Solved

this computer was not able to set up a secure session with a domain controller in domain xxxxx due to the following: the rpc server is unavailable

Posted on 2008-10-10
12
2,992 Views
Last Modified: 2012-08-13
Why does the event log for this server get this message?
It's showing in the system log, and twice within 10 minutes.

We are running two domains, this domain has a dc (this machine)  and one other server. We have server 2003 running, and this is a sql database domain --setup to run the companys' accounting applications.
I checked the following things:
dns settings
tcp/ip configuration
all other sys logs
all application  and security logs

Any ideas would be helpful.
I have attached two screen shots for further review.
Thank you.

teammiscbc
10-10-08-cbcsql-sys-error-.pdf
10-10-08-2nd-half-error.pdf
0
Comment
Question by:TeamMISCBC
  • 4
  • 4
  • 4
12 Comments
 
LVL 59

Accepted Solution

by:
Darius Ghassem earned 250 total points
Comment Utility
0
 
LVL 18

Expert Comment

by:Americom
Comment Utility
Looking at your attachment, if the event is from a Domain Controller, wonder why you don't have a DNS Server event log. You don't have DNS installed on this server or how is your DNS configured?

Also, if you have two domains, are they in completely separate forest or one forest one tree with parent/child domain relationship?
What about the trust relationship? My guess is that there could be either DNS issue or trust issue that leads to an authentication problem between domain controllers in different domain.

Another possibility is your SQL configuration, how is your SQL configure to authenticate, SQL account or Domian Account using Windows Integrated?
0
 

Author Comment

by:TeamMISCBC
Comment Utility
americom,
 Ok. We don't have dns running on this server, it's not configured for that role.
I don't know on the question about forests ---please tell me how I can check.
How do I check the trust relationship>?

I don't know the sql config...we paid a contractor  2 yrs ago to do the config, and the MIS director has left (that was here then). I can't find AD Sites and Services. Please assist on this, too. Thanks.

teammiscbc
0
 
LVL 59

Expert Comment

by:Darius Ghassem
Comment Utility
Go to Administrative tools look for Active Directory Sites and Services.
0
 

Author Comment

by:TeamMISCBC
Comment Utility
Thanks, dariusq...I did look up sites and services. It is NOT on that server. It's on the other one in that domain, tho. I went there (on the other server in that domain), and I find ad sites and services...nothing in it. . . I don't see how to check the configuration on it. Thanks.

teammiscbc
0
 
LVL 18

Expert Comment

by:Americom
Comment Utility
Yep, Administrative Tools>Active Directory Domains and Trusts>right-click on the domain name>Select Properties>Click on trust. You should see the outgoing and incoming trust as well as the domain names of the two domains. Highlight each one of them and click on the Properties button to identify the Trust Type and the Authentication Methods.

Where is your dns is running and how is your DNS is configured?
0
How does your email signature look on mobiles?

Do your employees use mobile devices to reply to emails? With mobile becoming increasingly important to the business world, it is in your best interest to make sure that your email signature looks great across all types of devices.

 
LVL 59

Expert Comment

by:Darius Ghassem
Comment Utility
Which server are you having trouble with?
0
 
LVL 18

Expert Comment

by:Americom
Comment Utility
If you don't see anything in the Trust windows, there there's no trust established. You said you have two domains, what are the domain names? Or you may be referring to two domain controllers instead of two domains. If that's the case, you probably have problem between those two controllers. Were you able to logon to each domain controllers with the same domain account without any problem? If so, do a replication between them and see if you have any error events in the log.
0
 

Author Comment

by:TeamMISCBC
Comment Utility
Americon,
 The domain names I will not post here, but be assured they are on the same network---same subnet. Different forest as the other domain. Each has it's own dc, of course.
YEs, I am able to login to each domain controller with the exact same domain user accounts (in their respective forrests, of course). I can't replicate between the two different domains, because there is no setup for that between the two forrests. That's because of no setup in the ad sites and services. The domain with the error message I started with is the smaller of the two...fewer servers, and is just used for the finance part of the company.
Hope this helps someone solve the error. Thanks. I won't get back to this untill Monday morning, but please feel free to help solve it during the weekend. Thanks again.
teammiscbc
0
 
LVL 59

Expert Comment

by:Darius Ghassem
Comment Utility
Did you go through the links I posted?
0
 
LVL 18

Assisted Solution

by:Americom
Americom earned 250 total points
Comment Utility
So from the above, you have two completely separate domains in separate forest and in the same subnet, not sure why it was setup this way. But since there is no trust established and their completely unrelated, these two domains will not be able to share any resources. Are you trying to share resources(web, file, print, database etc) between these two domain? if so, you need to established between them. Before you can establish the trust, you need to verify how your DNS is configured as I still have no clue...
0
 

Author Comment

by:TeamMISCBC
Comment Utility
americom,

 you're correct...we do not share any files/printing functions/databases, etc between the two domains.

dariusq,

 I looked at both of your links, yes. I don't want to change any registry settings. Too risky for me at this point.

Both of you I will award the points split in 1/2.
Good job.

teammiscbc
0

Featured Post

Are end users causing IT problems again?

You’ve taken the time to design and update all your end user’s email signatures, only to find out they’re messing up the HTML, changing the font and ruining the imagery. What can you do to prevent this? Find out how you can save your signatures from end users today.

Join & Write a Comment

Case Summary: In this Article we introduce the new method to configure the default user profile using Automated profile copy with sysprep rather than the old ways such as the manual copy of a configured profile to default user profile Old meth…
The environment that this is running in is SCCM 2007 R2 running on a Windows 2008 R2 server. The PXE Distribution point is running on its own Windows 2008 R2 box. This is what Event viewer showed after trying to start the WDS service:  An erro…
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
In this seventh video of the Xpdf series, we discuss and demonstrate the PDFfonts utility, which lists all the fonts used in a PDF file. It does this via a command line interface, making it suitable for use in programs, scripts, batch files — any pl…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

6 Experts available now in Live!

Get 1:1 Help Now