I will shortly be replacing 2 Win2000 DCs with 2 2003R2 ones and am just in the process of investigating everything I need to change. One thing I'm not sure about is that there is a CA on the DC that holds the FSMO roles. It has issued certificates to itself and the other DC - both are just DCs nothing else apart from DNS, DHCP etc.
Is this normal and if so what will I need to do to have one of my new DCs perform the same role?
Thanks in advance