Using PowerShell to rollback AD DS Domain Functional Level in Windows Server 2008 R2 and 2012

So you have recently raised you Active Directory Domain Services Domain Functional Level from Server 2008 to either Sever 2008 R2 or Server 2012.  Now you have realized you need to go back to either Server 2008 or Server 2008 R2, in previous operating systems this was not possible.  In Windows Server 2008 R2 and Windows Server 2012 we now have that tools to be able to revert back to a previous level.  There are some limitations, the lowest level that can be rolled back to is Windows Server 2008. The other limitation is that you have not enable any of the features that are required by the current level.  To accomplish this task you must use PowerShell as there is no GUI to rollback the functional level.

The first step is to import the Active Directory Manifest into PowerShell, if needed.  Launch PowerShell and type Import-Module Activedirectory.

Use the Get-ADDomain to determine your current mode.

002-Get-ADDomain-PowerShell-rollback-AD-DS-Domain

The next CMDlet we are going to use is Set-ADForestMode.  To get the syntax for using this CMDlet use the built in help system by typing Get-Help Set-ADDomainMode.  To get more information  about the CMDlet add -detailed, -full or -examples.

003-Get-Help-ADDomainMode-PowerShell-rollback-AD-DS-Domain

Based on the syntax of the help file we will now rollback the current forest functional level from Windows Server 2012 to Windows Server 2008 R2, type the following CMDlet.

Set-ADDomainMode -Identity (Get-ADDomain).name -DomaiMode  Windows2008R2Domain press “Y” when the confirmation is asked.

004-ADDomainMode-PowerShell-rollback-AD-DS-Domain

Identity – I used the Get-ADDomain CMDlet to retrieve the forest information I was connected to and the method to use the name parameter.  You could of as easily typed in the FQDN of the forest.

DomainMode – The options here are only Windows2008Domain or Windows2008R2Domain depending how far you desire to rollback

To verify the forest functional has changed either use the GUI or PowerShell .  Type Get-ADDomain to verity.

005-ADDomainMode-PowerShell-rollback-AD-DS-Domain

The Domain has successfully rolled back.
Until next time, RIDE SAFE!!

So if you are a techie, geek or just like living on the leading edge like me, then October 18 will be a good day to look forward to. Until next time, RIDE SAFE!
Rick Trader
Windows Server Instructor – Interface Technical Training
Phoenix, AZ

Posted in PowerShell, Windows Server, Windows Server 2012 | Posted in , , , , | Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

You may use these HTML tags and attributes: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code class="" title="" data-url=""> <del datetime=""> <em> <i> <q cite=""> <strike> <strong> <pre class="" title="" data-url=""> <span class="" title="" data-url="">