I installed a new DC running server2008r2 named (VMSERVER1). Everythign seem to have went well after the domainprep and forestprep. I made it the GC and then tested it by shutting off the first DC (server1) running 2003. What I found is that none of the workstaitons could login. Also on VMServer1 all my domain information in AD Users and Groups disappeared. I checked the event logs on VMSERVER1 and see some issues:
NTFRS 13508
ADWS 1400
DNS 4013
So I checked DCDIAG and I got a few errors here...
Doing primary tests
Testing server: Default-First-Site-Name\VMSERVER1
Starting test: Advertising
Warning: DsGetDcName returned information for\\server1.lentine.com,
when we were trying to reach VMSERVER1.
SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE.
......................... VMSERVER1 failed test Advertising
Starting test: FrsEvent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
Starting test: NCSecDesc
Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
Replicating Directory Changes In Filtered Set
access rights for the naming context:
DC=ForestDnsZones,DC=lentine,DC=com
Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
Replicating Directory Changes In Filtered Set
access rights for the naming context:
DC=DomainDnsZones,DC=lentine,DC=com
......................... VMSERVER1 failed test NCSecDesc
Starting test: NetLogons
Unable to connect to the NETLOGON share! (\\VMSERVER1\netlogon)
[VMSERVER1] An net use or LsaPolicy operation failed with error 67,
The network name cannot be found..
......................... VMSERVER1 failed test NetLogons
Running enterprise tests on : lentine.com
Starting test: LocatorCheck
Warning: DcGetDcName(GC_SERVER_REQUIRED) call failed, error 1355
A Global Catalog Server could not be located - All GC's are down.
......................... lentine.com failed test LocatorCheck
Starting test: Intersite
......................... lentine.com passed test Intersite
*Note both DC's are a GC.
Both Servers have both DNS entries for both servers. Both Servers have DNS running on them and the DNS Server seems to function and resolve both server names.
I am puzzled at this point.
Any ideas?