I'm wondering if anyone has a way to replicate Active Directory objects from a Win2K12 R2 domain controller in a production environment to a Win2K12 R2 DC in an isolated test environment. It seems the recommendation is to clone a new DC into the TEST environment prior to every use, but I'm trying to avoid having to clone, change IP/DNS, register DNS, and seize FSMO repeatedly. I would like one DC to live in TEST and be updated from another DC (cloned or live) without causing issues in the PROD environment.
I have tried every configuration that I could think of, including the use of the DCCloneConfig.xml. I thought maybe a DC cloned from Prod to Test would successfully pair with the existing DC in Test. Unfortunately it sat at "Domain Controller cloning...2%..." and then rebooted in Safe Mode (even though I'd set the primary DNS to the other DC in Test). I even tried opening ports b/t a RWDC in TEST and an RODC in PROD. They did not replicate, and this likely isn't a good idea from a security standpoint anyway.
If anyone is aware of any way to update a test DC safely I would really appreciate your input. Thank you.