Solved

Changes to the DC "Active Directory Users and Computers" are not updated to the other controllers in the domain

Posted on 2006-10-24
7
320 Views
Last Modified: 2008-02-01
I have a windows 2003 AD network running in mixed mode,  I have 7 DCs, when I make a change in active directory users and computer, its not replicated to the other servers, the only changes which appear to be updated to the rest of the DCs is if I make a change on the "Global Catalog Server" which is the server I originally upgraded the NT domain to Windows 2003.

I ran dcdiag on serveral of the servers, here is a few of the error messages, the appear to be the same on all servers. Other then that, all appears to work as expected.

thanks
Steve

________________________________________
Errors on Devine 2 Server DC
________________________________________

Starting test: frssysvol
         ......................... DEVINE2 passed test frssysvol
      Starting test: frsevent
         ......................... DEVINE2 passed test frsevent
      Starting test: kccevent
         An Warning Event occured.  EventID: 0x800004F1
            Time Generated: 10/24/2006   15:18:09
            (Event String could not be retrieved)
         An Warning Event occured.  EventID: 0x800004F1
            Time Generated: 10/24/2006   15:18:32
            (Event String could not be retrieved)
         An Warning Event occured.  EventID: 0x800004F1
            Time Generated: 10/24/2006   15:18:55
            (Event String could not be retrieved)
         An Warning Event occured.  EventID: 0x800004F1
            Time Generated: 10/24/2006   15:19:18
            (Event String could not be retrieved)
         An Warning Event occured.  EventID: 0x800004F1
            Time Generated: 10/24/2006   15:35:26
            (Event String could not be retrieved)
         An Warning Event occured.  EventID: 0x800004F1
            Time Generated: 10/24/2006   15:35:49
            (Event String could not be retrieved)
         ......................... DEVINE2 failed test kccevent
      Starting test: systemlog
         ......................... DEVINE2 passed test systemlog

___________________________________________
Errors on HWYserver DC
__________________________________________

      Starting test: frssysvol
         ......................... HWYSERVER passed test frssysvol
      Starting test: frsevent
         There are warning or error events within the last 24 hours after
the
         SYSVOL has been shared.  Failing SYSVOL replication problems may
cause
         Group Policy problems.
         ......................... HWYSERVER failed test frsevent
      Starting test: kccevent
         An Warning Event occured.  EventID: 0x800004F1
            Time Generated: 10/24/2006   15:15:46
            (Event String could not be retrieved)
         An Warning Event occured.  EventID: 0x800004F1
            Time Generated: 10/24/2006   15:16:09
            (Event String could not be retrieved)
         ......................... HWYSERVER failed test kccevent
      Starting test: systemlog




0
Comment
Question by:AccessYourBiz_Com
  • 3
  • 3
7 Comments
 
LVL 48

Expert Comment

by:Jay_Jay70
ID: 17799972
you have 7 DC's - going to need some more background on your AD structure - sites, DNS etc
0
 
LVL 51

Expert Comment

by:Netman66
ID: 17800161
For starters, you need to setup Sites and associate the correct subnets to those sites.  Each Site must have a unique IP range so that they do not overlap in networking ranges.  This is key if you want replication to work.

Next, make sure the original DC stays in Default-First-Site-Name (rename this site if you wish).  Move all the servers into their proper Site in AD Sites and Services.

If you needed to do this then wait for KCC to figure things out.  This assumes that you have 100% connectivity between sites (and the main site or each other) and there is no firewall (including the built-in MS firewall that installs with SP1) blocking domain communication between them.

Let us know.
0
 
LVL 3

Author Comment

by:AccessYourBiz_Com
ID: 17804176
thanks for the info.

I checked sites and services, the default-site-name, under severs, has all the DCs listed in that one container. I have no other sites or subnets listed.

The network is configured in this way

There is a MAIN locations on the subnet 10.0.1.255, all workstations are connected to the same network switch. Replication works well between all these DCs here.

There are several departments connected via VPN. Some are using an exterior wireless, those are locations within a direct sight to the main locations, there are several other locations which are connected, again using vpn, using a DSL or cable modem.

All of these locations receive replication updates from the main, but and changes locally are not replicated up to the main.

Thanks
Steve

0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 
LVL 51

Expert Comment

by:Netman66
ID: 17804506
The departments are on the same subnet?  If not, you must have Sites configured.

0
 
LVL 3

Author Comment

by:AccessYourBiz_Com
ID: 17805220
Thanks not the are not one the same subnet, do you have any info on the site configuration which is needed? article?
0
 
LVL 3

Author Comment

by:AccessYourBiz_Com
ID: 17806084
Ok I setup the subnets in sites and services, what I did was create a new site for each subnet, then I created a subnet under the subnet container and associated it with each site, then I moved the DCs for each of these sites into the correct site folder, are there any other updates I need to do.

thanks
Steve
0
 
LVL 51

Accepted Solution

by:
Netman66 earned 500 total points
ID: 17806200
I don't think so, no.  Just give it some time to replicate now.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Many of us need to configure DHCP server(s) in their environment. We can do that simply via DHCP console on server or using MMC snap-in on each computer with Administrative Tools installed in a network. But what if we have to configure many DHCP ser…
ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
This tutorial gives a high-level tour of the interface of Marketo (a marketing automation tool to help businesses track and engage prospective customers and drive them to purchase). You will see the main areas including Marketing Activities, Design …
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…

910 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now