Re: Group policy Error; Event ID 1030 & 1058



Hello Meinolf, Good Day to you. I have done everything as per your
instruction & I still keep getting all the errors.

Please find Ipconfig /all below:



Windows IP Configuration



Host Name . . . . . . . . . . . . : mudonmainsrvr

Primary Dns Suffix . . . . . . . : mudonsiteoff.local

Node Type . . . . . . . . . . . . : Unknown

IP Routing Enabled. . . . . . . . : No

WINS Proxy Enabled. . . . . . . . : No

DNS Suffix Search List. . . . . . : mudonsiteoff.local



Ethernet adapter Local Area Connection 2:



Connection-specific DNS Suffix . : mudonsiteoff.local

Description . . . . . . . . . . . : HP NC373i Multifunction Gigabit
Server Adapter #2

Physical Address. . . . . . . . . : 00-1A-4B-E9-FD-4A

DHCP Enabled. . . . . . . . . . . : No

IP Address. . . . . . . . . . . . : 192.168.1.20

Subnet Mask . . . . . . . . . . . : 255.255.255.0

Default Gateway . . . . . . . . . : 192.168.1.10

DNS Servers . . . . . . . . . . . : 192.168.1.20

Please find netdiag.exe below:


.....................................

Computer Name: MUDONMAINSRVR
DNS Host Name: mudonmainsrvr.mudonsiteoff.local
System info : Microsoft Windows Server 2003 R2 (Build 3790)
Processor : x86 Family 6 Model 15 Stepping 6, GenuineIntel
List of installed hotfixes :
KB921503
KB924667-v2
KB925398_WMP64
KB925876
KB925902
KB926122
KB927891
KB929123
KB930178
KB931784
KB932168
KB933360
KB933729
KB933854
KB935839
KB935840
KB935966
KB936021
KB936357
KB936782
KB937143
KB937143-IE7
KB938127
KB938127-IE7
KB939653-IE7
KB941202
KB941568
KB941569
KB941672
KB942615-IE7
KB942763
KB943460
KB944653
Q147222


Netcard queries test . . . . . . . : Passed



Per interface results:

Adapter : Local Area Connection 2

Netcard queries test . . . : Passed

Host Name. . . . . . . . . : mudonmainsrvr.mudonsiteoff.local
IP Address . . . . . . . . : 192.168.1.20
Subnet Mask. . . . . . . . : 255.255.255.0
Default Gateway. . . . . . : 192.168.1.10
Dns Servers. . . . . . . . : 192.168.1.20


AutoConfiguration results. . . . . . : Passed

Default gateway test . . . : Passed

NetBT name test. . . . . . : Passed
[WARNING] At least one of the <00> 'WorkStation Service', <03>
'Messenger Service', <20> 'WINS' names is missing.
No remote names have been found.

WINS service test. . . . . : Skipped
There are no WINS servers configured for this interface.


Global results:


Domain membership test . . . . . . : Passed


NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{90E36FA0-B07E-407E-A26A-6D966D565985}
1 NetBt transport currently configured.


Autonet address test . . . . . . . : Passed


IP loopback ping test. . . . . . . : Passed


Default gateway test . . . . . . . : Passed


NetBT name test. . . . . . . . . . : Passed
[WARNING] You don't have a single interface with the <00> 'WorkStation
Service', <03> 'Messenger Service', <20> 'WINS' names defined.


Winsock test . . . . . . . . . . . : Passed


DNS test . . . . . . . . . . . . . : Passed
PASS - All the DNS entries for DC are registered on DNS server
'192.168.1.20'.


Redir and Browser test . . . . . . : Passed
List of NetBt transports currently bound to the Redir
NetBT_Tcpip_{90E36FA0-B07E-407E-A26A-6D966D565985}
The redir is bound to 1 NetBt transport.

List of NetBt transports currently bound to the browser
NetBT_Tcpip_{90E36FA0-B07E-407E-A26A-6D966D565985}
The browser is bound to 1 NetBt transport.


DC discovery test. . . . . . . . . : Passed


DC list test . . . . . . . . . . . : Passed


Trust relationship test. . . . . . : Skipped


Kerberos test. . . . . . . . . . . : Passed


LDAP test. . . . . . . . . . . . . : Passed


Bindings test. . . . . . . . . . . : Passed


WAN configuration test . . . . . . : Skipped
No active remote access connections.


Modem diagnostics test . . . . . . : Passed

IP Security test . . . . . . . . . : Skipped

Note: run "netsh ipsec dynamic show /?" for more detailed information


The command completed successfully

Please find the dcdiag.exe below:


Domain Controller Diagnosis

Performing initial setup:
Done gathering initial info.

Doing initial required tests

Testing server: Default-First-Site-Name\MUDONMAINSRVR
Starting test: Connectivity
......................... MUDONMAINSRVR passed test Connectivity

Doing primary tests

Testing server: Default-First-Site-Name\MUDONMAINSRVR
Starting test: Replications
......................... MUDONMAINSRVR passed test Replications
Starting test: NCSecDesc
......................... MUDONMAINSRVR passed test NCSecDesc
Starting test: NetLogons
......................... MUDONMAINSRVR passed test NetLogons
Starting test: Advertising
......................... MUDONMAINSRVR passed test Advertising
Starting test: KnowsOfRoleHolders
......................... MUDONMAINSRVR passed test
KnowsOfRoleHolders
Starting test: RidManager
......................... MUDONMAINSRVR passed test RidManager
Starting test: MachineAccount
......................... MUDONMAINSRVR passed test MachineAccount
Starting test: Services
......................... MUDONMAINSRVR passed test Services
Starting test: ObjectsReplicated
......................... MUDONMAINSRVR passed test ObjectsReplicated
Starting test: frssysvol
......................... MUDONMAINSRVR passed test frssysvol
Starting test: frsevent
......................... MUDONMAINSRVR passed test frsevent
Starting test: kccevent
......................... MUDONMAINSRVR passed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0xC25A0416
Time Generated: 12/30/2007 15:34:30
(Event String could not be retrieved)
An Error Event occured. EventID: 0x000003F0
Time Generated: 12/30/2007 15:35:35
(Event String could not be retrieved)
......................... MUDONMAINSRVR failed test systemlog
Starting test: VerifyReferences
......................... MUDONMAINSRVR passed test VerifyReferences

Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test
CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom

Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test
CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom

Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom

Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test
CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom

Running partition tests on : mudonsiteoff
Starting test: CrossRefValidation
......................... mudonsiteoff passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... mudonsiteoff passed test CheckSDRefDom

Running enterprise tests on : mudonsiteoff.local
Starting test: Intersite
......................... mudonsiteoff.local passed test Intersite
Starting test: FsmoCheck
......................... mudonsiteoff.local passed test FsmoCheck

Please advice on what must be done next.

Thank You & Kind regards

philip


"Meinolf Weber" wrote:

Hello sphilip,

Active directory is based on DNS configuration as the main part. If DNS is
not proper configured there can be so many problems, also that one.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.dts-l.org/goodpost.htm

Ok Meinwolf,

Please tell me, do you think making these changes will also correct my
following error:

Access is Denied.

Failed to Save.

\\domain name\sysvol\domain

name\policies\{6AC1786C-016F-11D2-945F-00C04FB9-84F9}\Machine\Microsof
t\Windows NT\Sec Edit\GptTmpl.inf

Make sure you have the right permissions to this object.

Like I mentioned earlier this was the root of all problems in my DC.

I will however make the changes & will let you know of my results.

cheers

"Meinolf Weber" wrote:

Hello sphilip,

Not at the moment. I am really satisfied that the errors will
disappear. Make your tests and afterwards you can run dcdiag and
netdiag on the dc. Should run without any error, if you have some
post the complete outpu from the command here.

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and
confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.dts-l.org/goodpost.htm
Ok I will try this change & come back to you with the results.
Please let me know if u need anymore logs after i make these changes
as adviced by you.

cheers

"Meinolf Weber" wrote:

Hello sphilip,

see inline

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties,
and
confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.dts-l.org/goodpost.htm
Hello Meinolf,

On my DC NIC 213.42.20.20 is the alternate DNS server.

1. Can we leave this alternate DNS server blank?

Yes, if you only have one DNS server only use the internal ip
address.

2. How do I configure 213.42.20.20 as forwarder in the DNS
management console?

In the run line of the DNS server type dnsmgmt.msc and press enter.
Open the DNS server properties and choose the Tab Forwarders. Here
add the ISP's DNS server address. If it is not possible, because it
is greyed out, delete under Forward lookup zones the .zone close
the console and reopen it. Then you will be able to fill it in.

3. do you think this will resolve my group policy problem?

I am not 100 % sure, but this kind of configuration can end in
problems like you have.

Thank You

"Meinolf Weber" wrote:

Hello sphilip,

As a first step remove the 213.42.20.20 from the DNS NIC
configuration. Inside
your domain you have only to work with your internal DNS server
ip.
The 213.42.20.20,
i assume from your ISP DNS server, has to be comfigured as
forwarder
on the
dns management console on the DNS server properties tab
"Forwarders".
Also if your clients use the 213.42.20.20 as DNS server on the
NIC
configuration,
remove it.
Best regards
Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties,
and
confers
no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.dts-l.org/goodpost.htm
213.42.20.20




.



Relevant Pages

  • Re: nslookup, dns, domain issues.
    ... "Meinolf Weber" wrote: ... NIC and set your domain internal DNS server 192.168.1.12 Then ... Running partition tests on: ForestDnsZones ... Starting test: CrossRefValidation ...
    (microsoft.public.windows.server.active_directory)
  • Re: nslookup, dns, domain issues.
    ... "Meinolf Weber" wrote: ... NIC and set your domain internal DNS server 192.168.1.12 Then ... Running partition tests on: ForestDnsZones ... Starting test: CrossRefValidation ...
    (microsoft.public.windows.server.active_directory)
  • Re: Error 1058 Userenv
    ... "Meinolf Weber" wrote: ... Please post the complete event viewer entries. ... It is a DC and also DNS server. ... Windows cannot query for the list of Group Policy objects. ...
    (microsoft.public.windows.server.general)
  • Re: Users cant log on due to "your domain is not available error"
    ... Windows IP Configuration ... Connection-specific DNS Suffix. ... "Meinolf Weber" wrote: ... Unfortunately we have a seperate DNS server. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Users cant log on due to "your domain is not available error"
    ... Windows IP Configuration ... Connection-specific DNS Suffix. ... "Meinolf Weber" wrote: ... Unfortunately we have a seperate DNS server. ...
    (microsoft.public.windows.server.active_directory)