2019 AD Server Migration - Issues Login in after the migration

Rajeev George 1 Reputation point
2021-10-22T16:07:11.887+00:00

Hi Folks,

I have having trouble login in to 2019 server after promoting the DC. Incorrect username and password. Tried with other accounts and have the same issue.

4 Times I reinstalled but no luck.

Environment: 2 x 2008 DC's

                  2 x 2012 R2 DC's (recently promoted)

                  1 x 2019 DC - Cant login

Please help and I have wasted so much time on this.

PS: Replication works fine no errors (Repadmin /syncall).

DFSRMig - Eliminated state

Sorry for posting in the wrong place.

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,852 questions
0 comments No comments
{count} votes

6 answers

Sort by: Most helpful
  1. Dave Patrick 426.1K Reputation points MVP
    2021-10-22T16:17:48.157+00:00

    Try using the domain admin account. Some general info.

    The two prerequisites to introducing the first 2019 domain controller are that domain functional level needs to be 2008 or higher and older sysvol FRS replication needs to have been migrated to DFSR
    https://techcommunity.microsoft.com/t5/Storage-at-Microsoft/Streamlined-Migration-of-FRS-to-DFSR-SYSVOL/ba-p/425405

    I'd use dcdiag / repadmin tools to verify health correcting all errors found before starting any operations. Then stand up the new 2019, patch it fully, license it, join existing domain, add active directory domain services, promote it also making it a GC (recommended), transfer FSMO roles over (optional), transfer pdc emulator role (optional), use dcdiag / repadmin tools to again verify health, when all is good you can decommission / demote old one.

    --please don't forget to upvote and Accept as answer if the reply is helpful--

    0 comments No comments

  2. Rajeev George 1 Reputation point
    2021-10-22T16:48:49.633+00:00

    Thank you, Patrick for responding.

    Try using the domain admin account. Some general info. --- Yes, it is the Domain Admin account.

    The two prerequisites to introducing the first 2019 domain controller are that domain functional level needs to be 2008 or higher and older sysvol FRS replication needs to have been migrated to DFSR ----- The functional level is 2008 and Migrated to DFSR (Eliminated State)
    https://techcommunity.microsoft.com/t5/Storage-at-Microsoft/Streamlined-Migration-of-FRS-to-DFSR-SYSVOL/ba-p/425405

    I'd use dcdiag / repadmin tools to verify health correcting all errors found before starting any operations. Then stand up the new 2019, patch it fully, license it, join existing domain, add active directory domain services, promote it also making it a GC (recommended), transfer FSMO roles over (optional), transfer pdc emulator role (optional), use dcdiag / repadmin tools to again verify health, when all is good you can decommission / demote old one.

    Cant login to the 2019 DC. Promoted it as a GC

    Any other suggestions?

    0 comments No comments

  3. Dave Patrick 426.1K Reputation points MVP
    2021-10-22T17:57:21.91+00:00

    Please run;

    Dcdiag /v /c /d /e /s:%computername% >C:\dcdiag.log
    repadmin /showrepl >C:\repl.txt
    ipconfig /all > C:\dc1.txt
    ipconfig /all > C:\dc2.txt
    ipconfig /all > C:\dc3.txt
    (etc. as other DC's exist)

    then put unzipped text files up on OneDrive and share a link.


  4. Rajeev George 1 Reputation point
    2021-10-22T20:01:03.897+00:00

  5. Rajeev George 1 Reputation point
    2021-10-25T12:28:54.537+00:00

    Nothing so far. Any insight from your side?