Showing posts with label Bare Metal Recovery. Show all posts
Showing posts with label Bare Metal Recovery. Show all posts

April 10, 2025

Restoring Windows Server from Backup – Bare Metal and Active Directory Recovery

Windows Server Backup Guide

Introduction

If your server crashes or Active Directory becomes corrupt, restoring from backup ensures minimal downtime. This guide explains the steps for Bare Metal Recovery and System State recovery.

📂 If you haven't created a backup yet, start with our Windows Server Backup Guide

Bare Metal Recovery (BMR) Steps

  1. Prepare a Windows bootable USB drive and insert it.
  2. Follow the on-screen instructions to configure language, time, and keyboard, then click Next.
  3. Select Repair your computer.
  4. Select Troubleshoot.
  5. Select Advanced options.
  6. Select System Image Recovery.
  7. Select your backup path (for demo purposes, we select a local drive), then click Next.
  8. Choose Additional restore options and click Next.
  9. Click Finish.
  10. Confirm that all disks will be formatted and replaced by clicking Yes.
  11. The restoring process begins.
  12. After the restoration process is complete, the system will automatically restart.
  13. After restart, log in using a Domain Administrator account.
  14. The restoration process completes, restoring the entire server, including the OS, system state, installed applications, and data.

System State Backup Restore (Active Directory)

  1. Launch Server Manager, navigate to Tools, select Windows Server Backup, and click Recover.
  2. Select your backup location and click Next.
  3. Choose the backup date and click Next.
  4. Select System State as the recovery type, then click Next.
  5. Select the location for system state recovery and click Next.
  6. Log into Active Directory Repair Mode and access it via DSRM authentication when prompted.

Note: Before restarting, ensure Active Directory Repair Mode is enabled and DSRM authentication is set up. If not, refer to the guide on resetting the DSRM password.

DSRM Authentication Password Reset

Before you reset the DSRM password, note that DSRM refers to the NTDS password set during domain server creation.

Reset Password using PowerShell Command Prompt

Open PowerShell as administrator and execute the following commands:

 ntdsutil  
 set dsrm password  
 reset password on server null  
  • Enter your password and confirm it.
  • Password has been set successfully.
  • Type q (quit) twice to exit.
  • DSRM password has been successfully reset.

Enable Active Directory Repair Mode

  • Open the Run command: msconfig
  • Navigate to Boot tab
  • Check Safe boot and Active Directory Repair

Restart your system and press F8.

Select Directory Services Repair Mode

Enter the DSRM administrator authentication password set above.

Windows Server Backup and Recovery

  • Launch Server Manager
  • Navigate to ToolsWindows Server Backup
  • Click on Recover
  • Select the backup date, time, and location.
  • Choose System State and click Next.
  • Select Original Location and confirm.
  • Click Recover and then Yes. Recovery progress starts.

Disable Active Directory Repair Mode

  • Open Run: msconfig
  • Go to the Boot tab and uncheck Safe boot

Final Steps

  • Log in using your domain name and administrator account.
  • Confirm that system recovery has been completed successfully.
  • Check if Active Directory Users, OUs, Groups, etc., have been restored.

Troubleshooting

During the in-place upgrade of Windows Server, two issues may encounter:

FSMO (Flexible Single Master Operations)

An FSMO role error occurred, where the FSMO role was incorrectly identified. To resolve:

  • Go to Active Directory Users and Computers
  • Navigate to Domain Controller
  • Right-click on the incorrect FSMO role and delete it.

Run the following command to check FSMO roles:

netdom query fsmo














Hyper-V Issue

After upgrading, virtual machines lost internet connectivity. The solution is to reinstall the Hyper-V role.

Windows Server Backup – Step-by-Step Guide to Safeguard Your System

Windows Server Backup Guide

Introduction

Data loss can be catastrophic for any organization, making a reliable backup and restore strategy essential for maintaining business continuity. Windows Server provides built-in tools to help administrators safeguard critical data.

In this guide, we’ll walk you through setting up Windows Server Backup, creating different types of backups, and best practices to ensure your system is secure and resilient.

⚠️ Need help with restoring data? Check out our restore guide here: How to Restore Windows Server from Backup?

Pre-requisites

  • Microsoft Server 2012/2016/2019/2022
  • Administrator Role via Server Manager
  • Resilient Storage (Local/Remote)

Backup Guide Steps

This backup guide is divided into four main steps:

  • Windows Server Backup
  • Restore Bare Metal Recovery Backup
  • Restore System State Backup
  • Troubleshooting

Windows Server Backup

Follow these steps to configure Windows Server Backup:

  1. Open Server Manager, select Tools, and then select Windows Server Backup.
  2. Select Local Backup.
  3. On the Action menu, select Backup once.
  4. In the Backup Once Wizard, on the Backup options page, select Different options, and then select Next.
  5. On the Select Backup Configuration page, choose one of the following:
    • Full Server: Backs up the entire system.
    • Custom: Select Bare metal recovery for a full system restore, including critical items.
    • System State: If you want to back up Active Directory.
  6. Click on Advanced Settings.
  7. Click on VSS settings and select VSS Full Backup.
  • What is Bare Metal Recovery

  • Bare Metal Recovery (BMR) is a feature in Windows Server Backup that allows for a complete server restoration in case of catastrophic failure.

    This process restores the entire system, including:

    • Operating System
    • System State
    • Installed Applications
    • Data
  • What is System State Backup

  • A System State backup includes essential components:

    • Active Directory database (on domain controllers)
    • System Registry
    • COM+ Class Registration database
    • Boot files
    • Performance Counters configuration
    • Cluster service information (on clustered servers)
    • Certificate Services database (if installed)
    • IIS Metabase (if installed)
    • System files protected by Windows File Protection

    A System State backup is often a prerequisite for Bare Metal Recovery (BMR) or Active Directory recovery.

Backup Destination

  1. On the Specify destination type page, select Local drives or Remote shared folder, and click Next.
  2. On the Select Backup Destination page, choose a backup location.
  3. On the confirmation screen, click Backup.
  4. Once completed, close Windows Server Backup.

🔄 Ready to recover your server? Head to Part 2: Restore Guide for Windows Server Backup