Share via

AD connect question

Shahin Mortazave 491 Reputation points
2023-07-04T08:26:04.03+00:00

Hi,

We have migrated our AD Connect server to a new server and put the old server in the Staging mode and just to be sure the sync goes through the new server we disabled the nic of the old server and we now the new server does the wrok.

Now we want to remove the Ad sync from the old server because we get a sync health error that old server is not communicated with the AD health service.

Can we bring the old server back online and remove the AD connect? even it was not online for sometimes now?

O simply just remove the old server from Azure Active Directory Connect Servers and forget about the old server in staging mode?

Thanks

Exchange | Hybrid management
Exchange | Hybrid management

The administration of a hybrid deployment that connects on-premises Exchange Server with Exchange Online, enabling seamless integration and centralized control.

Microsoft Security | Microsoft Entra | Microsoft Entra ID

3 answers

Sort by: Most helpful
  1. Tushar Kumar 3,396 Reputation points MVP
    2023-07-04T08:48:48.1266667+00:00

    Just FYI

    It's important to fully decommission old Azure AD Connect servers as these may cause synchronization issues, difficult to troubleshoot, when an old sync server is left on the network or is powered up again later by mistake. Such “rogue” servers tend to overwrite Azure AD data with its old information because, they may no longer be able to access on-premises Active Directory (for example, when the computer account is expired, the connector account password has changed, etcetera), but can still connect to Azure AD and cause attribute values to continually revert in every sync cycle (for example, every 30 minutes). To fully decommission an Azure AD Connect server, make sure you completely uninstall the product and its components or permanently delete the server if it is a virtual machine.

    If you have configure the old server where is AAConnect in "staging mode" and the new server with AADConnect in normal , yes, you can uninstall AADConnect from control panel of old server.

    https://learn.microsoft.com/en-us/azure/active-directory/hybrid/connect/how-to-connect-uninstall

    Was this answer helpful?

    1 person found this answer helpful.
    0 comments No comments

  2. Yuki Sun-MSFT 41,456 Reputation points Moderator
    2023-07-18T08:05:45.65+00:00

    Hi @Shahin Mortazave ,

    This should be able to work if you don't mind losing the data between the period of crash and restore. By the way, since from the description this problem is different what has been discussed previously, if you need further help on the restoring question, it'd be best starting a new thread instead. And for this thread, you can click Accept Answer button under the post you found helpful for others' referencing. Thanks for your understanding.

    Was this answer helpful?


  3. Shahin Mortazave 491 Reputation points
    2023-07-18T07:34:44.8466667+00:00

    @Yuki Sun-MSFT Thank you for your reply, we came accross a problem, the ADD server has been crashed and now about 24 hours sync is not heppeing and users cannot login from outside the LAN.

    I have a backup of the VM server that is made 48 hours before. can I restore the VM and let it to sync? the data that has been changed since the last backup is not important and we can mis that.

    Thanks

    Was this answer helpful?

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.