You are on page 1of 1

Typically, when the last domain controller for a domain is demoted, the administ rator selects the This

server is the last domain controller in the domain option in the DCPromo tool, which removes the domain meta-data from Active Directory. This article describes how to remove domain meta-data from Active Directory if t his procedure is not used or if or all domain controllers are taken offline but not demoted first. CAUTION: The administrator must verify that replication has o ccurred since the demotion of the last domain controller before manually removin g the domain meta-data. Using the NTDSUTIL tool improperly can result in partial or complete loss of Active Directory functionality. Back to the top Removing Orphaned Domains from Active Directory 1. Determine the domain controller that holds the Domain Naming Master Flex ible Single Master Operations (FSMO) role. To identify the server holding this r ole: a. Start the Active Directory Domains and Trusts Microsoft Management Conso le (MMC) snap-in from the Administrative Tools menu. b. Right-click the root node in the left pane titled Active Directory Domai ns and Trusts, and then click Operations Master. c. The domain controller that currently holds this role is identified in th e Current Operations Master frame.NOTE: If this changed recently, not all comput er may have received this change yet due to replication. For more information about FSMO roles, click the following article number to vie w the article in the Microsoft Knowledge Base: 197132 Windows 2000 Active Directory FSMO Roles Verify that all servers for the domain have been demoted. Click Start, point to Programs, point to Accessories, and then click Com mand Prompt. At the command prompt, type: ntdsutil. Type: metadata cleanup, and then press ENTER. Type: connections, and then press ENTER. This menu is used to connect to the specific server on which the changes will occur. If the currently logged-on user is not a member of the Enterprise Admins group, alternate credentials can be supplied by specifying the credentials to use before making the connection. T o do so, type: set creds domainname username password , and then press ENTER. Fo r a null password, type: null for the password parameter. Type: connect to server servername (where servername is the name of the domain controller holding the Domain Naming Master FSMO Role), and then press EN TER. You should receive confirmation that the connection is successfully establi shed. If an error occurs, verify that the domain controller being used in the co nnection is available and that the credentials you supplied have administrative permissions on the server. Type: quit, and then press ENTER. The Metadata Cleanup menu is displayed . Type: select operation target, and then press ENTER. Type: list domains, and then press ENTER. A list of domains in the fores t is displayed, each with an associated number. Type: select domain number, and then press ENTER, where number is the nu mber associated with the domain to be removed. Type: quit, and then press ENTER. The Metadata Cleanup menu is displayed . Type: remove selected domain, and then press ENTER. You should receive c onfirmation that the removal was successful. If an error occurs, please refer to the Microsoft Knowledge Base for articles on specific error messages. Type: quit at each menu to quit the NTDSUTIL tool. You should receive co nfirmation that the connection disconnected successfully.

You might also like