[Samba] Error removing Windows DC from AD

Andrew Bartlett abartlet at samba.org
Wed Jun 20 18:38:24 UTC 2018


On Wed, 2018-06-20 at 13:13 +0200, Pietro Stäheli via samba wrote:
> Hi,
> 
> I'm preparing to move a small business environment away from 
> Windows-based AD (Windows Server 2012R2, Domain and Forest downgraded to 
> Win2008R2 level) to Samba. So far in my lab environment joining Samba as 
> a DC works, including DNS and Sysvol replication.

To be clear, we don't replicate sysvol, you need to work that out
yourself (yes, this sucks). 

> Is there any further preparation I need to do on the Windows server side 
> to make a clean demotion possible? I can force the removal of the 
> Windows DC but this led to leftover data in the LDAP database and DNS 
> that I have to excise by hand, which I don't find ideal.
> 
> I'm thankful for any advice on how to accomplish this.

samba-tool domain demote --remove-other-dead-server

This should clean up most of it.  What is still left behind?

Andrew Bartlett
-- 
Andrew Bartlett                       http://samba.org/~abartlet/
Authentication Developer, Samba Team  http://samba.org
Samba Developer, Catalyst IT          http://catalyst.net.nz/services/samba




More information about the samba mailing list