Windows Active Directory: How to move the FSMO Roles via the GUI

All 5 FSMO roles of Active Directory can be moved via script, but lets see how it works via GUI (MMC):

RID Master, Infrastructure Master, and PDC Emulator

  1. Login to the target DC via RDP
  2. Open "AD Users and Computers"
  3. Right-click the Domain and choose "Operations Masters..."
  4. Choose the appropriate tab
  5. Click "Change..."
  6. Click "Yes" to confirm

Schema Master

Make sure you are member of the "Schema Admins" group. Being in the "Enterprise Admins" group is not enough!

  1. Login to the source DC via RDP
  2. Open "AD Schema"
  3. Right-click "Active Directory Schema" and choose "Change Active Directory Domain Controller"
  4. Choose the target DC
  5. Right-click "Active Directory Schema" and choose "Operations Masters..."
  6. Click "Change..."
  7. Click "Yes" to confirm

Domain Naming Master

  1. Login to target DC via RDP
  2. Open "AD Domains and Trusts"
  3. Right-click "Active Directory Domains and Trusts" and choose "Change Active Directory Domain Controller"
  4. Choose the target DC (might already be chosen)
  5. Right-click "Active Directory Domains and Trusts" and choose "Operations Masters..."
  6. Click "Change..."
  7. Click "Yes" to confirm

Leave a Reply

Your email address will not be published. Required fields are marked *