10 ready-to-implement PowerShell scripts to make AD management easy!

Azure AD Management

Adding a Windows Server 2012 R2 Domain Controller to a New Forest 

A Windows 2012 R2 Domain Controller is a server that manages user accounts, passwords, and network resources within a domain. It is the cornerstone of a Windows network and provides centralized authentication, authorization, and policy enforcement for clients on the network. Adding a new domain controller to a forest is a critical task that requires careful planning and execution to ensure that the new server is properly configured and integrated into the existing network infrastructure.

Before starting the installation process, it is important to gather the necessary information and prepare the server. This includes verifying hardware requirements, updating the server operating system, and installing the necessary software components such as the Active Directory Domain Services (AD DS) role.

Step 1: Install Active Directory Domain Services (AD DS) Role 

  • Open the Server Manager and click on “Add Roles and Features”
  • On the “Before you begin” page, click on “Next”
  • Select “Role-based or feature-based installation” and click on “Next”
  • Select the server you want to install the AD DS role on and click on “Next”
  • Select the “Active Directory Domain Services” role and click on “Next”
  • On the “Features” page, select the necessary features and click on “Next”
  • On the “Active Directory Domain Services” page, click on “Next”
  • On the “Confirmation” page, review the installation selections and click on “Install”
  • After the installation is complete, click on “Promote this server to a domain controller”

Step 2: Create a New Forest 

  • On the “Deployment Configuration” page, select “Create a new forest” and enter the Root domain name (e.g. example.com)
  • On the “Domain Controller Options” page, enter the DSRM password and select any additional options as necessary
  • On the “DNS Options” page, select “Yes, I want to configure…” and enter the necessary information
  • On the “NetBIOS Domain Name” page, enter the desired NetBIOS name (e.g. EXAMPLE)
  • On the “Paths” page, review the default paths and modify as necessary
  • On the “Confirm Installation Options” page, review the selections and click on “Next”
  • On the “Prerequisites Check” page, review the results and resolve any issues before proceeding
  • On the “Summary” page, review the selections and click on “Install”
  • After the installation is complete, restart the server and log in as the newly created administrator account

Step 3: Verify AD DS Configuration 

  • Open the Server Manager and click on “Tools”
  • Select “Active Directory Users and Computers”
  • Verify that the new forest and domain have been created and the necessary objects (e.g. users, groups, computers) have been created
  • Step 4: Configure Additional Domain Controllers

Step 4: Configure Additional Domain Controllers 

  • Repeat the steps above on additional servers to create additional domain controllers in the new forest.
  • Verify that the additional domain controllers have replicated the AD DS configuration from the first server.

In conclusion, adding a Windows 2012 R2 Domain Controller to a new forest is a critical task that requires careful planning and execution. By following the steps outlined in this article, you can ensure that the new server is properly configured and integrated into the existing network infrastructure.

Related posts
Azure Active DirectoryAzure AD Management

Azure AD External Identities for B2C scenarios: Overview

Azure Active DirectoryAzure AD Management

How to resend Azure AD invitation to guest user?

Azure Active DirectoryAzure AD Management

Master Azure AD automation with Microsoft Graph PowerShell

Azure Active DirectoryAzure AD Management

Elevate access for Azure subscriptions and group management

×

There are over 8,500 people who are getting towards perfection in Active Directory, IT Management & Cyber security through our insights from Identitude.

Wanna be a part of our bimonthly curation of IAM knowledge?

  • -Select-
  • By clicking 'Become an insider', you agree to processing of personal data according to the Privacy Policy.