"Angel Blue01" <> wrote in message news:bbe07069-5f06-4405-b55d-...
> I'm having some serious DNS and AD problems in Win2003 that seem to be
> linked: users cannot access shared on the server, Group Policy doesn't
> seem to be replicating, I cannot add machines to the domain and all
> machines including the domain controller take a very long time to
> boot.
>
> I have large numbers of Events 1126 (Description: Active Directory was
> unable to establish a connection with the global catalog. Error value:
> 1355 The specified domain either does not exist or could not be
> contacted.
> ), 1655 (Description: Active Directory attempted to communicate with
> the following global catalog and the attempts were unsuccessful.
> Global catalog: \\SMMPSERVER.smmp.lan The operation in progress might
> be unable to continue. Active Directory will use the domain controller
> locator to try to find an available global catalog server. Error
> value: 5 Access is denied.) and 1869 (
> Description:Active Directory has located a global catalog in the
> following site. Global catalog: \\SMMPSERVER.smmp.lan Site: Default-
> First-Site-Name) in the Directory Service log and Event 4000
> (Description:The DNS server was unable to open Active Directory. This
> DNS server is configured to obtain and use information from the
> directory for this zone and is unable to load the zone without it.
> Check that the Active Directory is functioning properly and reload the
> zone.) and 4013 (Description: The DNS server was unable to open the
> Active Directory. This DNS server is configured to use directory
> service information and can not operate without access to the
> directory. The DNS server will wait for the directory to start. If the
> DNS server is started but the appropriate event has not been logged,
> then the DNS server is still waiting for the directory to start.) in
> the DNS Server log.
>
> There is one box serving Active Directory, DNS and file server roles
> for a number of workstations.
>
> The Forward Lookup Zones and Reverse Lookup Zones in the DNS
> Management Console were blank, I created a new forward lookup zone
> called _msdcs.smmp.lan to try to resolve the problem.
>
> I've run netdiag /fix and dcdiag /fix to try to fix the problems.
>
> Here's the results of netdiag /fix
>
<snipped>
Follow Danny's suggestion. Also, please post:
1. An ipconfig /all
2. The name of the AD DNS domain name as it shows up in ADUC.
3. Are updates set to Allow or Secure Only?
4. Run a dcdiag /fix, as well, and post the results.
5. Is the DHCP Client service disabled? An other services disabled?
Thanks,
--
Ace
This posting is provided "AS-IS" with no warranties or guarantees and confers no rights.
Please reply back to the newsgroup or forum for collaboration benefit among responding engineers, and to help others benefit from your resolution.
Ace Fekay, MVP, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007, MCSE & MCSA 2003/2000, MCSA Messaging 2003
Microsoft Certified Trainer
Microsoft MVP - Directory Services
If you feel this is an urgent issue and require immediate assistance, please contact Microsoft PSS directly. Please check
http://support.microsoft.com for regional support phone numbers.