0xc00002e1

Discussion in 'Active Directory' started by Joseph M Paineitala, Sep 16, 2009.

  1. You are required to be a member to post replies. After logging in or becoming a member, you will be redirected back to this page.



    Posted as a reply to:

    LASS.EXE Security Account Manager initialization failed

    Hi all

    I have 2 server, the first PDC windows 2003 server, and the second BD
    windows 2000 server

    Yesterday after installation of a windows update on both servers
    restarted both the servers, but the BDC windows 2000 server visualize
    a window with the following message

    "Security Account Manager initialization failed because of th
    followin
    error: Directory Service cannot start. Error Status: 0xc00002e1
    Pleas
    click OK to shutdown the system and reboot into Directory Service
    Restore Mode, check the event log for more detailed information.

    I tried with the instuction published in the article
    http://support.microsoft.com/kb/258062/en-us, but the problem isn'
    resolved

    Someone has an idea
    Thank

    regard
    Corvarola Maurizio

    EggHeadCafe - Software Developer Portal of Choice
    WCF Workflow Services Using External Data Exchange
    http://www.eggheadcafe.com/tutorial...a-6dafb17b6d74/wcf-workflow-services-usi.aspx
     
    Joseph M Paineitala, Sep 16, 2009
    #1
    1. Advertisements

  2. Hello Joseph,

    What exactly did you try? All steps are done without any positive result,
    if i understand you correct? Then you should follow as stated in the article
    to contact either MS support or install the problem DC from scratch.

    And if you are not able to demote it correct, follow this article to cleanup
    AD database on the other existing DC:
    http://support.microsoft.com/kb/555846/en-us

    Best regards

    Meinolf Weber
     
    Meinolf Weber [MVP-DS], Sep 16, 2009
    #2
    1. Advertisements

  3. I agree with Meinolf. My guess is you don't have a lot of AD experience. I
    would suggest you demote this dc and repromote it.

    If you loose a dc you need to use ntdsutil and seize the 5 fsmo roles as
    well as clean up the metadata within AD.

    Run the following on another dc's command prompt
    netdom query fsmo

    This will tell you if any of the roles was on the lost dc.

    Metadata cleanup
    http://support.microsoft.com/?id=216498

    Seize roles
    http://support.microsoft.com/default.aspx?scid=kb;en-us;255504

    --
    Paul Bergson
    MVP - Directory Services
    MCTS, MCT, MCSE, MCSA, Security+, BS CSci
    2008, 2003, 2000 (Early Achiever), NT4
    Microsoft's Thrive IT Pro of the Month - June 2009

    http://www.pbbergs.com

    Please no e-mails, any questions should be posted in the NewsGroup This
    posting is provided "AS IS" with no warranties, and confers no rights.
     
    Paul Bergson [MVP-DS], Sep 16, 2009
    #3
    1. Advertisements

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments (here). After that, you can post your question and our members will help you out.