Wednesday 16 February 2011

Creating a Additional GC Domain Controller and Dns Server

Use the following procedure to add a second DC and then configure it as the Secondary DNS server for the domain

1)      On the Secondary DC / DNS Server
a.       Install the OS for the secondary DC
b.      Install DNS
                                                               i.      Do not configure
c.       Assign static IP Address
                                                               i.      Configure TCP/IP DNS settings to point to the Primary DNS server.
d.      Run DCPromo
                                                               i.      Add new domain controller to existing domain
e.       Reboot
                                                               i.      Wait for the server to come up before continuing.
2)      On the Primary DC / DNS Server
a.       Use Active Directory Site and Services to force replication between the DCs.  Select Replicate Now (screen shot) for all DC’s in the
3)      On the Secondary DC / DNS Server
a.       The zones for AD integrated DNS zones will be automatically created.  If they do not appear restart DNS periodically until they appear. 
b.      Do not continue until the DNS zones appear.  This can take 15-30 minutes or more depending on the number of DNS zones.
4)      On the Primary DC / DNS Server
a.       Configure its primary DNS server to be the IP Address of the secondary DNS server.
b.      Configure its secondary DNS server to point to itself.
5)      On the Secondary DC / DNS Server
a.       Configure its primary DNS server to be the IP Address of the primary DNS server.
b.      Configure its secondary DNS server to point to itself.


And also make the second server a Global catalog, otherwise clients can not
logon if the first fails:
Open Active directory site and services, go to Sites, default first site
name, servers, choose the server, right click NTDS settings, open properties
and checkmark Global catalog (check event viewer after it, in Directory service
you must find event id 1110 and 1119
If for some reason the first DC fails cease the FSMO roles from it and use the second server to serve all the requests


No comments:

Post a Comment