Active directory not working after adding three new users.

Posted on 2006-10-25
Last Modified: 2008-01-09
Hi guys,

I added three new users to the active directory yesterday evening.  This morning I've had a number of users unable to connect to the servers and also not recieving emails.  As soon as I deleted a number of unwanted users everything went back to normal.

Please help.

Question by:mbavisi
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
  • 2

Expert Comment

ID: 17802586
Have you tried the allmighty reboot of the server?
Are there any weird errors in the eventviewer?
LVL 11

Expert Comment

by:Steve Agnew
ID: 17803432
Adding users shouldn't have caused any issues.  As far as email messing with where Exchange puts OU's/Accounts is a BAD THING.  But just adding accounts anywhere shouldn't cause problems.  My best guess would be this is a coincidence.  Reboot obviously is the first thing.  Do you have multiple domain controllers?  What events are you having in the event logs, maybe licensing issues?  if so, start and stop licensing or again reboot.  Did you change network settings?  Did your DHCP stop responding (check services if you use Microsoft DHCP) Did someone plu in a device (usually trying to get extra ports) that has DHCP and messes up clients, these must be removed or dhcp disabled and then reboot the clients that no one can log on.

just a few ideas as the accounts you created probably aren't the problem.....

Author Comment

ID: 17803774

I've just come to a terrible disaster.  I've got Active Directory falling down to pieces.  I have 2 DCs which are not talking to each other.  The following events I have seen are:

Event Id: 2042  Source:  NTDS Replication
Event Id: 1864  Source:  NTDS Replication
Event Id: 2093  Source:  NTDS Replication
Event Id: 1079  Source:  NTDS General

There's literally about a few hundred from today.  My Exchange has stopped working, nearly all outlook clients have been disconnected.  Rebooted all servers twice.  Rebooted all client machines twice.  I've seen the links and some say that you need to demote the affected DC others say to force replication through command line.

The issue is that I have these events on both my DCs.  I'm not sure which one is the affected one or if I should do both the servers.

Immediate response is much appreciated.


NEW Veeam Agent for Microsoft Windows

Backup and recover physical and cloud-based servers and workstations, as well as endpoint devices that belong to remote users. Avoid downtime and data loss quickly and easily for Windows-based physical or public cloud-based workloads!

LVL 11

Expert Comment

by:Steve Agnew
ID: 17803803
sounds like a network problem can you ping each server for each server ping server1 from server2 and ping server2 from server1 ?


Author Comment

ID: 17804442
I can reach all devices at all levels :

domain name (DNS)

According to the above events there is replication issues between the DCs.  It has the tombstone lifetime 180 days which has passed, please advice...



Author Comment

ID: 17810228
Thanks Guys,

I've resolved the myself issue by demoting one of the DCs.  All roles got transferred to the remaining DC.  The Exchange is now up and running since its nw qurying the right active directory.

Thanks for your help any way.

Administrators can you please close this off.


Accepted Solution

jcdesign4u earned 500 total points
ID: 17818326
Good  job!

Featured Post

Free learning courses: Active Directory Deep Dive

Get a firm grasp on your IT environment when you learn Active Directory best practices with Veeam! Watch all, or choose any amount, of this three-part webinar series to improve your skills. From the basics to virtualization and backup, we got you covered.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Internet Speed Test 5 138
Independent domain networks for setup 6 124
Setting up a VPN 60 207
forward schedule of change and individual change comms 3 66
Nslookup is a command line driven utility supplied as part of most Windows operating systems that can reveal information related to domain names and the Internet Protocol (IP) addresses associated with them. In simple terms, it is a tool that can …
Are you one of those front-line IT Service Desk staff fielding calls, replying to emails, all-the-while working to resolve end-user technological nightmares? I am! That's why I have put together this brief overview of tools and techniques I use in o…
Nobody understands Phishing better than an anti-spam company. That’s why we are providing Phishing Awareness Training to our customers. According to a report by Verizon, only 3% of targeted users report malicious emails to management. With compan…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question