Windows 98 clients can't login when first DC is down.

When I shut down the first DC that I setup for the domain, my Win98 clients can't login to the domain with the bad password/access denied message.  I know the domain is replicating OK, and my XP clients can login fine albeit a bit slower than usual.

It is a single domain with 2 domain controllers.

If I got the message "no domain server was able to validate your password" I would know that the clients couldn't even see the second DC so I'm a bit confused as to the problem.

Then I was thinking it was possibly an FSMO issue and PDC emulation, but I don't want to have to switch roles every time I take down a DC for maintenance or something.  Isn't that the job of AD?

Am I missing something simple?

Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Luc FrankenEMEA Server EngineerCommented:
1st, I already saw your posting in CS conserning that question.
2nd, let's see what we can tell that guy
Luc FrankenEMEA Server EngineerCommented:
Oops, wrong question :-(
Ummm, the problem is that you need to have a GC available. The reason your 2K clients logon is they are using cached credentials. It's not a big issue to resolve, however. Just add the second DC as a Global Catalog server, and you'll be fine.
10 Tips to Protect Your Business from Ransomware

Did you know that ransomware is the most widespread, destructive malware in the world today? It accounts for 39% of all security breaches, with ransomware gangsters projected to make $11.5B in profits from online extortion by 2019.

kcorbiniqgAuthor Commented:
Both DCs were already GC servers (the 'Global Catalog' box is checked under NTDS settings).  I then had just the non-primary DC be the GC server and still no dice.
Ok. Well, do these computers have the DSClient on them? If not, it's going to be an issue with the PDCemulator.

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Is the one domain controller also the DNS server that the win98 clients are pointed to?  
kcorbiniqgAuthor Commented:
File this one under DOH!
After trying the PDC emulator role switch and the DSClient, it still didn't work.  This led me to start looking at all aspects of accessing the second domain controller.  Turns out, I had disabled File and Print Sharing.  I had done that a while back in a quest for minimalism while this machine was just an Exchange box and not a DC.

As usual, the most perplexing problems have the smallest fix.

Thanks for giving me some other things to think about however, and I was unaware of the DSClient in the first place so thanks for bringing that to my attention.
My pleasure, and thanks for the points and score.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows 2000

From novice to tech pro — start learning today.