Solved

Cannot get the sysvol folders to replicate between Domain Controllers

Posted on 2008-06-25
3
232 Views
Last Modified: 2011-10-19
I have 2 domain controllers communicating thru a Cisco site to site VPN tunnel.  One domain controller is on a 192.168.0.0 network and the other is on a 10.0.0.0 network. I have checked with Cisco and the VPN tunnel is working correctly.  I have DFS set up on both domain controllers and that seems to work fine.  I can also add and remove users from both domain controllers with no problem.  The problem I am having is the sysvol folders are not replicating.  I get errors when I run dcdiag and dcdiag /fix or netdiag /fix.  The error I get with dcdiag is:  

"Warning could not confirm the identity of this serverin the directory versus the name returned by the DNS servers.  If there are problems accessing this directory server then you may need to check that this server is correctly registered with DNS [servername] Directory binding error 5".  

I have registered the DNS server, I can ping both servers with no problem using "servername" and "servername.DNSsuffix" I checked the sysvol shares and they seem to have the correct permissions on them.  The sysvol has never replicated from the beginning.  
Any help would be appreciated.
0
Comment
Question by:Sandtoy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 38

Accepted Solution

by:
ChiefIT earned 500 total points
ID: 21871531
DFS is responsible for sharing Sysvol. It uses netbios broadcasts to do this. Netbios is a not routable protocol. So, you have to use WINS between your two lead site servers in order for DFS to share between them.

Non-routeable is defined as going over NAT, through a firewall or over a VPN tunnel.

Below is a picture of what it should look like and to confirm that DFS uses netbios please look at the following link:
http://www.microsoft.com/smallbusiness/support/articles/ref_net_ports_ms_prod.mspx

This pic explains how to set up the master browser service for a VPN. It too uses netbios broadcasts.
browser-interaction.JPG
0

Featured Post

Secure Your Active Directory - April 20, 2017

Active Directory plays a critical role in your company’s IT infrastructure and keeping it secure in today’s hacker-infested world is a must.
Microsoft published 300+ pages of guidance, but who has the time, money, and resources to implement? Register now to find an easier way.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Many of us need to configure DHCP server(s) in their environment. We can do that simply via DHCP console on server or using MMC snap-in on each computer with Administrative Tools installed in a network. But what if we have to configure many DHCP ser…
A quick step-by-step overview of installing and configuring Carbonite Server Backup.
In a recent question (https://www.experts-exchange.com/questions/29004105/Run-AutoHotkey-script-directly-from-Notepad.html) here at Experts Exchange, a member asked how to run an AutoHotkey script (.AHK) directly from Notepad++ (aka NPP). This video…
I've attached the XLSM Excel spreadsheet I used in the video and also text files containing the macros used below. https://filedb.experts-exchange.com/incoming/2017/03_w12/1151775/Permutations.txt https://filedb.experts-exchange.com/incoming/201…

735 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question