Correct way to change domain name in Active Directory
If you can't use rendom.exe
because you have an Exchange organization in your environment, you have to create a new Active Directory domain and use a tool like ADMT to migrate users, groups, and computers into the new domain. Some applications do not support migration in this manner - Exchange is one of them. You will have to configure an Exchange organization in the new environment and do a cross-forest mailbox move.
This is not for the feint of heart or the inexperienced.
Related videos on Youtube
Vinícius Ferrão
Updated on September 18, 2022Comments
-
Vinícius Ferrão over 1 year
I'm trying to fix an existing AD infrastructure that was implemented using the external domain name as root domain name in the Active Directory. So it's running on "contoso.com".
I want to put the DCs inside the local network in the private DNS zone named lan.contoso.com but there are two Exchange Servers in the external zone and I'm not sure how to move the DC's and rename the root domain without affecting the Exchange Servers. All AD's are running on Windows 2012 (non R2) Server with 2012 functional server.
I know that RENDOM isn't an option anymore and it's a production environment, I just want to fix mistakes done in the past.
Thanks in advance,
-
Vinícius Ferrão about 10 yearsI used the wrong term, sorry. I've fixed the question. I want to put all the DC's on the internal network.
-
MDMarra about 10 yearsThat detail doesn't change my answer.
-
Vinícius Ferrão about 10 yearsThanks @MDMarra. Can I setup another Exchange Organization without stopping the Exchange service? Both organizations will be authoritative for contoso.com while I move the mailboxes? I've done this is the past but was an legacy sendmail+dovecot server to Exchange.
-
MDMarra about 10 yearsYou set up the new Exchange org on new servers, so you don't have to stop the Exchange services on the old servers. And yes, you can configure mailflow for a single email domain across both Exchange orgs during the migration.
-
Vinícius Ferrão about 10 yearsOne more thing: perhaps I should wait for the next version of ADMT. Since version 3.2 does not appear to support 2012 Server.
-
MDMarra about 10 yearsOr you can lower the functional level to 2008 R2 and stand up a temporary 2008 R2 DC to facilitate the migration. Or you can use a third party tool from a vendor like BinaryTree or Quest.
-
Vinícius Ferrão about 10 yearssorry to bother you again, but should the new AD in the new zone join the existing domain as a subzone of the existing domain, or it should live completely splitted?
-
Vinícius Ferrão about 10 yearsWhen installing the new DC it should be a new child domain in the existing forest? Or it should be created as a new forest?
-
MDMarra about 10 yearsThat depends entirely on what you want to do and should really be it's own question. If you want to get rid of the current domain it doesn't make sense to make a new domain a child to it...
-
Vinícius Ferrão about 10 yearsYep! Thank you. I just want to be sure and listen to your opinion :)