Solved

Microsoft, Microsoft Windows Server, Windows 2003 R2, Active Directory and behind ISA server 2006 firewall, There are warning or error events within the last 24 hours after the SYSVOL has been shared

Posted on 2008-11-03
3
421 Views
Last Modified: 2013-11-25
I have two Server, Server 1 is my Active Directory and Server 2 is my additional  domain controller with ISA Serverr 2006 installed, here the Error

(There are warning or error events within the last 24 hours after the SYSVOL has been shared. Failing SYSVOL replication may cause Group policy problem.)

The File Replication Service is having trouble enabling replication from ISA_SERVER to SNCLI_SERVER for c:\windows\sysvol\domain using the DNS name isa_server.sncli.com. FRS will keep retrying.
 Following are some of the reasons you would see this warning.
 
 [1] FRS can not correctly resolve the DNS name isa_server.sncli.com from this computer.
 [2] FRS is not running on isa_server.sncli.com.
 [3] The topology information in the Active Directory for this replica has not yet replicated to all the Domain Controllers.
 
 This event log message will appear once per connection, After the problem is fixed you will see another event log message indicating that the connection has been established.

0
Comment
Question by:raulmonda
  • 2
3 Comments
 
LVL 19

Accepted Solution

by:
Stephen Manderson earned 500 total points
ID: 22870499
You shouldnt be running ISA on a DC it should be installed on its own machine. One of the main reasons for this is security.. :) And thats whats causing the issues for you just now ISA has locked down the server and as such replication cannot occur. The admin share on ISA is inaccessable ie \\Servername\Admin$ . I would personally recommend having ISA on its own.
Regards
Steve
0
 

Author Closing Comment

by:raulmonda
ID: 31512722
But according to some expert the ISA server should be member of the domain controller. If I do this solution to separate my ISA server I need to removed from my AD the ISA server.
0
 
LVL 19

Expert Comment

by:Stephen Manderson
ID: 22873972
ISA can be run as a domain member yes by all means, but as a domain controller no it shouldnt (Except in the case of SBS in which it was designed to do).
Regards
Steve
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

There are three types of ISA client that can be configured - these can be individual clients or multiples of a client on each PC or server SecureNAT. A SecureNAT client for ISA server is a client machine, work station or server, that has its defa…
ISA Server detected routes through the network adapter LAN that do not correlate with the network to which this network adapter belongs What does this mean and how can one go about correcting it? In simple terms, this error message indicates t…
This demo shows you how to set up the containerized NetScaler CPX with NetScaler Management and Analytics System in a non-routable Mesos/Marathon environment for use with Micro-Services applications.
With Secure Portal Encryption, the recipient is sent a link to their email address directing them to the email laundry delivery page. From there, the recipient will be required to enter a user name and password to enter the page. Once the recipient …

948 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

21 Experts available now in Live!

Get 1:1 Help Now