29.3 C
Dubai
Friday, April 26, 2024

Decommissioning Child Domain gracefully – Operation Failed

If the domain is a Child domain and if you wish to delete Child domain entries / Trust from the root forest.

We need to Choose “Delete the domain because this server is the last domain controller in the domain”

clip_image001[5]

image

We received an error while decommissioning the child domain

The Operation Failed because :

Active Directory Domain Services Could not be removed on this Active Directory Domain Controller because this is the last AD DC in the domain, and the domain has a child directory partition

DC=DomainDnsZones,DC=domain,DC=com.

image

Use ntdsutil to Delete the Child domain

Open the CMD prompt
NTDSUtil
Domain Management (In 2008 it changes to “partition management”)
Connections => connect to server DC01
Quit
List <— to see zones
Delete NC DC=DomainDNSZones,DC=Domain DC=Com (This Deletes the CrossRef Object)
Force replication, validate that the partition is gone.
Restart DNS, the service will re-add the partition.

image

Now Demote the Last domain in the Child domain. it should allow you to demote without any issues.

Satheshwaran Manoharan
Satheshwaran Manoharanhttps://www.azure365pro.com
Award-winning Technology Leader with a wealth of experience running large teams and diversified industry exposure in cloud computing. From shipping lines to rolling stocks.In-depth expertise in driving cloud adoption strategies and modernizing systems to cloud native. Specialized in Microsoft Cloud, DevOps, and Microsoft 365 Stack and conducted numerous successful projects worldwide. Also, Acting as a Technical Advisor for various start-ups.

Related Articles

2 COMMENTS

LEAVE A REPLY

Please enter your comment!
Please enter your name here

× How can I help you?