Upgrade Win2012 DC to 2019

create share 646 Reputation points
2021-10-22T15:19:05.66+00:00

Hi,

I need to upgrade a Windows 2012 Domain Controller to Windows 2019 but need to keep the same IP Address. Which of these two paths is better?

  1. Add an additional DC with Windows 2019 and transfer FSMO Roles to it. Demote Windows 2012 DC. Install another 2019 DC with the same IP address as the old Windows 2012 one and finally transfer the FSMO roles to it.

or

  1. Install a new Windows 2019 DC, transfer FSMO roles to it. Demote Windows 2012 DC and then change the IP address of the new Windows 2019 DC?

Thanks.

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,832 questions
0 comments No comments
{count} votes

Accepted answer
  1. Dave Patrick 426.1K Reputation points MVP
    2021-10-22T15:41:06.023+00:00

    Either one will work out.

    The two prerequisites to introducing the first 2019 domain controller are that domain functional level needs to be 2008 or higher and older sysvol FRS replication needs to have been migrated to DFSR
    https://techcommunity.microsoft.com/t5/Storage-at-Microsoft/Streamlined-Migration-of-FRS-to-DFSR-SYSVOL/ba-p/425405

    I'd use dcdiag / repadmin tools to verify health correcting all errors found before starting any operations. Then stand up the new 2019, patch it fully, license it, join existing domain, add active directory domain services, promote it also making it a GC (recommended), transfer FSMO roles over (optional), transfer pdc emulator role (optional), use dcdiag / repadmin tools to again verify health, when all is good you can decommission / demote old one.

    --please don't forget to upvote and Accept as answer if the reply is helpful--


2 additional answers

Sort by: Most helpful
  1. create share 646 Reputation points
    2021-10-23T00:52:36.787+00:00

    Hi,

    Thanks for the reply. Unfortunately, I have just discovered that the server hardware we have does not support Windows 2019. I have postponed the upgrade until we get a new server.

    Thanks.


  2. create share 646 Reputation points
    2021-10-30T04:20:19.43+00:00

    Hi,

    I managed to install win2019 on the server but after I ran dcdiag /q, I found errors on the second DC and the sysvol and netlogon folders are missing in second DC.

    C:\>dcdiag /q
    Warning: DsGetDcName returned information for \dc1.domain.local, when
    we were trying to reach DC2.
    SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE.
    ......................... DC2 failed test Advertising
    Unable to connect to the NETLOGON share! (\DC2\netlogon)
    [DC2] An net use or LsaPolicy operation failed with error 67,
    The network name cannot be found..
    ......................... DC2 failed test NetLogons
    An error event occurred. EventID: 0x00000014
    Time Generated: 10/30/2021 06:32:54
    Event String:
    Installation Failure: Windows failed to install the following update
    with error 0x80246013: 2021-04 Servicing Stack Update for Windows Server 2012 f
    or x64-based Systems (KB5001401).
    An error event occurred. EventID: 0x0000272C
    Time Generated: 10/30/2021 07:01:42
    Event String:
    DCOM was unable to communicate with the computer 8.8.8.8 using any o
    f the configured protocols; requested by PID 1300 (C:\Windows\system32\dcdia
    g.exe).
    An error event occurred. EventID: 0x0000272C
    Time Generated: 10/30/2021 07:02:03
    Event String:
    DCOM was unable to communicate with the computer 8.8.4.4 using
    any of the configured protocols; requested by PID 1300 (C:\Windows\system32
    \dcdiag.exe).
    ......................... DC2 failed test SystemLog

    0 comments No comments