Re: Active Directory and DNS errors

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



I'm guessing you experience those problems because you have a SINGLE LABEL
DNS NAME.
That requires additional configuration.
see:
MS-KBQ300684_Information about configuring Windows for domains with
single-label DNS names

DNS names for domain should preferrably have at least 2 levels like
domain.com or domain.local

--

Cheers,
(HOPEFULLY THIS INFORMATION HELPS YOU!)

# Jorge de Almeida Pinto # MVP Windows Server - Directory Services

BLOG --> http://blogs.dirteam.com/blogs/jorge/default.aspx
-----------------------------------------------------------------------------
* This posting is provided "AS IS" with no warranties and confers no rights!
* Always test before implementing!
-----------------------------------------------------------------------------


-----------------------------------------------------------------------------
"Ben" <Ben@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:63B6AA10-B876-4D74-9B53-9389CBE4DFB5@xxxxxxxxxxxxxxxx


Renaming the netlogon.old with restarting netlogon service, dcdiag /fix,
netdiag /fix did not work for me.

The following are errors found on the 2 DC, SERVER1 and SERVER2, in my
domain, ACME (there is only 2 DC in the domain)


_____________
SERVER 1


.Netdiag error:
DNS test . . . . . . . . : Failed
[FATAL]: The DNS registration for 'SERVER1.ACME' is incorrect on all DNS
servers.


.Dcdiag error:
Starting test: kccevent
An Warning Event occurred: EventID: 0x800004F1
Time generated: 03/07/2006
(Event String could not be retreived)
An Warning Event occurred: EventID: 0x800004F1
Time generated: 03/07/2006
(Event String could not be retreived)
An Warning Event occurred: EventID: 0x800004F1
Time generated: 03/07/2006
(Event String could not be retreived)
. . . . . . . . . . . . . . . SERVER1 failed test kccevent


.Event viewer DIRECTORY SERVICE:
Source: NTDS KCC
Event Id: 1265
Description: The attempt to establish a replication link with parameters

Partition: CN=Schema,CN=Configuration,DC=domain
Source DSA DN: CN=NTDS
Settings,CN=SERVER2,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=ACME
Source DSA Address: f32e9ce4-ed30-4664-8567-adfd0a11e03a._msdcs.ACME
Inter-site Transport (if any):

failed with the following status:
The DSA operation is unable to proceed because of a DNS lookup failure.
The record data is the status code. This operation will be retried.
Data:
0000: 4c 21 00 00 L!..


______________



______________
SERVER 2


.Netdiag error:
DNS test . . . . . . . . . . . . . : Failed
[WARNING] Cannot find a primary authoritative DNS server for the name
'SERVER2.ACME.'. [RCODE_SERVER_FAILURE]
The name 'SERVER2.ACME.' may not be registered in DNS.
[WARNING] The DNS entries for this DC are not registered correctly on DNS
server 'SERVER1.ACME.'. Please wait for 30 minutes for DNS server
replication.
[FATAL] No DNS servers have the DNS records for this DC registered.


.Dcdiag error:
Doing initial required tests
Testing server: Default-First-Site-Name\SERVER2
Starting test: Connectivity
f32e9ce4-ed30-4664-8567-adfd0a11e03a._msdcs.ACME's server GUID DNS name
could not be resolved to an IP address. Check the DNS server, DHCP,
server
name, etc. Although the Guid DNS name
(f32e9ce4-ed30-4664-8567-adfd0a11e03a._msdcs.ACME) couldn't be resolved,
the
server name (SERVER2.ACME) resolved to the IP address(192.168.1.222) and
was
pingable. Check that the IP address is registered correctly with the DNS
server.
........................ SERVER2 failed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\SERVER2
Skipping all tests, because server SERVER2 is not responding to directory
service requests


.Event viewer FILE REPLICATION SERVICE:
Event Source: NtFrs
Event ID: 13562
Description:
Following is the summary of warnings and errors encountered by File
Replication Service while polling the Domain Controller cgcbkp.cgc1 for
FRS
replica set configuration information.
The nTDSConnection object cn=e8cf985b-92e2-4cd4-9c9d-f90d44db597c,cn=ntds
settings,cn=SERVER2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=ACME
is conflicting with cn=SERVER1,cn=ntds
settings,cn=SERVER2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=ACME.
Using cn=e8cf985b-92e2-4cd4-9c9d-f90d44db597c,cn=ntds
settings,cn=SERVER2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=ACME


.Event viewer SYSTEM:
Event Source: NETLOGON
Event ID: 5781
Description:
Dynamic registration or deregistration of one or more DNS records failed
because no DNS servers are available.
Data:
0000: 2a 23 00 00 *#..

____________________

I tried different "medecine" but none worked. I suspect a missing
entry(ies)
in the DNS. All products are 2000 and Microsoft. DNS is Active directory
integrated.

Any idea is welcome, i'm getting desperated..
Thank you


.



Relevant Pages

  • Re: SBS 2003 and Replication Errors with Remote DC
    ... alpha server as soon as you can to get things going. ... A simple DNS replication test is to create a host record in the SBS server ... Domain Controller Diagnosis ...
    (microsoft.public.windows.server.sbs)
  • Re: SBS 2003 and Replication Errors with Remote DC
    ... I did make the changes that you suggested on the DNS of my alpha server and rebooted. ... I did run the simple DNS test that you suggested by adding a host record to my SBS server. ... A simple DNS replication test is to create a host record in the SBS server and wait till it shows up in the remote server. ...
    (microsoft.public.windows.server.sbs)
  • Re: how do i move primary DC from one machine to another
    ... Test omitted by user request: DNS ... Connecting to directory service on server WIN2003DC. ... Replication Site Latency Check ...
    (microsoft.public.windows.server.general)
  • Re: error 8254 DNS Lookup failure
    ... FYI, I repointed the DNS to one server, deleted the contents of _MSDCS ... > in the same site, Replication has been fine up until yesterday, the ... > Starting test: CrossRefValidation ...
    (microsoft.public.win2000.dns)
  • Re: WINS and DNS issue
    ... When I said the that DNS server is configured to to replicate to all other ... Ive had a look at the options under replication, ... It says to set this if you want a 2000 server to load the zone. ...
    (microsoft.public.win2000.dns)