Re: EventID 5782

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Ken,

OS is windows 2003 SP2 on all domain controllers.

I have retested and enableing this option resolves the issue.

How do I prevent it from registering A and PTR records(dhcp client)? My goal
is to NOT dynamically register A and PTR records, but dynamically register
(netlogon) SRV records (underscore sub domains to register).

Note - These subdomains are also hosted on the BIND servers.

Regards,
John


""Ken Zhao [MSFT]"" wrote:

Hi John,

Have you checked Myweb's suggestion as below?
http://www.eventid.net/display.asp?eventid=5782&eventno=481&source=NETLOGON&;
phase=1

I am not sure what OS on the DC and DNS server. At this moment, based on my
research, I found the following scenario that might be helpful:

-Configuration:
Windows 2000 Domain Controller with Service Pack 1 installed. DNS zone is
hosted on a BIND server, with delegations for the SRV subdomains to DDNS
server on the Windows 2000 DC.

-Summary of the Issue:
If "Register this connection's addresses in DNS" is not checked in the
Advanced TCP/IP Properties on the LAN connection, the following event ID is
logged on the Domain Controller about every 2 hours:

Event ID: 5782
Netlogon
Description: Dynamic registration or deregistration of one or more DNS
records failed with the following error: No DNS servers configured for
local system.

Additionally, the SRV records are not updated on the Windows 2000 DDNS
server.

If "Register this connection's addresses in DNS" is checked in the Advanced
TCP/IP Properties on the Domain Controller, SRV records are updated
correctly and Event ID 5782 is not logged. Host (A) record for the DC is
logged on the Windows 2000 DDNS. This behavior is different from Windows
2000 without Service Pack 1 installed.

-Resolution

Windows 2000 RTM (without SP1) had a known issue with the Netlogon service
advertising on all adapters all bound IP addresses, regardless of
configuration and settings. There was no control in the Interface that
would prohibit this. "Register this connection's addresses in DNS" was the
GUI interface control for this feature, and by definition, if it is not
selected, it should not register the connection's addresses for any
service. Due to this bug, it was registering the SRV records even if this
was not checked. The DHCP Client Service (not Netlogon service) is
responsible for registering host records, and it correctly recognized this
setting, so if "Register this connection's addresses in DNS" is not
checked, it did not register a host record. The NETLOGON service should
behave the same as the DHCP client service and also recognize this setting,
but in the RTM version of Windows 2000, it does not.

Service Pack 1 corrected this behavior in Windows 2000, and now the
Netlogon service respects the setting "Register this connection's addresses
in DNS" , and if this is not checked, it does not register the settings in
DNS on this connection. It does not stop netlogon from registering the
settings on another connection. This would include SRV records. If it is
checked, then it does register the SRV records on this connection, and DHCP
Client service, which also references this setting, will also register a
host record for this connection. This is appropriate behavior for this
setting, and will be the behavior of Windows 2000 in all Service Packs, and
in the next version of Windows 200x as well.

Thanks & Regards,

Ken Zhao

Microsoft Online Support
Microsoft Global Technical Support Center

Get Secure! - www.microsoft.com/security <http://www.microsoft.com/security>
====================================================
When responding to posts, please "Reply to Group" via your newsreader so
that others may learn and benefit from your issue.
====================================================
This posting is provided "AS IS" with no warranties, and confers no rights.





--------------------
| Thread-Topic: EventID 5782
| thread-index: AcfdaZi4lAAz00eEQgOvWLFF2RlTzw==
| X-WBNR-Posting-Host: 207.46.19.168
| From: =?Utf-8?B?Sm9obg==?= <john_null@xxxxxxxxxxxxxxxx>
| References: <277359F8-DF7D-4F02-9195-D591F2C83495@xxxxxxxxxxxxx>
<ff16fb664a9398c9ab51cf31a349@xxxxxxxxxxxxxxxxxxxx>
<36CB26C3-3050-4D06-8ABC-3F85B1DFBF63@xxxxxxxxxxxxx>
<ff16fb664a9898c9ab5c3ca8ffe9@xxxxxxxxxxxxxxxxxxxx>
<A3A14541-B9E5-4513-9866-91127E622361@xxxxxxxxxxxxx>
<7oHUMhW3HHA.4100@xxxxxxxxxxxxxxxxxxxxxx>
| Subject: Re: EventID 5782
| Date: Sun, 12 Aug 2007 22:20:00 -0700
| Lines: 182
| Message-ID: <C160C0F7-1A43-45A4-A88A-0B12F3B0A18F@xxxxxxxxxxxxx>
| MIME-Version: 1.0
| Content-Type: text/plain;
| charset="Utf-8"
| Content-Transfer-Encoding: 7bit
| X-Newsreader: Microsoft CDO for Windows 2000
| Content-Class: urn:content-classes:message
| Importance: normal
| Priority: normal
| X-MimeOLE: Produced By Microsoft MimeOLE V6.00.3790.2826
| Newsgroups: microsoft.public.windows.server.dns
| Path: TK2MSFTNGHUB02.phx.gbl
| Xref: TK2MSFTNGHUB02.phx.gbl microsoft.public.windows.server.dns:4523
| NNTP-Posting-Host: tk2msftsbfm01.phx.gbl 10.40.244.148
| X-Tomcat-NG: microsoft.public.windows.server.dns
|
| Ken,
|
| thank you for your reply.
|
| Currently I have manually verified the underscore zones exist (not
missing)
| and both dcdiag and netdiag are successfuly. DNs is not hosted on windows
as
| per my host. Any other suggestions or further explanation why It would be
| advantages to follow those steps? Enabling ddns on the nic and restarting
the
| nelogon service still results in the error.
|
| Regards,
| John
|
| ""Ken Zhao [MSFT]"" wrote:
|
| > Hello John,
| >
| > Thank you for using newsgroup!
| >
| > From your post and the event error, I suggest you referred to the
following
| > article and follow the steps in this article to see if they can help:
| > 310568: Domain subfolders missing from forward lookup zone
| > http://support.microsoft.com/kb/310568/en-us
| >
| > Thanks & Regards,
| >
| > Ken Zhao
| >
| > Microsoft Online Support
| > Microsoft Global Technical Support Center
| >
| > Get Secure! - www.microsoft.com/security
<http://www.microsoft.com/security>
| > ====================================================
| > When responding to posts, please "Reply to Group" via your newsreader
so
| > that others may learn and benefit from your issue.
| > ====================================================
| > This posting is provided "AS IS" with no warranties, and confers no
rights.
| >
| >
| >
| >
| > --------------------
| > | Thread-Topic: EventID 5782
| > | thread-index: AcfdNjEd9mgbay7qRNy62ex2Y7zc/A==
| > | X-WBNR-Posting-Host: 207.46.19.168
| > | From: =?Utf-8?B?Sm9obg==?= <john_null@xxxxxxxxxxxxxxxx>
| > | References: <277359F8-DF7D-4F02-9195-D591F2C83495@xxxxxxxxxxxxx>
| > <ff16fb664a9398c9ab51cf31a349@xxxxxxxxxxxxxxxxxxxx>
| > <36CB26C3-3050-4D06-8ABC-3F85B1DFBF63@xxxxxxxxxxxxx>
| > <ff16fb664a9898c9ab5c3ca8ffe9@xxxxxxxxxxxxxxxxxxxx>
| > | Subject: Re: EventID 5782
| > | Date: Sun, 12 Aug 2007 16:12:02 -0700
| > | Lines: 105
| > | Message-ID: <A3A14541-B9E5-4513-9866-91127E622361@xxxxxxxxxxxxx>
| > | MIME-Version: 1.0
| > | Content-Type: text/plain;
| > | charset="Utf-8"
| > | Content-Transfer-Encoding: 7bit
| > | X-Newsreader: Microsoft CDO for Windows 2000
| > | Content-Class: urn:content-classes:message
| > | Importance: normal
| > | Priority: normal
| > | X-MimeOLE: Produced By Microsoft MimeOLE V6.00.3790.2826
| > | Newsgroups: microsoft.public.windows.server.dns
| > | Path: TK2MSFTNGHUB02.phx.gbl
| > | Xref: TK2MSFTNGHUB02.phx.gbl microsoft.public.windows.server.dns:4517
| > | NNTP-Posting-Host: tk2msftsbfm01.phx.gbl 10.40.244.148
| > | X-Tomcat-NG: microsoft.public.windows.server.dns
| > |
| > |
| > | Yes I have already checked this resource out.
| > |
| > | Let me clarify further:
| > | DDNS is required for all entries EXCEPT A and PTR(hence the reg key).
| > | AD integrated is not an option in our environment. AFAIK BIND fully
| > supports
| > | DDNS as per RFC.
| > | DHCP client is enabled and automatically started.
| > |
| > | Regards,
| > | John
| > |
| > |
| > | "Myweb" wrote:
| > |
| > | > Hello John,
| > | >
| > | > Did you check out this one?
| > | >
| >
http://www.eventid.net/display.asp?eventid=5782&eventno=481&source=NETLOGON&;
| > phase=1
| > | >
| > | > If you have so much DNS servers i would think about to run active
| > directory
| > | > integrated DNS, but first find the solution about the error.
| > | >
| > | > Best regards
| > | >
| > | > Myweb
| > | > Disclaimer: This posting is provided "AS IS" with no warranties,
and
| > confers
| > | > no rights.
| > | >
| > | > > IPconfig is configured as follows:
| > | > >
| > | > > Primary DNS server (SOA for zone, write access for underscore
zones
| > | > > but not
| > | > > A or PTR records)
| > | > > alternative DNS server (read only secondary of primary)
| > | > > 2nd alternative DNS server (read only secondary of primary)
| > | > > all dcs are set the same. All DNS servers are internal and
authorative
| > | > > for zones.
| > | > >
| > | > > netdiag and dcdiag produce no errors. A manual check of the zones
| > | > > shows all records listed in netlogon.dns as located on the domain
| > | > > controllers.
| > | > >
| > | > > Any further ideas?
| > | > >
| > | > > Regards,
| > | > > John
| > | > > "Myweb" wrote:
| > | > >
| > | > >> Hello John,
| > | > >>
| > | > >> please post an ipconfig /all from your dns server and one of the
| > | > >> other dc's,
| > | > >> seems that your DNS configuration is pointing outside you
network to
| > | > >> your
| > | > >> providers DNS and not to your internal DNS, which is necessary
for
| > | > >> running
| > | > >> your domain correctly. So check that your DC's are pointing
internal
| > | > >> to your
| > | > >> DNS servers. Then check that you configure a forwarder to your
ISP's
| > | > >> DNS
| > | > >> on your DNS server.
| > | > >> You should also check with dcdiag and netdiag for errors on your
| > | > >> DC's.
| > | > >> Best regards
| > | > >>
| > | > >> Myweb
| > | > >> Disclaimer: This posting is provided "AS IS" with no warranties,
and
| > | > >> confers
| > | > >> no rights.
| > | > >>> Hi,
| > | > >>>
| > | > >>> Currently we are recieving event ID 5782 for all our DCs when
the
| > | > >>> netlogon service is restarted or every 24 hours as detailed
below.
| > | > >>>
| > | > >>> Event Type: Warning Event Source: NETLOGON Event Category: None
| > | > >>> Event ID: 5782 Date: 23/07/2007 Time: 4:22:12 PM User: N/A
Computer:
| > | > >>> SERVER Description: Dynamic registration or deregistration of
one or
| > | > >>> more DNS records failed with the following error: No DNS servers
| > | > >>> configured for local system.
| > | > >>>
| > | > >>> For more information, see Help and Support Center at
| > | > >>> http://go.microsoft.com/fwlink/events.asp. Data: 0000: 7c 26 00
00
| > | > >>> |&..
| > | > >>>
| > | > >>> DNS is provided by BIND and only the following records are
permitted
| > | > >>> to dynamically update (leaving A and PTR records which are not
| > | > >>> allowed to automaticaly update).
| > | > >>>
| > | > >>> _msdcs.<domain> _sites.<domain> _tcp.<domain> _udp.<domain>
| > | > >>>
| > | > >>> The registry key \value
| > | > >>>
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netlogon\Parame
| > | > >>> te rs\RegisterDnsARecords has been set to 0
.



Relevant Pages

  • Re: Find AD hostname from Linux command line
    ... The Windows XP workstation gets an IP ... "Register this connection's addresses in DNS" turned ON. ... If I am on a Linux server and do "ping lancelot.ad.mydomain.com", ...
    (microsoft.public.win2000.dns)
  • Re: EventID 5782
    ... windows forestwith BIND DNS. ... therefore by my understanding SHOULD still register SRV records in underscore ... |> TCP/IP Properties on the Domain Controller, ...
    (microsoft.public.windows.server.dns)
  • Re: PPTP ports missing in RRAS
    ... Insure that ALL NICS only point to your internal DNS server' IP ... to disable NetBIOS on the RRAS interfaces if this is a RRAS server. ... A standard Windows service, called the "Browser service", ... Uncheck "Register this connection" under IP properties, ...
    (microsoft.public.isa.vpn)
  • Re: srv2008 dc self register ip address on dns
    ... So if you use 2 NICs, go the advanced settings, DNS tab and uncheck ... Disable the ability for the outer NIC to register. ... A standard Windows service, called the "Browser service", ...
    (microsoft.public.windows.server.dns)
  • PPTP ports missing in RRAS Manoj (Oman)
    ... Insure that ALL NICS only point to your internal DNS server' IP ... to disable NetBIOS on the RRAS interfaces if this is a RRAS server. ... A standard Windows service, called the "Browser service", ... Uncheck "Register this connection" under IP properties, ...
    (microsoft.public.isa.vpn)