Re: user authentication failure on windows 2000 domain



This has nothing to do with the fsmo roles not being available. It has to
do with signed communication between the client and the dc.

--


Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA

This posting is provided "AS IS" with no warranties, and confers no rights.


<bjaming@xxxxxxxxx> wrote in message
news:1136235524.093745.147900@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
>I think maybe you have misunderstood my issue after re-reading your
> comments. I have brought a second domain controller (dc2) online with
> the goal of decommissioing the existing domain controller (dc1) due to
> hardware related issues. If I remove the network cable from the
> existing domain controller (dc1) and attempt to authenticate from a
> workstation I am getting the error condition of not being able to
> authenticate to the domain and not being able to access exchange. Is
> this just due to the FSMO roles being help by the existing domain
> controller (dc1)? It is my understanding that authentication should
> still work and that users should be able to access network resrouces
> (eg-exchange) when the FSMO role holder is in a down state. These are
> not down level clients, they are windows 2000 professional and/or
> windows xp professional.
>


.



Relevant Pages

  • Re: Cached login problem
    ... What are you using for a VPN client? ... clients offer the ability to authenticate to the domain. ... > domain controller after they've already logged in? ...
    (microsoft.public.windows.server.general)
  • RE: 2000 to 2003 domain controller upgrade
    ... Where did you run the Ntdsutil tool to seize the FSMO roles? ... Is it the previous Schema master ... |Subject: RE: 2000 to 2003 domain controller upgrade ... Produced By Microsoft MimeOLE V5.50.4910.0300 ...
    (microsoft.public.windows.server.migration)
  • Re: Client performance problem windows 2003 server...
    ... In addition, if you have the same problem with non-English client, please ... >Subject: Re: Client performance problem windows 2003 server... ... >>>Deploying Active Directory for Branch Office Environments ... >>>results from not having a domain controller in a particular site. ...
    (microsoft.public.windows.server.networking)
  • Re: Sites or Domains
    ... In ref to the FSMO roles if survaivabilty within a location was the main ... Domain controller hardware and security facilities Each Windows Server ... catalog in the forest, preferably in the same Active Directory site. ... forest, the infrastructure master, if placed on a global catalog server, ...
    (microsoft.public.windows.server.active_directory)
  • Re: AD Configuration and Disaster Recovery
    ... Now, as Ryan mentioned, you can transfer or seize FSMO Roles (among many ... FSMO Roles from one existing Domain Controller to another existing Domain ... Of course if you are using them as file servers or to keep ...
    (microsoft.public.windows.server.active_directory)

Loading