I've been tasked with converting our physical Domain controller(DC) and Additional DC server to VM on ESXI host . I have never converted a DC server box and am looking for some Best Practices or known issues to watch out for. I've been reading about what to do, what NOT to do, etc. I am planning on using the VMware Converter Standalone to perform the conversion.I have little inof that the DC Database may get corrupt. But what is the best way, step-by-step, to do this? Should I use the "Synchronize" function in the converter?
Regards,
ziasyed Dear, I wouldn't suggest you to convert a physical domain controller to Virtual using converter, as it may land you with unexpected issues.
Best way to move DC to virtual infra is when you have more than 1 DC ( DC and ADC) is to decommission the physical domain controller, create a new VM with same host name and other configuration, promote that as a DC. It will make sure that there are no corruption in your AD database. Once first DC is successfully moved to Virtual Infra, monitor it for 10 days at least and then follow the same approach for the ADC.
This approach is tried and tested in multiple environments and it guarantees no corruption in DB along with no unexpected issues.
Use the benefit AD replication instead of getting stuck with USN rollback and other weird issue which may arise due to P2V.
I hope this helps.
Hello,
Sure you can use the VMware Converter to convert DC physical machine to virtual.
But I recommend the below steps for this case:
Note: if you have a concern regarding the IP address of DNS servers, you can use a temporary IP address for new VM and when you move the FSMO roles you can switch to old IP of old DC (physical).
Please consider marking this answer "CORRECT" or "Helpful" if you think your question have been answered correctly.
Cheers,
VCIX6-NV|VCP-NV|VCP-DC|
thanks for your answer. please refer my post where i mentioned that i have DC and ADC. Can you reply me with this correction.
Thanks for your inputs. Let me collect more answers and conclude.
Cheers!
as I understand, the DC is physical and ADC is virtual.
So you can follow the below:
Please consider marking this answer "CORRECT" or "Helpful" if you think your question have been answered correctly.
Cheers,
VCIX6-NV|VCP-NV|VCP-DC|
I have given you the best possible option which is already tested with multiple migrations and transformations. Its the safest approach for migrating DC from physical to virtual, with no data loss.
Both the servers(DC & ADC) are physcial windows 2008 R2 servers. We are implementing the Virtualization now.
ok great no problem, so you can create a third server as VM, and move FSMO roles to it.
per example the name of this server is DC02, steps will be:
Please consider marking this answer "CORRECT" or "Helpful" if you think your question have been answered correctly.
Cheers,
VCIX6-NV|VCP-NV|VCP-DC|
what about the ADC which is still running as physical server.Do we need to follow same steps.
Please keep in mind that this is also be a great opportunity to migrate to a newer server OS than Windows Server 2008 as 2008 will reach end of support in 364 days.
Lars
First you migrate ADC to virtual platform, using the approach discussed above and once that is moved make it FSMO owner and perform same operation with DC. once both are on virtual platform, you can decide which FSMO role needs to be hosted on which DC.
And yes I agree with Lars, its an opportunity to upgrade the DC operating system as well.
Just for your reference.
Point want to highlight.
Unless absolutely necessary, avoid any kind of physical to VM conversions. You'll more than likely end up with issues down the line.
Deploy a new 2016 or 2019 VM, promote it, move FSMO roles if required and then demote/decommission the old one. Deploying a 2016 or 2019 DC will make AD/schema changes, so you'll likely have to reboot any Exchange servers afterwards.
If you are moving FSMO roles and use the DC as a time source to get its time from an NTP server, don't forget to make the necessary registry changes.