Solved

Cannot get the sysvol folders to replicate between Domain Controllers

Posted on 2008-06-25
3
233 Views
Last Modified: 2011-10-19
I have 2 domain controllers communicating thru a Cisco site to site VPN tunnel.  One domain controller is on a 192.168.0.0 network and the other is on a 10.0.0.0 network. I have checked with Cisco and the VPN tunnel is working correctly.  I have DFS set up on both domain controllers and that seems to work fine.  I can also add and remove users from both domain controllers with no problem.  The problem I am having is the sysvol folders are not replicating.  I get errors when I run dcdiag and dcdiag /fix or netdiag /fix.  The error I get with dcdiag is:  

"Warning could not confirm the identity of this serverin the directory versus the name returned by the DNS servers.  If there are problems accessing this directory server then you may need to check that this server is correctly registered with DNS [servername] Directory binding error 5".  

I have registered the DNS server, I can ping both servers with no problem using "servername" and "servername.DNSsuffix" I checked the sysvol shares and they seem to have the correct permissions on them.  The sysvol has never replicated from the beginning.  
Any help would be appreciated.
0
Comment
Question by:Sandtoy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 38

Accepted Solution

by:
ChiefIT earned 500 total points
ID: 21871531
DFS is responsible for sharing Sysvol. It uses netbios broadcasts to do this. Netbios is a not routable protocol. So, you have to use WINS between your two lead site servers in order for DFS to share between them.

Non-routeable is defined as going over NAT, through a firewall or over a VPN tunnel.

Below is a picture of what it should look like and to confirm that DFS uses netbios please look at the following link:
http://www.microsoft.com/smallbusiness/support/articles/ref_net_ports_ms_prod.mspx

This pic explains how to set up the master browser service for a VPN. It too uses netbios broadcasts.
browser-interaction.JPG
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

The HP utility "HP Lights-Out Online Configuration Utility for Windows Server 2003/2008" could be of great use when it comes to remotely configure a HP servers ILO WITHOUT rebooting the server. We would only need to create and run scripts using thi…
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
A short tutorial showing how to set up an email signature in Outlook on the Web (previously known as OWA). For free email signatures designs, visit https://www.mail-signatures.com/articles/signature-templates/?sts=6651 If you want to manage em…
In a recent question (https://www.experts-exchange.com/questions/29004105/Run-AutoHotkey-script-directly-from-Notepad.html) here at Experts Exchange, a member asked how to run an AutoHotkey script (.AHK) directly from Notepad++ (aka NPP). This video…

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question