Re: Login Authentication
- From: "Lucas" <lucaslafrance@xxxxxxxxxxx>
- Date: Fri, 17 Feb 2006 11:59:52 -0700
Yes. Each client has 2 dns servers defined - one for their Home Site and
one in a remote site - which is also the Domain Controller in that site.
"Paul Bergson" <pbergson@xxxxxxxxxxxxxxxxx> wrote in message
news:utMdNN$MGHA.2064@xxxxxxxxxxxxxxxxxxxxxxx
Do you have two dns servers defined on each client and no ISP defined dns
server on the clients?
--
Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA
This posting is provided "AS IS" with no warranties, and confers no
rights.
"Lucas" <lucaslafrance@xxxxxxxxxxx> wrote in message
news:%230PqUm%23MGHA.1088@xxxxxxxxxxxxxxxxxxxxxxx
Thank You,
All of the Domain Controllers in each site are also GC servers. We also
have DNS running on these servers. DNS replication is set to All Domain
Controllers in the AD Domian.
Are there any other reasons that this might be happening?
"Paul Bergson" <pbergson@xxxxxxxxxxxxxxxxx> wrote in message
news:%23fLVzg%23MGHA.1312@xxxxxxxxxxxxxxxxxxxxxxx
Two things can be causing this:
1) Do you have a second Global Catalog? If not only domain
administrators will be able to logon
2) Do you have a second AD dns server available? If not then the
client won't be able to find the services to request from a dc
My guess is you are missing a second Global Catalog server
How a GC works:
http://technet2.microsoft.com/WindowsServer/en/Library/440e44ab-ea05-4bd8-a68c-12cf8fb1af501033.mspx
How to create or move a GC:
http://support.microsoft.com/default.aspx?scid=kb;en-us;313994
--
Paul Bergson MCT, MCSE, MCSA, CNE, CNA, CCA
This posting is provided "AS IS" with no warranties, and confers no
rights.
"Lucas" <lucaslafrance@xxxxxxxxxxx> wrote in message
news:OlYAVz9MGHA.3984@xxxxxxxxxxxxxxxxxxxxxxx
Hello,
When my headquarters site domain controller goes down we are unable to
process domain logons in this site. We have three sites and one domain
controller in each site. Our AD is in windows 2000 native mode and all
domain controllers are Windows 2k3. All sites are linked together in
full mesh replication topology. The server that has gone down holds
the 3 domain level fsmo roles - PDC Emulator, Infrastructure Master,
and RID Master.
We are testing domain controller failover and when this domain
controller has gone down we are unable to authenticate against the
domain from within this site. Failover does not seem to be working.
Could this be because it holds the FSMO roles or do I need to
specifically configure and allow authentication to a different site?
.
- Follow-Ups:
- Re: Login Authentication
- From: Paul Bergson
- Re: Login Authentication
- References:
- Login Authentication
- From: Lucas
- Re: Login Authentication
- From: Paul Bergson
- Re: Login Authentication
- From: Lucas
- Re: Login Authentication
- From: Paul Bergson
- Login Authentication
- Prev by Date: Re: Login Authentication
- Next by Date: Re: How to make my DC listen on the secure LDAP port (636)?
- Previous by thread: Re: Login Authentication
- Next by thread: Re: Login Authentication
- Index(es):
Relevant Pages
|