We have AD DCs permanently living at our recovery site as well. The past few tests we shut down the DCs and created clones to stand up during the test. When the test was over, we destroyed th...
See more...
We have AD DCs permanently living at our recovery site as well. The past few tests we shut down the DCs and created clones to stand up during the test. When the test was over, we destroyed the clones, along with the VMs created. This last time around, because we have so many other systems living permanently at the recovery site (PSC, vCenter SRM, other systems) that also need AD, we didn't do anything with the DCs. The site was isolated from production, we stood up recovered servers via SRM, while leaving the other systems online. When the test was over, the recovered systems were destroyed, link re-established and all seems well. We did not have to make any changes within AD (password changes, add accounts/machines, change permissions) so we did not have to move/seize any FSMO roles. AD seems pretty resilient to disconnects and isolation events.