BJMagill
asked on
Event appears on all global catalog servers.
We have 5 external sites connecting in to HQ via VPN.
Each one of these sites has a global catalog server running DNS.
The following event shows up in the System log quite a lot.
The dynamic registration of the DNS record '_ldap._tcp.<string value>.domains._msdcs.<Dom ain Name>. 600 IN SRV 0 100 389 <DC Name>.' failed on the following DNS server:
DNS server IP address: <IP Address> or HQ DC.
Returned Response Code (RCODE): 5
Returned Status Code: 10054
For computers and users to locate this domain controller, this record must be registered in DNS.
USER ACTION
Determine what might have caused this failure, resolve the problem, and initiate registration of the DNS records by the domain controller. To determine what might have caused this failure, run DCDiag.exe. You can find this program on the Windows Server 2003 installation CD in Support\Tools\support.cab. To learn more about DCDiag.exe, see Help and Support Center. To initiate registration of the DNS records by this domain controller, run 'nltest.exe /dsregdns' from the command prompt on the domain controller or restart Net Logon service. Nltest.exe is available in the Microsoft Windows Server Resource Kit CD.
Or, you can manually add this record to DNS, but it is not recommended.
ADDITIONAL DATA
Error Value: An existing connection was forcibly closed by the remote host.
For more information, see Help and Support Center at
Any ideas.
Each one of these sites has a global catalog server running DNS.
The following event shows up in the System log quite a lot.
The dynamic registration of the DNS record '_ldap._tcp.<string value>.domains._msdcs.<Dom
DNS server IP address: <IP Address> or HQ DC.
Returned Response Code (RCODE): 5
Returned Status Code: 10054
For computers and users to locate this domain controller, this record must be registered in DNS.
USER ACTION
Determine what might have caused this failure, resolve the problem, and initiate registration of the DNS records by the domain controller. To determine what might have caused this failure, run DCDiag.exe. You can find this program on the Windows Server 2003 installation CD in Support\Tools\support.cab.
Or, you can manually add this record to DNS, but it is not recommended.
ADDITIONAL DATA
Error Value: An existing connection was forcibly closed by the remote host.
For more information, see Help and Support Center at
Any ideas.
You have run DCDIAG, Can you please post the results?
ASKER
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Site\W2K3DC03
Starting test: Connectivity
......................... W2K3DC03 passed test Connectivity
Doing primary tests
Testing server: Site\W2K3DC03
Starting test: Replications
......................... W2K3DC03 passed test Replications
Starting test: NCSecDesc
......................... W2K3DC03 passed test NCSecDesc
Starting test: NetLogons
......................... W2K3DC03 passed test NetLogons
Starting test: Advertising
......................... W2K3DC03 passed test Advertising
Starting test: KnowsOfRoleHolders
......................... W2K3DC03 passed test KnowsOfRoleHolders
Starting test: RidManager
......................... W2K3DC03 passed test RidManager
Starting test: MachineAccount
......................... W2K3DC03 passed test MachineAccount
Starting test: Services
......................... W2K3DC03 passed test Services
Starting test: ObjectsReplicated
......................... W2K3DC03 passed test ObjectsReplicated
Starting test: frssysvol
......................... W2K3DC03 passed test frssysvol
Starting test: frsevent
......................... W2K3DC03 passed test frsevent
Starting test: kccevent
......................... W2K3DC03 passed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:50:40
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:50:41
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:50:41
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:31
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:32
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:33
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:34
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:34
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:35
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:36
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:37
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:38
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:39
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:40
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:41
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:42
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:43
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:44
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:45
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:46
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:47
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:48
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:49
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:50
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:51
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x00000457
Time Generated: 12/08/2006 13:03:15
(Event String could not be retrieved)
An Error Event occured. EventID: 0x00000457
Time Generated: 12/08/2006 13:03:15
(Event String could not be retrieved)
......................... W2K3DC03 failed test systemlog
Starting test: VerifyReferences
......................... W2K3DC03 passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : domain
Starting test: CrossRefValidation
......................... domain passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... domain passed test CheckSDRefDom
Running enterprise tests on : domain.co.uk
Starting test: Intersite
......................... domain.co.uk passed test Intersite
Starting test: FsmoCheck
......................... domain.co.uk passed test FsmoCheck
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Site\W2K3DC03
Starting test: Connectivity
......................... W2K3DC03 passed test Connectivity
Doing primary tests
Testing server: Site\W2K3DC03
Starting test: Replications
......................... W2K3DC03 passed test Replications
Starting test: NCSecDesc
......................... W2K3DC03 passed test NCSecDesc
Starting test: NetLogons
......................... W2K3DC03 passed test NetLogons
Starting test: Advertising
......................... W2K3DC03 passed test Advertising
Starting test: KnowsOfRoleHolders
......................... W2K3DC03 passed test KnowsOfRoleHolders
Starting test: RidManager
......................... W2K3DC03 passed test RidManager
Starting test: MachineAccount
......................... W2K3DC03 passed test MachineAccount
Starting test: Services
......................... W2K3DC03 passed test Services
Starting test: ObjectsReplicated
......................... W2K3DC03 passed test ObjectsReplicated
Starting test: frssysvol
......................... W2K3DC03 passed test frssysvol
Starting test: frsevent
......................... W2K3DC03 passed test frsevent
Starting test: kccevent
......................... W2K3DC03 passed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:50:40
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:50:41
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:50:41
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:31
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:32
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:33
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:34
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:34
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:35
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:36
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:37
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:38
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:39
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:40
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:41
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:42
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:43
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:44
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:45
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:46
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:47
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:48
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:49
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:50
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x0000168E
Time Generated: 12/08/2006 12:51:51
Event String: The dynamic registration of the DNS record
An Error Event occured. EventID: 0x00000457
Time Generated: 12/08/2006 13:03:15
(Event String could not be retrieved)
An Error Event occured. EventID: 0x00000457
Time Generated: 12/08/2006 13:03:15
(Event String could not be retrieved)
......................... W2K3DC03 failed test systemlog
Starting test: VerifyReferences
......................... W2K3DC03 passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : domain
Starting test: CrossRefValidation
......................... domain passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... domain passed test CheckSDRefDom
Running enterprise tests on : domain.co.uk
Starting test: Intersite
......................... domain.co.uk passed test Intersite
Starting test: FsmoCheck
......................... domain.co.uk passed test FsmoCheck
Which server was that for, a remote site or HQ ??
I assume that each site's DNS server ONLY points to itself and each site's workstations only know of the local DNS server. Also that you have setup zone transfers to ensure all the DNS servers communicate and the DNS system is AD integrated.
I assume that each site's DNS server ONLY points to itself and each site's workstations only know of the local DNS server. Also that you have setup zone transfers to ensure all the DNS servers communicate and the DNS system is AD integrated.
ASKER
That was for the remote server.
> I assume that each site's DNS server ONLY points to itself
Do you mean in the TCPIP stack?
>each site's workstations only know of the local DNS server
This is the case.
> setup zone transfers to ensure all the DNS servers communicate and the DNS system is AD integrated
How do I confirm this is the case?
> I assume that each site's DNS server ONLY points to itself
Do you mean in the TCPIP stack?
>each site's workstations only know of the local DNS server
This is the case.
> setup zone transfers to ensure all the DNS servers communicate and the DNS system is AD integrated
How do I confirm this is the case?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
Looking good.
I'll confirm results and let you know.
Thanks.
I'll confirm results and let you know.
Thanks.
If the zones are AD Integrated then Zone Transfers aren't necessary.
The problem is that the servers are connnected through VPN not locally.
From the remote site, He would have to add as a secondary DNS server the HQ server so it actually transfers the zones.
From the remote site, He would have to add as a secondary DNS server the HQ server so it actually transfers the zones.
Huh?
It doesn't matter how the sites are connected. Once a zone is AD Integrated, it relicates using AD replication. Zone transfers are only used for NON-AD Integrated zones.
If it isn't replicating with AD Integrated Zones, then neither is the AD.
It doesn't matter how the sites are connected. Once a zone is AD Integrated, it relicates using AD replication. Zone transfers are only used for NON-AD Integrated zones.
If it isn't replicating with AD Integrated Zones, then neither is the AD.
ASKER
Still getting in DCDIAG:
Starting test: systemlog
An Error Event occured. EventID: 0x00000457
Time Generated: 12/11/2006 08:58:32
(Event String could not be retrieved)
An Error Event occured. EventID: 0x00000457
Time Generated: 12/11/2006 08:58:32
(Event String could not be retrieved)
......................... W2K3DC03 failed test systemlog
any ideas?
Starting test: systemlog
An Error Event occured. EventID: 0x00000457
Time Generated: 12/11/2006 08:58:32
(Event String could not be retrieved)
An Error Event occured. EventID: 0x00000457
Time Generated: 12/11/2006 08:58:32
(Event String could not be retrieved)
......................... W2K3DC03 failed test systemlog
any ideas?
In the remote site try adding in the TCP/IP configuration of the network controller the DNS IP from the main site.
Right now, the remote server has no idea threre is another DNS server in the main site.
They are connected through VPN, but both servers are in different subnets and cannot communicate with each other.
Right now, the remote server has no idea threre is another DNS server in the main site.
They are connected through VPN, but both servers are in different subnets and cannot communicate with each other.
at a command prompt type:
repadmin /showreps
and let us know what that returns, it should list all domain controllers and successful communication
repadmin /showreps
and let us know what that returns, it should list all domain controllers and successful communication
ASKER
results of: repadmin /showreps
<site>\W2K3DC03
DC Options: IS_GC
Site Options: (none)
DC object GUID: d90e3186-ba65-4802-9f83-e8 860ece997a
DC invocationID: 5c77d9a5-5b32-469b-86ff-08 b10ce99fba
==== INBOUND NEIGHBORS ========================== ========== ==
DC=domain,DC=com
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18 01bfb29ddc
Last attempt @ 2006-12-11 16:52:15 was successful.
CN=Configuration,DC=domain ,DC=com
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18 01bfb29ddc
Last attempt @ 2006-12-11 16:52:15 was successful.
CN=Schema,CN=Configuration ,DC=domain ,DC=com
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18 01bfb29ddc
Last attempt @ 2006-12-11 16:52:15 was successful.
DC=DomainDnsZones,DC=domai n,DC=com
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18 01bfb29ddc
Last attempt @ 2006-12-11 16:52:15 was successful.
DC=ForestDnsZones,DC=domai n,DC=com
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18 01bfb29ddc
Last attempt @ 2006-12-11 16:52:16 was successful.
<site>\W2K3DC03
DC Options: IS_GC
Site Options: (none)
DC object GUID: d90e3186-ba65-4802-9f83-e8
DC invocationID: 5c77d9a5-5b32-469b-86ff-08
==== INBOUND NEIGHBORS ==========================
DC=domain,DC=com
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18
Last attempt @ 2006-12-11 16:52:15 was successful.
CN=Configuration,DC=domain
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18
Last attempt @ 2006-12-11 16:52:15 was successful.
CN=Schema,CN=Configuration
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18
Last attempt @ 2006-12-11 16:52:15 was successful.
DC=DomainDnsZones,DC=domai
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18
Last attempt @ 2006-12-11 16:52:15 was successful.
DC=ForestDnsZones,DC=domai
HQ\W2K3DC02 via RPC
DC object GUID: 27535d58-6d1e-492a-a901-18
Last attempt @ 2006-12-11 16:52:16 was successful.