[Samba] Migrate and Update (Samba 4.1 ADDC to Samba Latest Version on different Server).

Rowland Penny rpenny at samba.org
Wed Nov 30 19:50:19 UTC 2022

On 30/11/2022 19:30, Juan Ignacio wrote:
> Excellent.
> Thx, for your explanation Rowland, now I can understand lots better.
> I'm close to shutting down the old primary ad-dc to test if everyone can 
> login and next try to demote it.
> Some things I want to know before demoting.
> I need to make a backup of the old samba 4.1 ad-dc on the old server "DC1".
> I backed up manually all the /usr/local/samba/ directory

That is not how you backup Samba AD.

> I was thinking of using this script of samba4 on GIT, which is more 
> updated than the one I was using.
> https://github.com/thctlo/samba4/blob/master/backup-script/backup_samba4 
> <https://github.com/thctlo/samba4/blob/master/backup-script/backup_samba4>

No, that was the old way and should no longer be used.

> I already transferred  FSMO roles to the new server "DC2" . Is there any 
> other thing I need to do before demoting the primary DC.

What, you want to demote the DC that holds the FSMO roles ('primary' is 
what most people call the DC that holds the FSMO roles, even though 
there is no such thing as a primary DC)

> Anything else I must check or be careful with?

Yes, you must be very careful that you create another DC to replace the 
one that you are going to demote. One DC = bad, multiple DC's = good.

> About the NEW ad-dc "DC2"
> I have 4 full server backups a day on that server, do you think I need 
> to backup samba anyway or is this enough if something fails.

Sorry, but you do not backup a DC, you backup the domain with 
'samba-tool domain backup offline' or 'samba-tool domain backup online'


More information about the samba mailing list