• Home
  • About Me …
  • Disclaimer

IgNiTeD SoUL

The Technical Information Hub
Stay updated via RSS

  • Logo

  • Categories

  • Tagz

    .net 32 bit MMC 64 Bit MMC Active Directory Active Directory Roles Backup Bios Bitlocker CMD Ctrl c Truths DHCP Distribution Groups DNS Domain Controller Drivers Ebooks EF encrypted files ESX Exchange Server Failover Clustering Firewall FSMO Roles Global Catalog Group Policy Management Hard Disk Hyper-V Info Intersite Replication Intrasite Replication Ip Address Jobs kerberos Keyboard Shortcut Keys and Values Logon Issues Logon Script Maintenance MMC Networking Outlook Performance Tweak Printers Recovery Recycle Bin Registry Remote Procedure Call Replication Restore Point Robocopy Scheduled tasks search Security Server Server 2003 Server 2008 Startup System State System State Backup SysVol Task Manager Task Scheduler technology Theme Torrent Tricks Virtual Machine Backup Vista VM VMWare vpn Wi-Fi Windows 7 Workstation XP
  • Search

  • Ignited Calendar

    September 2012
    M T W T F S S
     12
    3456789
    10111213141516
    17181920212223
    24252627282930
    « Aug   Oct »
  • Archives

    • March 2015 (1)
    • January 2014 (2)
    • December 2013 (1)
    • July 2013 (2)
    • June 2013 (1)
    • February 2013 (6)
    • January 2013 (3)
    • November 2012 (1)
    • October 2012 (3)
    • September 2012 (9)
    • August 2012 (8)
    • July 2012 (4)
    • June 2012 (1)
    • April 2012 (4)
    • January 2012 (5)
    • December 2011 (1)
    • November 2011 (2)
    • October 2011 (2)
    • August 2011 (8)
    • July 2011 (7)
    • June 2011 (15)
    • May 2011 (1)
    • April 2011 (4)
    • March 2011 (11)
    • January 2011 (4)
    • October 2010 (2)
    • September 2010 (13)
    • July 2010 (2)
    • June 2010 (9)
    • May 2010 (31)
    • April 2010 (7)
    • March 2010 (46)
    • January 2010 (30)
    • November 2009 (4)
    • October 2009 (23)
    • September 2009 (5)
    • August 2009 (137)
  • Recent Comments

    jmmelkon on Robocopy ERROR 5 (0x00000005)…
    Jake on AGDLP (Accounts, Global groups…
    ShineOn on Robocopy ERROR 5 (0x00000005)…
    Lauren on Creating a Reverse Lookup Zone…
    thejas on Robocopy ERROR 5 (0x00000005)…
  • Recent Posts

    • WMI Corrupt: How to re-install /repair
    • This source server failed to generate the changes
    • 2013 in review
    • ROBOCOPY in Detail
    • The version store has reached its maximum size because of unresponsive transaction
  • Author: Ravindra Kulkarni

    • Ravindra Kulkarni
  • Contact Info

    Akshaya Nagar, Bannerghatta Road, Bangalore
    On Request
    Available on Weekends Only.
  • FB

    FB
  • Enter your email address to subscribe to this blog and receive notifications of new posts by email.

    Join 172 other subscribers
  • Blogroll

    • Madeira Consultancy
    • Purple Carrot INC
    • Server Cafe
    • WordPress.com
    • WordPress.org
  • Pages

    • About Me …
    • Disclaimer
  • Top Rated

  • Blog Stats

    • 242,430 hits
  • RSS Ignited RSS

    • WMI Corrupt: How to re-install /repair
    • This source server failed to generate the changes
    • 2013 in review
    • ROBOCOPY in Detail
    • The version store has reached its maximum size because of unresponsive transaction
    • Keyset does not exist (Error 0x80090016)
    • Troubleshooting Group Policy application
    • How does Active Directory enable Centralized Administration?
    • The FSMO Role Owner Attribute
    • Issues with Remote Desktop Connection
  • Visits

    Locations of visitors to this page
  • My Cafe in Goa

    My Cafe in Goa
  • Email the Author

    Ravindra.Kulkarni@IgnitedSoul.com
  • Internet Stats

    Rating for ignitedsoul.com
  • Qcast

  • MCITP

Metadata Cleanup of Domain Controllers

Posted: September 13, 2012 in Active Directory, Domain Controller, Server, Server 2003, Server 2008
Tags: Active Directory, Demote, Demoting, Metadata Cleanup, ntdsutil, Server, Server 2003, Server 2008
0

Metadata Cleanup of Domain Controllers

 

Note: You must try the below steps only when the Graceful demoting of the server fails from “DCPROMO”

Note: You may get a error while demoting if you have a forest with 2003 and 2008 mixed Domain Controllers.

          : Some of the errors will be like: LDAP Error 0x32<50<Insufficient rights> or: Win32 error returned is 0x5<Access is Denied>

          : There is a easy steps to demote if you have the error. (Will be posting it soon)

Scenario:

–          Server1 should be demoted from XYZ Domain.

–          ABC.XYZ.com is the primary Domain Controller in the Domain.

–          We have total of 3 sites in the whole network, Site1, Site2 & Site3

–          The plan is to Demote Server1 hosted in Site3

–          Login to any of the Domain Controllers and follow the below steps

Note: Words marked in BLUE are the entries which should be input by you.

Open the Command Prompt from the server and run the below commands:

C:\>ntdsutil

ntdsutil: metadata cleanup

metadata cleanup: connections

server connections: connect to server ABC

Binding to ABC …

Connected to ABC using credentials of locally logged on user.

server connections: quit

metadata cleanup: select operation target

select operation target: list domain

Found 1 domain(s)

0 – DC=XYZ,DC=com

select operation target: select domain 0

No current site

Domain – DC=XYZ,DC=com

No current server

No current Naming Context

select operation target: list sites

Found 3 site(s)

0 – CN=Site1,CN=Sites,CN=Configuration,DC=XYZ,DC=com

1 – CN=Site2,CN=Sites,CN=Configuration,DC=XYZ,DC=com

2 – CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com

select operation target: select site 3

Site – CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com

Domain – DC=XYZ,DC=com

No current server

No current Naming Context

select operation target: list servers in site

Found 2 server(s)

0 – CN=Server1,CN=Servers,CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com

1 – CN=Server2,CN=Servers,CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com

select operation target: select server 0

Site – CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com

Domain – DC=XYZ,DC=com

Server – CN=Server1,CN=Servers,CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com

DSA object – CN=NTDS Settings,CN=Server1,CN=Servers,CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com

DNS host name – Server1.XYZ.com

Computer object – CN=Server1, OU=Domain Controllers,DC=XYZ,DC=com

No current Naming Context

select operation target: quit

metadata cleanup: remove selected server

Transferring / Seizing FSMO roles off the selected server.

Removing FRS metadata for the selected server.

Searching for FRS members under “CN=Server1, OU=Domain Controllers,DC=XYZ,DC=com”.

Removing FRS member “CN=Server1,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=XYZ,DC=com”.

Deleting subtree under “CN=Server1,CN=Domain System Volume (SYSVOL share),CN=File

Replication Service,CN=System,DC=XYZ,DC=com”.

Deleting subtree under “CN=Server1, OU=Domain Controllers,DC=XYZ,DC=com”.

The attempt to remove the FRS settings on CN=Server1,CN=Servers,CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com failed because “Element not found.”;

metadata cleanup is continuing.

“CN=Server1,CN=Servers,CN=Site3,CN=Sites,CN=Configuration,DC=XYZ,DC=com” removed from server “ABC”

metadata cleanup: quit

ntdsutil: quit

Disconnecting from ABC…

Now you should be able to see “ntdsutil” missing from the Active Directory Sites and Services from the particular Site.

12.971606 77.594376
Advertisement

Rate this:

Share this:

  • Facebook
  • Twitter
  • LinkedIn
  • Reddit
  • Email
  • Print

Like this:

Like Loading...

Related

Leave a Reply Cancel reply

Fill in your details below or click an icon to log in:

Gravatar
WordPress.com Logo

You are commenting using your WordPress.com account. ( Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. ( Log Out /  Change )

Cancel

Connecting to %s

Procedure to Restore the System State Backup
Cannot login to Domain Controllers / Issue to login into Domain Controllers

  • Calendar

    September 2012
    M T W T F S S
     12
    3456789
    10111213141516
    17181920212223
    24252627282930
    « Aug   Oct »
  • Enter your email address to subscribe to this blog and receive notifications of new posts by email.

    Join 172 other subscribers
  • Blogroll

    • Madeira Consultancy
    • Purple Carrot INC
    • Server Cafe
    • WordPress.com
    • WordPress.org
Blog at WordPress.com.
Privacy & Cookies: This site uses cookies. By continuing to use this website, you agree to their use.
To find out more, including how to control cookies, see here: Cookie Policy
  • Follow Following
    • IgNiTeD SoUL
    • Join 30 other followers
    • Already have a WordPress.com account? Log in now.
    • IgNiTeD SoUL
    • Customize
    • Follow Following
    • Sign up
    • Log in
    • Copy shortlink
    • Report this content
    • View post in Reader
    • Manage subscriptions
    • Collapse this bar
%d bloggers like this: