In the Active Directory infrastructure, on certain occasions, FSMO roles will need to be moved from one domain controller to another. Here, I have listed a few scenarios where it will need to consider FSMO roles transfers:
- Active Directory upgrades: When the infrastructure needs to be upgraded from one Active Directory version to another, the way to do that is to introduce the new domain controllers to the existing infrastructure and then move the FSMO roles. After that, the domain controllers that run older versions can decommission and then increase the forest and domain functional levels to the latest. This will make the migration smooth with minimum identity infrastructure operations impact.
- Active Directory logical and physical topology: When installing the first domain controller in the infrastructure, it will automatically hold all five FSMO roles. But...