That would work. But it would also mean you have a service interruption to manage.
The smooth way would be:
- Backup ADFS because it is always good to back up :)
- Add the ADFS role to another server
- Join this server to the current ADFS farm
(at this point you can test it works by simply creating an entry in your HOSTS file) - Update the DNS/Firewall to reflect that the new will take over
- Transfer the primary role from the first one to the second one.
- Uninstall ADFS from the first one.
No service interruption. You can do that in the middle of the day :)
Note: Posts are provided “AS IS” without warranty of any kind, either expressed or implied, including but not limited to the implied warranties of merchantability and/or fitness for a particular purpose.