Re: Need to start from scratch..?

From: Enkidu (enkidu_at_xyzcliffpxyz.com)
Date: 04/22/04


Date: Thu, 22 Apr 2004 19:24:27 +1200

On Wed, 21 Apr 2004 10:57:17 -0400, Brad Berson <userj@no.spam> wrote:

>On Wed, 21 Apr 2004 19:08:31 +1200, Enkidu <enkidu@xyzcliffpxyz.com>
>wrote:
>
>>On Tue, 20 Apr 2004 17:20:39 -0400, Brad Berson <userj@no.spam> wrote:
>>
>>>This is the kind of thing that needs a newsgroup called
>>>microsoft.public.oh.my.god...
>>>
>>>Have a single-server office with the one server acting as the sole DC,
>>>runs Win2K SP4 and E2K SP3. Has about a dozen active users and 4GB of
>>>mailbox data in Exchange.
>>>
>>>The box has been hiccuping for months and all the reboots and screwy
>>>consultants have left it with subtle but substantial metabase
>>>corruption (all kinds of bits missing from the metabse schema) and a
>>>domain that can't be recognised by the clients or be joined to. All
>>>functionality right now works, but only on the level of pass-through
>>>authentication. Frankly it's a miracle any of it works at all.
>>>
>>>It looks like I'm going to need to rebuild the server from scratch...
>>>meaning: export the accounts, back up file data, back up Exchange,
>>>blow away the partitions, install Windows, drivers, Exchange, patches,
>>>etc., import accounts, restore file data and restore Exchange.
>>>
>>>Anyone have any tips for me before I embark down this dark, winding
>>>road??
>>>
>>>And specifically, what happens with the original SIDs vs Exchange
>>>mailboxes, etc?
>>>
>>>Or is there another way that doesn't involve selling my soul to Satan?
>>>
>>Can you hire a machine for a month or so? I'd hesitate to do all that
>>at once! I'd get in a hire machine, install it as a second DC, move
>>eveything across, and rebuild and move everything back. That's
>>assuming that you can get it to play AD with the old one. If not
>>rebuild on the hire machine, wipe and rebuild the old one (empty) and
>>move everything across,
>
>I already considered the idea of putting in a temporary server but I
>can't even get machines to join the domain, much less become a domain
>controller! The output from DCDIAG is not promising...
>
> Starting test: Connectivity
> *** Warning: could not confirm the identity of this server in
> the directory versus the names returned by DNS servers.
> If there are problems accessing this directory server then
> you may need to check that this server is correctly registered
> with DNS
>
> Starting test: FsmoCheck
> Warning: DcGetDcName(PDC_REQUIRED) call failed, error 1355
> A Primary Domain Controller could not be located.
> The server holding the PDC role is down.
> ......................... DOMAIN.com failed test FsmoCheck
>
>There are also failures to register the RR in DNS, and MS's tech notes
>that apply to that symptom are not relevant. And I'm getting Event
>1202s every five minutes, "Security policies are propagated with
>warning. 0x4b8 : An extended error has occurred." And once again,
>MS's tech note (re Power Users) is not applicable.
>
>As a last resort I'm going to take a stab at rebuilding the domain
>database (in SYSVOL?) to see if that brings the domain back to life,
>but the fact that MetaEdit's "check" function turned up so many
>inconsistencies in the metabase, and the fact that NTFRS also needed
>to be reset (was getting "The File Replication Service has detected
>that the replica set "DOMAIN SYSTEM VOLUME (SYSVOL SHARE)" is in
>JRNL_WRAP_ERROR"), makes me doubt it's worth the effort to invest much
>more time in cleaning up the mess on this box.
>
I think you are right. A rebuild from scratch looks to be the best
course. How did it ever get in such a mess? (Rhetorical question)

Cheers,

Cliff



Relevant Pages

  • Re: cant access my own website
    ... someone previously made the DNS change (that SuperGumby ... recommended to you) on your server prior to your rebuild. ... names and I had no problems accessing the web site until the rebuild ...
    (microsoft.public.backoffice.smallbiz2000)
  • Re: dcpromo - demotion
    ... When you have a Domain Controller and you need to gracefully demote it one ... change that setting so that it is pointing to at least one other DNS Server ... This will help with the DNS ... so wanted to demote it and rebuild it. ...
    (microsoft.public.windows.server.active_directory)
  • Re: About Replicating Graphs and Trees
    ... and after the synch is complete rebuild the Paths ... But -- this would mean rebuilding the Paths on both the Server and on the ... > The distributed issue really boils down to collisions. ... you are back to the mess. ...
    (microsoft.public.sqlserver.replication)
  • Re: Default e-mail addresses not being created
    ... > You mentioned that you have rebuilt the RUS. ... and then click either Update Now or Rebuild. ... > server" box. ... > a valid Exchange server in the site, click OK, and then click OK ...
    (microsoft.public.exchange2000.general)
  • Re: Remote Desktop connect then disconnects
    ... OK, if you already did the rebuild from scratch, it's not much use ... Basically, everything works fine, except rdp, isn't it? ... for dropping the connection. ... MCSE, CCEA, Microsoft MVP - Terminal Server ...
    (microsoft.public.windows.terminal_services)