PDA

View Full Version : unable to demote DC from forest


satish_halemani
01-11-2005, 02:00 PM
I have installed a Active Directory domain controller(windows 2003) by name home.com with option of it being the first domain controller in the forest.Then i have installed one more domain controller(windows 2000) by name mshome.com and joined this to the forest.Now i wanted to demote this mshome.com and when in process of demoting it, i got an error of some DSA operation failed due to DNS lookup failure.Kindly suggest what i need to do in order to complete the demotion.Also one problem i faced was when i tried to move the schema master from home.com to mshome.com.It gave error of unable to connect to domain controller.I have tried finding solutions on microsoft site but of no use.Please help me out.

Variable
01-11-2005, 02:30 PM
Well for one thing you have two separate domains....Are your trying to demote the only DC for the domain?

satish_halemani
01-11-2005, 11:57 PM
Hi,
Well i have 2 seperate domains with each having a domain controller.I'll clearly mention how i went about.
1.On 1st system i installed activery directory on a windows 2003 server(computer name : windows2003) with this being the first domain controller in the forest.
Domain Name : home.com

2.On 2nd system i installed active directory on a windows 2000 server(computer name :windows2000).When installing AD i choose option of this system being a tree being joined to existing forest(home.com) and in LAN properties i specified the home.com's DNS server as prefered DNS server.Then i was successfully able to join this system as a tree to forest HOME.COM.
Domain Name : mshome.com

3.When i tried to demote MSHOME.COM i got the error of DSA operation not able to complete due to DNS lookup failure.

Should i make any changes in DNS.Please suggest.

Variable
01-12-2005, 06:49 PM
You can not do what you want to do... A domain controller controls AD,DNS, etc for one domain. You have two domains with one domain controller each, each are root domains. You have to have one domain controller per domain. Therefore you cannot demote the only domain controller in the domain.

A forrest is a collection of trees with non contigous name space. It is about trust and replication and the global catalog.