I have a Server 2016 functional level AD with 2 DCs. Couple months ago I installed the second DC and only recently realized it lacks the NETLOGON and SYSVOL shares. Last night I demoted the DC and removed the ADDS role. Then re-added the
ADDS role and promoted the server to a DC. This was all done with no 3rd party firewall and the windows firewall off, and being logged on as a Domain Admin. DCdiag throws errors about replication not working. I have been unable to get to
the root cause of those errors. What do I need to do to make this DC healthy? Below are some interesting parts of dcdiag /v. Thanks.
Doing primary tests
Testing server: Default-First-Site-Name\DC2
Starting test: Advertising
Warning: DsGetDcName returned information for \\DC1.1roof.club, when we were trying to reach DC2.
SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE.
......................... DC2 failed test Advertising
Test omitted by user request: CheckSecurityError
Test omitted by user request: CutoffServers
Starting test: FrsEvent
* The File Replication Service Event log test
Skip the test because the server is running DFSR.
......................... DC2 passed test FrsEvent
Starting test: DFSREvent
The DFS Replication Event Log.
There are warning or error events within the last 24 hours after the SYSVOL has been shared. Failing SYSVOL
replication problems may cause Group Policy problems.
A warning event occurred. EventID: 0x80001780
Time Generated: 11/28/2018 20:36:24
Event String:
The DFS Replication service failed to update configuration in Active Directory Domain Services. The service will retry this operation periodically.
Additional Information:
Object Category: msDFSR-LocalSettings
Object DN: CN=DFSR-LocalSettings,CN=DC2,OU=Domain Controllers,DC=1roof,DC=club
Error: 2 (The system cannot find the file specified.)
Domain Controller: DC1.1roof.club
Polling Cycle: 60
A warning event occurred. EventID: 0x80001A94
Time Generated: 11/28/2018 20:36:24
Event String:
The DFS Replication service has detected that no connections are configured for replication group Domain System Volume. No data is being replicated for this replication group.
Additional Information:
Replication Group ID: 7FD194A9-775D-449E-8B3B-A13EDD301AFC
Member ID: 5B54B1BE-2BDE-4856-8383-57F93F2BB38A
A warning event occurred. EventID: 0x800008A4
Time Generated: 11/28/2018 20:36:26
Event String:
The DFS Replication service has detected an unexpected shutdown on volume C:. This can occur if the service terminated abnormally (due to a power loss, for example) or an error occurred on the volume. The service has
automatically initiated a recovery process. The service will rebuild the database if it determines it cannot reliably recover. No user action is required.
Additional Information:
Volume: C:
GUID: CD07C860-FCA5-4A6A-99E7-CDC872CE475C
A warning event occurred. EventID: 0x80001906
Time Generated: 11/28/2018 20:36:26
Event String:
The DFS Replication service detected that the local path of a replicated folder (domain) in its database does not match the newly configured local path (C:\Windows\SYSVOL\domain) of the replicated folder. The service
will replicate the new path, and the old replicated folder path in the database will no longer be tracked as a replicated folder. This event is expected if the local path of the replicated folder has been changed.
Additional Information:
Replicated Folder Name: SYSVOL Share
Replicated Folder ID: 24487360-94DD-469F-BCBD-1F083B58CDC8
Replication Group Name: Domain System Volume
Replication Group ID: 7FD194A9-775D-449E-8B3B-A13EDD301AFC
Member ID: 5B54B1BE-2BDE-4856-8383-57F93F2BB38A
A warning event occurred. EventID: 0x80001206
Time Generated: 11/28/2018 20:36:26
Event String:
The DFS Replication service initialized SYSVOL at local path C:\Windows\SYSVOL\domain and is waiting to perform initial replication. The replicated folder will remain in the initial synchronization state until it has
replicated with its partner DC1.1roof.club. If the server was in the process of being promoted to a domain controller, the domain controller will not advertize and function as a domain controller until this issue is resolved. This can occur if the specified
partner is also in the initial synchronization state, or if sharing violations are encountered on this server or the synchronization partner. If this event occurred during the migration of SYSVOL from File Replication service (FRS) to DFS Replication, changes
will not replicate out until this issue is resolved. This can cause the SYSVOL folder on this server to become out of sync with other domain controllers.
Additional Information:
Replicated Folder Name: SYSVOL Share
Replicated Folder ID: 24487360-94DD-469F-BCBD-1F083B58CDC8
Replication Group Name: Domain System Volume
Replication Group ID: 7FD194A9-775D-449E-8B3B-A13EDD301AFC
Member ID: 5B54B1BE-2BDE-4856-8383-57F93F2BB38A
Read-Only: 0
A warning event occurred. EventID: 0x80001780
Time Generated: 11/28/2018 20:41:24
Event String:
The DFS Replication service failed to update configuration in Active Directory Domain Services. The service will retry this operation periodically.
Additional Information:
Object Category: msDFSR-LocalSettings
Object DN: CN=DFSR-LocalSettings,CN=DC2,OU=Domain Controllers,DC=1roof,DC=club
Error: 2 (The system cannot find the file specified.)
Domain Controller: DC1.1roof.club
Polling Cycle: 60
An error event occurred. EventID: 0xC00004B2
Time Generated: 11/28/2018 22:00:04
Event String:
The DFS Replication service failed to contact domain controller to access configuration information. Replication is stopped. The service will try again during the next configuration polling cycle, which will occur
in 60 minutes. This event can be caused by TCP/IP connectivity, firewall, Active Directory Domain Services, or DNS issues.
Additional Information:
Error: 160 (One or more arguments are not correct.)
A warning event occurred. EventID: 0x80001780
Time Generated: 11/28/2018 22:44:32
Event String:
The DFS Replication service failed to update configuration in Active Directory Domain Services. The service will retry this operation periodically.
Additional Information:
Object Category: msDFSR-LocalSettings
Object DN: CN=DFSR-LocalSettings,CN=DC2,OU=Domain Controllers,DC=1roof,DC=club
Error: 2 (The system cannot find the file specified.)
Domain Controller: DC1.1roof.club
Polling Cycle: 60
A warning event occurred. EventID: 0x80001A94
Time Generated: 11/28/2018 22:44:32
Event String:
The DFS Replication service has detected that no connections are configured for replication group Domain System Volume. No data is being replicated for this replication group.
Additional Information:
Replication Group ID: 7FD194A9-775D-449E-8B3B-A13EDD301AFC
Member ID: 350D2A4F-F654-4797-8578-39E348E1A9F2
A warning event occurred. EventID: 0x80001906
Time Generated: 11/28/2018 22:44:33
Event String:
The DFS Replication service detected that the local path of a replicated folder (domain) in its database does not match the newly configured local path (C:\Windows\SYSVOL\domain) of the replicated folder. The service
will replicate the new path, and the old replicated folder path in the database will no longer be tracked as a replicated folder. This event is expected if the local path of the replicated folder has been changed.
Additional Information:
Replicated Folder Name: SYSVOL Share
Replicated Folder ID: 24487360-94DD-469F-BCBD-1F083B58CDC8
Replication Group Name: Domain System Volume
Replication Group ID: 7FD194A9-775D-449E-8B3B-A13EDD301AFC
Member ID: 350D2A4F-F654-4797-8578-39E348E1A9F2
A warning event occurred. EventID: 0x80001206
Time Generated: 11/28/2018 22:44:33
Event String:
The DFS Replication service initialized SYSVOL at local path C:\Windows\SYSVOL\domain and is waiting to perform initial replication. The replicated folder will remain in the initial synchronization state until it has
replicated with its partner DC1.1roof.club. If the server was in the process of being promoted to a domain controller, the domain controller will not advertize and function as a domain controller until this issue is resolved. This can occur if the specified
partner is also in the initial synchronization state, or if sharing violations are encountered on this server or the synchronization partner. If this event occurred during the migration of SYSVOL from File Replication service (FRS) to DFS Replication, changes
will not replicate out until this issue is resolved. This can cause the SYSVOL folder on this server to become out of sync with other domain controllers.
Additional Information:
Replicated Folder Name: SYSVOL Share
Replicated Folder ID: 24487360-94DD-469F-BCBD-1F083B58CDC8
Replication Group Name: Domain System Volume
Replication Group ID: 7FD194A9-775D-449E-8B3B-A13EDD301AFC
Member ID: 350D2A4F-F654-4797-8578-39E348E1A9F2
Read-Only: 0
......................... DC2 failed test DFSREvent
Starting test: SysVolCheck
* The File Replication Service SYSVOL ready test
The registry lookup failed to determine the state of the SYSVOL. The error returned was 0x0
"The operation completed successfully.". Check the FRS event log to see if the SYSVOL has successfully been
shared.
......................... DC2 passed test SysVolCheck