Specify additional recovery option settings for the Demote and repromote domain controller option.
This recovery method is available only when using the Recover AD forest in-place recovery type. It rebuilds a domain controller by demoting it from Active Directory and then promoting it back into the recovered domain. Use this method when the original server remains available and trusted, but the domain controller must be rebuilt from a healthy copy of Active Directory.
Go to the runbook
-
From the Command Center navigation pane, go to Protect > Active Directory.
The Overview page appears.
-
On the Forests tab, click the forest.
The forest page appears.
-
On the Runbooks tab, click the runbook.
The runbook page appears.
Start the configure recovery options wizard
-
On the Runbook settings tab, in the Demote and repromote domain controller tile, select the domain controllers to configure.
-
Click Configure recovery options.
The Demote and repromote domain controller configuration dialog box appears.
-
For Administrative account, select a credential that contains the new password to be set on the local Administrator account during the demotion process.
Only the password stored in the credential is used. The user account is ignored.
-
For New DSRM password for the domain controller, select a credential that contains the new Directory Services Restore Mode (DSRM) password to assign to the domain controller.
Only the password stored in the credential is used. The user account is ignored.
-
Click Submit.