It was a MTU issue, bloody !@#$!!



Turns out the network adapter in the server I was attempting to promote
wouldn't adjust MTU properly.

We have some pathetic routers - Nortel Instant Internet 100s - that don't
allow for MTU adjustments in IPSEC tunnels. I found it odd that quick
directory listings of netlogon, etc would work, but longer listings
wouldn't. Until I tried ping -f -l tests anyway.

The only thing that changed between the old system and the new system was
the hard drives, and the LAN card - I asked for a Win2K compatible card just
in case they couldn't get the existing LAN card working. I wish they chose a
better LAN card than a D-Link DL-538TX. I ended up hacking the MTU setting
on all three servers - that alone allowed dcpromo to finish.

I now have some DFS replication issues that I think will sort themselves out
once the directory's fully replicated on the replacement server.

--
PGP key (0x0AFA039E): <http://www.pan-am.ca/consulting@xxxxxxxxxxxxx>
Prevent problems before they happen and help others avoid bad design.
<http://www.pan-am.ca/antiwindowscatalog/>


.



Relevant Pages

  • PROBLEM: Oops, nfsd, networking
    ... NFSD crash at large MTU and odd wsize/rsize. ... over NFS to a Linux NFS server. ... Our product is essentially a high end media server that takes in up to ... null getattr setattr root lookup readlink ...
    (Linux-Kernel)
  • Re: AD Replication over SonicWall site-to-site VPN
    ... The MTU can be an Issue: ... Test your MTU from the problem server by pinging the gateway of your router: ... Kerberos authentication service to use TCP instead of UDP. ... there are no explicit prohibitions on any of the ports required. ...
    (microsoft.public.windows.server.active_directory)
  • RE: POP 3 Errors/Warnings
    ... Server MTU is 1472, Router MTU was 1468. ... You can find the method how to set the MTU value for SBS server in my last ...
    (microsoft.public.windows.server.sbs)
  • Re: FRS Only replicates on inbound connection, no changes go out.
    ... All DFS entires show that both in and outbound replication is joined and the status shows OLP_ELIGIBLE but all 3 DFS replicas also only replicate changes into the remote server but not out from it just like sysvol. ... It turned out he recently upgraded one of his VPN router's firmware and specifically the MTU. ... I can do ping tests with the -f switch and it correctly reports the packet requires fragmenting when it reaches a certain size with no "gap" where it simply goes into a request timed out mode. ...
    (microsoft.public.windows.server.active_directory)
  • RE: POP 3 Errors/Warnings
    ... I mean you have to test out the MTU value of your SBS ... You can find the method how to set the MTU value for SBS server in my last ... Microsoft CSS Online Newsgroup Support ...
    (microsoft.public.windows.server.sbs)