Re: W2K DC Rplction prob



"" wrote:
> Hey all,
>
> Im at my witts end with a problem involving domain control
> replacement.
>
> Heres what happened:
>
> About a month ago, a domain controller in my network went to
> the great
> computer god in the sky (hardware failure). So, since I could
> not demote it,
> I used the ntdsutil and removed it from AD. I waited a good
> day for
> everything to converge and replicate everywhere. I checked to
> see if there
> were any lingering issues with that domain controller on ANY
> of my other DCs.
> Everthing looked good.
>
> So, i bought a new server.
> -made it a member with a completely different name.
> -waited for it to appear in all my DCs in the COMPUTERS
> contained in my
> domain (one forrest, two domains btw).
> -then made it a DC via dcpromo.
> -Made it a DNS server secondary to the master.
> -Made it a wins server to help out the old 98 machines.
> -it made some automatic links in the NTDS settings under SITES
> AND SERVICES
> to a couple of the DCs. It put the server in the right site
> based on its IP
> as well.
> -I waited again for this to all converge (waited a day).
> -made it a global catalog
> Everything looked good.
>
> Heres where the prob started:
>
> No user at that site can log in. It keeps giving me "your
> password is
> incorrect" or "no domain server avail for your site" etc...
> Its DHCP service
> is handin gout IPs fine. I look in my DC that is handle most
> of my FSMO roles
> and it shows that the DC in question is having some problems.
>
>
> Errors in the event log of the NEW DC are:
>
> EVENT ID 1000 Userenv
> Windows cannot access the file gpt.ini for GPO The file must
> be present at
> the location <>. (). Group Policy processing aborted.
>
> and
>
> EVENT ID 1000 Userenv
> Windows cannot query for the list of Group Policy objects . A
> message that
> describes the reason for this was previously logged by this
> policy engine.
>
> Also, when i goto my main DC, the one that handles my fsmo
> roles, i cant use
> the SNAP in to connect to any options (such as the event
> viewer, or say
> services) on the new DC. But, if I go to a completely diff
> DC, I can look at
> it fine.
>
> I just demoted it to a member server. It has a SAM entry and
> look s fine
> (other than i cant connect to any of the features through the
> MMC on another
> DC).
>
> It also shows this EVENT ID:
>
> EVENT ID SAM 12296
> The SAM database attempted to clear the directory
> C:WINNTNTDS in order to
> remove files that were once used by the Directory Service. The
> error is in
> record data. Please have an admin delete these files.
>
>
> any help greatly appreciated.

were there other errors in the event logs?

did you run DCDIAG /V

--
Posted using the http://www.windowsforumz.com interface, at author's request
Articles individually checked for conformance to usenet standards
Topic URL: http://www.windowsforumz.com/Active-Directory-W2K-DC-Rplction-prob-ftopict407359.html
Visit Topic URL to contact author (reg. req'd). Report abuse: http://www.windowsforumz.com/eform.php?p=1351610
.



Relevant Pages

  • Re: Client performance problem windows 2003 server...
    ... >Subject: Re: Client performance problem windows 2003 server... ... >Deploying Active Directory for Branch Office Environments ... >results from not having a domain controller in a particular site. ... incorrectly applied site coverage will be bad for clients ...
    (microsoft.public.windows.server.networking)
  • Re: Demoting a DC in W2003
    ... forrest / single domain with three DCs. ... It's only role is being a DC and our primary internal DNS server. ... transfered the FSMO roles from DC1 to DC2 using the MS KB article 324801. ... The local domain controller has attempted to replicate the following object from the following source domain controller. ...
    (microsoft.public.win2000.active_directory)
  • Re: Client performance problem windows 2003 server...
    ... Testing server: Verkstadsgatan\VERKTYG ... Deploying Active Directory for Branch Office Environments ... results from not having a domain controller in a particular site. ... incorrectly applied site coverage will be bad for clients ...
    (microsoft.public.windows.server.networking)
  • RE: NTDS.dit file is currupt
    ... "microsoft" wrote:> We are currently facing a serious problem with one our client server. ... > After rebooting the machine in directory services restore mode, I had> followed the steps below; ntdsutil neither defrag Active Directory Database> nor repair. ... Restart the domain controller. ... Check the integrity of the Active Directory database. ...
    (microsoft.public.win2000.active_directory)
  • Re: Thoroughly confused SBS 2003 Server
    ... fact I first had SBS running on the box that now has the Server Enterprise ... A year ago or moe I put up the second server and made it a domain controller ... The replication generated an error: ...
    (microsoft.public.windows.server.sbs)