C
Chris Hall
We have two DCs in two physical locations, both running w2k sever w/ sp4. A
while back, I noticed KCC and NtFRS errors in the event log. I've never had
problems pinging either server from my workstation or each other. I can also
nslookup both servers by name and ip. It was pointed out that this is
probably a dns problem, which I would agree since I get the error when
running DCDIAG:
"SERVER2 server GUID DNS name could not be resolved to an IP
address. Check the DNS server, dhcp, server name, etc. Althought the
GUID DNS name couldn't be resolved, the server name
SERVER2.DOMAIN.COM resolved to IP address (w.x.y.z) and was pingable.
I've looked at serveral KB articles and posts in this group, but have still
not been able to resolve this problem It seems that the servers replicate
sometimes, as I've seen in Event Viewer messages that tell me so.
Originally, I thought the problem was DNS related to the first server--I was
using a non-rfc compliant name (MAIN_SERVER.DOMAIN.COM)--but based on the
errors and posts I've seen in this newsgroup, I think that the problem is
somewhere else. At this point, I transferred FSMO roles to SERVER2 and have
attempted to remove/reinstall DNS according to the KB article (294328), but
I can't open AD Users & Comp snap-in on SERVER2. I completed this on both
servers. On SERVER2, when I try to run DCDIAG, I get this:
Performing initial setup:
[server2] LDAP bind failed with error 31,
A device attached to the system is not
functioning....
Another post descriped that the above LDAP problem has to do with Secure
Channel Password being out of sync. I tried to change this but got this
message:
The machine account password for the local machine could
not be reset.
The credentials supplied conflict with an existing set
of credentials.
I used NETDOM from the support tools to try to change this.
FYI: I do have time setup with an outside time server.
I'm confused because, the setup is simple--only 2 DCs--and I believe that I
set this up correctly...static ip, pointed dns to self on each server,
dcpromo, setup dns during dcpromo.
I'm running out of options, so if someone could shed some light, I would
greatly appreciate it!!!!!!!!!!!!!!
while back, I noticed KCC and NtFRS errors in the event log. I've never had
problems pinging either server from my workstation or each other. I can also
nslookup both servers by name and ip. It was pointed out that this is
probably a dns problem, which I would agree since I get the error when
running DCDIAG:
"SERVER2 server GUID DNS name could not be resolved to an IP
address. Check the DNS server, dhcp, server name, etc. Althought the
GUID DNS name couldn't be resolved, the server name
SERVER2.DOMAIN.COM resolved to IP address (w.x.y.z) and was pingable.
I've looked at serveral KB articles and posts in this group, but have still
not been able to resolve this problem It seems that the servers replicate
sometimes, as I've seen in Event Viewer messages that tell me so.
Originally, I thought the problem was DNS related to the first server--I was
using a non-rfc compliant name (MAIN_SERVER.DOMAIN.COM)--but based on the
errors and posts I've seen in this newsgroup, I think that the problem is
somewhere else. At this point, I transferred FSMO roles to SERVER2 and have
attempted to remove/reinstall DNS according to the KB article (294328), but
I can't open AD Users & Comp snap-in on SERVER2. I completed this on both
servers. On SERVER2, when I try to run DCDIAG, I get this:
Performing initial setup:
[server2] LDAP bind failed with error 31,
A device attached to the system is not
functioning....
Another post descriped that the above LDAP problem has to do with Secure
Channel Password being out of sync. I tried to change this but got this
message:
The machine account password for the local machine could
not be reset.
The credentials supplied conflict with an existing set
of credentials.
I used NETDOM from the support tools to try to change this.
FYI: I do have time setup with an outside time server.
I'm confused because, the setup is simple--only 2 DCs--and I believe that I
set this up correctly...static ip, pointed dns to self on each server,
dcpromo, setup dns during dcpromo.
I'm running out of options, so if someone could shed some light, I would
greatly appreciate it!!!!!!!!!!!!!!