PC Review


Reply
Thread Tools Rate Thread

DNS/AD problems after demoting first server in AD

 
 
Jim Helfer
Guest
Posts: n/a
 
      11th Dec 2006

I had to demote a server that was a GC, DC and a DNS server. I didn't
see any errors on this process, but it's seemed to have some ugly side
effects on the network. First of all, the demoted server remains a
member server and a DNS server, but is not connected to the zone. (and
there are events that tell me it tried but couldn't).

But, several important-looking records in the other DNS server still
apear to reference the demoted, dns-disconnected server, such as:

ForwardLookupZpne/_msdc: NS - Name Server

ForwardLookupZone/_msdc/_tcp : SRV - Service Location

ForwardLookupZpne/_msdc/_gc: A - Host

Similar for wtwarch.com

I know this is wrong, but I'm not sure what to do. Manually delete the
records? reconnect the demoted servers DNS? Remove DNS from the demoted
server?

Thanks
Jim Helfer
WTW Architects
Pittsburgh PA

 
Reply With Quote
 
 
 
 
Vincent Xu [MSFT]
Guest
Posts: n/a
 
      12th Dec 2006
Hi,

First, before you demote it, did you transfer FSMO to other DCs? If not,
please now try to seize FSMO to other DCs.

324801 How to view and transfer FSMO roles in Windows Server 2003
http://support.microsoft.com/default...b;EN-US;324801

255504 Using Ntdsutil.exe to transfer or seize FSMO roles to a domain
controller
http://support.microsoft.com/default...b;EN-US;255504

Second, since you demoted the DC, I suggest you let other DCs to hold the
DNS role if the DNS is stored in AD.

Third, I'm not sure what is the exact event of "not connected to the zone",
please let me know in detail.

Thanks.


Best regards,

Vincent Xu
Microsoft Online Partner Support

======================================================
Get Secure! - www.microsoft.com/security
======================================================
When responding to posts, please "Reply to Group" via your newsreader so
that others
may learn and benefit from this issue.
======================================================
This posting is provided "AS IS" with no warranties,and confers no rights.
======================================================



--------------------
>>Date: Mon, 11 Dec 2006 16:58:11 -0500
>>From: Jim Helfer <(E-Mail Removed)>
>>User-Agent: Thunderbird 1.5.0.8 (Windows/20061025)
>>MIME-Version: 1.0
>>Subject: DNS/AD problems after demoting first server in AD
>>Content-Type: text/plain; charset=ISO-8859-1; format=flowed
>>Content-Transfer-Encoding: 7bit
>>Message-ID: <(E-Mail Removed)>
>>Newsgroups: microsoft.public.win2000.dns
>>NNTP-Posting-Host: wtwarch.com 66.212.142.243
>>Lines: 1
>>Path: TK2MSFTNGHUB02.phx.gbl!TK2MSFTNGP01.phx.gbl!TK2MSFTNGP02.phx.gbl
>>Xref: TK2MSFTNGHUB02.phx.gbl microsoft.public.win2000.dns:64
>>X-Tomcat-NG: microsoft.public.win2000.dns
>>
>>
>> I had to demote a server that was a GC, DC and a DNS server. I didn't
>>see any errors on this process, but it's seemed to have some ugly side
>>effects on the network. First of all, the demoted server remains a
>>member server and a DNS server, but is not connected to the zone. (and
>>there are events that tell me it tried but couldn't).
>>
>> But, several important-looking records in the other DNS server still
>>apear to reference the demoted, dns-disconnected server, such as:
>>
>>ForwardLookupZpne/_msdc: NS - Name Server
>>
>>ForwardLookupZone/_msdc/_tcp : SRV - Service Location
>>
>>ForwardLookupZpne/_msdc/_gc: A - Host
>>
>> Similar for wtwarch.com
>>
>> I know this is wrong, but I'm not sure what to do. Manually delete the
>>records? reconnect the demoted servers DNS? Remove DNS from the demoted
>>server?
>>
>> Thanks
>> Jim Helfer
>>WTW Architects
>>Pittsburgh PA
>>
>>


 
Reply With Quote
 
Jim Helfer
Guest
Posts: n/a
 
      13th Dec 2006

Thanks, I just removed the DNS service from the demoted server and
everything seeemed to go back to normal.
 
Reply With Quote
 
Vincent Xu [MSFT]
Guest
Posts: n/a
 
      13th Dec 2006
Hi Ji,

Glad to know that.

Have a good day~


Best regards,

Vincent Xu
Microsoft Online Partner Support

======================================================

Get Secure! - www.microsoft.com/security
======================================================
When responding to posts, please "Reply to Group" via your newsreader so
that others
may learn and benefit from this issue.
======================================================
This posting is provided "AS IS" with no warranties,and confers no rights.
======================================================



--------------------
>>Date: Tue, 12 Dec 2006 19:29:22 -0500
>>From: Jim Helfer <(E-Mail Removed)>
>>User-Agent: Thunderbird 1.5.0.8 (Windows/20061025)
>>MIME-Version: 1.0
>>Subject: Re: DNS/AD problems after demoting first server in AD
>>References: <(E-Mail Removed)>

<(E-Mail Removed)>
>>In-Reply-To: <(E-Mail Removed)>
>>Content-Type: text/plain; charset=ISO-8859-1; format=flowed
>>Content-Transfer-Encoding: 7bit
>>Message-ID: <(E-Mail Removed)>
>>Newsgroups: microsoft.public.win2000.dns
>>NNTP-Posting-Host: wtwarch.com 66.212.142.243
>>Lines: 1
>>Path: TK2MSFTNGHUB02.phx.gbl!TK2MSFTNGP01.phx.gbl!TK2MSFTNGP03.phx.gbl
>>Xref: TK2MSFTNGHUB02.phx.gbl microsoft.public.win2000.dns:73
>>X-Tomcat-NG: microsoft.public.win2000.dns
>>
>>
>> Thanks, I just removed the DNS service from the demoted server and
>>everything seeemed to go back to normal.
>>


 
Reply With Quote
 
 
 
Reply

Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Problems after demoting DC's Marphyre Microsoft Windows 2000 Active Directory 10 13th Apr 2006 04:47 PM
Demoting DC to a member server with SQL server installed =?Utf-8?B?U1lhcm9zbGF2?= Microsoft Windows 2000 0 15th Sep 2005 02:11 PM
Demoting a server and pulling off DNS R Manske Microsoft Windows 2000 Active Directory 1 19th Apr 2004 04:50 PM
problems with demoting a server using dcpromo mel Microsoft Windows 2000 Setup 1 2nd Oct 2003 10:44 PM
Having problems demoting a server Rod Microsoft Windows 2000 Active Directory 0 23rd Sep 2003 03:27 AM


Features
 

Advertising
 

Newsgroups
 


All times are GMT +1. The time now is 02:50 PM.