So I have a dual DC/GC environment in which Advertising and Netlogons is failing on DC 1 . I had transferred master roles over to a new virtualized installation for DC-1 so I could virtualize DC-2 without rebuilding Active Directory. The VM will
interact with the network overall(I was able to print, go online, and ping multiple servers and ping the DC back with said servers), and has been set as a DNS on my Firewall. The DC-1 will not allow any logons without DC-2 up and running, but DC-2 will allow
this without DC-1 up.
I had previously had some DNS issues but I ended up resolving those with the help of a walkthrough like this will be(hopefully).
The Dcdiag for DC1 is as follows:
DC2:
I had previously had some DNS issues but I ended up resolving those with the help of a walkthrough like this will be(hopefully).
The Dcdiag for DC1 is as follows:
Directory Server Diagnosis Performing initial setup: Trying to find home server... Home Server = cr-ad-1 * Identified AD Forest. Done gathering initial info. Doing initial required tests Testing server: Default-First-Site-Name\CR-AD-1 Starting test: Connectivity ......................... CR-AD-1 passed test Connectivity Doing primary tests Testing server: Default-First-Site-Name\CR-AD-1 Starting test: Advertising Warning: DsGetDcName returned information for \\CR-DC-2.contoso.example, when we were trying to reach CR-AD-1. SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE. ......................... CR-AD-1 failed test Advertising Starting test: FrsEvent ......................... CR-AD-1 passed test FrsEvent Starting test: DFSREvent There are warning or error events within the last 24 hours after the SYSVOL has been shared. Failing SYSVOL replication problems may cause Group Policy problems. ......................... CR-AD-1 passed test DFSREvent Starting test: SysVolCheck ......................... CR-AD-1 passed test SysVolCheck Starting test: KccEvent ......................... CR-AD-1 passed test KccEvent Starting test: KnowsOfRoleHolders ......................... CR-AD-1 passed test KnowsOfRoleHolders Starting test: MachineAccount ......................... CR-AD-1 passed test MachineAccount Starting test: NCSecDesc ......................... CR-AD-1 passed test NCSecDesc Starting test: NetLogons Unable to connect to the NETLOGON share! (\\CR-AD-1\netlogon) [CR-AD-1] An net use or LsaPolicy operation failed with error 67, The network name cannot be found.. ......................... CR-AD-1 failed test NetLogons Starting test: ObjectsReplicated ......................... CR-AD-1 passed test ObjectsReplicated Starting test: Replications ......................... CR-AD-1 passed test Replications Starting test: RidManager ......................... CR-AD-1 passed test RidManager Starting test: Services ......................... CR-AD-1 passed test Services Starting test: SystemLog A warning event occurred. EventID: 0x00001796 Time Generated: 09/08/2015 11:20:10 Event String: Microsoft Windows Server has detected that NTLM authentication is presently being used between clients and this server. This event occurs once per boot of the server on the first time a client uses NTLM with this server. An error event occurred. EventID: 0x0000271A Time Generated: 09/08/2015 11:55:32 Event String: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout. An error event occurred. EventID: 0x0000271A Time Generated: 09/08/2015 11:55:33 Event String: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout. A warning event occurred. EventID: 0x000727A5 Time Generated: 09/08/2015 11:56:07 Event String: The WinRM service is not listening for WS-Management requests. A warning event occurred. EventID: 0x00000090 Time Generated: 09/08/2015 11:57:59 Event String: The time service has stopped advertising as a good time source. A warning event occurred. EventID: 0x00001796 Time Generated: 09/08/2015 12:00:34 Event String: Microsoft Windows Server has detected that NTLM authentication is presently being used between clients and this server. This event occurs once per boot of the server on the first time a client uses NTLM with this server. ......................... CR-AD-1 failed test SystemLog Starting test: VerifyReferences ......................... CR-AD-1 passed test VerifyReferences Running partition tests on : DomainDnsZones Starting test: CheckSDRefDom ......................... DomainDnsZones passed test CheckSDRefDom Starting test: CrossRefValidation ......................... DomainDnsZones passed test CrossRefValidation Running partition tests on : ForestDnsZones Starting test: CheckSDRefDom ......................... ForestDnsZones passed test CheckSDRefDom Starting test: CrossRefValidation ......................... ForestDnsZones passed test CrossRefValidation Running partition tests on : Schema Starting test: CheckSDRefDom ......................... Schema passed test CheckSDRefDom Starting test: CrossRefValidation ......................... Schema passed test CrossRefValidation Running partition tests on : Configuration Starting test: CheckSDRefDom ......................... Configuration passed test CheckSDRefDom Starting test: CrossRefValidation ......................... Configuration passed test CrossRefValidation Running partition tests on : cristorey Starting test: CheckSDRefDom ......................... cristorey passed test CheckSDRefDom Starting test: CrossRefValidation ......................... cristorey passed test CrossRefValidation Running enterprise tests on : contoso.example Starting test: LocatorCheck ......................... contoso.example passed test LocatorCheck Starting test: Intersite ......................... contoso.example passed test Intersite
DC2:
Directory Server Diagnosis Performing initial setup: Trying to find home server... Home Server = CR-DC-2 * Identified AD Forest. Done gathering initial info. Doing initial required tests Testing server: Default-First-Site-Name\CR-DC-2 Starting test: Connectivity ......................... CR-DC-2 passed test Connectivity Doing primary tests Testing server: Default-First-Site-Name\CR-DC-2 Starting test: Advertising ......................... CR-DC-2 passed test Advertising Starting test: FrsEvent ......................... CR-DC-2 passed test FrsEvent Starting test: DFSREvent ......................... CR-DC-2 passed test DFSREvent Starting test: SysVolCheck ......................... CR-DC-2 passed test SysVolCheck Starting test: KccEvent ......................... CR-DC-2 passed test KccEvent Starting test: KnowsOfRoleHolders ......................... CR-DC-2 passed test KnowsOfRoleHolders Starting test: MachineAccount ......................... CR-DC-2 passed test MachineAccount Starting test: NCSecDesc ......................... CR-DC-2 passed test NCSecDesc Starting test: NetLogons ......................... CR-DC-2 passed test NetLogons Starting test: ObjectsReplicated ......................... CR-DC-2 passed test ObjectsReplicated Starting test: Replications ......................... CR-DC-2 passed test Replications Starting test: RidManager ......................... CR-DC-2 passed test RidManager Starting test: Services ......................... CR-DC-2 passed test Services Starting test: SystemLog A warning event occurred. EventID: 0x00001696 Time Generated: 09/08/2015 11:13:31 Event String: Dynamic registration or deregistration of one or more DNS records failed with the following error: A warning event occurred. EventID: 0x00000081 Time Generated: 09/08/2015 11:13:31 Event String: NtpClient was unable to set a domain peer to use as a time source because of discovery error. NtpClient will try again in 15 minutes and double the reattempt interval thereafter. The error was: The entry is not found. (0x800706E1) A warning event occurred. EventID: 0x00000081 Time Generated: 09/08/2015 11:13:33 Event String: NtpClient was unable to set a domain peer to use as a time source because of discovery error. NtpClient will try again in 15 minutes and double the reattempt interval thereafter. The error was: The entry is not found. (0x800706E1) A warning event occurred. EventID: 0x00000081 Time Generated: 09/08/2015 11:16:10 Event String: NtpClient was unable to set a domain peer to use as a time source because of discovery error. NtpClient will try again in 15 minutes and double the reattempt interval thereafter. The error was: The entry is not found. (0x800706E1) An error event occurred. EventID: 0x0000168E Time Generated: 09/08/2015 11:16:11 Event String: The dynamic registration of the DNS record 'contoso.example. 600 IN A 172.16.0.121' failed on the following DNS server: An error event occurred. EventID: 0x0000168E Time Generated: 09/08/2015 11:16:11 Event String: The dynamic registration of the DNS record 'gc._msdcs.contoso.example. 600 IN A 172.16.0.121' failed on the following DNS server: An error event occurred. EventID: 0x0000168E Time Generated: 09/08/2015 11:16:11 Event String: The dynamic registration of the DNS record 'ForestDnsZones.contoso.example. 600 IN A 172.16.0.121' failed on the following DNS server: An error event occurred. EventID: 0x0000168E Time Generated: 09/08/2015 11:16:11 Event String: The dynamic registration of the DNS record 'DomainDnsZones.contoso.example. 600 IN A 172.16.0.121' failed on the following DNS server: A warning event occurred. EventID: 0x00000081 Time Generated: 09/08/2015 11:16:11 Event String: NtpClient was unable to set a domain peer to use as a time source because of discovery error. NtpClient will try again in 15 minutes and double the reattempt interval thereafter. The error was: The entry is not found. (0x800706E1) An error event occurred. EventID: 0x00000457 Time Generated: 09/08/2015 11:19:38 Event String: Driver Brother PT-2730 required for printer Brother PT-2730 is unknown. Contact the administrator to install the driver before you log in again. An error event occurred. EventID: 0x00000457 Time Generated: 09/08/2015 11:19:39 Event String: Driver Foxit Reader PDF Printer Driver required for printer Foxit Reader PDF Printer is unknown. Contact the administrator to install the driver before you log in again. An error event occurred. EventID: 0x00000457 Time Generated: 09/08/2015 11:19:39 Event String: Driver Microsoft XPS Document Writer required for printer Microsoft XPS Document Writer is unknown. Contact the administrator to install the driver before you log in again. An error event occurred. EventID: 0x00000457 Time Generated: 09/08/2015 11:52:25 Event String: Driver Brother PT-2730 required for printer Brother PT-2730 is unknown. Contact the administrator to install the driver before you log in again. An error event occurred. EventID: 0x00000457 Time Generated: 09/08/2015 11:52:27 Event String: Driver Foxit Reader PDF Printer Driver required for printer Foxit Reader PDF Printer is unknown. Contact the administrator to install the driver before you log in again. An error event occurred. EventID: 0x00000457 Time Generated: 09/08/2015 11:52:27 Event String: Driver Microsoft XPS Document Writer required for printer Microsoft XPS Document Writer is unknown. Contact the administrator to install the driver before you log in again. ......................... CR-DC-2 failed test SystemLog Starting test: VerifyReferences ......................... CR-DC-2 passed test VerifyReferences Running partition tests on : ForestDnsZones Starting test: CheckSDRefDom ......................... ForestDnsZones passed test CheckSDRefDom Starting test: CrossRefValidation ......................... ForestDnsZones passed test CrossRefValidation Running partition tests on : DomainDnsZones Starting test: CheckSDRefDom ......................... DomainDnsZones passed test CheckSDRefDom Starting test: CrossRefValidation ......................... DomainDnsZones passed test CrossRefValidation Running partition tests on : Schema Starting test: CheckSDRefDom ......................... Schema passed test CheckSDRefDom Starting test: CrossRefValidation ......................... Schema passed test CrossRefValidation Running partition tests on : Configuration Starting test: CheckSDRefDom ......................... Configuration passed test CheckSDRefDom Starting test: CrossRefValidation ......................... Configuration passed test CrossRefValidation Running partition tests on : cristorey Starting test: CheckSDRefDom ......................... cristorey passed test CheckSDRefDom Starting test: CrossRefValidation ......................... cristorey passed test CrossRefValidation Running enterprise tests on : contoso.example Starting test: LocatorCheck Warning: DcGetDcName(PDC_REQUIRED) call failed, error 1355 A Primary Domain Controller could not be located. The server holding the PDC role is down. ......................... contoso.example failed test LocatorCheck Starting test: Intersite ......................... contoso.example passed test IntersiteAny ideas?