|
server
newsgroups
|
|||||||||||||||||||||||
|
|||||||||||||||||||||||
Demotion doesn't properly remove server from DNSHi, here the problem.
After a successful demotion, DCs' names are not removed from the DNS AD-Integrated zones (Name Servers Tab). I've waited days to see if it was replication-related, but it doesn't seem to be. Also, I've checked that the replication is taking place and it's fine. Any ideas? -- NetAdmin <São Paulo, BR> Hello net_admin,
Remove them manual, no problem. Also you have to remove it manual from AD sites and services. Best regards Meinolf Weber Disclaimer: This posting is provided "AS IS" with no warranties, and confers no rights. ** Please do NOT email, only reply to Newsgroups ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm Show quoteHide quote > Hi, here the problem. > > After a successful demotion, DCs' names are not removed from the DNS > AD-Integrated zones (Name Servers Tab). I've waited days to see if it > was replication-related, but it doesn't seem to be. Also, I've checked > that the replication is taking place and it's fine. > > Any ideas? > Hello Meinolf,
I always do that, both from DNS and ADSS. But it's annoying to do it to all DNS zones everytime I demote a box. I even dump the entire AD DB with LDIFDE and search throught it. It would be nice to have a proper cleanup. Cheers. NetAdmin You are being thorough (which is a good thing) - but you should be able to
identify the relevant DNS records registered by a domain controller in the forward lookup zones by examining content of the local %windir%\system32\config\netlogon.dns file... hth Marcin Show quoteHide quote "net_admin" <net_ad***@discussions.microsoft.com> wrote in message news:F2411FBD-E4D9-4632-9A48-DB6152161037@microsoft.com... > Hello Meinolf, > > I always do that, both from DNS and ADSS. But it's annoying to do it to > all > DNS zones everytime I demote a box. > I even dump the entire AD DB with LDIFDE and search throught it. > > It would be nice to have a proper cleanup. > > Cheers. > NetAdmin Hi
- You can do it manually or using dnscmd in a script, check at Script center for samples of this. - But this shouldn't be a thing that you do regularly, is it? Are you constantly removing DCs from your domain? -- Show quoteHide quoteI hope that the information above helps you. Have a Nice day. Jorge Silva MVP Directory Services "net_admin" <netad***@discussions.microsoft.com> wrote in message news:464EBBA7-39EF-4F80-84FE-3B9DC4EFAC5E@microsoft.com... > Hi, here the problem. > > After a successful demotion, DCs' names are not removed from the DNS > AD-Integrated zones (Name Servers Tab). I've waited days to see if it was > replication-related, but it doesn't seem to be. Also, I've checked that > the > replication is taking place and it's fine. > > Any ideas? > > -- > NetAdmin <São Paulo, BR> >
Domain functional level
changing domain name Is this the last step we need to do? Do Child DC's need unrestricted IP access to Root DC's? After 2000 to 2003 upgrade sysvol is not accessable Manually removing cert server from AD Validation for 2000 to 2003 upgrade DC's not Replicating Delegate ad workstations to domain DNS during Domain Controller demotion |
|||||||||||||||||||||||