Replication between two domain controllers

Posted on 2006-05-02
Last Modified: 2010-05-18
I have two domain controllers running w2k3 sp1.Server A holds all the fsmo roles.Server B runs exchange 2003, Isa 2004 and its the main antivirus server( Group Shield mcafee).
Problem: The two domain controllers cannot relicate to one another and as result event id: 13508 is generated.I have tried assigning fixed ports to AD and FRS by editing registry but none is working.All the application,system,security,directory service has no errors except file replication service.When i create a user a\c in server B, i have to restart both servers for them to replicate the user a\c.

Anyone who has the solutiom?please help

Question by:kgithongo
    LVL 13

    Expert Comment

    by:Kini pradeep

    first of all if you go to AD sites and services and try to replicate between the domain controllers what is the error message.
    you mentioned that you get error 13508 in the FRS event log, do you see any 13509 as well.
    on the cmd of each dc if you type NET SHARE do you see netlogon and sysvol shares ?
    if not then the Dc is not behaving as a Dc as it cannot bind.

     try running Dcdiag from support tools, Dcdiag /v (verbose mode) and pipe the out put into a text file and check for errors.

    also if you could let us know the errors in dssite.msc, while replicating ( rpc server unable, access denied etc) please let us know about that .

    LVL 9

    Accepted Solution

    That error, 13508 points to DNS.

    Make sure that:
    1. your zone is set up correctly
    2. both servers are listed
    3. you can ping by IP and by name
    4. If there is a router or WAN link, make sure traffic is flowing properly
    5. If you have any firewall setup, configure them to allow DNS and AD traffic.

    IF this doesn't fix it, try a Jrln Wrap error fix,

    Good Luck,

    Author Comment

    -I have checked the dns, zone and all the servers can ping both by ip address and name.The firewall is set up to allow AD and dns traffic but nothing seems to work.
    Dc diag tool only finishes with errors.
    -Have concluded in backing up the data and installing both servers afresh.
    Thanks for those who volunteered for the ideas.

    Featured Post

    What Should I Do With This Threat Intelligence?

    Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

    Join & Write a Comment

    by Batuhan Cetin In this article I will be guiding through the process of removing a failed DC metadata from Active Directory (hereafter, AD) using the ntdsutil tool in a Windows Server 2003 environment. These steps are not necessary in a Win…
    On July 14th 2015, Windows Server 2003 will become End of Support, leaving hundreds of thousands of servers around the world that still run this 12 year old operating system vulnerable and potentially out of compliance in many organisations around t…
    Sending a Secure fax is easy with eFax Corporate ( First, Just open a new email message.  In the To field, type your recipient's fax number You can even send a secure international fax — just include t…
    In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor ( If you're interested in additional methods for monitoring bandwidt…

    734 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    26 Experts available now in Live!

    Get 1:1 Help Now