Quantcast
Channel: Directory Services forum
Viewing all articles
Browse latest Browse all 31638

RODC Authentication issue

$
0
0

Hi ,

      I have three RWDC , two of them are located in HQ and one is in our DR site.These three servers as PSLGIDC-01(10.4.10.10), PSLGIDC-02( 10.4.10.11) & DRLGIDC-03 ( 10.4.110.10). After that i created one RODC in our branch office with named BRSLGIERODC2500( 192.168.82.251 ).All of the RWDC are windows server 2008 r2 also all are on virtual environment.  RODC server is windows server 2012 standard I had created site and subnet for RODC as normal RODC installation .Also configure RODC as standard procedure with DNS and GC .Also primary DNS of the RODC server is 192.168.82.251. The Client machine's primary DNS also the RODC ip ie ( 192.168.82.251  ). dcdiag and ipconfig of the RODC server and client pc's as follows.My issue is that the Client pc is not Authenticating from RODC and it is directed to RWDC .Please advice ...

RODC SERVER IPCONFIG AND DCDIAG

C:\>ipconfig /all

Windows IP Configuration

   Host Name . . . . . . . . . . . . : BRSLGIERODC2500
   Primary Dns Suffix  . . . . . . . : lulumea.local
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : lulumea.local

Ethernet adapter Public:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft Network Adapter Multiplexor Dri
ver
   Physical Address. . . . . . . . . : 68-B5-99-77-54-1C
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 192.168.82.251(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.168.82.200
   DNS Servers . . . . . . . . . . . : 192.168.82.251
                                       10.4.10.10
                                       10.4.10.11
                                       10.4.110.10
   NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter Local Area Connection* 11:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{D51A288F-41E2-4BD8-83A2-41220BEB72B8}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

C:\>

C:\>dcdiag

Directory Server Diagnosis

Performing initial setup:
   Trying to find home server...
   Home Server = BRSLGIERODC2500
   * Identified AD Forest.
   Done gathering initial info.

Doing initial required tests

   Testing server: 2500\BRSLGIERODC2500
      Starting test: Connectivity
         ......................... BRSLGIERODC2500 passed test Connectivity

Doing primary tests

   Testing server: 2500\BRSLGIERODC2500
      Starting test: Advertising
         ......................... BRSLGIERODC2500 passed test Advertising
      Starting test: FrsEvent
         ......................... BRSLGIERODC2500 passed test FrsEvent
      Starting test: DFSREvent
         There are warning or error events within the last 24 hours after the
         SYSVOL has been shared.  Failing SYSVOL replication problems may cause
         Group Policy problems.
         ......................... BRSLGIERODC2500 passed test DFSREvent
      Starting test: SysVolCheck
         ......................... BRSLGIERODC2500 passed test SysVolCheck
      Starting test: KccEvent
         ......................... BRSLGIERODC2500 passed test KccEvent
      Starting test: KnowsOfRoleHolders
         ......................... BRSLGIERODC2500 passed test
         KnowsOfRoleHolders
      Starting test: MachineAccount
         ......................... BRSLGIERODC2500 passed test MachineAccount
      Starting test: NCSecDesc
         ......................... BRSLGIERODC2500 passed test NCSecDesc
      Starting test: NetLogons
         ......................... BRSLGIERODC2500 passed test NetLogons
      Starting test: ObjectsReplicated
         ......................... BRSLGIERODC2500 passed test
         ObjectsReplicated
      Starting test: Replications
         ......................... BRSLGIERODC2500 passed test Replications
      Starting test: Services
         ......................... BRSLGIERODC2500 passed test Services
      Starting test: SystemLog
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   08:56:14
            Event String:
            The session setup from computer '2500-AC-PRDIP' failed because the s
ecurity database does not contain a trust account '2500-AC-PRDIP$' referenced by
 the specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   08:58:18
            Event String:
            The session setup from the computer 2500-AC-PRDIP failed to authenti
cate. The following error occurred:
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:00:27
            Event String:
            The session setup from computer '2500-BY-RAVI' failed because the se
curity database does not contain a trust account '2500-BY-RAVI$' referenced by t
he specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:02:34
            Event String:
            The session setup from the computer 2500-BY-RAVI failed to authentic
ate. The following error occurred:
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:02:34
            Event String:
            The session setup from computer '2500-MGT-RHIA' failed because the s
ecurity database does not contain a trust account '2500-MGT-RHIA$' referenced by
 the specified computer.
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:03:02
            Event String:
            The session setup from computer '2500-AC-SHKER' failed because the s
ecurity database does not contain a trust account '2500-AC-SHKER$' referenced by
 the specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:05:35
            Event String:
            The session setup from the computer 2500-MGT-RHIA failed to authenti
cate. The following error occurred:
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:05:35
            Event String:
            The session setup from the computer 2500-AC-SHKER failed to authenti
cate. The following error occurred:
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:05:35
            Event String:
            The session setup from computer '2500-MG01-SPMK' failed because the
security database does not contain a trust account '2500-MG01-SPMK$' referenced
by the specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:07:56
            Event String:
            The session setup from the computer 2500-MG01-SPMK failed to authent
icate. The following error occurred:
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:08:30
            Event String:
            The session setup from computer '2500-AC-SHFEK' failed because the s
ecurity database does not contain a trust account '2500-AC-SHFEK$' referenced by
 the specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:13:21
            Event String:
            The session setup from the computer 2500-AC-SHFEK failed to authenti
cate. The following error occurred:
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:13:42
            Event String:
            The session setup from computer '2500-MG-HESHM' failed because the s
ecurity database does not contain a trust account '2500-MG-HESHM$' referenced by
 the specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:17:30
            Event String:
            The session setup from the computer 2500-MG-HESHM failed to authenti
cate. The following error occurred:
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:25:45
            Event String:
            The session setup from computer '2500-IT-ELVIE' failed because the s
ecurity database does not contain a trust account '2500-IT-ELVIE$' referenced by
 the specified computer.
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:25:52
            Event String:
            The session setup from computer '2500-AC-LESIN' failed because the s
ecurity database does not contain a trust account '2500-AC-LESIN$' referenced by
 the specified computer.
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:27:26
            Event String:
            The session setup from computer '2500-CUSTOMER-U' failed because the
 security database does not contain a trust account '2500-CUSTOMER-U$' reference
d by the specified computer.
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:27:33
            Event String:
            The session setup from computer '2500-AC-SHINJ' failed because the s
ecurity database does not contain a trust account '2500-AC-SHINJ$' referenced by
 the specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:28:21
            Event String:
            The session setup from the computer 2500-IT-ELVIE failed to authenti
cate. The following error occurred:
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:28:21
            Event String:
            The session setup from the computer 2500-AC-LESIN failed to authenti
cate. The following error occurred:
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:28:37
            Event String:
            The session setup from computer '2500-MG01-MUBRK' failed because the
 security database does not contain a trust account '2500-MG01-MUBRK$' reference
d by the specified computer.
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:29:09
            Event String:
            The session setup from computer '2500-BUYER-AMAR' failed because the
 security database does not contain a trust account '2500-BUYER-AMAR$' reference
d by the specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:34:35
            Event String:
            The session setup from the computer 2500-CUSTOMER-U failed to authen
ticate. The following error occurred:
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:34:35
            Event String:
            The session setup from the computer 2500-AC-SHINJ failed to authenti
cate. The following error occurred:
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:34:35
            Event String:
            The session setup from the computer 2500-MG01-MUBRK failed to authen
ticate. The following error occurred:
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:34:35
            Event String:
            The session setup from the computer 2500-BUYER-AMAR failed to authen
ticate. The following error occurred:
         An error event occurred.  EventID: 0x0000165B
            Time Generated: 04/04/2013   09:34:35
            Event String:
            The session setup from computer '2500CASHOFFICE1' failed because the
 security database does not contain a trust account '2500CASHOFFICE1$' reference
d by the specified computer.
         An error event occurred.  EventID: 0x000016AD
            Time Generated: 04/04/2013   09:37:30
            Event String:
            The session setup from the computer 2500CASHOFFICE1 failed to authen
ticate. The following error occurred:
         A warning event occurred.  EventID: 0x00001796
            Time Generated: 04/04/2013   09:53:06
            Event String:
            Microsoft Windows Server has detected that NTLM authentication is pr
esently being used between clients and this server. This event occurs once per b
oot of the server on the first time a client uses NTLM with this server.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 04/04/2013   09:53:33
            Event String:
            Driver doPDF 7 Printer Driver required for printer doPDF v7 is unkno
wn. Contact the administrator to install the driver before you log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 04/04/2013   09:53:34
            Event String:
            Driver Adobe PDF Converter required for printer Adobe PDF is unknown
. Contact the administrator to install the driver before you log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 04/04/2013   09:53:34
            Event String:
            Driver HP LaserJet 4100 Series PCL6 required for printer HP LaserJet
 4100 Series PCL6 is unknown. Contact the administrator to install the driver be
fore you log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 04/04/2013   09:53:34
            Event String:
            Driver HP Color LaserJet 5550 PS required for printer HP Color Laser
Jet 5550 PS is unknown. Contact the administrator to install the driver before y
ou log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 04/04/2013   09:53:36
            Event String:
            Driver HP LaserJet 4200/4300 PCL6 required for printer HP LaserJet 4
200/4300 PCL6 is unknown. Contact the administrator to install the driver before
 you log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 04/04/2013   09:53:36
            Event String:
            Driver Microsoft XPS Document Writer required for printer Microsoft
XPS Document Writer is unknown. Contact the administrator to install the driver
before you log in again.
         ......................... BRSLGIERODC2500 failed test SystemLog
      Starting test: VerifyReferences
         ......................... BRSLGIERODC2500 passed test VerifyReferences


   Running partition tests on : ForestDnsZones
      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test
         CrossRefValidation

   Running partition tests on : DomainDnsZones
      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test
         CrossRefValidation

   Running partition tests on : Schema
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation

   Running partition tests on : Configuration
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation

   Running partition tests on : lulumea
      Starting test: CheckSDRefDom
         ......................... lulumea passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... lulumea passed test CrossRefValidation

   Running enterprise tests on : lulumea.local
      Starting test: LocatorCheck
         ......................... lulumea.local passed test LocatorCheck
      Starting test: Intersite
         ......................... lulumea.local passed test Intersite

CLIENT PC'S IPCONFIG

C:\>ipconfig /all

Windows IP Configuration

   Host Name . . . . . . . . . . . . : 2500-CS01-MRCEL
   Primary Dns Suffix  . . . . . . . : lulumea.local
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : lulumea.local

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Realtek RTL8102E/RTL8103E Family PCI-E F
st Ethernet NIC (NDIS 6.20)
   Physical Address. . . . . . . . . : 64-31-50-3B-F9-18
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv4 Address. . . . . . . . . . . : 192.168.82.140(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 192.168.82.200
   DNS Servers . . . . . . . . . . . : 192.168.82.251
                                       10.4.10.10
                                       10.4.10.11
                                       10.4.110.10
   NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter isatap.{7B0B71A0-6242-4139-8076-3272289D6EB9}:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

CLIENT AUTHENTICATION
C:\>set l
LOCALAPPDATA=C:\Users\2500test\AppData\Local
LOGONSERVER=\\DRLGIDC-03

C:\>


Viewing all articles
Browse latest Browse all 31638

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>