FAQWindows-Expert.com Forum Index  •   FAQFAQ  •  SearchSearch
Windows-Expert.com
Find Windows Problems and Solutions
 

Search found 14 matches
Windows-Expert.com Forum Index
Author Message
  Topic: Sponsored Results
   
  Topic: One server can't read GPO/bind to domain
Jim

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Sat Nov 10, 2007 7:29 pm   Subject: Re: One server can't read GPO/bind to domain
Hi,
Weird thing is there's no "." zone, just the domain and _msdcs zones I
deleted and recreated yesterday.

Austin Osuide wrote:
Hi Jim,
You need to delete the root hints zone.
1. In DNS Manager, ex ...
  Topic: One server can't read GPO/bind to domain
Austin Osuide

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Sat Nov 10, 2007 6:31 pm   Subject: Re: One server can't read GPO/bind to domain
Jim,
Also see: http://support.microsoft.com/default.aspx?scid=kb;en-us;300202

Regards,

Austin


"Jim" <nospam@any.time> wrote in message
news:e5w9f38IIHA.5764@TK2MSFTNGP06.phx.gbl...
Thanks f ...
  Topic: One server can't read GPO/bind to domain
Austin Osuide

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Sat Nov 10, 2007 6:28 pm   Subject: Re: One server can't read GPO/bind to domain
Hi Jim,
You need to delete the root hints zone.
1. In DNS Manager, expand the DNS Server object. Expand the Forward Lookup
Zones folder.

2. Right-click the "." zone, and then click Delete.



Regard ...
  Topic: One server can't read GPO/bind to domain
Jim

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Sat Nov 10, 2007 6:14 pm   Subject: Re: One server can't read GPO/bind to domain
Thanks for your continuing help with this. Below is the dcdiag /test:dns
from the only DC that has errors. It's better than it was. No
mutltihomed DCs. Root hints are still default on the DNS server ...
  Topic: One server can't read GPO/bind to domain
Austin Osuide

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Sat Nov 10, 2007 3:29 pm   Subject: Re: One server can't read GPO/bind to domain
Hi Jim,
Unfortunately, Event id 1006 and 1030 with userenv as source could have a
multitude of causes.
1. Are any of these DCs multihomed?
2. Post the dcdiag with failures
3. Do you still have root h ...
  Topic: One server can't read GPO/bind to domain
Jim

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Fri Nov 09, 2007 9:24 pm   Subject: Re: One server can't read GPO/bind to domain
Deleted and recreated the forward and reverse DNS zones from scratch and
they are populated. dcdiag /test:dns on one DC returns no errors (and is
LOGONSERVER for the slow logon computer). The other ...
  Topic: One server can't read GPO/bind to domain
Austin Osuide

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Fri Nov 09, 2007 5:49 pm   Subject: Re: One server can't read GPO/bind to domain
Hi Jim,
When you have deleted the zone, rt click forward zones and select "new
zone". Call it _msdcs.<DomainName>.
Then in your Domain Forward lookup zone, rt click and select "new
delegation" ...
  Topic: One server can't read GPO/bind to domain
Jim

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Fri Nov 09, 2007 5:33 pm   Subject: Re: One server can't read GPO/bind to domain
How would I recreate _msdcs ? If I delete it will it be rebuilt? Thanks.

Austin Osuide wrote:
Hi Jim,
Recreating the zone would not damage AD.
You can also recreate the _msdcs.domain.com zone and cre ...
  Topic: One server can't read GPO/bind to domain
Austin Osuide

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Thu Nov 08, 2007 7:28 pm   Subject: Re: One server can't read GPO/bind to domain
Hi Jim,
Recreating the zone would not damage AD.
You can also recreate the _msdcs.domain.com zone and create the delegation
in domain.com.
DCs should reregister their records when bounced.

Regards,
...
  Topic: One server can't read GPO/bind to domain
Jim

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Thu Nov 08, 2007 7:08 pm   Subject: Re: One server can't read GPO/bind to domain
Hi,

Thanks. If I deleted the domain.com zone altogether then recreated it
would that damage AD? I guess I would flush DNS on the DCs then
registerdns again.

Austin Osuide wrote:
Hi Jim,
You need t ...
  Topic: One server can't read GPO/bind to domain
Austin Osuide

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Thu Nov 08, 2007 5:03 pm   Subject: Re: One server can't read GPO/bind to domain
Hi Jim,
You need to get your DNS config sorted out before any replication or DC
locator issues are resolved.
You seem to have root hints and forwarders configured on this DNS Server.
They are mutual ...
  Topic: One server can't read GPO/bind to domain
Jim

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Thu Nov 08, 2007 2:46 pm   Subject: Re: One server can't read GPO/bind to domain
Thanks, I tried this but no change. From the event log it appears that
at (irregular) intervals the Exchange AD service is able to see all
three DCs, but then errors again. This server does not have ...
  Topic: One server can't read GPO/bind to domain
Austin Osuide

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Wed Nov 07, 2007 10:11 pm   Subject: Re: One server can't read GPO/bind to domain
Hi Jim,
DC1 has preferred DNS x.x.33.15
DC2 has preferred DNS x.x.33.17
DC3 has preferred DNS x.x.34.2

You should to point your DCs in the same site to the same preferred DNS
server as a start.
DNS ...
  Topic: One server can't read GPO/bind to domain
Jim

Replies: 18
Views: 364

PostForum: Server Active Directory   Posted: Wed Nov 07, 2007 9:06 pm   Subject: Re: One server can't read GPO/bind to domain
IPCONFIG /ALL for three DCs and the server below. Thanks

DC1 and DC2 on LAN. DC1 under VMWARE on the server in question. DC3 at
remote site.

Errors when logging on to the server are:
"Windows canno ...
 
Page 1 of 1
All times are GMT
Jump to:  


Topic Links: syslog
Powered by phpBB © 2001, 2005 phpBB Group