Re: RPC Traffic causing Domain Controller Synchronization issues

From: Dmox (anonymous_at_discussions.microsoft.com)
Date: 06/03/04


Date: Thu, 3 Jun 2004 07:08:22 -0700

Thanks for your reply,

All servers have correctly registered their SRV records
in DNS. Except for the server in SiteB that isn't
included in the DomainDNSZones. Other than that, I can
ping and the FQDN is resolved correctly for every server
either way.

The DC's point to themselves for name resolution with
127.0.0.1. They are then using Forwarders to goto the
primary DNS server.

What action am I performing when RPC fails? I don't
understand the question. Could you please clarify? I'm
not really taking any action because I don't know what
else to do. I've restarted Services, the Server itself
and kicked the box. None of them worked. Are there any
other steps I need to take to troubleshoot/resolve RPC
errors?

>-----Original Message-----
>RPC errors usually indicate a name resolution issue.
How is DNS configured
>in your environment? Where do the DCs point for DNS?
What action are you
>performing when RPC fails? Verify that the DCs are
registering their SRV
>and guid records in DNS.
>
>--
>--
>Tim Hines, MCSE, MCSA
> Windows 2000 Directory Services
>
>=====================================================
>When responding to posts, please "Reply to Group" via
>your newsreader so that others may learn and benefit
>from your issue.
>=====================================================
>This posting is provided "AS IS" with no warranties, and
confers no rights.
>
>
>
>"Dmox" <daryl.moxham@desire2learn.com> wrote in message
>news:1745601c448df$b2956aa0$a301280a@phx.gbl...
>> We've created a domain at our local site. We have
>> recently setup a remote site with a Site to Site VPN
and
>> have tried to make a sub domain there. However, we
>> cannot synchronize the domains. There are errors in
the
>> eventlog that are stating:
>>
>> AutoEnrollment.
>>
>> Automatic certificate enrollment for the local system
>> failed to enroll for one Domain Certificate. The
>> specified domain either does not exist or could not be
>> contacted.
>>
>> Aswell as other Errors that specify that RPC is having
an
>> issue connecting.
>>
>> Basically our home office (Which we'll call SiteA) is
>> trying to connect through a VPN to the Remote office
>> (We'll call SiteB). I have verified over and over
again
>> that the VPN is not filtering RPC traffic (Or any other
>> traffic for that matter).
>>
>> I have done a portqry -n <DC IP> -e 135 from SiteA and
it
>> fails to SiteB. However, if I do a portqry from SiteB
to
>> SiteA it works. If I do a portqry from another machine
>> on SiteB to the Domain controller it succeeds.
>>
>> I have tried to DCPromo the machine back down to a
member
>> server, but it fails due to an RPC Connection error. I
>> have tried changeing Sites and Services from RPC to IP
>> but that doesn't help either (I think no matter what is
>> chosen in Sites and Services some traffic is still sent
>> over RPC).
>>
>> Is there a W32Time issue that would cause RPC Traffic
to
>> fail? Or any other troubleshooting steps that I could
>> take to see what is causing the connection to fail?
Any
>> help would be greatly appreciated as I have exhausted
all
>> other options.
>
>
>.
>



Relevant Pages

  • Re: Active Directory Replication Problem...
    ... Better you can use a forwarder on the DNS server properties in the DNS management console. ... So you have internally all clients using the internal DNS servers and the server 4 is the only DNS forwarding to the internet over your Broadband connection default gateway. ... The RPC server is unavailable. ... The last success occurred at 2008-05-03 14:43.11. ...
    (microsoft.public.win2000.active_directory)
  • Re: Forest Root DC Single Label host name
    ... Connecting to directory service on server directory. ... Check the DNS server, DHCP, server name, etc ... Last attempt @ 2008-03-03 11:52.23 was successful. ... Default-First-Site-Name\DIRECTORY via RPC ...
    (microsoft.public.win2000.active_directory)
  • Re: Active directory replication problems
    ... included with the RPC server is unavailable. ... To get DNS out of the picture I would do the following ... I would first point the W2K DC to the W2K3 SBS server for primary DNS. ... Active Directory Replication over Firewalls ...
    (microsoft.public.windows.server.active_directory)
  • Re: Forest Root DC Single Label host name
    ... Windows 2000 IP Configuration ... Connection-specific DNS Suffix. ... Connecting to directory service on server directory. ... Default-First-Site-Name\DIRECTORY via RPC ...
    (microsoft.public.win2000.active_directory)
  • Re: RPC Traffic causing Domain Controller Synchronization issues
    ... I mean what are you doing when the rpc errors. ... Except for the server in SiteB that isn't ... > What action am I performing when RPC fails? ...
    (microsoft.public.windows.server.active_directory)

Loading