Re: recipient update service exchange 2000 fails to stamp email addresses
From: Ace Fekay [MVP] (PleaseSubstituteMyActualFirstName&LastNameHere_at_hotmail.com)
Date: 06/17/04
- Next message: Ace Fekay [MVP]: "Re: Queues and bad mail"
- Previous message: JHP: "Re: Viewing mail"
- In reply to: Petex: "Re: recipient update service exchange 2000 fails to stamp email addresses"
- Messages sorted by: [ date ] [ thread ]
Date: Thu, 17 Jun 2004 17:05:12 -0400
In news:86804ebd.0406170802.95a6fd7@posting.google.com,
Petex <peterharris_uk@hotmail.com> posted their thoughts, then I offered
mine
> AS requested see dcdiag below and the error that follows i found in
> the event log on the exchange server.
> I Found an error in the name resolution, there was an entry in the
> hosts file that sent requests for our other exchange box via the
> internet which has a firewall that blocks everything. I rerooted
> everything via a vpn. i was then able to create a new rus service but
> it didn't help!! still no luck. Checked the permissions.....etc
> ....could SRS be the culprit?
> DC Diagnosis
>
> Performing initial setup:
> * Verifing that the local machine domaincontroler, is a DC.
> * Connecting to directory service on server domaincontroler.
> * Collecting site info.
> * Identifying all servers.
> * Found 4 DC(s). Testing 1 of them.
> Done gathering initial info.
>
> Doing initial non skippeable tests
>
> Testing server: SITES\domaincontroler
> Starting test: Connectivity
> * Active Directory LDAP Services Check
> * Active Directory RPC Services Check
> ......................... domaincontroler passed test
> Connectivity
>
> Doing primary tests
>
> Testing server: SITES\domaincontroler
> Starting test: Replications
> * Replications Check
> ......................... domaincontroler passed test
> Replications
> Test omitted by user request: Topology
> Test omitted by user request: CutoffServers
> Starting test: NCSecDesc
> * Security Permissions Check for
> CN=Schema,CN=Configuration,DC=groupe,DC=company
> * Security Permissions Check for
> CN=Configuration,DC=groupe,DC=company
> * Security Permissions Check for
> DC=groupe,DC=company
> ......................... domaincontroler passed test
> NCSecDesc
> Starting test: NetLogons
> * Network Logons Privileges Check
> ......................... domaincontroler passed test
> NetLogons
> Starting test: Advertising
> The DC domaincontroler is advertising itself as a DC and
> having a DS.
> The DC domaincontroler is advertising as an LDAP server
> The DC domaincontroler is advertising as having a writeable
> directory
> The DC domaincontroler is advertising as a Key Distribution
> Center
> The DC domaincontroler is advertising as a time server
> The DS domaincontroler is advertising as a GC.
> ......................... domaincontroler passed test
> Advertising
> Starting test: KnowsOfRoleHolders
> Role Schema Owner = CN=NTDS
>
Settings,CN=domaincontroler,CN=Servers,CN=SITES,CN=Sites,CN=Configuration,DC
=groupe,DC=company
> Role Domain Owner = CN=NTDS
>
Settings,CN=domaincontroler,CN=Servers,CN=SITES,CN=Sites,CN=Configuration,DC
=groupe,DC=company
> Role PDC Owner = CN=NTDS
>
Settings,CN=domaincontroler,CN=Servers,CN=SITES,CN=Sites,CN=Configuration,DC
=groupe,DC=company
> Role Rid Owner = CN=NTDS
>
Settings,CN=domaincontroler,CN=Servers,CN=SITES,CN=Sites,CN=Configuration,DC
=groupe,DC=company
> Role Infrastructure Update Owner = CN=NTDS
>
Settings,CN=domaincontroler,CN=Servers,CN=SITES,CN=Sites,CN=Configuration,DC
=groupe,DC=company
> ......................... domaincontroler passed test
> KnowsOfRoleHolders
> Starting test: RidManager
> * Available RID Pool for the Domain is 9603 to 1073741823
> * domaincontroler.groupe.company is the RID Master
> * DsBind with RID Master was successful
> * rIDAllocationPool is 6103 to 6602
> * rIDNextRID: 6339
> * rIDPreviousAllocationPool is 6103 to 6602
> ......................... domaincontroler passed test
> RidManager
> Starting test: MachineAccount
> * SPN found
>> LDAP/domaincontroler.groupe.company/groupe.company
> * SPN found :LDAP/domaincontroler.groupe.company
> * SPN found :LDAP/domaincontroler
> * SPN found :LDAP/domaincontroler.groupe.company/Gcompany
> * SPN found
>> LDAP/00b784fa-06f3-4ffe-b67c-4f7e6c338cb2._msdcs.groupe.company
> * SPN found
>>
E3514235-4B06-11D1-AB04-00C04FC2DCD2/00b784fa-06f3-4ffe-b67c-4f7e6c338cb2/gr
oupe.company
> * SPN found
>> HOST/domaincontroler.groupe.company/groupe.company
> * SPN found :HOST/domaincontroler.groupe.company
> * SPN found :HOST/domaincontroler
> * SPN found :HOST/domaincontroler.groupe.company/Gcompany
> * SPN found :GC/domaincontroler.groupe.company/groupe.company
> ......................... domaincontroler passed test
> MachineAccount
> Starting test: Services
> * Checking Service: Dnscache
> * Checking Service: NtFrs
> * Checking Service: IsmServ
> * Checking Service: kdc
> * Checking Service: SamSs
> * Checking Service: LanmanServer
> * Checking Service: LanmanWorkstation
> * Checking Service: RpcSs
> * Checking Service: RPCLOCATOR
> * Checking Service: w32time
> * Checking Service: TrkWks
> * Checking Service: TrkSvr
> * Checking Service: NETLOGON
> ......................... domaincontroler passed test
> Services
> Test omitted by user request: OutboundSecureChannels
> Starting test: ObjectsReplicated
> domaincontroler is in domain DC=groupe,DC=company
> Checking for CN=domaincontroler,OU=Domain
> Controllers,DC=groupe,DC=company in domain DC=groupe,DC=company on 1
> servers
> Object is up-to-date on all servers.
> Checking for CN=NTDS
>
Settings,CN=domaincontroler,CN=Servers,CN=SITES,CN=Sites,CN=Configuration,DC
=groupe,DC=company
> in domain CN=Configuration,DC=groupe,DC=company on 1 servers
> Object is up-to-date on all servers.
> ......................... domaincontroler passed test
> ObjectsReplicated
> Starting test: frssysvol
> * The File Replication Service Event log test
> The SYSVOL has been shared, and the AD is no longer
> prevented from starting by the File Replication Service.
> ......................... domaincontroler passed test
> frssysvol
> Starting test: kccevent
> * The KCC Event log test
> Found no KCC errors in Directory Service Event log in the
> last 15 minutes.
> ......................... domaincontroler passed test
> kccevent
> Starting test: systemlog
> * The System Event log test
> Found no errors in System Event log in the last 60 minutes.
> ......................... domaincontroler passed test
> systemlog
>
> Running enterprise tests on : groupe.company
> Starting test: Intersite
> Skipping site PONTHIEU, this site is outside the scope
> provided by the
>
> command line arguments provided.
> Skipping site SITES, this site is outside the scope provided
> by the
>
> command line arguments provided.
> ......................... groupe.company passed test
> Intersite
> Starting test: FsmoCheck
> GC Name: \\domaincontroler.groupe.company
> Locator Flags: 0xe00001fd
> PDC Name: \\domaincontroler.groupe.company
> Locator Flags: 0xe00001fd
> Time Server Name: \\domaincontroler.groupe.company
> Locator Flags: 0xe00001fd
> Preferred Time Server Name: \\domaincontroler.groupe.company
> Locator Flags: 0xe00001fd
> KDC Name: \\domaincontroler.groupe.company
> Locator Flags: 0xe00001fd
> ......................... groupe.company passed test
> FsmoCheck
>
>
> After increasing the audit level on the exchange server to max i have
> this error in the aplication log
> Event Type: Warning
> Event Source: MSExchangeAL
> Event Category: LDAP Operations
> Event ID: 8033
> Date: 6/17/2004
> Time: 1:50:32 PM
> User: N/A
> Computer: Exchange
> Description:
> LDAP search result on directory dc.domain for entry
> 'DC=groupe,DC=company' was unsuccessful with error:[0x1] Operations
> Error [ 000020EF: SvcErr: DSID-020505D4, problem 5012 (DIR_ERROR),
> data -1526
> ].
>
> For more information, click
> http://www.microsoft.com/contentredirect.asp.
Thanks for posting that info. Your DC infor looks good from what I can see
so far.
Apparently you're implying that you have a mixed environment (because you
said the "SRS service") with Ex55 and Ex2k?
As far as the VPN, are there any restrictions as far as ports or services?
AD LDAP communication requires a range of ports. Is there a GC available for
the Exchange box on the same subnet? That can cause LDAP issues as well and
cause the RUS to fail (it gets its AD info from the GC).
-- Regards, Ace Please direct all replies to the newsgroup so all can benefit. This posting is provided "AS-IS" with no warranties and confers no rights. Ace Fekay, MCSE 2000, MCSE+I, MCSA, MCT, MVP Microsoft Windows MVP - Active Directory HAM AND EGGS: A day's work for a chicken; A lifetime commitment for a pig. -- =================================
- Next message: Ace Fekay [MVP]: "Re: Queues and bad mail"
- Previous message: JHP: "Re: Viewing mail"
- In reply to: Petex: "Re: recipient update service exchange 2000 fails to stamp email addresses"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|