Domain Services and Active Directory Roles Migration — Domain Controller Move to New Server
Domain Services and Active Directory Roles Migration transfers the typical functions of a domain controller, including DNS and DHCP, to a new server. This service may be necessary when migrating from an SBS server to a new server, or from an On-Premises solution to Microsoft 365 when you want to keep the Domain Controller in your network but need a new operating system or hardware. SKU: ITPWW390MIGOT. Price: $900. Duration: 3 days. Manager: Roman Sotnik.
What this engagement is
This service helps transfer typical Domain Controller functions, including DNS and DHCP, to a new server. IT Partner responsibilities include Domain Controller preparation and promotion, transfer of Domain Controller roles, transfer of group policy, groups, and users, DNS server transfer, and DHCP server transfer. The plan may include verification of work and demotion of the old DC.
Success criteria
What you receive
How the work unfolds
Kickoff meeting
The new server preparation
Staged transfer of roles and data
Verification of work
Demotion of the old DC
Verification and fixing issues, if any
Prerequisites
Who does what
IT Partner
- Domain Controller preparation and promotion
- Transfer of Domain Controller roles
- Transfer of group policy, groups, and users
- DNS server transfer
- DHCP server transfer
Your team
- Coordinate Client resources and staff schedules
- Provide a dedicated point of contact responsible for working with IT Partner
- Coordinate any outside vendor resources and schedules
- Provide administrative access to the Active Directory domain and servers
- Configure all network equipment, such as load balancers, routers, firewalls, and switches
- Review and approve engagement deliverables in a timely manner
What's not included
Limitations & technical notes
Frequently asked questions
What is included in the Domain Services and Active Directory Roles Migration service?
The Domain Services and Active Directory Roles Migration service includes preparing and promoting a new Domain Controller, transferring Domain Controller roles, transferring group policy, groups, and users, and transferring DNS and DHCP services. The engagement is designed to move the typical functions of an existing domain controller to a new server while preserving the required Active Directory, DNS, DHCP, and GPO functionality.
When would a business need this Active Directory domain controller migration service?
This service is typically needed when replacing an older domain controller, moving away from an SBS server, or keeping an on-premises Domain Controller while moving other services to Microsoft 365. It is also appropriate when the organization needs new server hardware or a newer operating system for its Domain Controller.
How long does the Domain Services and Active Directory Roles Migration take?
The listed duration for this service is 3 days. The actual plan may vary depending on your environment and needs, so any timing details should be confirmed with IT Partner during the kickoff meeting.
How much does the Domain Services and Active Directory Roles Migration service cost?
The listed price for the Domain Services and Active Directory Roles Migration service is $900. The service SKU is ITPWW390MIGOT, and any changes in scope should be confirmed with IT Partner before the engagement starts.
Who manages this Active Directory migration service?
The listed service manager for Domain Services and Active Directory Roles Migration is Roman Sotnik. He is the named manager associated with this service offering.
What are the prerequisites before the migration can start?
Before the engagement starts, the operating system for the new Domain Controller must already be installed, and all devices should be configured to use a DHCP server. These prerequisites matter because the service scope does not include remote Windows OS installation on the server or support for devices with static network settings.
Does this service include installing Windows Server on the new domain controller?
No, remote installation of the Microsoft Windows operating system on the server is not included in this service. This exclusion applies, for example, when using a virtual machine or remote server management technologies such as iLO, so the new server OS should be installed before the migration begins.
Does this service include migration to Microsoft Entra ID?
No, migration to Microsoft Entra ID is not included in the Domain Services and Active Directory Roles Migration service. The service is focused on transferring on-premises Domain Controller functions, including DNS and DHCP, to a new server.
Does this service include migrating email or documents to Microsoft 365?
No, email migration and document transfer to Microsoft 365 are not included in this service. The scope is limited to typical Domain Controller functions such as Active Directory roles, group policy, users and groups, DNS, and DHCP.
What happens during the Active Directory migration engagement?
The engagement typically starts with a kickoff meeting, followed by preparation of the new server, staged transfer of roles and data, verification of work, demotion of the old Domain Controller, and final verification with issue fixing if needed. This staged approach helps confirm that the new Domain Controller can perform the required functions before the old one is turned off.
Will users still be able to log in after the domain controller migration?
A success criterion for this service is that users can log in to their PCs after the migration. IT Partner verifies that the new Domain Controller is available to users and can perform all necessary functions, but environment-specific issues should be reviewed during the engagement.
Will Group Policy settings be preserved during the migration?
Yes, preserving Group Policy settings is part of the stated success criteria for this service. IT Partner’s responsibilities include transferring group policy, groups, and users, so GPO settings are included in the migration scope.
Will DNS be transferred to the new Domain Controller?
Yes, DNS server transfer is included in the service deliverables. This is part of moving the typical Domain Controller functions to the new server.
Will DHCP be transferred to the new server?
Yes, DHCP server transfer is included in the service deliverables. A success criterion is that the DHCP server is working and that its settings are saved after the migration.
What happens to the old Domain Controller after the migration?
The implementation plan may include demotion of the old Domain Controller after the new Domain Controller is verified. A stated success criterion is that the old Domain Controller is demoted and can be turned off.
Is downtime expected during the domain controller migration?
The service description does not specify an exact downtime window. Because Domain Controller, DNS, and DHCP roles affect authentication and network services, timing and business impact should be planned and confirmed with IT Partner during the kickoff meeting.
What responsibilities does IT Partner handle during the migration?
IT Partner handles Domain Controller preparation and promotion, transfer of Domain Controller roles, transfer of group policy, groups, and users, DNS server transfer, and DHCP server transfer. These items define the core technical scope of the migration service.
What responsibilities does the client have during the migration?
The client is responsible for coordinating internal staff schedules, providing a dedicated point of contact, coordinating outside vendors, providing administrative access to Active Directory and servers, configuring network equipment such as routers, firewalls, switches, and load balancers, and reviewing deliverables promptly. These responsibilities are important because network access, vendor coordination, and administrative permissions can affect the migration schedule.
Are devices with static IP or static network settings supported by this service?
No, support of devices with static network settings is not included in this service. The prerequisites state that all devices should be configured to use a DHCP server, so any static-device remediation should be handled separately or discussed with IT Partner before the engagement.
How is completion of the migration verified?
Completion is verified against criteria such as the new Domain Controller being available to users, users being able to log in, GPO settings being saved, DHCP working with settings preserved, and the old Domain Controller being demoted and ready to turn off. The implementation plan also includes verification of work and fixing issues if any are found within the engagement scope.