Remove old DC's from AD

From: Piet (anonymous_at_discussions.microsoft.com)
Date: 09/16/04


Date: Thu, 16 Sep 2004 01:37:47 -0700

HI

Here is my problem.

We removed 3 DC from the domain 2 of them we
decommisioned using dcpromo the other got stolen, it was
test Machine

Now the problem is that we setup dns and dhcp of the last
we had, seems it working. the problem is that i get the
following events they are event 1265 , 1655 and 1411

How can i remove the old DC data from current so that it
doesn't see there was other DC before

In 1655 and 1411 they talk about the dc, that is the
current DC and only dc we have.

Let me paste events
Event 1265
i get this event for 4 different DC
Event Type: Warning
Event Source: NTDS KCC
Event Category: (1)
Event ID: 1265
Date: 16/09/2004
Time: 10:32:30 AM
User: N/A
Computer: GGBDC01
Description:
The attempt to establish a replication link with
parameters
 
 Partition: CN=Schema,CN=Configuration,DC=ggb,DC=org,DC=za
 Source DSA DN: CN=NTDS
Settings,CN=GGBFPS01,CN=Servers,CN=Default-First-Site-
Name,CN=Sites,CN=Configuration,DC=ggb,DC=org,DC=za
 Source DSA Address: 2288e4f3-593e-43e2-bb16-
3d807679e15b._msdcs.ggb.org.za
 Inter-site Transport (if any):
 
 failed with the following status:
 
 The DSA operation is unable to proceed because of a DNS
lookup failure.
 
 The record data is the status code. This operation will
be retried.

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 4c 21 00 00 L!..

For Event 1655

Event Type: Warning
Event Source: NTDS General
Event Category: (18)
Event ID: 1655
Date: 16/09/2004
Time: 10:03:42 AM
User: NT AUTHORITY\ANONYMOUS LOGON
Computer: GGBDC01
Description:
The attempt to communicate with global catalog \\ggbdc01
failed with the following status:
 
 A Service Principal Name (SPN) could not be constructed
because the provided hostname is not in the necessary
format.
 
The operation in progress might be unable to continue.
The directory service will use the locator to try find an
available global catalog server for the next operation
that requires one.
 
 The record data is the status code.

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 6a 21 00 00 j!..

And last but not least it 1411

Event Type: Error
Event Source: NTDS Replication
Event Category: (5)
Event ID: 1411
Date: 16/09/2004
Time: 10:03:42 AM
User: NT AUTHORITY\ANONYMOUS LOGON
Computer: GGBDC01
Description:
The Directory Service failed to construct a mutual
authentication Service Principal Name (SPN) for server
ggbdc01. The call is denied. The error was:
 A Service Principal Name (SPN) could not be constructed
because the provided hostname is not in the necessary
format.
 
 The record data is the status code.

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 6a 21 00 00 j!..

Thanks
Piet



Relevant Pages

  • Re: Service Principal Name in Kerberos
    ... This is not an SPN, as it does not use the syntax required. ... don¡¯t have a Kerberos level trust, you better use the implicit UPN. ... Microsoft Online Community Support ... where an initial response from the community or a Microsoft Support ...
    (microsoft.public.platformsdk.security)
  • Re: Service Principal Name in Kerberos
    ... This is not an SPN, as it does not use the syntax required. ... don¡¯t have a Kerberos level trust, you better use the implicit UPN. ... Microsoft Online Community Support ... where an initial response from the community or a Microsoft Support ...
    (microsoft.public.platformsdk.security)
  • Re: Service Principal Name in Kerberos
    ... Domain\AppServerUser and when SPN is registered in the form ... I don't take into account IE, IIS, etc., because ... Microsoft Online Community Support ...
    (microsoft.public.platformsdk.security)