Solved

DCDIAG's kccevent test fails

Posted on 2008-06-22
3
3,638 Views
Last Modified: 2011-10-19
Hello,

We have a very simple network with a single Microsoft Small Business Server 2003, which is acting as the DC and provides DNS, DHCP, SQL Server 2005, and IIS (as well as other) services.  Our users are able to log in out of their desktop computers, but a web application that we are using will randomly fail AD authentication, even though the users can log into their workstations.  I have been investigating this issue, which seems to be related to LDAP or DNS.  When I ran DCDIAG, the kccevent test failed with the following message:
-----------------------------------------------
A Warning event occured.  EventID: 0x800004C0
Event String: Internal event: An LDAP Client connection was closed because of an error.
Client Id: 12168
Additional Data: Error Value: 995.  The I/O operation has been aborted because of either a thread exit or an application request.
-------------------------------------------------
I've cleared the Kerberos cache and have reviewed DNS configuration.  When I do an nslookup on our DC object GUID._msdcs.OURDOMAIN.org, the IP address of our DC is returned, but the non-authoritative answer is our WAN IP Address, which is used for our SBS e-mail server.  I do not know whether or not this is an issue.  I've attached images of our DNS configuration as well as the results of nslookup for your review.

I have scoured the Internet for ideas about how to correct the error that I've mentioned, but haven't found an answer for a simple, single DC situation.  I am also unsure whether the results of my nslookup are correct.  The first part seems good, but the non-authoritative answer seems strange to me.  I'd really appreciate any help.

Thanks,

Mike
nslookuptest.txt
DNSInfo.jpg
0
Comment
Question by:mjgardne
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
3 Comments
 
LVL 39

Expert Comment

by:ChiefIT
ID: 21843287
Multihomed can certainly be an issue:
0
 
LVL 39

Accepted Solution

by:
ChiefIT earned 500 total points
ID: 21843295
It looks like you are having a problem with the SRV records of DNS. You might want to  check this out.
http://www.experts-exchange.com/OS/Microsoft_Operating_Systems/Server/2003_Server/Q_23356031.html
0
 
LVL 39

Expert Comment

by:ChiefIT
ID: 22096635
Mike:

I don't think you are out of the woods yet. So, I would like to stick with you.

Multihomed servers could appear to work for a couple minutes, days, weeks months or years and not seem to have a problem. As soon as NIC one is busy, and your clients revert to NIC 2 or IP2, you will have the same problems.

Can you tell me what the seocnd nic is used for? Most domains one really need one nic per server. Disabling the Second NIC and eleviating the problems associated with a muli-homed server could prevent from future problems.

0

Featured Post

Ready to get started with anonymous questions?

It's easy! Check out this step-by-step guide for asking an anonymous question on Experts Exchange.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
Compliance and data security require steps be taken to prevent unauthorized users from copying data.  Here's one method to prevent data theft via USB drives (and writable optical media).
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
Suggested Courses

623 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question