RE: DNS/Active Directory Issue



Hi David,

I verified that the primary dns suffix on the dc is ilcuboard.local and
verified that the dns server has the ilcuboard.local suffix in its computer
name.

To verify that the zone is active directory integrated i checked the
properties of the ilcuboard.local zone and under the general tab, replication
not an active directory integrated zone is greyed out.

I also ran the net stop/start netlogon commands. I dont know if the error i
get when trying to create a new zone "the zone cannot be created. there was a
server failure." has to do with anything but i am only able to create a
secondary zone for reverse zone which doesnt work because it has a red x on
it after its created.

Please let me know what you think.

I also have results from the current dcdiag and netdiag commands

Microsoft Windows [Version 5.2.3790]
(C) Copyright 1985-2003 Microsoft Corp.

C:\Documents and Settings\Administrator.CUB_DOMAIN>netdiag

..........................................

Computer Name: NETSERVER1
DNS Host Name: netserver1.ilcuboard.local
System info : Microsoft Windows Server 2003 (Build 3790)
Processor : x86 Family 15 Model 4 Stepping 3, GenuineIntel
List of installed hotfixes :
KB924667-v2
KB925398_WMP64
KB925876
KB925902
KB926122
KB927891
KB929123
KB930178
KB931784
KB932168
KB933729
KB933854
KB935839
KB935840
KB936021
KB936357
KB936782
KB938127
KB938127-IE7
KB941202
KB941569
KB941644
KB941672
KB941693
KB942763
KB943055
KB943460
KB943485
KB943729
KB944338
KB944653
KB945553
KB946026
KB948496
KB948590
KB948745
KB949014
KB950759
KB950759-IE7
KB950760
KB950762
KB951698
KB951746
KB951748
Q147222


Netcard queries test . . . . . . . : Passed



Per interface results:

Adapter : Local Area Connection

Netcard queries test . . . : Passed

Host Name. . . . . . . . . : netserver1
IP Address . . . . . . . . : 192.168.100.87
Subnet Mask. . . . . . . . : 255.255.255.0
Default Gateway. . . . . . : 192.168.100.1
Primary WINS Server. . . . : 192.168.100.87
Dns Servers. . . . . . . . : 192.168.100.87
192.168.100.94
192.168.100.77


AutoConfiguration results. . . . . . : Passed

Default gateway test . . . : Passed

NetBT name test. . . . . . : Passed

WINS service test. . . . . : Passed


Global results:


Domain membership test . . . . . . : Passed


NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{7E2C88B5-6802-4477-8CA2-DEB643E989DF}
1 NetBt transport currently configured.


Autonet address test . . . . . . . : Passed


IP loopback ping test. . . . . . . : Passed


Default gateway test . . . . . . . : Passed


NetBT name test. . . . . . . . . . : Passed


Winsock test . . . . . . . . . . . : Passed


DNS test . . . . . . . . . . . . . : Failed
[WARNING] The DNS entries for this DC are not registered correctly on
DNS se
rver '192.168.100.87'. Please wait for 30 minutes for DNS server replication.
[WARNING] The DNS entries for this DC cannot be verified right now on
DNS
server 192.168.100.94, ERROR_TIMEOUT.
[WARNING] The DNS entries for this DC are not registered correctly on
DNS se
rver '192.168.100.77'. Please wait for 30 minutes for DNS server replication.
[FATAL] No DNS servers have the DNS records for this DC registered.


Redir and Browser test . . . . . . : Passed
List of NetBt transports currently bound to the Redir
NetBT_Tcpip_{7E2C88B5-6802-4477-8CA2-DEB643E989DF}
The redir is bound to 1 NetBt transport.

List of NetBt transports currently bound to the browser
NetBT_Tcpip_{7E2C88B5-6802-4477-8CA2-DEB643E989DF}
The browser is bound to 1 NetBt transport.


DC discovery test. . . . . . . . . : Passed


DC list test . . . . . . . . . . . : Passed


Trust relationship test. . . . . . : Passed
Secure channel for domain 'CUB_DOMAIN' is to '\\mserver1.ilcuboard.local'.


Kerberos test. . . . . . . . . . . : Passed


LDAP test. . . . . . . . . . . . . : Passed


Bindings test. . . . . . . . . . . : Passed


WAN configuration test . . . . . . : Skipped
No active remote access connections.


Modem diagnostics test . . . . . . : Passed

IP Security test . . . . . . . . . : Skipped

Note: run "netsh ipsec dynamic show /?" for more detailed information


The command completed successfully

C:\Documents and Settings\Administrator.CUB_DOMAIN>


====================================================================================================================
====================================================================================================================


C:\Documents and Settings\Administrator.CUB_DOMAIN>netdiag/fix

........................................

Computer Name: NETSERVER1
DNS Host Name: netserver1.ilcuboard.local
System info : Microsoft Windows Server 2003 (Build 3790)
Processor : x86 Family 15 Model 4 Stepping 3, GenuineIntel
List of installed hotfixes :
KB924667-v2
KB925398_WMP64
KB925876
KB925902
KB926122
KB927891
KB929123
KB930178
KB931784
KB932168
KB933729
KB933854
KB935839
KB935840
KB936021
KB936357
KB936782
KB938127
KB938127-IE7
KB941202
KB941569
KB941644
KB941672
KB941693
KB942763
KB943055
KB943460
KB943485
KB943729
KB944338
KB944653
KB945553
KB946026
KB948496
KB948590
KB948745
KB949014
KB950759
KB950759-IE7
KB950760
KB950762
KB951698
KB951746
KB951748
Q147222


Netcard queries test . . . . . . . : Passed



Per interface results:

Adapter : Local Area Connection

Netcard queries test . . . : Passed

Host Name. . . . . . . . . : netserver1
IP Address . . . . . . . . : 192.168.100.87
Subnet Mask. . . . . . . . : 255.255.255.0
Default Gateway. . . . . . : 192.168.100.1
Primary WINS Server. . . . : 192.168.100.87
Dns Servers. . . . . . . . : 192.168.100.87
192.168.100.94
192.168.100.77


AutoConfiguration results. . . . . . : Passed

Default gateway test . . . : Passed

NetBT name test. . . . . . : Passed

WINS service test. . . . . : Passed


Global results:


Domain membership test . . . . . . : Passed


NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{7E2C88B5-6802-4477-8CA2-DEB643E989DF}
1 NetBt transport currently configured.


Autonet address test . . . . . . . : Passed


IP loopback ping test. . . . . . . : Passed


Default gateway test . . . . . . . : Passed


NetBT name test. . . . . . . . . . : Passed


Winsock test . . . . . . . . . . . : Passed


DNS test . . . . . . . . . . . . . : Failed
[FATAL] Failed to fix: DC DNS entry cubnet.com. re-registeration on DNS
serv
er '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _ldap._tcp.cubnet.com.
re-registeration
on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry
_ldap._tcp.Default-First-Site-Name._site
s.cubnet.com. re-registeration on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _ldap._tcp.gc._msdcs.cubnet.com.
re-regi
steration on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry
_ldap._tcp.Default-First-Site-Name._site
s.gc._msdcs.cubnet.com. re-registeration on DNS server '192.168.100.87'
failed.

DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry
_ldap._tcp.e7181c48-3613-4666-8bb6-10ddc
90a40a3.domains._msdcs.cubnet.com. re-registeration on DNS server
'192.168.100.8
7' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry gc._msdcs.cubnet.com.
re-registeration o
n DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry
827c49b4-9a34-4c00-a2fe-c9048d23e005._ms
dcs.cubnet.com. re-registeration on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _kerberos._tcp.dc._msdcs.cubnet.com.
re-
registeration on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry
_kerberos._tcp.Default-First-Site-Name._
sites.dc._msdcs.cubnet.com. re-registeration on DNS server '192.168.100.87'
fail
ed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _ldap._tcp.dc._msdcs.cubnet.com.
re-regi
steration on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry
_ldap._tcp.Default-First-Site-Name._site
s.dc._msdcs.cubnet.com. re-registeration on DNS server '192.168.100.87'
failed.

DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _kerberos._tcp.cubnet.com.
re-registerat
ion on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry
_kerberos._tcp.Default-First-Site-Name._
sites.cubnet.com. re-registeration on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _gc._tcp.cubnet.com.
re-registeration on
DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry
_gc._tcp.Default-First-Site-Name._sites.
cubnet.com. re-registeration on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _kerberos._udp.cubnet.com.
re-registerat
ion on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _kpasswd._tcp.cubnet.com.
re-registerati
on on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Failed to fix: DC DNS entry _kpasswd._udp.cubnet.com.
re-registerati
on on DNS server '192.168.100.87' failed.
DNS Error code: 0x00002339
[FATAL] Fix Failed: netdiag failed to re-register missing DNS entries
for th
is DC on DNS server '192.168.100.87'.
[FATAL] No DNS servers have the DNS records for this DC registered.


Redir and Browser test . . . . . . : Passed
List of NetBt transports currently bound to the Redir
NetBT_Tcpip_{7E2C88B5-6802-4477-8CA2-DEB643E989DF}
The redir is bound to 1 NetBt transport.

List of NetBt transports currently bound to the browser
NetBT_Tcpip_{7E2C88B5-6802-4477-8CA2-DEB643E989DF}
The browser is bound to 1 NetBt transport.


DC discovery test. . . . . . . . . : Passed


DC list test . . . . . . . . . . . : Passed


Trust relationship test. . . . . . : Passed
Secure channel for domain 'CUB_DOMAIN' is to '\\mserver1.ilcuboard.local'.


Kerberos test. . . . . . . . . . . : Passed


LDAP test. . . . . . . . . . . . . : Passed


Bindings test. . . . . . . . . . . : Passed


WAN configuration test . . . . . . : Skipped
No active remote access connections.


Modem diagnostics test . . . . . . : Passed

IP Security test . . . . . . . . . : Skipped

Note: run "netsh ipsec dynamic show /?" for more detailed information


The command completed successfully

C:\Documents and Settings\Administrator.CUB_DOMAIN>


====================================================================================================================
====================================================================================================================


C:\Documents and Settings\Administrator.CUB_DOMAIN>dcdiag

Domain Controller Diagnosis

Performing initial setup:
Done gathering initial info.

Doing initial required tests

Testing server: Default-First-Site-Name\NETSERVER1
Starting test: Connectivity
......................... NETSERVER1 passed test Connectivity

Doing primary tests

Testing server: Default-First-Site-Name\NETSERVER1
Starting test: Replications
......................... NETSERVER1 passed test Replications
Starting test: NCSecDesc
......................... NETSERVER1 passed test NCSecDesc
Starting test: NetLogons
......................... NETSERVER1 passed test NetLogons
Starting test: Advertising
......................... NETSERVER1 passed test Advertising
Starting test: KnowsOfRoleHolders
......................... NETSERVER1 passed test KnowsOfRoleHolders
Starting test: RidManager
......................... NETSERVER1 passed test RidManager
Starting test: MachineAccount
......................... NETSERVER1 passed test MachineAccount
Starting test: Services
......................... NETSERVER1 passed test Services
Starting test: ObjectsReplicated
......................... NETSERVER1 passed test ObjectsReplicated
Starting test: frssysvol
......................... NETSERVER1 passed test frssysvol
Starting test: frsevent
......................... NETSERVER1 passed test frsevent
Starting test: kccevent
......................... NETSERVER1 passed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:19
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:19
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:19
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:19
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
......................... NETSERVER1 failed test systemlog
Starting test: VerifyReferences
......................... NETSERVER1 passed test VerifyReferences

Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom

Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test
CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom

Running partition tests on : ilcuboard
Starting test: CrossRefValidation
......................... ilcuboard passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ilcuboard passed test CheckSDRefDom

Running enterprise tests on : ilcuboard.local
Starting test: Intersite
......................... ilcuboard.local passed test Intersite
Starting test: FsmoCheck
......................... ilcuboard.local passed test FsmoCheck

C:\Documents and Settings\Administrator.CUB_DOMAIN>

====================================================================================================================
====================================================================================================================


C:\Documents and Settings\Administrator.CUB_DOMAIN>dcdiag/fix

Domain Controller Diagnosis

Performing initial setup:
Done gathering initial info.

Doing initial required tests

Testing server: Default-First-Site-Name\NETSERVER1
Starting test: Connectivity
......................... NETSERVER1 passed test Connectivity

Doing primary tests

Testing server: Default-First-Site-Name\NETSERVER1
Starting test: Replications
......................... NETSERVER1 passed test Replications
Starting test: NCSecDesc
......................... NETSERVER1 passed test NCSecDesc
Starting test: NetLogons
......................... NETSERVER1 passed test NetLogons
Starting test: Advertising
......................... NETSERVER1 passed test Advertising
Starting test: KnowsOfRoleHolders
......................... NETSERVER1 passed test KnowsOfRoleHolders
Starting test: RidManager
......................... NETSERVER1 passed test RidManager
Starting test: MachineAccount
......................... NETSERVER1 passed test MachineAccount
Starting test: Services
......................... NETSERVER1 passed test Services
Starting test: ObjectsReplicated
......................... NETSERVER1 passed test ObjectsReplicated
Starting test: frssysvol
......................... NETSERVER1 passed test frssysvol
Starting test: frsevent
......................... NETSERVER1 passed test frsevent
Starting test: kccevent
......................... NETSERVER1 passed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:19
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:19
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:19
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:19
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:20
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 07/11/2008 10:02:21
Event String: The dynamic registration of the DNS record
......................... NETSERVER1 failed test systemlog
Starting test: VerifyReferences
......................... NETSERVER1 passed test VerifyReferences

Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom

Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test
CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom

Running partition tests on : ilcuboard
Starting test: CrossRefValidation
......................... ilcuboard passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ilcuboard passed test CheckSDRefDom

Running enterprise tests on : ilcuboard.local
Starting test: Intersite
......................... ilcuboard.local passed test Intersite
Starting test: FsmoCheck
......................... ilcuboard.local passed test FsmoCheck

C:\Documents and Settings\Administrator.CUB_DOMAIN>

David Shen [MSFT]" wrote:

Hello Lem,

Thanks for the reply.

Based on the research of the message that you provided with me. I found
that all the SRV resource records cannot be registered on the
'192.168.100.87'(netserver1). To further troubleshoot the issue, please
follow the steps to check if it still exists.

1. please verify the Primary DNS suffix of the DC (netserver1) is
"ilcuboard.local" and the domain name on the DC is also "ilcuboard.local"

2. please also verify that the DNS domain name is "ilcuboard.local" and
the DNS lookup zone type is "Active Directory Integrated"

3. Afterwards, please run "net stop netlogon" and then run "net start
netlogon" on the DC (netserver1) to manually register the SRV records in
the
DNS database.

Hope it helps.

David Shen
Microsoft Online Partner Support


.



Relevant Pages

  • Re: Replication issues
    ... I wanted to say Zone Transfers not Zone Forwarding. ... AD-Integrated DNS does not do zone transfers between the ... your DNS server will bypass ...
    (microsoft.public.windows.server.active_directory)
  • RE: multiple dns errors with domain controllers
    ... Here's the errors in the DNS server log: ... I noticed that one of the servers had DNS setup on it and I didn't think it ... The dynamic registration of the DNS record ...
    (microsoft.public.windows.server.dns)
  • Re: Servers hang on boot
    ... The last DC at that site (not a DNS server). ... EventID: 0x00000457 ... (Event String could not be retrieved) ...
    (microsoft.public.windows.server.networking)
  • Re: DNS Redesign Issue
    ... set the new child domain DNS server as primary for the domain controllers? ... -If you are going to create a new AD Integrated Zone in each child domain, ...
    (microsoft.public.windows.server.dns)
  • Re: Internet connection wizard
    ... turn on DHCP on the workstation. ... Connection-specific DNS Suffix. ... calling CNetCommit::ValidateRouterConnectionProperties. ... Call to Reading preferred DNS server IP returned ok. ...
    (microsoft.public.windows.server.sbs)