PC Review


Reply
Thread Tools Rate Thread

AD Sync problem

 
 
Greg
Guest
Posts: n/a
 
      6th Apr 2008
We have 4 sites with a DC at each site. Replication
is set both ways but only works 1 way. The NY
which is a win 2000 PDC in mixed mode, can propagate
AD changes down to the other sites. The other
sites can not send AD changes back. I ran the diagnostic
below and this is what I discovered.

dcdiag /test:replications
Doing primary tests

From LRCSRVNY001 to LRCSRVMD001
Naming Context: CN=Schema,CN=Configuration,DC=allstar,DC=com
The replication generated an error (8524):
The DSA operation is unable to proceed because of a DNS lookup failure.
The failure occurred at 2008-03-29 13:03.16.



When you look at The DNS configuration on the LRCSRVNY001 server in DNS
under _msdcs,
it is not listed. Are there any dangers to
adding this entery under _msdcs. TIA
--
Greg
 
Reply With Quote
 
 
 
 
Ace Fekay [MVP]
Guest
Posts: n/a
 
      7th Apr 2008
In news:236907F0-2ECD-4A49-AE5C-(E-Mail Removed),
Greg <(E-Mail Removed)> typed:
> We have 4 sites with a DC at each site. Replication
> is set both ways but only works 1 way. The NY
> which is a win 2000 PDC in mixed mode, can propagate
> AD changes down to the other sites. The other
> sites can not send AD changes back. I ran the diagnostic
> below and this is what I discovered.
>
> dcdiag /test:replications
> Doing primary tests
>
> From LRCSRVNY001 to LRCSRVMD001
> Naming Context: CN=Schema,CN=Configuration,DC=allstar,DC=com
> The replication generated an error (8524):
> The DSA operation is unable to proceed because of a DNS lookup
> failure. The failure occurred at 2008-03-29 13:03.16.
>
>
>
> When you look at The DNS configuration on the LRCSRVNY001 server in
> DNS under _msdcs,
> it is not listed. Are there any dangers to
> adding this entery under _msdcs. TIA


Which DNS server(s) is the NY DC pointed to?

Are there multiple domains or are they all in one domain? I ask because you
mentioned that the NY site's DC is in mixed mode. This was somewhat
confusing beacuse the term defines Functional Levels for domains and
forests, but not a specific domain controller.

Are all DCs in the infrastructure (whether single or multiple domains) all
Windows 2000 or are there also Windows 2003 DCs?

Are there any blocked firewall ports between any of the locations? Keep in
mind, ALL UDP and TCP ports MUST be opened completely between locations.

What type of line is at each location? Are they digital lines, such as T1s,
or are they cable or ADSL? ADSL can be problemati due PPPoE's MTU
requirement being less than 1500.

Post any Eventlog errors on any of the DCs please. Post the EventID # and
Source name.

Is there a host record entry for LRCSRVNY001?

If you want to create an entry for LRCSRVNY001, you could try it, and it may
work, but the fact that it is not present poses a greater concern why it
never registered, hence my questioning.

To better assist, please post an ipconfig /all from each DC in your 4
locations. This will help us get a better 'view' of your network to help
come up with a possible resolution.

By the way, the term "PDC" is a legacy term from the NT4 days and don't
really apply to Windows 2000/2003/2008. In the later Windows versions, we
just call them domain controllers, or 'replica' domain controllers, or just
DCs. Keep in mind however there is a FSMO role that runs on one of the DCs
in each domain called the PDC Emulator. When the domain is in mixed mode,
the PDC emulator will support any NT4 BDCs that exist in an AD domain as
well as other functions. However in raised levels such as Windows 2000 or
2003 levels, NT4 BDC support disappears but it still supports other
functions such as time sync (extermely important for Kerberos), password
sync, and source fo the writable GPO DC, and others.

--
Regards,
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT,
MVP Microsoft MVP - Directory Services
Microsoft Certified Trainer

For urgent issues, you may want to contact Microsoft PSS directly. Please
check http://support.microsoft.com for regional support phone numbers.

Infinite Diversities in Infinite Combinations


 
Reply With Quote
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
sync problem Dan Microsoft Outlook Discussion 1 9th Mar 2009 12:07 PM
Help with sync problem cowboy Microsoft Outlook Discussion 1 10th Mar 2008 05:44 AM
BCM Sync Problem Remove ABCD from Email address to reply Microsoft Outlook BCM 0 26th May 2007 04:58 PM
BCM Sync Problem Remove ABCD from Email address to reply Microsoft Outlook BCM 0 21st May 2007 09:52 PM
active sync problem with Inbox sync =?Utf-8?B?dGFyZWs=?= Microsoft Outlook Discussion 1 10th Apr 2006 04:08 PM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 11:12 PM.