Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Server > Active Directory > Cannot access ADUC on DC

Reply
Thread Tools Display Modes

Cannot access ADUC on DC

 
 
Simon
Guest
Posts: n/a

 
      11-05-2009

Hi,
I have a customer with a small setup between two sites. I got a call
this morning saying they cannot access any network shares on the server
at one site (both Serer 2003). I was unable to RDP to the server either
as it will not authenticate the administrator user. Onsite today and
luckily the console isn't locked so I tried to access aduc from there
and get the message:
naming information cannot be located for the following reason server is
not operational. Looking about the internet points to dns problems but
all look good there, however there are numerous 4000,4007,4015 entries
in the event log of dns stating check AD is functioning and reload the zone.
The server at the other site seems fine.
Any ideas how to progress on this, I didn't want to reboot this server
in case I was unable to login after.
I normally only deal with SBS and have never come across this issue before.
Thanks for any replies.
Simon
 
Reply With Quote
 
 
 
 
Meinolf Weber [MVP-DS]
Guest
Posts: n/a

 
      11-05-2009
Hello Simon,

Make sure DNS on all NICs is only configured to use domain internal DNS servers.
Please post an unedited ipconfig /all from the DC/DNS servers, so we can
exclude this.

Also run the support tools dcdiag /v, netdiag /v to check for errors.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


> Hi,
> I have a customer with a small setup between two sites. I got a call
> this morning saying they cannot access any network shares on the
> server
> at one site (both Serer 2003). I was unable to RDP to the server
> either
> as it will not authenticate the administrator user. Onsite today and
> luckily the console isn't locked so I tried to access aduc from there
> and get the message:
> naming information cannot be located for the following reason server
> is
> not operational. Looking about the internet points to dns problems but
> all look good there, however there are numerous 4000,4007,4015 entries
> in the event log of dns stating check AD is functioning and reload the
> zone.
> The server at the other site seems fine.
> Any ideas how to progress on this, I didn't want to reboot this server
> in case I was unable to login after.
> I normally only deal with SBS and have never come across this issue
> before.
> Thanks for any replies.
> Simo



 
Reply With Quote
 
Simon
Guest
Posts: n/a

 
      11-05-2009
Hi Meinholf

Thanks for the reply, I'm not on site now but can confirm that ipconfig
/all showed only this server and also the server at the other location
as dns servers. The server didn't have those tools installed so I
couldn't run them, I'll be back onsite tomorrow with my server CDs to
install these. Luckily the main app is sql and this is still running fine.
Simon

Meinolf Weber [MVP-DS] wrote:
> Hello Simon,
>
> Make sure DNS on all NICs is only configured to use domain internal DNS
> servers. Please post an unedited ipconfig /all from the DC/DNS servers,
> so we can exclude this.
>
> Also run the support tools dcdiag /v, netdiag /v to check for errors.
>
> Best regards
>
> Meinolf Weber
> Disclaimer: This posting is provided "AS IS" with no warranties, and
> confers no rights.
> ** Please do NOT email, only reply to Newsgroups
> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>
>> Hi,
>> I have a customer with a small setup between two sites. I got a call
>> this morning saying they cannot access any network shares on the
>> server
>> at one site (both Serer 2003). I was unable to RDP to the server
>> either
>> as it will not authenticate the administrator user. Onsite today and
>> luckily the console isn't locked so I tried to access aduc from there
>> and get the message:
>> naming information cannot be located for the following reason server
>> is
>> not operational. Looking about the internet points to dns problems but
>> all look good there, however there are numerous 4000,4007,4015 entries
>> in the event log of dns stating check AD is functioning and reload the
>> zone.
>> The server at the other site seems fine.
>> Any ideas how to progress on this, I didn't want to reboot this server
>> in case I was unable to login after.
>> I normally only deal with SBS and have never come across this issue
>> before.
>> Thanks for any replies.
>> Simon

>
>

 
Reply With Quote
 
Meinolf Weber [MVP-DS]
Guest
Posts: n/a

 
      11-05-2009
Hello Simon,

Running applications like SQL or Exchange on DCs is not recommended. DCs
should only do there basic job, AD/DNS/GC and maybe DHCP if no member server
exists.

Make sure that the DNS servers are not forwarding to themself, forwarders
should be configured to the ISPs DNS server. Also if not done create a reverse
lookup zone.

Additional see:
http://www.eventid.net/display.asp?e...ce=DNS&phase=1

http://www.eventid.net/display.asp?e...ce=DNS&phase=1

http://www.eventid.net/display.asp?e...ce=DNS&phase=1

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


> Hi Meinholf
>
> Thanks for the reply, I'm not on site now but can confirm that
> ipconfig
> /all showed only this server and also the server at the other location
> as dns servers. The server didn't have those tools installed so I
> couldn't run them, I'll be back onsite tomorrow with my server CDs to
> install these. Luckily the main app is sql and this is still running
> fine.
> Simon
> Meinolf Weber [MVP-DS] wrote:
>
>> Hello Simon,
>>
>> Make sure DNS on all NICs is only configured to use domain internal
>> DNS servers. Please post an unedited ipconfig /all from the DC/DNS
>> servers, so we can exclude this.
>>
>> Also run the support tools dcdiag /v, netdiag /v to check for errors.
>>
>> Best regards
>>
>> Meinolf Weber
>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>> confers no rights.
>> ** Please do NOT email, only reply to Newsgroups
>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>> Hi,
>>> I have a customer with a small setup between two sites. I got a call
>>> this morning saying they cannot access any network shares on the
>>> server
>>> at one site (both Serer 2003). I was unable to RDP to the server
>>> either
>>> as it will not authenticate the administrator user. Onsite today and
>>> luckily the console isn't locked so I tried to access aduc from
>>> there
>>> and get the message:
>>> naming information cannot be located for the following reason server
>>> is
>>> not operational. Looking about the internet points to dns problems
>>> but
>>> all look good there, however there are numerous 4000,4007,4015
>>> entries
>>> in the event log of dns stating check AD is functioning and reload
>>> the
>>> zone.
>>> The server at the other site seems fine.
>>> Any ideas how to progress on this, I didn't want to reboot this
>>> server
>>> in case I was unable to login after.
>>> I normally only deal with SBS and have never come across this issue
>>> before.
>>> Thanks for any replies.
>>> Simo



 
Reply With Quote
 
Simon
Guest
Posts: n/a

 
      11-05-2009
Hi Meinolf,

Thanks again. This is a customer I inherited and never installed this
system. Not only is the DC used for sql etc it's also used as a
workstation by a vet in the practise where it is. I have told them many
times about this. I wouldn't allow one of my SBS sites to use their
server for anything but SBS related functions. I'll check out on those
links when I am onsite in the morning.
The system has been running for a couple of years as is so I am confused
why this issue would occur now.
Regards
Simon

Meinolf Weber [MVP-DS] wrote:
> Hello Simon,
>
> Running applications like SQL or Exchange on DCs is not recommended. DCs
> should only do there basic job, AD/DNS/GC and maybe DHCP if no member
> server exists.
>
> Make sure that the DNS servers are not forwarding to themself,
> forwarders should be configured to the ISPs DNS server. Also if not done
> create a reverse lookup zone.
>
> Additional see:
> http://www.eventid.net/display.asp?e...ce=DNS&phase=1
>
>
> http://www.eventid.net/display.asp?e...ce=DNS&phase=1
>
>
> http://www.eventid.net/display.asp?e...ce=DNS&phase=1
>
>
> Best regards
>
> Meinolf Weber
> Disclaimer: This posting is provided "AS IS" with no warranties, and
> confers no rights.
> ** Please do NOT email, only reply to Newsgroups
> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>
>> Hi Meinholf
>>
>> Thanks for the reply, I'm not on site now but can confirm that
>> ipconfig
>> /all showed only this server and also the server at the other location
>> as dns servers. The server didn't have those tools installed so I
>> couldn't run them, I'll be back onsite tomorrow with my server CDs to
>> install these. Luckily the main app is sql and this is still running
>> fine.
>> Simon
>> Meinolf Weber [MVP-DS] wrote:
>>
>>> Hello Simon,
>>>
>>> Make sure DNS on all NICs is only configured to use domain internal
>>> DNS servers. Please post an unedited ipconfig /all from the DC/DNS
>>> servers, so we can exclude this.
>>>
>>> Also run the support tools dcdiag /v, netdiag /v to check for errors.
>>>
>>> Best regards
>>>
>>> Meinolf Weber
>>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>>> confers no rights.
>>> ** Please do NOT email, only reply to Newsgroups
>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>> Hi,
>>>> I have a customer with a small setup between two sites. I got a call
>>>> this morning saying they cannot access any network shares on the
>>>> server
>>>> at one site (both Serer 2003). I was unable to RDP to the server
>>>> either
>>>> as it will not authenticate the administrator user. Onsite today and
>>>> luckily the console isn't locked so I tried to access aduc from
>>>> there
>>>> and get the message:
>>>> naming information cannot be located for the following reason server
>>>> is
>>>> not operational. Looking about the internet points to dns problems
>>>> but
>>>> all look good there, however there are numerous 4000,4007,4015
>>>> entries
>>>> in the event log of dns stating check AD is functioning and reload
>>>> the
>>>> zone.
>>>> The server at the other site seems fine.
>>>> Any ideas how to progress on this, I didn't want to reboot this
>>>> server
>>>> in case I was unable to login after.
>>>> I normally only deal with SBS and have never come across this issue
>>>> before.
>>>> Thanks for any replies.
>>>> Simon

>
>

 
Reply With Quote
 
Simon
Guest
Posts: n/a

 
      11-06-2009

Hi,

I've been onsite again and got the tools installed, but ran out of time
on the server before consulting time began (yes I know using a server as
a workstation) I checked out the DC at the other location and this has
entries in the forward dns zone but nothing in the problem server ?
I can't get onto the server again until later tonight, although I have
remote access to it now as I installed VNC as rdp won't authenticate.
Thanks
Simon

Simon wrote:
> Hi Meinolf,
>
> Thanks again. This is a customer I inherited and never installed this
> system. Not only is the DC used for sql etc it's also used as a
> workstation by a vet in the practise where it is. I have told them many
> times about this. I wouldn't allow one of my SBS sites to use their
> server for anything but SBS related functions. I'll check out on those
> links when I am onsite in the morning.
> The system has been running for a couple of years as is so I am confused
> why this issue would occur now.
> Regards
> Simon
>
> Meinolf Weber [MVP-DS] wrote:
>> Hello Simon,
>>
>> Running applications like SQL or Exchange on DCs is not recommended.
>> DCs should only do there basic job, AD/DNS/GC and maybe DHCP if no
>> member server exists.
>>
>> Make sure that the DNS servers are not forwarding to themself,
>> forwarders should be configured to the ISPs DNS server. Also if not
>> done create a reverse lookup zone.
>>
>> Additional see:
>> http://www.eventid.net/display.asp?e...ce=DNS&phase=1
>>
>>
>> http://www.eventid.net/display.asp?e...ce=DNS&phase=1
>>
>>
>> http://www.eventid.net/display.asp?e...ce=DNS&phase=1
>>
>>
>> Best regards
>>
>> Meinolf Weber
>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>> confers no rights.
>> ** Please do NOT email, only reply to Newsgroups
>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>
>>> Hi Meinholf
>>>
>>> Thanks for the reply, I'm not on site now but can confirm that
>>> ipconfig
>>> /all showed only this server and also the server at the other location
>>> as dns servers. The server didn't have those tools installed so I
>>> couldn't run them, I'll be back onsite tomorrow with my server CDs to
>>> install these. Luckily the main app is sql and this is still running
>>> fine.
>>> Simon
>>> Meinolf Weber [MVP-DS] wrote:
>>>
>>>> Hello Simon,
>>>>
>>>> Make sure DNS on all NICs is only configured to use domain internal
>>>> DNS servers. Please post an unedited ipconfig /all from the DC/DNS
>>>> servers, so we can exclude this.
>>>>
>>>> Also run the support tools dcdiag /v, netdiag /v to check for errors.
>>>>
>>>> Best regards
>>>>
>>>> Meinolf Weber
>>>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>>>> confers no rights.
>>>> ** Please do NOT email, only reply to Newsgroups
>>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>> Hi,
>>>>> I have a customer with a small setup between two sites. I got a call
>>>>> this morning saying they cannot access any network shares on the
>>>>> server
>>>>> at one site (both Serer 2003). I was unable to RDP to the server
>>>>> either
>>>>> as it will not authenticate the administrator user. Onsite today and
>>>>> luckily the console isn't locked so I tried to access aduc from
>>>>> there
>>>>> and get the message:
>>>>> naming information cannot be located for the following reason server
>>>>> is
>>>>> not operational. Looking about the internet points to dns problems
>>>>> but
>>>>> all look good there, however there are numerous 4000,4007,4015
>>>>> entries
>>>>> in the event log of dns stating check AD is functioning and reload
>>>>> the
>>>>> zone.
>>>>> The server at the other site seems fine.
>>>>> Any ideas how to progress on this, I didn't want to reboot this
>>>>> server
>>>>> in case I was unable to login after.
>>>>> I normally only deal with SBS and have never come across this issue
>>>>> before.
>>>>> Thanks for any replies.
>>>>> Simon

>>
>>

 
Reply With Quote
 
Meinolf Weber [MVP-DS]
Guest
Posts: n/a

 
      11-06-2009
Hello Simon,

What kind of DNS zones are configured on the main site or is that one complete
empty now in forward lookup zone? Which kind of zone is used on the second
DNS server?

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


> Hi,
>
> I've been onsite again and got the tools installed, but ran out of
> time
> on the server before consulting time began (yes I know using a server
> as
> a workstation) I checked out the DC at the other location and this has
> entries in the forward dns zone but nothing in the problem server ?
> I can't get onto the server again until later tonight, although I have
> remote access to it now as I installed VNC as rdp won't authenticate.
> Thanks
> Simon
> Simon wrote:
>
>> Hi Meinolf,
>>
>> Thanks again. This is a customer I inherited and never installed this
>> system. Not only is the DC used for sql etc it's also used as a
>> workstation by a vet in the practise where it is. I have told them
>> many
>> times about this. I wouldn't allow one of my SBS sites to use their
>> server for anything but SBS related functions. I'll check out on
>> those
>> links when I am onsite in the morning.
>> The system has been running for a couple of years as is so I am
>> confused
>> why this issue would occur now.
>> Regards
>> Simon
>> Meinolf Weber [MVP-DS] wrote:
>>
>>> Hello Simon,
>>>
>>> Running applications like SQL or Exchange on DCs is not recommended.
>>> DCs should only do there basic job, AD/DNS/GC and maybe DHCP if no
>>> member server exists.
>>>
>>> Make sure that the DNS servers are not forwarding to themself,
>>> forwarders should be configured to the ISPs DNS server. Also if not
>>> done create a reverse lookup zone.
>>>
>>> Additional see:
>>> http://www.eventid.net/display.asp?e...o=296&source=D
>>> NS&phase=1
>>> http://www.eventid.net/display.asp?e...o=4280&source=
>>> DNS&phase=1
>>>
>>> http://www.eventid.net/display.asp?e...o=333&source=D
>>> NS&phase=1
>>>
>>> Best regards
>>>
>>> Meinolf Weber
>>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>>> confers no rights.
>>> ** Please do NOT email, only reply to Newsgroups
>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>> Hi Meinholf
>>>>
>>>> Thanks for the reply, I'm not on site now but can confirm that
>>>> ipconfig
>>>> /all showed only this server and also the server at the other
>>>> location
>>>> as dns servers. The server didn't have those tools installed so I
>>>> couldn't run them, I'll be back onsite tomorrow with my server CDs
>>>> to
>>>> install these. Luckily the main app is sql and this is still
>>>> running
>>>> fine.
>>>> Simon
>>>> Meinolf Weber [MVP-DS] wrote:
>>>>> Hello Simon,
>>>>>
>>>>> Make sure DNS on all NICs is only configured to use domain
>>>>> internal DNS servers. Please post an unedited ipconfig /all from
>>>>> the DC/DNS servers, so we can exclude this.
>>>>>
>>>>> Also run the support tools dcdiag /v, netdiag /v to check for
>>>>> errors.
>>>>>
>>>>> Best regards
>>>>>
>>>>> Meinolf Weber
>>>>> Disclaimer: This posting is provided "AS IS" with no warranties,
>>>>> and
>>>>> confers no rights.
>>>>> ** Please do NOT email, only reply to Newsgroups
>>>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>>> Hi,
>>>>>> I have a customer with a small setup between two sites. I got a
>>>>>> call
>>>>>> this morning saying they cannot access any network shares on the
>>>>>> server
>>>>>> at one site (both Serer 2003). I was unable to RDP to the server
>>>>>> either
>>>>>> as it will not authenticate the administrator user. Onsite today
>>>>>> and
>>>>>> luckily the console isn't locked so I tried to access aduc from
>>>>>> there
>>>>>> and get the message:
>>>>>> naming information cannot be located for the following reason
>>>>>> server
>>>>>> is
>>>>>> not operational. Looking about the internet points to dns
>>>>>> problems
>>>>>> but
>>>>>> all look good there, however there are numerous 4000,4007,4015
>>>>>> entries
>>>>>> in the event log of dns stating check AD is functioning and
>>>>>> reload
>>>>>> the
>>>>>> zone.
>>>>>> The server at the other site seems fine.
>>>>>> Any ideas how to progress on this, I didn't want to reboot this
>>>>>> server
>>>>>> in case I was unable to login after.
>>>>>> I normally only deal with SBS and have never come across this
>>>>>> issue
>>>>>> before.
>>>>>> Thanks for any replies.
>>>>>> Simon



 
Reply With Quote
 
Simon
Guest
Posts: n/a

 
      11-07-2009

Hi The site working has 2 forward zones:

_msdcs.internal.castlevetsltd.co.uk
and
internal.castlevetsltd.co.uk

Whereas the failing site has no entries at all.

Thanks Simon
Meinolf Weber [MVP-DS] wrote:
> Hello Simon,
>
> What kind of DNS zones are configured on the main site or is that one
> complete empty now in forward lookup zone? Which kind of zone is used on
> the second DNS server?
>
> Best regards
>
> Meinolf Weber
> Disclaimer: This posting is provided "AS IS" with no warranties, and
> confers no rights.
> ** Please do NOT email, only reply to Newsgroups
> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>
>> Hi,
>>
>> I've been onsite again and got the tools installed, but ran out of
>> time
>> on the server before consulting time began (yes I know using a server
>> as
>> a workstation) I checked out the DC at the other location and this has
>> entries in the forward dns zone but nothing in the problem server ?
>> I can't get onto the server again until later tonight, although I have
>> remote access to it now as I installed VNC as rdp won't authenticate.
>> Thanks
>> Simon
>> Simon wrote:
>>
>>> Hi Meinolf,
>>>
>>> Thanks again. This is a customer I inherited and never installed this
>>> system. Not only is the DC used for sql etc it's also used as a
>>> workstation by a vet in the practise where it is. I have told them
>>> many
>>> times about this. I wouldn't allow one of my SBS sites to use their
>>> server for anything but SBS related functions. I'll check out on
>>> those
>>> links when I am onsite in the morning.
>>> The system has been running for a couple of years as is so I am
>>> confused
>>> why this issue would occur now.
>>> Regards
>>> Simon
>>> Meinolf Weber [MVP-DS] wrote:
>>>
>>>> Hello Simon,
>>>>
>>>> Running applications like SQL or Exchange on DCs is not recommended.
>>>> DCs should only do there basic job, AD/DNS/GC and maybe DHCP if no
>>>> member server exists.
>>>>
>>>> Make sure that the DNS servers are not forwarding to themself,
>>>> forwarders should be configured to the ISPs DNS server. Also if not
>>>> done create a reverse lookup zone.
>>>>
>>>> Additional see:
>>>> http://www.eventid.net/display.asp?e...o=296&source=D
>>>> NS&phase=1
>>>> http://www.eventid.net/display.asp?e...o=4280&source=
>>>> DNS&phase=1
>>>>
>>>> http://www.eventid.net/display.asp?e...o=333&source=D
>>>> NS&phase=1
>>>>
>>>> Best regards
>>>>
>>>> Meinolf Weber
>>>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>>>> confers no rights.
>>>> ** Please do NOT email, only reply to Newsgroups
>>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>> Hi Meinholf
>>>>>
>>>>> Thanks for the reply, I'm not on site now but can confirm that
>>>>> ipconfig
>>>>> /all showed only this server and also the server at the other
>>>>> location
>>>>> as dns servers. The server didn't have those tools installed so I
>>>>> couldn't run them, I'll be back onsite tomorrow with my server CDs
>>>>> to
>>>>> install these. Luckily the main app is sql and this is still
>>>>> running
>>>>> fine.
>>>>> Simon
>>>>> Meinolf Weber [MVP-DS] wrote:
>>>>>> Hello Simon,
>>>>>>
>>>>>> Make sure DNS on all NICs is only configured to use domain
>>>>>> internal DNS servers. Please post an unedited ipconfig /all from
>>>>>> the DC/DNS servers, so we can exclude this.
>>>>>>
>>>>>> Also run the support tools dcdiag /v, netdiag /v to check for
>>>>>> errors.
>>>>>>
>>>>>> Best regards
>>>>>>
>>>>>> Meinolf Weber
>>>>>> Disclaimer: This posting is provided "AS IS" with no warranties,
>>>>>> and
>>>>>> confers no rights.
>>>>>> ** Please do NOT email, only reply to Newsgroups
>>>>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>>>> Hi,
>>>>>>> I have a customer with a small setup between two sites. I got a
>>>>>>> call
>>>>>>> this morning saying they cannot access any network shares on the
>>>>>>> server
>>>>>>> at one site (both Serer 2003). I was unable to RDP to the server
>>>>>>> either
>>>>>>> as it will not authenticate the administrator user. Onsite today
>>>>>>> and
>>>>>>> luckily the console isn't locked so I tried to access aduc from
>>>>>>> there
>>>>>>> and get the message:
>>>>>>> naming information cannot be located for the following reason
>>>>>>> server
>>>>>>> is
>>>>>>> not operational. Looking about the internet points to dns
>>>>>>> problems
>>>>>>> but
>>>>>>> all look good there, however there are numerous 4000,4007,4015
>>>>>>> entries
>>>>>>> in the event log of dns stating check AD is functioning and
>>>>>>> reload
>>>>>>> the
>>>>>>> zone.
>>>>>>> The server at the other site seems fine.
>>>>>>> Any ideas how to progress on this, I didn't want to reboot this
>>>>>>> server
>>>>>>> in case I was unable to login after.
>>>>>>> I normally only deal with SBS and have never come across this
>>>>>>> issue
>>>>>>> before.
>>>>>>> Thanks for any replies.
>>>>>>> Simon

>
>

 
Reply With Quote
 
Meinolf Weber [MVP-DS]
Guest
Posts: n/a

 
      11-07-2009
Hello Simon,

Please post an unedited ipconfig /all form both machines. Also run repadmin
/showrepl and post the output here. Do you use AD integrated zones?

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm


> Hi The site working has 2 forward zones:
>
> _msdcs.internal.castlevetsltd.co.uk
> and
> internal.castlevetsltd.co.uk
> Whereas the failing site has no entries at all.
>
> Thanks Simon
> Meinolf Weber [MVP-DS] wrote:
>> Hello Simon,
>>
>> What kind of DNS zones are configured on the main site or is that one
>> complete empty now in forward lookup zone? Which kind of zone is used
>> on the second DNS server?
>>
>> Best regards
>>
>> Meinolf Weber
>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>> confers no rights.
>> ** Please do NOT email, only reply to Newsgroups
>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>> Hi,
>>>
>>> I've been onsite again and got the tools installed, but ran out of
>>> time
>>> on the server before consulting time began (yes I know using a
>>> server
>>> as
>>> a workstation) I checked out the DC at the other location and this
>>> has
>>> entries in the forward dns zone but nothing in the problem server ?
>>> I can't get onto the server again until later tonight, although I
>>> have
>>> remote access to it now as I installed VNC as rdp won't
>>> authenticate.
>>> Thanks
>>> Simon
>>> Simon wrote:
>>>> Hi Meinolf,
>>>>
>>>> Thanks again. This is a customer I inherited and never installed
>>>> this
>>>> system. Not only is the DC used for sql etc it's also used as a
>>>> workstation by a vet in the practise where it is. I have told them
>>>> many
>>>> times about this. I wouldn't allow one of my SBS sites to use their
>>>> server for anything but SBS related functions. I'll check out on
>>>> those
>>>> links when I am onsite in the morning.
>>>> The system has been running for a couple of years as is so I am
>>>> confused
>>>> why this issue would occur now.
>>>> Regards
>>>> Simon
>>>> Meinolf Weber [MVP-DS] wrote:
>>>>> Hello Simon,
>>>>>
>>>>> Running applications like SQL or Exchange on DCs is not
>>>>> recommended. DCs should only do there basic job, AD/DNS/GC and
>>>>> maybe DHCP if no member server exists.
>>>>>
>>>>> Make sure that the DNS servers are not forwarding to themself,
>>>>> forwarders should be configured to the ISPs DNS server. Also if
>>>>> not done create a reverse lookup zone.
>>>>>
>>>>> Additional see:
>>>>> http://www.eventid.net/display.asp?e...tno=296&source
>>>>> =D NS&phase=1
>>>>> http://www.eventid.net/display.asp?e...tno=4280&sourc
>>>>> e= DNS&phase=1
>>>>>
>>>>> http://www.eventid.net/display.asp?e...tno=333&source
>>>>> =D NS&phase=1
>>>>>
>>>>> Best regards
>>>>>
>>>>> Meinolf Weber
>>>>> Disclaimer: This posting is provided "AS IS" with no warranties,
>>>>> and
>>>>> confers no rights.
>>>>> ** Please do NOT email, only reply to Newsgroups
>>>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>>> Hi Meinholf
>>>>>>
>>>>>> Thanks for the reply, I'm not on site now but can confirm that
>>>>>> ipconfig
>>>>>> /all showed only this server and also the server at the other
>>>>>> location
>>>>>> as dns servers. The server didn't have those tools installed so I
>>>>>> couldn't run them, I'll be back onsite tomorrow with my server
>>>>>> CDs
>>>>>> to
>>>>>> install these. Luckily the main app is sql and this is still
>>>>>> running
>>>>>> fine.
>>>>>> Simon
>>>>>> Meinolf Weber [MVP-DS] wrote:
>>>>>>> Hello Simon,
>>>>>>>
>>>>>>> Make sure DNS on all NICs is only configured to use domain
>>>>>>> internal DNS servers. Please post an unedited ipconfig /all from
>>>>>>> the DC/DNS servers, so we can exclude this.
>>>>>>>
>>>>>>> Also run the support tools dcdiag /v, netdiag /v to check for
>>>>>>> errors.
>>>>>>>
>>>>>>> Best regards
>>>>>>>
>>>>>>> Meinolf Weber
>>>>>>> Disclaimer: This posting is provided "AS IS" with no warranties,
>>>>>>> and
>>>>>>> confers no rights.
>>>>>>> ** Please do NOT email, only reply to Newsgroups
>>>>>>> ** HELP us help YOU!!!
>>>>>>> http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>>>>> Hi,
>>>>>>>> I have a customer with a small setup between two sites. I got a
>>>>>>>> call
>>>>>>>> this morning saying they cannot access any network shares on
>>>>>>>> the
>>>>>>>> server
>>>>>>>> at one site (both Serer 2003). I was unable to RDP to the
>>>>>>>> server
>>>>>>>> either
>>>>>>>> as it will not authenticate the administrator user. Onsite
>>>>>>>> today
>>>>>>>> and
>>>>>>>> luckily the console isn't locked so I tried to access aduc from
>>>>>>>> there
>>>>>>>> and get the message:
>>>>>>>> naming information cannot be located for the following reason
>>>>>>>> server
>>>>>>>> is
>>>>>>>> not operational. Looking about the internet points to dns
>>>>>>>> problems
>>>>>>>> but
>>>>>>>> all look good there, however there are numerous 4000,4007,4015
>>>>>>>> entries
>>>>>>>> in the event log of dns stating check AD is functioning and
>>>>>>>> reload
>>>>>>>> the
>>>>>>>> zone.
>>>>>>>> The server at the other site seems fine.
>>>>>>>> Any ideas how to progress on this, I didn't want to reboot this
>>>>>>>> server
>>>>>>>> in case I was unable to login after.
>>>>>>>> I normally only deal with SBS and have never come across this
>>>>>>>> issue
>>>>>>>> before.
>>>>>>>> Thanks for any replies.
>>>>>>>> Simon



 
Reply With Quote
 
Simon
Guest
Posts: n/a

 
      11-08-2009
Hi,
I hae another problem now, the serer screen is locked and not accepting
logins. What are my options now ? I will be onsite tomorrow morning.
Thanks
Simon
Meinolf Weber [MVP-DS] wrote:
> Hello Simon,
>
> Please post an unedited ipconfig /all form both machines. Also run
> repadmin /showrepl and post the output here. Do you use AD integrated
> zones?
>
> Best regards
>
> Meinolf Weber
> Disclaimer: This posting is provided "AS IS" with no warranties, and
> confers no rights.
> ** Please do NOT email, only reply to Newsgroups
> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>
>> Hi The site working has 2 forward zones:
>>
>> _msdcs.internal.castlevetsltd.co.uk
>> and
>> internal.castlevetsltd.co.uk
>> Whereas the failing site has no entries at all.
>>
>> Thanks Simon
>> Meinolf Weber [MVP-DS] wrote:
>>> Hello Simon,
>>>
>>> What kind of DNS zones are configured on the main site or is that one
>>> complete empty now in forward lookup zone? Which kind of zone is used
>>> on the second DNS server?
>>>
>>> Best regards
>>>
>>> Meinolf Weber
>>> Disclaimer: This posting is provided "AS IS" with no warranties, and
>>> confers no rights.
>>> ** Please do NOT email, only reply to Newsgroups
>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>> Hi,
>>>>
>>>> I've been onsite again and got the tools installed, but ran out of
>>>> time
>>>> on the server before consulting time began (yes I know using a
>>>> server
>>>> as
>>>> a workstation) I checked out the DC at the other location and this
>>>> has
>>>> entries in the forward dns zone but nothing in the problem server ?
>>>> I can't get onto the server again until later tonight, although I
>>>> have
>>>> remote access to it now as I installed VNC as rdp won't
>>>> authenticate.
>>>> Thanks
>>>> Simon
>>>> Simon wrote:
>>>>> Hi Meinolf,
>>>>>
>>>>> Thanks again. This is a customer I inherited and never installed
>>>>> this
>>>>> system. Not only is the DC used for sql etc it's also used as a
>>>>> workstation by a vet in the practise where it is. I have told them
>>>>> many
>>>>> times about this. I wouldn't allow one of my SBS sites to use their
>>>>> server for anything but SBS related functions. I'll check out on
>>>>> those
>>>>> links when I am onsite in the morning.
>>>>> The system has been running for a couple of years as is so I am
>>>>> confused
>>>>> why this issue would occur now.
>>>>> Regards
>>>>> Simon
>>>>> Meinolf Weber [MVP-DS] wrote:
>>>>>> Hello Simon,
>>>>>>
>>>>>> Running applications like SQL or Exchange on DCs is not
>>>>>> recommended. DCs should only do there basic job, AD/DNS/GC and
>>>>>> maybe DHCP if no member server exists.
>>>>>>
>>>>>> Make sure that the DNS servers are not forwarding to themself,
>>>>>> forwarders should be configured to the ISPs DNS server. Also if
>>>>>> not done create a reverse lookup zone.
>>>>>>
>>>>>> Additional see:
>>>>>> http://www.eventid.net/display.asp?e...tno=296&source
>>>>>> =D NS&phase=1
>>>>>> http://www.eventid.net/display.asp?e...tno=4280&sourc
>>>>>> e= DNS&phase=1
>>>>>>
>>>>>> http://www.eventid.net/display.asp?e...tno=333&source
>>>>>> =D NS&phase=1
>>>>>>
>>>>>> Best regards
>>>>>>
>>>>>> Meinolf Weber
>>>>>> Disclaimer: This posting is provided "AS IS" with no warranties,
>>>>>> and
>>>>>> confers no rights.
>>>>>> ** Please do NOT email, only reply to Newsgroups
>>>>>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>>>> Hi Meinholf
>>>>>>>
>>>>>>> Thanks for the reply, I'm not on site now but can confirm that
>>>>>>> ipconfig
>>>>>>> /all showed only this server and also the server at the other
>>>>>>> location
>>>>>>> as dns servers. The server didn't have those tools installed so I
>>>>>>> couldn't run them, I'll be back onsite tomorrow with my server
>>>>>>> CDs
>>>>>>> to
>>>>>>> install these. Luckily the main app is sql and this is still
>>>>>>> running
>>>>>>> fine.
>>>>>>> Simon
>>>>>>> Meinolf Weber [MVP-DS] wrote:
>>>>>>>> Hello Simon,
>>>>>>>>
>>>>>>>> Make sure DNS on all NICs is only configured to use domain
>>>>>>>> internal DNS servers. Please post an unedited ipconfig /all from
>>>>>>>> the DC/DNS servers, so we can exclude this.
>>>>>>>>
>>>>>>>> Also run the support tools dcdiag /v, netdiag /v to check for
>>>>>>>> errors.
>>>>>>>>
>>>>>>>> Best regards
>>>>>>>>
>>>>>>>> Meinolf Weber
>>>>>>>> Disclaimer: This posting is provided "AS IS" with no warranties,
>>>>>>>> and
>>>>>>>> confers no rights.
>>>>>>>> ** Please do NOT email, only reply to Newsgroups
>>>>>>>> ** HELP us help YOU!!!
>>>>>>>> http://www.blakjak.demon.co.uk/mul_crss.htm
>>>>>>>>> Hi,
>>>>>>>>> I have a customer with a small setup between two sites. I got a
>>>>>>>>> call
>>>>>>>>> this morning saying they cannot access any network shares on
>>>>>>>>> the
>>>>>>>>> server
>>>>>>>>> at one site (both Serer 2003). I was unable to RDP to the
>>>>>>>>> server
>>>>>>>>> either
>>>>>>>>> as it will not authenticate the administrator user. Onsite
>>>>>>>>> today
>>>>>>>>> and
>>>>>>>>> luckily the console isn't locked so I tried to access aduc from
>>>>>>>>> there
>>>>>>>>> and get the message:
>>>>>>>>> naming information cannot be located for the following reason
>>>>>>>>> server
>>>>>>>>> is
>>>>>>>>> not operational. Looking about the internet points to dns
>>>>>>>>> problems
>>>>>>>>> but
>>>>>>>>> all look good there, however there are numerous 4000,4007,4015
>>>>>>>>> entries
>>>>>>>>> in the event log of dns stating check AD is functioning and
>>>>>>>>> reload
>>>>>>>>> the
>>>>>>>>> zone.
>>>>>>>>> The server at the other site seems fine.
>>>>>>>>> Any ideas how to progress on this, I didn't want to reboot this
>>>>>>>>> server
>>>>>>>>> in case I was unable to login after.
>>>>>>>>> I normally only deal with SBS and have never come across this
>>>>>>>>> issue
>>>>>>>>> before.
>>>>>>>>> Thanks for any replies.
>>>>>>>>> Simon

>
>

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Dear Microsoft - UAC (.png & wmp) issues should be addressed. JSandPC Windows Vista Administration 120 12-02-2008 04:42 PM
Access 2007 won't Operate Access 2002 File Ed K Windows Vista Installation 2 10-30-2007 02:38 AM
Re: MSFT Connect Officially Rejects Public Access to Bugs Chad Harris Windows Vista Installation 5 09-10-2006 04:40 AM
Stop Error 0x0000007b Louis LeBrun Windows Vista Installation 17 07-05-2006 09:00 AM
Pocket Access - Sync to Linked Table? Jason Gyetko ActiveSync 1 07-08-2004 03:55 PM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59