Active Directory How-To pages

Active Directory Auditing Tool

Expanding your domain? Monitor every domain controller and endpoint from a single console
and secure your Active Directory setup.

Get Your Free Trial Free, fully functional 30-day trial
Active Directory Auditing Tool

The Who, Where and When information is very important for an administrator to have complete knowledge of all activities that occur on their Active Directory. This helps them identify any desired / undesired activity happening. ADAudit Plus assists an administrator with this information in the form of reports. In real-time, ensure critical resources in the network like the Domain Controllers are audited, monitored and reported with the entire information on AD objects - Users, Groups, GPO, Computer, OU, DNS, AD Schema and Configuration changes with 200+ detailed event specific GUI reports and email alerts.

Expanding your domain? Monitor every domain controller and endpoint from a single console
and secure your Active Directory setup.

Account Management » Active Directory How-To pages

How to create child domain in Windows Server 2012 R2?

Step 1: Install Active Directory Domain services

  1. Log into your Active Directory Server with administrative credentials.
  2. Open Server Manager → Roles Summary → Add roles and features

    how-to-create-child-domain-in-windows-server-2012-r2

  3. The "Before you begin" screen, which pops up next, is purely for an informational purpose. After you finish reading it, click Next.
  4. Select the installation type. If it is a virtual machine based deployment, choose Remote Desktop Services installation. Else, choose Role-based or Feature-based installation.

    how-to-create-child-domain-in-windows-server-2012-r2-2

  5. Now, select the destination server on which the role will be installed. Make sure the IP address is that of the selected server. Else, close the server manager and retry.

    how-to-create-child-domain-in-windows-server-2012-r2-3

  6. Select the roles you want to install on this server. The basic requirement to promote this server to a domain controller is the Active Directory Domain Services.

    how-to-create-child-domain-in-windows-server-2012-r2-4

  7. The features for this role are ready to be installed. The basic features required for this service are auto-selected by default. Click next.

    how-to-create-child-domain-in-windows-server-2012-r2-5

  8. Confirm your installation selections. It is recommended to select the "Restart the destination server automatically if required" option to make it easier and avoid human intervention. Select "Install" and once installation is complete, close the window.

Step 2: Promote the server to a domain controller

  1. Once the ADDS role is installed in this server, you will see a notification flag next to the Manage menu. Select "Promote this server into a domain controller".
  2. Select “Add a domain to an existing forest” and fill in the parent domain name. Choose a name for your child domain. Click change and enter an enterprise administrator's credentials to initiate the operation.

    how-to-create-child-domain-in-windows-server-2012-r2-6

  3. On the Domain Controller Options page De-select DNS or GC during this installation, Enter a desired DSRM Password, click next.
    Note: Because the server’s IP Address is in a different site defined in Active Directory Sites and Services, the site name has been pre-selected for that site.

    how-to-create-child-domain-in-windows-server-2012-r2-7

  4. Verify the NetBIOS name of your domain.

    how-to-create-child-domain-in-windows-server-2012-r2-8

  5. Select the folder where your database, log files and SYSVOL will be stored. It is recommended to stick to the default settings.

    how-to-create-child-domain-in-windows-server-2012-r2-9

  6. Review your options and click Next. A prerequisites check will be done by Active Directory. Once it is complete, click Install.

    how-to-create-child-domain-in-windows-server-2012-r2-10

  7. Your system will be rebooted automatically for the changes to take effect. Verify the health of the domain controller by running the command dcdiag /v from the command line.

    how-to-create-child-domain-in-windows-server-2012-r2-11

Step 3 - Verifying the installation of AD DS

  1. Logon to the Parent Domain’s First Domain Controller using the administrator account's credentials.
  2. Launch the DNS console and verify the creation of Service Records for the newly established domain controller in the appropriate domain and site.
  3. Launch Active Directory Sites and Services, and verify if the new Domain Controller has populated the correct site.

    how-to-create-child-domain-in-windows-server-2012-r2-12