Renaming a Domain Controller

Posted on .

You can use netdom to rename any computer, including a domain controller:

However this will leave the attribute msDS-AdditionalDnsHostName with the old name. Check this in ADUC attribute editor (or ADSIEDIT.msc):

Remove the old name and restart.

PS. This fixes not being able to re-use the old name on another computer. You get the error The operation failed because SPN value provided for addition/modification is not unique forest-wide, and you will see the old domain name when you run setspn -l <oldname>. Performing the above attribute changes fixes this.

1 thought on “Renaming a Domain Controller

  1. Vincent Timmermans

    Thanks, this saved me.
    Although, I found that on other domain controllers, where I never renamed a DC, the msDS-AdditionalDNSName attribute does not even contain 1 entry. It is simply “not set” at all. So I tried just removing both entries and that worked as well to solve my “SPN value not unique problem.”

    Reply

Leave a Reply

You may leave the Name and Email fields blank to post anonymously.