URGENT HELP!!!  AD Failure!!!

Posted on 2004-09-08
Last Modified: 2012-06-27
Man!!!  I've been fighting with this problem for a WHOLE DAY!!!  I am getting Error status 0xc00002e1 on one of my DC (also my Exchange server).  After reading and following the instructions in this article article:;en-us;258062 for the entire day, I've finally decided to give up.

I cannot even perform the "dcpromo /forceremoval" per their instruction, because...  you guess it... you cannot perform dcpromo in "safe mode" or "directory restore mode"...  Of course, you cannot get into the normal mode until you either fix the problem or remove AD!!!!

Anyway, my question is this...  I DO NOT have a backup of my A/D, but I DO have, however, a working Domain Controller.  Is there a way for me to restore my configuration on my broken DC FROM the good one?


- Info
Question by:infotrader
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
  • 2

Accepted Solution

dgroscost earned 250 total points
ID: 12012711
Have you tried doing an authoritative restore from the working domain controller?

LVL 12

Assisted Solution

Housenet earned 250 total points
ID: 12012836
-No backup.....Ouch!
-Following the article's steps, what is your estimation of the problem source? missing files, corruption?
LVL 11

Author Comment

ID: 12012867
I know...  I should "rephrase"...  I do not have the backup of AD, but have maintain backups of all my data files... Which covers the worst case scenario... which is what I might have to face.. reinstall the AD.

Good thing is, I only have 3 active users... Bad thing is, I've got TONS of services (http, sharepoint, sql, exchange, etc.)... SO I am trying to avoid reinstall if possible.

No I have not tried doing an authoritative restore from the working DC... Can someone point me to the right direction as to how to do that?  Thanks a great bunch, you guys!!!

- Info
Free eBook: Backup on AWS

Everything you need to know about backup and disaster recovery with AWS, for FREE!

LVL 12

Expert Comment

ID: 12017971
-I dont understand that comment. "authoritative restore from the working domain controller" It does make any sence to me. You already said you did not backup the system state.
-What about a repair installation of windows?
-You might as well go for something like this because it does not look good at all.

*In the future use at the very least Ntbackup to backup windows, program files and the system state at least once after it is installed.

Expert Comment

ID: 12018326


On the working DC, seize the roles of the bad DC.
Remove the old DC.

Then, rebuild and promote a new DC.
LVL 11

Author Comment

ID: 12018395
Thanks!!  I'll keep that in mind.  I thought there was a way to "reload" the Active Directory portion of system state from the good DC.  Unfortunately, after playing with "exporting" the NTDS quite a bit, I've finally gave up and posted the question here.

Believe it or not, I am actually benefitting a lot from our exchange of posts here.  I tried to think "outside of box" after the dgroscost's comment and re-searched google using a different terms (restore "active directory" from another DC), and found a pretty good documentation regarding how to do authoritative, recovery through reinstall, and non-authoritative restore.

One of my biggest problems originally was that I could not remove the Exchange box out of AD cleanly, since it cannot connect to the AD and was getting a lot of "access denied"'s.  I finally figure out how to use netdom and navigate around, including switching user credentials (Apparently, AD doesn't like it when my local Administrator and Domain Administrator has different passwords, causing invalid credentials, I am guessing....).  

To make the story short, I've finally decided to backup my Exchange database, reinstall windows (I am feeling better now, because it is compeletely removed from AD), and reload everything back.

Here's the article (very informative, actually) if you guys are interested:

Thanks anyway.  I am going to give split the points to dgroscost for helping me thinking outside of the box, and Housenet for effort.

- Info

Featured Post

Major Incident Management Communications

Major incidents and IT service outages cost companies millions. Often the solution to minimizing damage is automated communication. Find out more in our Major Incident Management Communications infographic.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

So you have two Windows Servers and you have a directory/folder/files on one that you'd like to mirror to the other?  You don't really want to deal with DFS or a 3rd party solution like Doubletake. You can use Robocopy from the Windows Server 200…
This may not be a text book method to resolve VSS backup issues but it seemed to have worked on few of the Windows 2003 servers we had issues while performing a Volume Shadow Copy backup. If you have issues while performing a shadow copy backup usin…
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit If you want to manage em…
In a recent question ( here at Experts Exchange, a member asked how to run an AutoHotkey script (.AHK) directly from Notepad++ (aka NPP). This video…

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question