Link to home
Start Free TrialLog in
Avatar of BJMagill
BJMagill

asked on

Event appears on all global catalog servers.

We have 5 external sites connecting in to HQ via VPN.

Each one of these sites has a global catalog server running DNS.

The following event shows up in the System log quite a lot.

The dynamic registration of the DNS record '_ldap._tcp.<string value>.domains._msdcs.<Domain Name>. 600 IN SRV 0 100 389 <DC Name>.' failed on the following DNS server:  

DNS server IP address: <IP Address> or HQ DC.
Returned Response Code (RCODE): 5
Returned Status Code: 10054  

For computers and users to locate this domain controller, this record must be registered in DNS.  

USER ACTION  
Determine what might have caused this failure, resolve the problem, and initiate registration of the DNS records by the domain controller. To determine what might have caused this failure, run DCDiag.exe. You can find this program on the Windows Server 2003 installation CD in Support\Tools\support.cab. To learn more about  DCDiag.exe, see Help and Support Center. To initiate registration of the DNS records by  this domain controller, run 'nltest.exe /dsregdns' from the command prompt on the domain  controller or restart Net Logon service. Nltest.exe is available in the Microsoft Windows  Server Resource Kit CD.
  Or, you can manually add this record to DNS, but it is not recommended.  

ADDITIONAL DATA
Error Value: An existing connection was forcibly closed by the remote host.

For more information, see Help and Support Center at


Any ideas.
Avatar of itcoza
itcoza
Flag of South Africa image

You have run DCDIAG,  Can you please post the results?
Avatar of BJMagill
BJMagill

ASKER

Domain Controller Diagnosis

Performing initial setup:
   Done gathering initial info.

Doing initial required tests

   Testing server: Site\W2K3DC03
      Starting test: Connectivity
         ......................... W2K3DC03 passed test Connectivity

Doing primary tests

   Testing server: Site\W2K3DC03
      Starting test: Replications
         ......................... W2K3DC03 passed test Replications
      Starting test: NCSecDesc
         ......................... W2K3DC03 passed test NCSecDesc
      Starting test: NetLogons
         ......................... W2K3DC03 passed test NetLogons
      Starting test: Advertising
         ......................... W2K3DC03 passed test Advertising
      Starting test: KnowsOfRoleHolders
         ......................... W2K3DC03 passed test KnowsOfRoleHolders
      Starting test: RidManager
         ......................... W2K3DC03 passed test RidManager
      Starting test: MachineAccount
         ......................... W2K3DC03 passed test MachineAccount
      Starting test: Services
         ......................... W2K3DC03 passed test Services
      Starting test: ObjectsReplicated
         ......................... W2K3DC03 passed test ObjectsReplicated
      Starting test: frssysvol
         ......................... W2K3DC03 passed test frssysvol
      Starting test: frsevent
         ......................... W2K3DC03 passed test frsevent
      Starting test: kccevent
         ......................... W2K3DC03 passed test kccevent
      Starting test: systemlog
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:50:40
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:50:41
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:50:41
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:31
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:32
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:33
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:34
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:34
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:35
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:36
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:37
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:38
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:39
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:40
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:41
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:42
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:43
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:44
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:45
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:46
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:47
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:48
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:49
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:50
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x0000168E
            Time Generated: 12/08/2006   12:51:51
            Event String: The dynamic registration of the DNS record
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 12/08/2006   13:03:15
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 12/08/2006   13:03:15
            (Event String could not be retrieved)
         ......................... W2K3DC03 failed test systemlog
      Starting test: VerifyReferences
         ......................... W2K3DC03 passed test VerifyReferences

   Running partition tests on : ForestDnsZones
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test CrossRefValidation

      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom

   Running partition tests on : DomainDnsZones
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test CrossRefValidation

      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom

   Running partition tests on : Schema
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom

   Running partition tests on : Configuration
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom

   Running partition tests on : domain
      Starting test: CrossRefValidation
         ......................... domain passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... domain passed test CheckSDRefDom

   Running enterprise tests on : domain.co.uk
      Starting test: Intersite
         ......................... domain.co.uk passed test Intersite
      Starting test: FsmoCheck
         ......................... domain.co.uk passed test FsmoCheck
Which server was that for, a remote site or HQ ??

I assume that each site's DNS server ONLY points to itself and each site's workstations only know of the local DNS server. Also that you have setup zone transfers to ensure all the DNS servers communicate and the DNS system is AD integrated.
That was for the remote server.

> I assume that each site's DNS server ONLY points to itself
Do you mean in the TCPIP stack?

>each site's workstations only know of the local DNS server
This is the case.

> setup zone transfers to ensure all the DNS servers communicate and the DNS system is AD integrated
How do I confirm this is the case?
ASKER CERTIFIED SOLUTION
Avatar of d50041
d50041
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Looking good.

I'll confirm results and let you know.
Thanks.
Avatar of Netman66
If the zones are AD Integrated then Zone Transfers aren't necessary.  

The problem is that the servers are connnected through VPN not locally.
From the remote site, He would have to add as a secondary DNS server the HQ server so it actually transfers the zones.
Huh?

It doesn't matter how the sites are connected.   Once a zone is AD Integrated, it relicates using AD replication.  Zone transfers are only used for NON-AD Integrated zones.

If it isn't replicating with AD Integrated Zones, then neither is the AD.

Still getting in DCDIAG:

 Starting test: systemlog
    An Error Event occured.  EventID: 0x00000457
       Time Generated: 12/11/2006   08:58:32
       (Event String could not be retrieved)
    An Error Event occured.  EventID: 0x00000457
       Time Generated: 12/11/2006   08:58:32
       (Event String could not be retrieved)
    ......................... W2K3DC03 failed test systemlog

any ideas?
In the remote site try adding in the TCP/IP configuration of the network controller the DNS IP from the main site.
Right now, the remote server has no idea threre is another DNS server in the main site.
They are connected through VPN, but both servers are in different subnets and cannot communicate with each other.
at a command prompt type:

repadmin /showreps

and let us know what that returns, it should list all domain controllers and successful communication
results of: repadmin /showreps


<site>\W2K3DC03
DC Options: IS_GC
Site Options: (none)
DC object GUID: d90e3186-ba65-4802-9f83-e8860ece997a
DC invocationID: 5c77d9a5-5b32-469b-86ff-08b10ce99fba

==== INBOUND NEIGHBORS ======================================

DC=domain,DC=com
    HQ\W2K3DC02 via RPC
        DC object GUID: 27535d58-6d1e-492a-a901-1801bfb29ddc
        Last attempt @ 2006-12-11 16:52:15 was successful.

CN=Configuration,DC=domain,DC=com
   HQ\W2K3DC02 via RPC
        DC object GUID: 27535d58-6d1e-492a-a901-1801bfb29ddc
        Last attempt @ 2006-12-11 16:52:15 was successful.

CN=Schema,CN=Configuration,DC=domain,DC=com
    HQ\W2K3DC02 via RPC
        DC object GUID: 27535d58-6d1e-492a-a901-1801bfb29ddc
        Last attempt @ 2006-12-11 16:52:15 was successful.

DC=DomainDnsZones,DC=domain,DC=com
    HQ\W2K3DC02 via RPC
        DC object GUID: 27535d58-6d1e-492a-a901-1801bfb29ddc
        Last attempt @ 2006-12-11 16:52:15 was successful.

DC=ForestDnsZones,DC=domain,DC=com
    HQ\W2K3DC02 via RPC
        DC object GUID: 27535d58-6d1e-492a-a901-1801bfb29ddc
        Last attempt @ 2006-12-11 16:52:16 was successful.