virtual environment PDC emulator FSMO role. Time is critical on most of the servers, but especially on the PDC that is the top of your Windows Time synch infrastructure.

    We also keep a ms in each data center on a physical platform, this way if we already have a power down when we turn we can raise the physical DC first and very quickly.

    I hope this helps.

    Kind regards

    Steve

  • Conversion from a physical to a virtual domain controller domain controller

    Hello everyone!

    I was wondering if you guys can help me. We are running a physical server Proliant DL 360 Gen 8 as our physical domain controller. The host runs HP VMware 5.5 Update 1, and the domain controller running Windows Server 2012

    I am looking to convert it to a virtual DC as a backup. I would like to add it to a host computer currently running three VM. I have a few questions.

    (1) is there a way where if the physical domain controller goes down, that the virtual server is brought online automatically?

    (2) are there caveats to a physical domain controller in a virtual domain controller?

    (3) is there a step by step guide on the process of conversion from a physical to a virtual domain controller domain controller?

    (4) what should I stop all services on the physical server during the conversion?

    (5) that I would be able to take the virtual domain controller and make like a secondary domain controller?

    Thank you

    No, you misunderstood. For additional availability, you must implement a 2nd DC as a virtual machine now and leave this race. Don't bother to put something automagic, just the 2nd DC easy running.

    Backups should always be done on a regular basis, because they might be useful if two domain controllers fail for some reason any.

  • Questions about the movement of 1 of 3 ESXi4.1-ESXi5 host domain controllers.

    Is this environment that I have 3 2008 R2 domain controllers.

    1 physical

    2 virtual

    I want to turn off a virtual domain controller and move first host (ESXi 4.1) on second host (ESXi 5).

    My concern is that if the NETWORK card in the guest OS is going to get dirty with or it will remain as it is.

    If I remember not the mac address will indeed change (unless I hard coded it in the configuration file), but that shouldn't be a problem.

    I don't know, what if a new NETWORK card will appear in OS making old useless NIC originally invited me to change the network settings.  Something I don't want to have to do.  I know I've seen a similar problem with a VM linux before, but don't remember seen happen in a virtual Windows machine.  Just want to be sure before that I have to try.

    Thanks in advance for your comments.


    Greg

    VM migration between hosts will make any changes to the NIC or MAC address. You must ensure that the required networking is presented with two hosts if you want to move between them seamlessly. If the network tag is not the same between the hosts, then you will need to change the settings of the virtual machine and use the drop down to select the appropriate network before turning on the new host. But this should be easy and quick and without surprise.

    See you soon,.

    Jon

  • How to disable snapshots for domain controllers in ESXi 5? Or other best practices?

    Dear all,

    I need some aspects of assistance to the deactivation of snapshots for 2 VMS in my HA cluster running Active Directory to Windows 2008 R2.

    I read that best practices for virtual machines running that active Directory is never for them to snapshot.

    I'm worried about auto created by the systems periodically snapshots and the problem arises if a snapshot is to be reinstated by mistake.

    So, what are the best practices for virtual machines running as domain controllers? To deactivate the snapshot function or other recommended methods?

    Please kindly share. Thank you.

    Rgds

    Leslie

    leschua75 wrote:

    .

    I'm worried about auto created by the systems periodically snapshots and the problem arises if a snapshot is to be reinstated by mistake.

    VMware has no system automatically taking portraits.

    Snapshots exist either because you made them manually, an application backup created. In this case, talk with your backup vendor.

  • HA and domain controllers

    Nice day. We are currently working on moving our environment all in virtualized environment. I'm working on our antisinistre/backup plan and I have a question. Do I need a domain controller from backup of our environment if we were to define the primary DC with HA?

    I'm not sure that if we would need a backup domain controller if we HA because it seems to me that in the event of a failure of the virtual machine or worse still hardware failure, it would simply move the virtual machine to another part of the hardware in the cluster.

    Any input is greatly appreciated.

    1 HA nothing for facilities, services OS corruption situations failed or any series of related difficulties of Windows which can bring a server offline

    2. when the failure of a host, all your guests on this host will restart because of the HA. This means that most of them will start before the domain controller and therefore, do not start correctly. You will also find, meanwhile, all guests on the affected host are also offline because they have no DC.

    In short, a domain controller is something very easy to do a second, you would be difficult to achieve an argument not to do. A server with no other roles can run on 1 GB of RAM and use virtually no CPU.

    Edit: The terms "Primary DC" and "Backup CD" crazy, as domain controllers are multi-Master. Will never be a "backup".

  • Problem of VCB backup domain controllers

    I still do research the issue, it may or may not be true, but I was wondering if anyone had a DC using VCB backup problem. iSCSI connected proxy server.

    fact twice and twice (different days) I could NOT connect on two domain controllers. Event Viewer filled with the error logs related to DNS, ATN, time and many others. Restarting solves the problem.

    Someone at - it experience what that be like this?

    I would always advise against him. AD is a sensitive application and you should recover a domain controller virtual in the same way as a physical domain controller.  Using snapshots - enabed VSS or not, is not supported by MS, and you will have problems.

  • 2 replicated domain controllers or clone 1 DCs as cold standby

    Hi guys,.

    I don't know if this is the right forum to ask this question or maybe someone can divert my question. Any involvement of a Windows 2008 Server cold waiting without any network connection for a period of time, tombstone question? and the reason that I asked for, it is I think to perform replication from domain controllers 2 where 1 fail and 2nd DC to support, or just to clone standby and connect the network whenever the 1 domain controller fail.

    Appreciate any comment.

    This issue is beyond the scope of this site (for consumers) and to be sure, you get the best (and fastest) reply, we have to ask either on Technet (for IT Pro) or MSDN (for developers)

    If you give us a link to the new thread we can point to some resources it
  • Remove 1 of the 3 domain controllers in a Windows environment

    I have a Windows domain that has Windows 2003 and 2008 R2 servers to support workstations, SharePoint and exchange among other things. There are 3 domain controllers. The first domain controller created on window 2003 server. Later, more 2 domain controllers were added on Windows 2008 R2. During the promotion of each of the servers in DC, each of them were activated as DNS and Global catalog servers. In addition, both 2008 DHCP configuration on them were servers and one Server 2008 R2 is configured as primary and the second as the secondary. The 2003 is just a DC member. I made main hold all 5 FSMO roles and replication works as well on both servers.
    I now have to demote the first Windows Server 2003, and then it must be taken out of the area. But whenever I have to run DCPromo to demote the server he kept a message that no other DC cannot be contacted, and when I try to disable the NIC in Server 2003, replication will stop automatically on the two 2008 R2.

    Any help please.
    Thanks in advance.

    Hello

    Post your question in the TechNet Server Forums, as your question kindly is beyond the scope of these Forums.

    http://social.technet.Microsoft.com/forums/WindowsServer/en-us/home?category=WindowsServer

    See you soon.

  • Domain controllers Windows 2008 R2 with the forest functional level Windows 2003 taken over after the end of Windows 2003 support in July 2015

    Hello

    Anyone know if the Windows 2008 R2 with Windows 2003 forest functional level domain controllers will be always supported after Windows 2003 support ends in July 2015?

    Thank you

    This issue is beyond the scope of this site and must be placed on Technet or MSDN

    http://social.technet.Microsoft.com/forums/en-us/home

    http://social.msdn.Microsoft.com/forums/en-us/home

  • Help with the Powershell script to collect logs from all domain controllers

    I am writing a script to retrieve the last 5 days of application, security and log files from all domain controllers. The script runs, but fire the logs from the local server only. The variable $Computer has all of my DC so it's the fine mark. I guess it's a problem with my line ForEach-Object, but is not error. See the below script.

    $log = 'application '.
    $date = get-date-format MM-DD-YYYY
    $now = get-date
    $subtractDays = new-object System.TimeSpan 5,0,0,0,0
    $then = $Now.Subtract ($subtractDays)
    $Computers = get-ADDomainController-filter *.
    ForEach-Object - InputObject $Computers - process {Get-EventLog - LogName $log - after $then - before $now - EntryType error | select EventID, MachineName, Message, Source, TimeGenerated |} ConvertTo-html | {Out-file $env:TEMP\Applicationlog.htm}
    Invoke-Expression $env:TEMP\Applicationlog.htm

    Thank you

    Rich

    Hello

    To help with the repost the question script to the script Center Forum

    http://social.technet.Microsoft.com/forums/scriptcenter/en-us/home

  • domain controllers

    Hello

    I have three domain controllers in the network with a domain controller in each site. A DC with all FSMO roles. My question is if one of the other domain two among the site with no material of FSMO roles fail and it may be the power on. Can I build an another domain controller and forget the one who is crushed or is there a special treatment that I must follow?

    Thank you.

    IslandSea

    This question can be put more on Technet,

    http://social.technet.Microsoft.com/forums/en-us/categories/

  • all domain controllers are running windows server 2000 with the company wants to set up a more secure network server OS the company will modernize the ADS?

    you are the network administrator for abc.com domain. All domain controllers are running windows server 2000 with the company wants to set up a more secure network server OS the company will modernize the ADS?

    Please repost your request in the appropriate in the Windows Server Forum.  Thank you!

  • Problems with cross certification over a link to low bandwidth to the domain controllers in the same forest

    I need to explain to a user a simple explanation on why this is not an effective solution for filing committed in different places trying to share a single file. The file is an excel document and the original file would be shared at 4 different locations on 4 separate domain controllers. The link is weak across all domains at best and the file is accessible by several people at the same time. Server 2003

    Hello

    I suggest you send the same question in the Microsoft Technet Forum for assistance. We have a dedicated team to help you with such questions.
    http://social.technet.Microsoft.com/forums/en/category/windowsxpitpro

Maybe you are looking for

  • where is the progress bar for the logic more downloading sounds

    where is the progress bar for the logic more downloading sounds?  I would like to see how many time or content that remains to download.

  • HP mouse Mini Wireless manufacturer p: can't find manual or software for mouse wireless

    Want to give a kid from neighborhood this wireless mouse but cannot operate.  Mouse lights up, but receiver RF USB stopped firing once I upgraded its Pavilion dv6 Win7 professional Win7 Home.  Green light on the receiver is not strikes on my desk Win

  • MacBook Pro not completing the update after reboot

    Hello! I have need help and need some advice. It has been more than 3 months now that this has not been resolved. My Macbook Pro will not perform updates on the App Store after the reboot. I restarted to complete the update, but the message keeps pop

  • G7: HP Pavilion g7

    I have a g7 pavilion that shows a perfect in the bios screen, a perfect screen all the way until windows starts to load, then it goes super Sun, until what I thought the screen was not working. This happens in SafeMode as normal mode. I would normall

  • Error: Unable to connect to the Synaptics Pointing Device Driver

    Yesterday, I was on the phone to Apple Australia as my husband's iPhone is not working properly atm and it was getting to me to do all this stuff on my laptop and now my mouse moves but does not scroll. When I go into the mouse through the Control Pa