AD使用ntdsutil工具 恢復主域控制器 清理孤立域控制器


需求:

主域控制器出現災難故障,輔助域控制器正常

在輔助域控制器使用ntdsutil工具清理主域控制器並奪取PDC角色

首先清理孤立的域控制器

ntdsutil
ntdsutil: metadata cleanup
metadata cleanup: select operation target
select operation target: connections
server connections: connect to domain 3b.net  #登陸到本地域
server connections:quit
select operation target: list sites        
select operation target: List domains in site
select operation target: select domain 0
select operation target: select server 0
select operation target: quit
metadata cleanup:Remove selected server    #刪除一個域控制器
metadata cleanup:quit
ntdsutil: quit

 

輔助域控制需要奪取五種FMSO成為主域控制器

ntdsutil
ntdsutil: metadata cleanup
metadata cleanup: select operation target
select operation target: connections
server connections: connect to domain 3b.net  #登陸到本地域
server connections:quit
select operation target: list sites        
select operation target: List domains in site
select operation target: select domain 0
select operation target: select server 0
select operation target: quit

##奪取角色
fsmo maintenance:Seize domain naming master 
 
fsmo maintenance:Seize infrastructure master 

fsmo maintenance:Seize PDC 

fsmo maintenance:Seize RID master 

fsmo maintenance:Seize schema master 

fsmo maintenance:quit 
ntdsutil: quit 

  


免責聲明!

本站轉載的文章為個人學習借鑒使用,本站對版權不負任何法律責任。如果侵犯了您的隱私權益,請聯系本站郵箱yoyou2525@163.com刪除。



 
粵ICP備18138465號   © 2018-2025 CODEPRJ.COM