you backup your DC just to recover the AD objects removed by error but never restore all the DC VM .technically in Veeam you can do that BUT in Microsoft It could create a catastrophic Resume Producing Event.
if you have just one DC controller in your company maybe there is no impact but if you have multiple DC in your forest and you restore all the VM of the secondary DC or Primany DC , you create a problem in the infrastrucure beacause the Update Sequence Number (USN) of replication changes and this parameter is the unique key between the DC. .
it's like you told me that you take a snapshot of your DC to keep a copy of it.never,never,never,never do it , ever.
Here’s what happens:
At some point, you create a snapshot of the Domain Controller.
After taking that snapshot, the DC then going about processing is usual changes to the AD database. Those changes are then replicated to other DCs in the forest. With each change is an increase to the USN, which serves as a sort of up-to-date measurement answering the question of, “Who’s got the most recent version of the database?”.
Sometime later, you restore the DC by using the snapshot you took earlier. This restore also restores the value of the USN to its previous number. After the restoration, the DC then goes about making changes again to its database, incrementing the USN. But, this time the USN isn’t correct. Its the old USN.
Two things can happen at this point.
First, if by the next replication cycle the value of the USN on the restored DC hasn’t reached the value it had before the restore operation, any inbound replication partner will detect that the DC was improperly restored. It will signal to the forest to quarantine the DC. This is done to protect the forest.
Second, if the USN has surpassed that previous value, the DC will replicate only those changes that correspond to the USN values between the value stored in its up-to-dateness vector and the new value. This creates a situation where data on different DCs is now different, even though replication believes it to be the same. Due to the way replication is handled through USN numbers and up-to-dateness vectors, the differences in data cannot be detected, and likely cannot be corrected. In short, you’ve got an exceptionally big problem that you might not be able to fix!