question on demoting DCs and azure ad connect

charle kentser 61 Reputation points
2020-10-03T16:21:45.44+00:00

very soon will be moving to 2012 DCs from 2008r2.
once we transfer all the roles, going to switch IPs from the two 2008r2 servers with the new 2012 servers, to keep from having to touch all the devices with static IPs.

once question - do you HAVE to shutdown the old servers after migrating away from them?

reason I am asking, we use 365 in hybrid mode, and have azure ad connect running on one of the 2008 servers.
could we leave it running after demoting it to member server, so we can move azure ad connect later, would prefer to do it few days later.

would rather not make too many changes at one time if possible.

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,635 questions
Microsoft Entra ID
Microsoft Entra ID
A Microsoft Entra identity service that provides identity management and access control capabilities. Replaces Azure Active Directory.
20,629 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Anonymous
    2020-10-03T16:58:32.687+00:00

    Demotion and leaving as a member server is fine to do. In case the demotion does not go cleanly, you can finish with metadata clean up.
    https://learn.microsoft.com/en-us/windows-server/identity/ad-ds/deploy/ad-ds-metadata-cleanup
    https://techcommunity.microsoft.com/t5/itops-talk-blog/step-by-step-manually-removing-a-domain-controller-server/ba-p/280564

    --please don't forget to Accept as answer if the reply is helpful--

    2 people found this answer helpful.
    0 comments No comments

  2. Thameur-BOURBITA 32,636 Reputation points
    2020-10-04T10:11:15.757+00:00

    Hi,

    once question - do you HAVE to shutdown the old servers after migrating away from them?

    Once you complete the migration , the IP switch and remove the service in old servers ( Azure AD connect , Domain controllers), you don't have to shutdown the servers , because the service are already removed on old servers and there is no risk for IP conflict.

    please Don't forget to mark this reply as answer if it help you to fix your issue

    1 person found this answer helpful.
    0 comments No comments