DNS and AD issues

Tech-Archive recommends: Fix windows errors by optimizing your registry




Trying to determine the cause of two errors. I joined a computer as a child
domain to a root domain. I used the ip addresses of the root dns
server(rootdomain.com) in the tcp/ip dns settings when I ran the dcpromo on
the box.

So now I have a new domain known as child.rootdomain.com set up on the host
box host1. Within the DNS configuration, a forward lookup zone was created
for child.rootdomain.com. Also, I changed the tcp/ip dns settings so that
the box host1.child.rootdomain.com points to itself, instead of the root
domain dns servers.


When I tried to join a second box to the domain, I received the following
two errors. The first error came from using the root dns server ip addresses
in the tcp/ip settings. The second error came as a result of using the ip
address of the host1 box as the dns server

I am trying to see if anyone else has experienced these errors before, and
if so, what was the resolution. The firewalls seem to be open between the
two networks, outside of ping and icmp traffic.


*******************ERROR 1 ********************************************
DCDIAG.TXT file from 2nd box upon trying to join the child.rootdomain.com
domain


Note: This information is intended for a network administrator. If you

are not your network's administrator, notify the administrator that you

received this information, which has been recorded in the file

C:\WINDOWS\debug\dcdiag.txt.



The following error occurred when DNS was queried for the service

location (SRV) resource record used to locate a domain controller for

domain child.rootdomain.com:



The error was: "DNS name does not exist."

(error code 0x0000232B RCODE_NAME_ERROR)



The query was for the SRV record for _ldap._tcp.dc._msdcs.child.rootdomain.com


Common causes of this error include the following:



- The DNS SRV records required to locate a domain controller for the

domain are not registered in DNS. These records are registered with a DNS

server automatically when a domain controller is added to a domain. They

are updated by the domain controller at set intervals. This computer is

configured to use DNS servers with following IP addresses:



ip address of root domain dns 1

ip address of root domain dns 2

- One or more of the following zones do not include delegation to its

child zone:

child.rootdomain.com

rootdomain.com

com
.. (the root zone)



For information about correcting this problem, click Help.


**************** ERROR 2**************************************************


If I use the ip address of the box: host1.child.rootdomain.com which is the
ip address of the new Domain Controller, the dcdiag.txt reads as follows:

The following error occurred when DNS was queried for the service location
(SRV) resource record used to locate a domain controller for domain
mgt.gt.buzz:


The error was: "This operation returned because the timeout period expired."

(error code 0x000005B4 ERROR_TIMEOUT)



The query was for the SRV record for _ldap._tcp.dc._msdcs.child.rootdomain.com


The DNS servers used by this computer for name resolution are not
responding. This computer is configured to use DNS servers with the following
IP addresses:

ip address of the box: host1.child.rootdomain.com

Verify that this computer is connected to the network, that these are the
correct DNS server IP addresses, and that at least one of the DNS servers is
running.



For more information on how to correct this problem, click Help.



.



Relevant Pages

  • Re: Event ID 7062 in DNS logs
    ... you advice me to let the default Internet root ... > hints in place and to use forwarders from the child DNS (DNS server in ... > the root DNS (DNS server on the forest root domain hosting the ... > AD-integrated forestroot.com zone). ...
    (microsoft.public.windows.server.dns)
  • Re: DNS Restructure
    ... What I mean by child root is we have a regional ... It's my understanding that if each internal DNS server is using ... >> external DNS servers are separate and we host both. ...
    (microsoft.public.windows.server.dns)
  • Re: 2 Questions...
    ... In one post you asked about the value of the empty root. ... With a multi-domain forest one has a few choices for DNS ... One could use standard zone transfer to these, ... as already stated or by having the DNS servers of corp forward to ...
    (microsoft.public.windows.server.dns)
  • Re: Swing migration Q?: problem joining new DC to temp domain
    ... the domain with the DNS requests pointing at the opposite server". ... resource record used to locate a domain controller for domain ... The DNS servers used by this computer for name resolution are not ... The query was for the SRV record for _ldap._tcp.dc._msdcs.domain.local ...
    (microsoft.public.windows.server.sbs)
  • Re: Domain Controllers Cant reach Default Gateway...
    ... In the _msdcs area of DNS it was missing ... the CNAME entry with the GUID for the other domain controller. ... It's possible that there was a DNS issue - the network has 4 DNS servers ...
    (microsoft.public.win2000.active_directory)