{"id":3903,"date":"2015-11-23T19:39:41","date_gmt":"2015-11-23T19:39:41","guid":{"rendered":"http:\/\/blog.cloudthat.com\/?p=3903"},"modified":"2024-06-25T11:13:10","modified_gmt":"2024-06-25T11:13:10","slug":"moving-windows-workstations-under-a-domain-controller","status":"publish","type":"blog","link":"https:\/\/www.cloudthat.com\/resources\/blog\/moving-windows-workstations-under-a-domain-controller","title":{"rendered":"Moving Windows workstations under a Domain Controller"},"content":{"rendered":"<p>A Domain helps in the centralized management of the computers and users in an organization. Domain Controllers are the servers that play\u00a0an important role of managing the workstations and users. Microsoft Active Directory helps in configuring domain controllers on a Windows machine. Active Directory Domain Services(AD DS) provides the feature to promote a windows machine as a Domain Controller. Active Directory Domain Services provide secure, structured, hierarchical data storage for objects in a network which includes users, computers, printers, and services. <strong>Promoting a Windows server as a domain controller:<\/strong> Task 1: Launch a windows server and install AD DS in it. Task 2: Promote the server as the Domain Controller. Task 3: Move the other workstations to the domain. \u00a0 <strong>TASK 1: LAUNCH A WINDOWS SERVER AND INSTALL AD DS<\/strong> Considering Windows 2012 R2 server is provisioned, we now promote the server as a domain controller for handling the workstations under a particular domain, follow the below steps: <strong>Step 1<\/strong>: Navigate to the <b>Server Manager<\/b> feature of Windows server. The Server Manager can be accessed easily by clicking the Windows button on the home screen &amp; choosing <b>Server Manager.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/012.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3905\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/012.png\" alt=\"01\" width=\"1110\" height=\"662\" \/><\/a> <strong>Step 2<\/strong>: In the Server Manager window, click on<b> Manage <\/b>at the top right corner of the window. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/021.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3906\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/021.png\" alt=\"02\" width=\"1261\" height=\"667\" \/><\/a> <strong>Step 3<\/strong>: Right click the Manage option, and choose <b>Add Roles and Features <\/b>option. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/031.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3907\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/031.png\" alt=\"03\" width=\"733\" height=\"189\" \/><\/a> Once the Add Roles and Features Wizard has started up, select <b>Next<\/b>. <strong>Step 4:\u00a0<\/strong>The default settings can be used on the <strong>Before You Begin<\/strong> page. Click Next. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/041.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3908\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/041.png\" alt=\"04\" width=\"798\" height=\"566\" \/><\/a> <strong>Step 5:\u00a0<\/strong>In the <b>Installation Type <\/b>page, select <b>Role-based or feature-based installation <\/b>radio button and click <b>Next.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/051.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3909\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/051.png\" alt=\"05\" width=\"799\" height=\"569\" \/><\/a> <strong>Step 6:\u00a0<\/strong>Under <b>Server Selection <\/b>page, choose the radio button denoting <b>Select a server from the server pool <\/b>and choose the server name from the <b>Server Pool <\/b>list. Click <b>Next.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/06.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3910\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/06.png\" alt=\"06\" width=\"801\" height=\"568\" \/><\/a> <strong>Step 7:\u00a0<\/strong>On the <b>Server Roles<\/b> page, select <b>Active Directory Domain Services<\/b> and click <b>Next.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/107.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3911\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/107.png\" alt=\"07\" width=\"798\" height=\"563\" \/><\/a> <strong>Step 8:\u00a0<\/strong>Windows will prompt for the additional features that will be needed. Choose the <b>Include management tools(if applicable)<\/b> checkbox and click <b>Add Features.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/08.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3912\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/08.png\" alt=\"08\" width=\"430\" height=\"449\" \/><\/a> The next window will prompt with a few additional notes regarding the best practices. Note that the Active Directory Domain Services Role will install the following in a new environment:<\/p>\n<ul>\n<li>DNS Services<\/li>\n<li>DFS Namespaces Services<\/li>\n<li>DFS Replication Services- Replication Services<\/li>\n<li>Group Policy Management<\/li>\n<\/ul>\n<p><strong>Step 9:\u00a0<\/strong>The <b>AD DS <\/b>page will provide the information about the Active Directory setup. Have a glance over the information and click <b>Next.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/010.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3913\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/010.png\" alt=\"010\" width=\"796\" height=\"567\" \/><\/a> On the <b>confirmation page,<\/b> all components that are required to be installed are listed. Check the list box that denotes <b>Restart the destination server automatically if required. <\/b>Click <b>Install <\/b>and the Active \u00a0Directory Domain Services role is installed. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/0111.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3914\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/0111.png\" alt=\"011\" width=\"801\" height=\"567\" \/><\/a> Note that on a new server, a reboot is not required to install the Active Directory Domain Services role. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/013.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3915\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/013.png\" alt=\"013\" width=\"800\" height=\"569\" \/><\/a> On completion of the installation process, the server can be promoted to a domain controller. \u00a0 <strong>TASK 2: PROMOTE THE SERVER AS THE DOMAIN CONTROLLER<\/strong> To promote the server with AD DS as the\u00a0domain controller, the important process is to configure the DNS of the server. <strong>Step 1<\/strong>: In the <b>Control Panel, <\/b>select <b>Network and Internet <\/b>and choose <b>Network and Sharing Center.<\/b> <strong>Step 2<\/strong>: In the <b>\u00a0View your active networks <\/b>column, click on the network connection, either Ethernet or the Wi-Fi connection. In this case, Wireless Network Connection(CloudThat-Airtel). <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/013b.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3916\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/013b.png\" alt=\"013b\" width=\"931\" height=\"491\" \/><\/a> <strong>Step 3<\/strong>: In the <b>Wireless Network Connection Status<\/b> windows, under the <b>Activity <\/b>section, click on <b>Properties.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/013c.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3917\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/013c.png\" alt=\"013c\" width=\"660\" height=\"544\" \/><\/a> <b>Step 4: <\/b>In the <b>Ethernet Properties <\/b>window, choose <b>Internet Protocol Version4 (TCP\/IPv4) <\/b>and choose <b>Properties. <\/b>In the\u00a0<b>Internet Protocol Version4 (TCP\/IPv4) Properties <\/b>window, select <b>Use the following DNS server address: <\/b>and provide the <b>Preferred DNS server: <\/b>as 127.0.0.1 to point to the local server that acts as the Domain controller. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/013e.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3918\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/013e.png\" alt=\"013e\" width=\"740\" height=\"465\" \/><\/a> <strong>Step 5<\/strong>: Click <b>OK <\/b>and close all the windows by saving the changes. After setting up the DNS server configuration, the server is ready to be promoted as the Domain Controller. In the <b>Server Manager<\/b>, click on the Notification on the left corner near the <b>Manage option<\/b>. Click on the <b>Promote this server to a domain controller.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/014.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3919\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/014.png\" alt=\"014\" width=\"552\" height=\"352\" \/><\/a> <strong>Step 6<\/strong>: In the <b>Active Directory Domain Services Configuration Wizard, <\/b>mention the Deployment Configuration. The configuration depends on the following scenarios: If already a domain exists and if we need to promote this server as a part of the same domain, choose the first option as \u201c<b>Add a domain controller to an existing domain<\/b>\u201d. If a forest exists already and this is the new domain under the forest, choose the second option as \u201c<b>Add a new domain to an existing forest<\/b>\u201d. If this server is about to set up the initial part of a domain, add it as a new forest by choosing the third option as \u201c<b>Add a new forest<\/b>\u201d. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/015.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3920\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/015.png\" alt=\"015\" width=\"773\" height=\"566\" \/><\/a> In this case, we have added the domain controller as a new forest. Mention name of the root domain (eg:rootdomai.com) and click <b>Next.<\/b> <b>Step 7: <\/b>In the Domain Controller Options, select the functional level of the new forest and root domain. Forest Functional Level denotes the minimum version of the servers that can be included in the Forest. Domain functional level denotes the minimum version of the servers that can be included under the domain. In this case, since the servers are updated above the Windows Server 2012<b>,<\/b> select both the options as <b>Windows Server 2012 <\/b>\u00a0or <b>Windows Server 2012 R2<\/b>. Also mention the password for the <b>Directory Services Restore Mode <\/b>and click <b>Next.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/5-Tech-Areas-that-are-Changed-Forever-After-AWS-reInvent-2016.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3921\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/5-Tech-Areas-that-are-Changed-Forever-After-AWS-reInvent-2016.png\" alt=\"016\" width=\"775\" height=\"567\" \/><\/a> Click <b>Next <\/b>\u00a0in the <b>DNS Options <\/b>window. <strong>Step 8<\/strong>: In the <b>Additional Options <\/b>window, set the NETBIOS name as the domain name of the domain controller (eg: ROOTDOMAI) and click <b>Next.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/017.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3922\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/017.png\" alt=\"017\" width=\"777\" height=\"568\" \/><\/a> \u00a0 <b>Step 9: <\/b>Keep the remaining attributes as default and click<b> Next <\/b>in the subsequent tabs. Finally, click <b>Install <\/b>and wait till the <b>DNS installation to finish.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/020.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3923\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/020.png\" alt=\"020\" width=\"774\" height=\"565\" \/><\/a> This setup of DNS might require the server to be restarted. Save all the changes and restart the server. The Domain Controller is setup with the domain name (eg: rootdomai.com) \u00a0 <strong>TASK 3: MOVE THE OTHER WORKSTATIONS UNDER THE DOMAIN<\/strong> To add workstations under the domain, provide the IP address of workstation as the DNS address: <b>Step 1: <\/b>RDP into the new workstation with the local Username and password. To connect the workstation with the domain controller, the DNS setting of workstation has to be configured to direct to the domain controller. Select the <b>Network and Sharing Centre <\/b>from the <b>Control Panel. <\/b>\u00a0Choose the Ethernet or the Wireless Connection option as performed in the domain controller Network Configuration. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sysnet1.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3924\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sysnet1.png\" alt=\"sysnet1\" width=\"799\" height=\"592\" \/><\/a> Choose <b>Properties<\/b> and select <b>Internet Protocol Version4 (Ipv4) Properties. <\/b>Use the private Ip address of the domain controller as the<b> Preferred DNS Server <\/b>\u00a0under the <b>\u00a0Use the following DNS server address <\/b>and click <b>OK.<\/b> <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sysnet2.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3925\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sysnet2.png\" alt=\"sysnet2\" width=\"413\" height=\"464\" \/><\/a> <strong>Step 2<\/strong>: Change the Computer Name of the new server to be added under the domain controller. This step helps for easy identification of the server under the domain controller. Select <b>System and Security <\/b>from the <b>Control Panel <\/b>and choose <b>System <\/b>and click <b>Change Settings <\/b>in the <b>Computer name, domain and workgroup settings <\/b>section. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sys2.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3926\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sys2.png\" alt=\"sys2\" width=\"798\" height=\"600\" \/><\/a> <strong>Step 3<\/strong>: In the <b>System Properties <\/b>wizard, under the <strong>Computer Name<\/strong> tab, click on <b>Change <\/b>button. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sys3.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3927\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sys3.png\" alt=\"sys3\" width=\"801\" height=\"604\" \/><\/a> <strong>Step 4<\/strong>: Modify the computer name and Select the <b>Domain <\/b>option and enter the domain name in the text box (eg:rootdomai.com) <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sys4.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3928\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/sys4.png\" alt=\"sys4\" width=\"335\" height=\"396\" \/><\/a> The <strong>Windows Security<\/strong> wizard requires the Username and Password of the Domain Controller Administrator. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/024.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3929\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/024.png\" alt=\"024\" width=\"439\" height=\"380\" \/><\/a> This will welcome to the new domain with a Welcome message. For the changes to take effect, save the changes and restart the system. <b>Step 5: <\/b>RDP into the server with the domain credential by including the domain name with the username (eg: ROOTDOMAI\\Administrator) and provide the password of Domain Controller. <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/RDP1.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3930\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/RDP1.png\" alt=\"RDP1\" width=\"420\" height=\"478\" \/><\/a> Once the workstation is logged in, the <b>System <\/b>settings will display the modified computer name and the domain name (eg: Computer name: Computer, Domain: rootdomai.com). <a href=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/RDP3.png\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-3931\" src=\"https:\/\/content.cloudthat.com\/resources\/wp-content\/uploads\/2022\/11\/RDP3.png\" alt=\"RDP3\" width=\"795\" height=\"600\" \/><\/a> This concludes that the new server is now a part of the domain. The complete walk-through of promoting a Windows server as the domain controller by installing Active Directory Services and moving a Windows server under the domain controller is performed. The process of connecting a Linux machine with the Windows Active Directory is briefed in <a title=\"Integrating Ubuntu workstation with a Windows Active Directory\" href=\"https:\/\/blog.cloudthat.com\/integrating-ubuntu-workstation-with-a-windows-active-directory\/\" target=\"_blank\" rel=\"noopener\">my next blog<\/a>.<\/p>\n<p>This is the method we used for moving Windows workstations under a Windows Active Directory for few of our clients. Kindly visit our consulting site <a title=\"CloudThat Consulting Site\" href=\"https:\/\/cloudthat.com\/consulting\/\" target=\"_blank\" rel=\"noopener\">here<\/a>, to gather more information &amp; guidance for the consulting projects.<\/p>\n<p>&nbsp;<\/p>\n","protected":false},"author":219,"featured_media":0,"parent":0,"comment_status":"open","ping_status":"open","template":"","blog_category":[3607],"user_email":"prarthitm@cloudthat.com","published_by":"324","primary-authors":"","secondary-authors":"","acf":[],"_links":{"self":[{"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/blog\/3903"}],"collection":[{"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/blog"}],"about":[{"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/types\/blog"}],"author":[{"embeddable":true,"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/users\/219"}],"replies":[{"embeddable":true,"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/comments?post=3903"}],"version-history":[{"count":1,"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/blog\/3903\/revisions"}],"predecessor-version":[{"id":43424,"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/blog\/3903\/revisions\/43424"}],"wp:attachment":[{"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/media?parent=3903"}],"wp:term":[{"taxonomy":"blog_category","embeddable":true,"href":"https:\/\/www.cloudthat.com\/resources\/wp-json\/wp\/v2\/blog_category?post=3903"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}