Upgrading
Domain controllers' AuthLite MSI version must be newer or equal to the member machines. Upgrade DCs FIRST. It is OK to continue to run older builds on the member machines, or you can update them to the same version as the DCs.
You can always install a new MSI over the existing one. There is no need to remove the existing one first, unless the installer directs you to do so.
The same installation software is used for both workstations and servers:
- AuthLite_installer_x64.msi for 64-bit platforms
- AuthLite_installer_x86.msi for 32-bit platforms
You can get them from the Downloads page.
Adding new Domain Controllers
There is a specific order of operations you should use for bringing up a new DC for optimal carry-over of AuthLite functionality.
- Bring up new server OS
- Promote new server to Domain Controller, don't reboot yet.
- Install AuthLite on the new server
- Now reboot
Decommissioning Domain Controllers
Before retiring an old DC, do a trial shutdown of it, to make sure everything (including 2FA) runs fine with it off. This is a cheap way to prove there's nothing pointing to it exclusively.