Re: "applying security settings" - Urgent Help Required
- From: "Joe Richards [MVP]" <humorexpress@xxxxxxxxxxx>
- Date: Sun, 31 Jul 2005 11:49:49 -0400
The change and watch to see what happens mechanism of troubleshooting usually isn't a good way to troubleshoot, especially domain controllers. You should already be at a state where only the necessary services are running so there should be nothing you can turn off that won't break the DC. That specific list of services depends entirely on how the company uses DCs.
Anyway, the proper way to try and work this out would be to gather more information, right off, my first thought was to do a network trace of the DC and find out if it is trying to look or reach some other network resource. That is a common cause of slow boots and slow logons.
-- Joe Richards Microsoft MVP Windows Server Directory Services www.joeware.net
Matt wrote:
Hi,
We have an Windows 2003 AD domain. One of our remote sites has a DC (also a GC). On Friday, I had to reboot the server (there had been no configuration,software or hardware changes, for months) and when it rebooted it got to the stage where it says "applying security settings" and hung there for about an hour. I eventually got o a log on prompt, entered a domain admin credentials and it then sat at the "applying security settings" stage again for another hour before eventually loading the desktop. Once in, I checked the event viewer, and there were no errors. DNS and the ip configuration look as expected. However, PCs (in the same site could not even ping the server, although the server could ping the PCS (?). I have checked the Windows Firewall to ensure that this hadn't been turned on (which it hadn't). I have disabled the McAffee antivirus services in case this was causing the problems but still the same. If I reboot into Safe Mode, it comes up without problems. If I boot into "Safe Mode with Networking" it comes up without problems and the PCs can then ping the server and vice versa. I have tried updating the NIC's drivers without success.
Please help - I need to get the server back on the network asap. The server is a DC (and GC), running DNS, WINS, and DHCP. The only GPO that is being applied to it is the standard Domain Controllers one. What would cause it to hang twice (for an hour) at the "applying security settings" stage.
I was thinking about running an SFC, reinstalling SP1, and if they don't work to disable services and keep trying to boot it up and hopefully find one that is causing the problems. Any suggestions would be gratefully received.
If I have to rebuild (please no!), what is the correct process for a DC. If I pop the Windows 2003 disc in and run a setup on top of my current build, will it remember the DNS, DHCP settings etc?
Thanks.
.
- Follow-Ups:
- References:
- Prev by Date: Re: Schema size
- Next by Date: Removing domain controller role from server
- Previous by thread: "applying security settings" - Urgent Help Required
- Next by thread: Re: "applying security settings" - Urgent Help Required
- Index(es):
Relevant Pages
|