Question

Endless Event ID's 1006 & 1030 every 5 minutes

Asked by: EBSIT

On a newly demoted then promoted DC!

Event ID: 1030
Windows cannot query for the list of Group Policy objects. Check the event log for possible messages previously logged by the policy engine that describes the reason for this.

Event ID: 1006
Windows cannot bind to ebs.com domain. (Local Error). Group Policy processing aborted.
__________________________________________________________________________________________________________________________________

Many things have been tried, to include a demotion and re-promotion of one of our 2 DC's, but this error will not go away on the promoted DC. This error existed before it got demoted, and now exists EVEN after re-promoted! How can I fix THIS!

FOR 2000 pts... GET these erros\issue gone\fixed for me!

Netdiag shows all passed or skipped, but no failures

In the "userenv.log" I do find a few issues on our newly promoted DC.

USERENV(370.be0) 11:57:10:859 ProcessGPOs: Processing failed with error 8341.
USERENV(370.be0) 11:57:10:849 ProcessGPOs: GetGPOInfo failed.
USERENV(370.be0) 11:57:10:829 GetGPOInfo:  ldap_bind_s failed with = <82>

I've read where demoting\promoting has cause similar errors, I have tried a fix once that work until I tried a non authoritative restore, then it never fixed again after these event ID erros came back to haunt me. Tried deleting all sorts of logs once that worked but this has never worked again.



This Question has been solved and asker verified All Experts Exchange premium technology solutions are available to subscription members.

Subscribe now for full access to Experts Exchange and get

Instant Access to this Solution

  • Plus...
  • 30 Day FREE access, no risk, no obligation
  • Collaborate with the world's top tech experts
  • Unlimited access to our exclusive solution database
  • Never be left without tech help again

Subscribe Now

Asked On
2006-02-02 at 09:29:26ID21721221
Tags

1006

,

event

,

id

Topic

Windows 2003 Server

Participating Experts
8
Points
500
Comments
26

Trusted by hundreds of thousands everyday for fast, accurate and reliable tech support.

  • "The time we save is the biggest benefit of Experts Exchange to Warner Bros. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange." Mike Kapnisakis, Warner Bros.
  • "Our team likes having a resource that is more secure than just using Google and most experts using this service really know their stuff. It's nice to look here first versus using Google." Dayna Sellner, Lockheed Martin
  • "Anytime that I've been stumped with a problem, 9 out of 10 times Experts Exchange has either the accepted solution or an open discussion of the potential solution to the problem." Kenny Red, eBay Inc.

See what Experts Exchange can do for you.

Got a question?

We've got the answer.

Experts Exchange has been collecting answers to technology questions since 1996…3 million and counting! If you have a question, chances are we already have your answer.

Screenshot of Experts Exchange Knowledgebase

Need individual assistance?

Our experts are ready to help.

If you can't find the exact answer you're looking for, ask our exclusive community of 50,000 experts. You’ll get a personalized answer from a trusted professional.

Screenshot of Experts Exchange Knowledgebase

Want to learn from the best?

Read articles from industry experts.

Thousands of free tech tips, tricks, how-to’s and tutorials are available in our peer reviewed articles section. See for yourself how smart our experts are, no login required.

Screenshot of an Article

Working on a long term project?

Store your work and research.

Save solutions to your questions, answers you’ve discovered through searching plus helpful articles in your personal knowledgebase for easy future access.

Screenshot of Experts Exchange Knowledgebase

Access the answers to your technology questions today.

Subscribe Now

30-day free trial. Register in 60 seconds.

What Makes Experts Exchange Unique?

Members of the expert community talk about why the experience at Experts Exchange is different than what you will find anywhere else.

Trusted by the world's most respected brands.

image of each brand's logo

Faithfully serving IT professionals since 1996.

Experts Exchange Logo

Try it out and discover for yourself.

Subscribe Now

30-day free trial. Register in 60 seconds.

Related Solutions

  1. Netdiag/LDAP error
    I just set up a Windows serer 2003 machine, and have either an LDAP or DNS problem. I was having problems with communications, and when I turned on TCP/IP helper for Netbios, and the errors went away from event viewer. I started to install exchange, thinking that the problems...
  2. Netdiag shows FATAL error in DNS for _ldap folders
    I have three DC's on my DMZ and I am using two of them to resolve DNS. I am getting the following errors on both my DNS servers (AD integrated) - NS1.medicalcentral.com, and NS2.medicalcentral.com (aliases). They both show the same error (different IP addresses) for the same...
  3. Active Directory (Netdiag) failed test KnowsOfRoleHolders
    I have a Windows 2003 network, with a mix of windows 2000 and windows 2003 DCs, one domain, each dept had their own local DC, all servers have the latest service packs installed. Recently I added tree new DCs, when I run the netdiags on each server, I get this report back: ...
  4. Unable to promote or demote a DC
    I have an account that is part of the Domain admins group, the Schema admins group, and the server operators group but I am unable to promote or demote a domain controller. I am the one who installed and configured all of these servers. Our security guy implemented a bunch o...
  5. Cannot find a primary authoritive DNS Server NETDIAG
    Hi I have an issue i need your help with. I believe i may know what the cause is but perhaps i have missed something. I have an SBS2003 Domain. The SBS server sits in an office 40km away from my problem server. I also have an additional DC in the same office as the SBS ser...

Free Tech Articles

  1. WARNING: 5 Reasons why you should NEVER fix a computer for free.
    It is in our nature to love the puzzle. We are obsessed. The lot of us. We love puzzles. We love the challenge. We thrive on finding the answer. We hate disarray. It bothers us deep in our soul. W...
  2. SCCM OSD Basic troubleshooting
    SCCM 2007 OSD is a fantastic way to deploy operating systems, however, like most things SCCM issues can sometimes be difficult to resolve due to the sheer volume of logs to sift through and the dispe...
  3. Migrate Small Business Server 2003 to Exchange 2010 and Windows 2008 R2
    This guide is intended to provide step by step instructions on how to migrate from Small Business Server 2003 to Windows 2008 R2 with Exchange 2010. For this migration to work you will need the fo...
  4. Create a Win7 Gadget
    This article shows you how to create a simple "Gadget" -- a sort of mini-application supported by Windows 7 and Vista. Gadgets can be dropped anywhere on the desktop to provide instant information, ...
  5. Outlook continually prompting for username and password
    There have been a lot of questions recently regarding Outlook prompting for a username and password whilst using Exchange 2007. There are a few reasons why this would happen and I will try to cover t...
  6. Backup Exchange 2010 Information Store using Windows Backup
    There seems to be quite a lot of confusion around the ability to backup Exchange 2010 using the built in Windows Backup feature. This stems from the omission of this feature prior to Exchange 2007 s...

Cloud Class Webinars

  1. Avoiding Bugs in Microsoft Access
    Alison Balter takes and in-depth look at avoiding bugs in Access. In this webinar you will learn about using the immediate window to debug your applications, invoking the debugger, using breakpoints to troubleshoot, stepping through code, setting the next statement to execute, ...
  2. Top 10 Best New Features in Visio 2010
    Scott Helmers gives live demonstrations of the top 10 new features in Visio 2010. This webinar will teach you how to create compelling diagrams by adding shapes to the page with a single click, linking the shapes in a diagram to data in Excel (or SQL Server, or SharePoint), ...
  3. IT Consultant Business Secrets Revealed
    Michael Munger, Experts Exchange tech pro and IT consultant, pulls back the curtain on his very successful businesses and answers question on every IT consultant and business owner should know about. He shares secrets on what he did to solve the 5 most common problems in IT, ...
  4. Disaster Recovery and Business Continuity
    Quest CTO, Mike Billon, gives an overview of the steps involved in building a dunamic disaster recovery plan. Through case studies and an examination of software/hardware tooles for monitoring and testing, you'll gain a better understandin of where you are, where you want ...
  5. Organize Your Visio Diagrams with Containers and Lists
    Scott Helmers uses cross functional flowcharts, wireframe diagrams, data graphic legends and seating charts to teach you: how to ustilize all three new structured diagram components in Visio 2010, the best practices for organizeing shapes in previous version of Visio, how to organize ...
  6. How to Us Objects, Properties, Events and Methods in Microsoft Access
    Alison Dalter gives an in-depbth look at objects, properties, events and methods in Microsoft Access. In this webinar you will learn about using the object browser, referring to objects, working with properties and methods, working with object variables, understanding the ...

Join the Community

Give a Little. Get a Lot.

Join the community of experts here and help other tech pros by answering question in your area of expertise. You can earn FREE access to all Experts Exchange's premium features and resources.

Join the Community

Answers

 

by: mcp_jonPosted on 2006-02-02 at 09:33:01ID: 15854947

Please have a look at this inhouse Answer, from ODBA, " http://www.experts-exchange.com/Networking/Microsoft_Network/Q_21126829.html "

Hope it helps !

Best Regards !

 

by: EBSITPosted on 2006-02-02 at 09:40:07ID: 15855022

Nope, thats for another pair of events not my pair.

 

by: mcp_jonPosted on 2006-02-02 at 09:54:14ID: 15855185

It's for the 1030, at least :)

But check this one also : " http://www.experts-exchange.com/Networking/Q_21252533.html "

Best Regards !

 

by: EBSITPosted on 2006-02-02 at 10:08:48ID: 15855340

Nope, saw these already and its a no go.

This is a hard to impossible question to answer, and is why I will give anyone that gets it fixed 2000 POINTS!

 

by: NJComputerNetworksPosted on 2006-02-02 at 10:28:34ID: 15855531

I'm sure you saw this already...but here are some ideas:

Last update 10/11/2005):
In my case, the event appeared on a Windows 2003 server after we changed the domain admin password. All services had correctly been changed, but the console was logged on during the password change. A simple logoff-logon solved the problem.

James (Last update 6/28/2005):
My issues on this event were caused by cached credentials on the client. They were not showing up when I logged in as Administrator (Tristen and Sean below had issues related to this, but were able to find and delete the offending credentials). Rob's comments under EventID 14 from source Kerberos, about client credentials not appearing were very helpful in pointing me in the right direction to solve my issue. Instead of deleting and re-adding the computer & account, etc. from the domain as he did, I just temporarily gave the affected user administrative privileges and was able to find the stored user name info when I logged in as that user. Go to Start -> Control Panel -> User Accounts -> Advanced tab -> Manage Passwords. Note that you cannot go in to this area without Admin privileges and you cannot see them when you are logged in as another user. Once I found and deleted the stored credentials, I removed admin privileges and was able to log in normally without the authentication problems.

Brad Albert (Last update 6/14/2005):
We were getting this along with event 1030, on two SQL servers; both errors started on the same day and were associated with the same user. It turned out that the database administrator had left herself logged on to both SQL servers and then changed her password. We simply logged her off and the error was gone.

Ionut Marin (Last update 6/14/2005):
As per Microsoft: "An Active Directory, network connectivity, or network configuration problem prevents Group Policy settings from being applied. Group Policy processing for the computer or user failed and will continue to fail until this problem is resolved". See MSW2KDB for more details.

From a newsgroup post: "Last weekend I deployed the first GPO for desktop screen saver protection to all computers. On Monday, I found out that not all computers had this policy applied, and most of the computers had this event logged. After two days investigation, I found the reason for this error was due to the logon password expiration. Apparently, quite a few user accounts had their passwords expired over the weekend, and they did not change their passwords before expiration. Then GPO are not pushed out because of the user account cannot be validated. A bit funny, but that makes sense. Users who changed their password will not have that problem later on".

From a newsgroup post :"This may occur on a multihomed DC (2003) with two NICs, where one NIC has port filtering enabled and is blocking port 389. This can occur even if the “port blocking” NIC is lower in the binding order than a “non port blocking” NIC.
Also check to see whether there are any services running in the context ABC\Administrator.
Lastly, make sure the DNS zone for the AD Domain has dynamic updates enabled".

Sean (Last update 9/22/2004):
I had exactly the same problem as Tristen. I went into Control Panel -> User Accounts -> Advanced tab -> Manage Passwords, and removed the user from the list. After a reboot, the problem disappeared.

Tristen (Last update 9/9/2004):
I was getting EventID 1006 and EventID 1030 errors on a user’s machine. The problem turned out to be caused by the fact that both domain controllers had entries under "user accounts / manage passwords" which were blank. I removed both entries, which fixed the problem and allowed the group policy to update.

Robert Auch (Last update 5/31/2003):
Only seen by laptop user after returning from offsite work (logging in with cached credentials on previous logon/bootup) - system will hang at blue screen before "starting windows" window appears on screen. This is NOT a boot error message (M242518 is the only article I can find which looks similar), but a network issue: if the network cable is unplugged, the system boots fine.  If "Offline Files" in Explorer is turned off, the system boots fine. Can't turn off Offline files, as user needs it for laptop to work offsite properly.  

 

by: NJComputerNetworksPosted on 2006-02-02 at 10:28:55ID: 15855535

 

by: EBSITPosted on 2006-02-02 at 10:55:58ID: 15855794

Been to eventid.net and none of these suggestions hold for my case.

S.O.S.

 

by: NJComputerNetworksPosted on 2006-02-02 at 11:06:53ID: 15855908

Ok...can you provide more information then?  Basically, youve only provided some event id's to us....

How many DC's?  What OS's?  What SP level?  How is your network configured/designed?  Do you have third party apps on this server?  Are you only seeing these event errors on one machine?  What else does this server do?  DNS/DHCP/ETC...  

Did you run the MPSREPORT on this machine?  http://www.microsoft.com/downloads/details.aspx?FamilyId=CEBF3C7C-7CA5-408F-88B7-F9C79B7306C0&displaylang=en

 

by: mdgillPosted on 2006-02-02 at 11:34:39ID: 15856185

couple questions.
did you get the error when you demoted the server?
do you get any errors when you run gpupdate?
have you looked over gpresult?
have you run RSoP and looked for errors?

how many NICs in this server? i know that one is off the wall but with most of the answers pointing to DNS i was curious.

 

by: EBSITPosted on 2006-02-02 at 12:30:40ID: 15856776

I have posted on this before:\ To no AVAIL what so ever. i.e. no one at all can solve this one, it's to hard! All experts have been stumpted on it.

see here:\ http://www.experts-exchange.com/Operating_Systems/Windows_Server_2003/Q_21677475.html


We had two DC's that are windows 2003 standard edition with no service paks. {I recently upgraded to SP1 on the DC I Just promoted, but the problem still persisted}, both DC's run DNS\DHCP etc... Its just a one domain deal no extra domains or anything snazzy. We have User Manager Pro installed, Diskeeper, logmeister, Symantec Antivirus, EZ-Audit, Dymo Label. I dont think any of these have anything at all to do with this issue, but who knows.

If I ran MPSREPORT which would be most applicable?

Dirsvc and Network?

 

by: yujaPosted on 2006-02-02 at 12:33:44ID: 15856810

i had the same events, occuring each 5 minutes, when the "File and Printer Sharing" was not installed for the network connection.

 

by: EBSITPosted on 2006-02-02 at 12:46:15ID: 15856953

mdgil.

The errors pre-existed my being at this job, but I was told the DC in question had these issues prior and was hence demoted and promoted at least one other time. So it was not this instance of demotion\promotion that may have spawned the errors. But the previous demotion\promotion may have had something to do with it. I ran gpudate and User\Computer policy refresh completed with no errors.

gpresult had nothing out the ordinary, i.e. no errors reported.

I have not run RSoP on my DC, will that work, what may it tell?

We have two NICS, one that is 192... and the other is 172... as the backup network only.

 

by: EBSITPosted on 2006-02-02 at 12:50:53ID: 15857012

yuja.

We have two NIC's and one is Primary and the Other is Backup. The backup NIC does not have "File and Printer Sharing" checked, while primary does. But this is the case for the good DC also and it does not get these errors every 5 minutes?

 

by: EBSITPosted on 2006-02-02 at 12:52:44ID: 15857037

I notice a new error that may be telling.

Event ID: 1059  Source: DhcpServer
The DHCP service failed to see a directory server for authorization.


This error I have not noticed until after the demotion\promotion...

 

by: mdgillPosted on 2006-02-02 at 13:05:12ID: 15857200

this is probably going to be a stupid question but;
do you have disk quota enabled on the C: drive? and how much free space do you have on that drive?

something else i was thinking about is time sync. if the servers are running kerberos some times the time gets out of whack. net time \\PrimaryServer /SET

still looking..

 

by: EBSITPosted on 2006-02-02 at 13:10:34ID: 15857263

We have 17.3 gig on C, with no quotas at all.

 

by: mdgillPosted on 2006-02-02 at 14:04:13ID: 15857818

youve run netdiag and no errors, have you run dcdiag?

 

by: Jay_Jay70Posted on 2006-02-02 at 15:55:59ID: 15858666

when you demoted the DC did you remove all traces from AD? did you play with the NTDSUTIL tool and clean your metadata?"

 

by: Netman66Posted on 2006-02-02 at 16:28:43ID: 15858822

Please answer the following:

1) Is the 192.x.x.x NIC at the top of the binding order?  It should be.
2) Is DHCP and DNS listening only to the 192.x.x.x network?  They should be.
3) Is the 172.x.x.x NIC registered in DNS?  At this point it should NOT be since you aren't using that network.  In fact, you should disable the NICs on both servers that are not in use.
4)  Was the initial domain a Windows 2000 domain that was updated?
5)  Do you see a Forward Lookup zone for _msdcs?  Is it inside or outside the Forward Lookup zone for the domain?
6)  Do you have a reverse zone created for this subnet?
7)  Do you have the ISP DNS address listed on ANY network card inside your LAN?  It should NOT be.  The only place this should be is on the Forwarder tab of your DNS server.
8)  Is replication working?  Use REPLMON to determine when (if) replication occurred last and whether it was successful.
9)  If you open a CMD window on each server and run "NET SHARE" do you see the SYSVOL share on each DC?
10) Are ALL 5 FSMO roles plus the GC present and accounted for?

Let us know.

 

by: pdxsrwPosted on 2006-02-03 at 00:59:48ID: 15861203

It's 12:54am ... I am too tired to read through everyone's possible solutions.

I have run into a similar situation at a client site... not the same errors..but the group policies failing...account not able to authenticate, etc..  Turned out it was the locally installed AntiVirus client scanning the c:\windows\security folder and corrupting the local security data file, and also on the Server same deal... had to exclude the c:\windows\security\ folder on the server and workstation before it would work correctly. Weird thing is it was only on a couple of machines..not all of them..

- pdxsrw

 

by: mdgillPosted on 2006-02-03 at 08:51:31ID: 15865140

Netman66 has some good suggestions to go thru.

i did run across some info on the 1006 error. the one thing that caught my eye is to copy the sysvol folder from a good DC to the bad DC. i would probably rename the old sysvol folder first tho.

the other things were to check dcdiag /dnsall  for errors

and just a thought, how about installing vmware on a beefy workstation and install another DC. just to test if the problem starts from the initial replication. make sure you copy as many settings from the bad DC as you can. with vmware you can take snapshots just incase something goes bad.

last but not wanted. you have to take into account the amount of time you have spent on this problem and will continue to spend on this issue. compare that to how long would it take to rebuild the server from scratch and how long the company will be without the server.

good luck.

 

by: mdgillPosted on 2006-02-03 at 08:59:21ID: 15865218

forgot to mention, if you do start over save yourself some time and demote the bad DC before taking it off the network.

 

by: redseatechnologiesPosted on 2006-04-05 at 14:54:06ID: 16386877

This question has been classified as abandoned because there are no comments in the last 21 days. I will make a recommendation to the moderators on its resolution in approximately 4 days.  I would appreciate any comments by the experts that would help me in making a recommendation.

It is assumed that any participant not responding to this request is no longer interested in its final disposition.

If the asker does not know how to close the question, the options are here:
http://www.experts-exchange.com/help.jsp#hs5

-red
EE Cleanup Volunteer

 

by: Netman66Posted on 2006-04-05 at 14:56:33ID: 16386899

Well, he wanted help and neglected to provide us with answers to our queries.  Suggest split and PAQ.

 

by: redseatechnologiesPosted on 2006-04-05 at 15:13:36ID: 16387030

Thanks for the reply Netman66,

No comment has been added to this question in more than 21 days, so it is now classified as abandoned.

I will leave the following recommendation for this question in the Cleanup topic area:
     Split: NJComputerNetworks{http:#15855908} & mdgill{http:#15856185} & Netman66{http:#15858822}

Any objections should be posted here in the next 4 days. After that time, the question will be closed.

-red
EE Cleanup Volunteer

20120131-EE-VQP-002

3 Ways to Join

30-Day Free Trial

The Experts

98% positive feedback on 31,087 answers since March 2000. angeliii is a Microsoft Most Valuable Professional for his work with MS SQL Server & Develoment.

He has also proven his knowledge of Visual Basic Programming, PHP Scripting and Oracle Databases.

The Experts

97% positive feedback on 10,752 answers since July 2000. lrmoore has more than 18 years experience in the networking industry.

The six-time Mircosoft MVPs specialties include firewalls, virtual private networking, and network management.

Testimonials

"...and excellent source for support... Kind of like having your very own IT dept." Electriciansnet

Testimonials

"I was apprehensive at signing up at first. However... it has already made my life as an IT administrator much easier." JaCrews

Testimonials

"WOW! You guys have great, active, and knowledgeable people on here." moore50

Business Clients

Business Clients

In the Press

"If you’ve got a question... Experts Exchange can supply an answer.”

In the Press

"...an invaluable aid for both IT professionals and those who require tech support."

In the Press

"where IT professionals provide quick answers on just about any topic"

Business Account Plans

Loading Advertisement...