Skip to main content
NetApp Knowledge Base

What happens when the preferred domain controller for CIFS Server is demoted

Views:
27
Visibility:
Public
Votes:
0
Category:
ontap-9
Specialty:
nas
Last Updated:

Applies to

  • ONTAP 9
  • Windows Server 2016 (Old domain controller)
  • Windows Server 2025 (New domain controller)

Answer

When the preferred domain controller(DC) for the CIFS Server in a NetApp ONTAP environment is demoted, the following occurs:

  1. Authentication Shifts to WS2025:

    • After WS2016 is demoted, all authentication processes will shift to WS2025.
  2. Kerberos Authentication Issues:

    • WS2025 does not support RC4 encryption. If ONTAP has cached Kerberos tickets or keys negotiated with the old WS2016 DC, authentication with the new WS2025 DC may fail.

Additional Information

additionalInformation_text

 

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.