Avatar of fedsig
fedsigFlag for United States of America asked on

NLTest /dsregdns test indicates ERROR_NO_LOGON_SERVERS

After rebooting 2 of my domain controllers, I get an error when attempting to login.  If I log in with any other account other than DOMAIN\Administrator, I get an error message that states the domain cannot be found.  

I have a parent/child domain with approximately 15 domain controllers

After logging in as the DOMAIN\Administrator, I see event 5781 in the system log:

******************************************************************************************************************
Event Type:      Warning
Event Source:      NETLOGON
Event Category:      None
Event ID:      5781
Date:            1/21/2009
Time:            8:25:06 PM
User:            N/A
Computer:      DC06
Description:
Dynamic registration or deletion of one or more DNS records associated with DNS domain 'DomainDnsZones.mydomain.net.' failed.  These records are used by other computers to locate this server as a domain controller (if the specified domain is an Active Directory domain) or as an LDAP server (if the specified domain is an application partition).  

Possible causes of failure include:  
- TCP/IP properties of the network connections of this computer contain wrong IP address(es) of the preferred and alternate DNS servers
- Specified preferred and alternate DNS servers are not running
- DNS server(s) primary for the records to be registered is not running
- Preferred or alternate DNS servers are configured with wrong root hints
- Parent DNS zone contains incorrect delegation to the child zone authoritative for the DNS records that failed registration  

USER ACTION  
Fix possible misconfiguration(s) specified above and initiate registration or deletion of the DNS records by running 'nltest.exe /dsregdns' from the command prompt or by restarting Net Logon service. Nltest.exe is available in the Microsoft Windows Server Resource Kit CD.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: b4 05 00 00               ´...    

******************************************************************************************************************

When running nltest.exe /dsregdns the results are:

Flags: 0
Connection Status = 1311 0x51f ERROR_NO_LOGON_SERVERS
The command completed successfully

That domain controller is pointing to itself for DNS, is a global catalog (all servers in the domain are), but I'm afraid certain DNS records aren't successfully registering.  The DNS service is running and will permit me to ping other domain controllers in both the parent and child domains

HELP!
Active Directory

Avatar of undefined
Last Comment
fedsig

8/22/2022 - Mon
ASKER
fedsig

The AD Snapshot tool reports this under DCHealth - Event Logs:

Event ID 5781, Netlogon, DNS Registration or De-Registration Failure, was found on the following domain controllers:
100-ad-008, 100-ad-006
ASKER
fedsig

This is the result of DCDiag on the domain contoller in question:


Domain Controller Diagnosis

Performing initial setup:
   Done gathering initial info.

Doing initial required tests
   
   Testing server: 100-CORE-SITE\DC06
      Starting test: Connectivity
         ......................... DC06 passed test Connectivity

Doing primary tests
   
   Testing server: 100-CORE-OCALA\DC06
      Starting test: Replications
         [Replications Check,DC06] A recent replication attempt failed:
            From DC02 to DC06
            Naming Context: DC=ForestDnsZones,DC=parent,DC=pri
            The replication generated an error (1908):
            Could not find the domain controller for this domain.
            The failure occurred at 2009-01-21 22:04:17.
            The last success occurred at 2009-01-21 20:59:25.
            1 failures have occurred since the last success.
            Kerberos Error.
            A KDC was not found to authenticate the call.
            Check that sufficient domain controllers are available.
         [Replications Check,DC06] A recent replication attempt failed:
            From DC05 to DC06
            Naming Context: CN=Schema,CN=Configuration,DC=parent,DC=pri
            The replication generated an error (1908):
            Could not find the domain controller for this domain.
            The failure occurred at 2009-01-21 22:00:52.
            The last success occurred at 2009-01-21 20:59:25.
            1 failures have occurred since the last success.
            Kerberos Error.
            A KDC was not found to authenticate the call.
            Check that sufficient domain controllers are available.
         [Replications Check,DC06] A recent replication attempt failed:
            From DC02 to DC06
            Naming Context: CN=Schema,CN=Configuration,DC=parent,DC=pri
            The replication generated an error (1908):
            Could not find the domain controller for this domain.
            The failure occurred at 2009-01-21 22:03:04.
            The last success occurred at 2009-01-21 20:59:25.
            1 failures have occurred since the last success.
            Kerberos Error.
            A KDC was not found to authenticate the call.
            Check that sufficient domain controllers are available.
         [Replications Check,DC06] A recent replication attempt failed:
            From DC02 to DC06
            Naming Context: DC=parent,DC=pri
            The replication generated an error (1908):
            Could not find the domain controller for this domain.
            The failure occurred at 2009-01-21 22:05:46.
            The last success occurred at 2009-01-21 20:59:25.
            1 failures have occurred since the last success.
            Kerberos Error.
            A KDC was not found to authenticate the call.
            Check that sufficient domain controllers are available.
         ......................... DC06 passed test Replications
      Starting test: NCSecDesc
         ......................... DC06 passed test NCSecDesc
      Starting test: NetLogons
         ......................... DC06 passed test NetLogons
      Starting test: Advertising
         ......................... DC06 passed test Advertising
      Starting test: KnowsOfRoleHolders
         ......................... DC06 passed test KnowsOfRoleHolders
      Starting test: RidManager
         ......................... DC06 passed test RidManager
      Starting test: MachineAccount
         ......................... DC06 passed test MachineAccount
      Starting test: Services
         ......................... DC06 passed test Services
      Starting test: ObjectsReplicated
         ......................... DC06 passed test ObjectsReplicated
      Starting test: frssysvol
         ......................... DC06 passed test frssysvol
      Starting test: frsevent
         ......................... DC06 passed test frsevent
      Starting test: kccevent
         ......................... DC06 passed test kccevent
      Starting test: systemlog
         An Error Event occured.  EventID: 0x40011006
            Time Generated: 01/21/2009   21:58:26
            Event String: The connection was aborted by the remote WINS.

         An Error Event occured.  EventID: 0x40011006
            Time Generated: 01/21/2009   21:58:26
            Event String: The connection was aborted by the remote WINS.

         An Error Event occured.  EventID: 0xC25A001D
            Time Generated: 01/21/2009   21:58:38
            (Event String could not be retrieved)
         ......................... DC06 failed test systemlog
      Starting test: VerifyReferences
         ......................... DC06 passed test VerifyReferences
   
   Running partition tests on : DomainDnsZones
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom
   
   Running partition tests on : ForestDnsZones
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom
   
   Running partition tests on : CHILD
      Starting test: CrossRefValidation
         ......................... CHILD passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... CHILD passed test CheckSDRefDom
   
   Running partition tests on : Schema
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom
   
   Running partition tests on : Configuration
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom
   
   Running enterprise tests on : parent.pri
      Starting test: Intersite
         ......................... parent.pri passed test Intersite
      Starting test: FsmoCheck
         ......................... parent.pri passed test FsmoCheck
ASKER CERTIFIED SOLUTION
Mike Kline

Log in or sign up to see answer
Become an EE member today7-DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform
Sign up - Free for 7 days
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.
See how we're fighting big data
Not exactly the question you had in mind?
Sign up for an EE membership and get your own personalized solution. With an EE membership, you can ask unlimited troubleshooting, research, or opinion questions.
ask a question
ASKER
fedsig

mkline71,

I tried that last night and just checked this AM.  No dice.  DNS is currently pointing to another DC still, but the DCDiags have been coming up clean except for these WINS errors.  nltest /dsregdns still states no logon servers available, but I CAN log in as my personal Domain Admin acct.  

I have been getting these errs in the applicaiton log directly after a reboot:

********************************************************************************************************************
Event Type:      Warning
Event Source:      MSDTC
Event Category:      SVC
Event ID:      53258
Date:            1/22/2009
Time:            7:29:06 AM
User:            N/A
Computer:      100-AD-006
Description:
MS DTC could not correctly process a DC Promotion/Demotion event. MS DTC will continue to function and will use the existing security settings. Error Specifics: d:\nt\com\complus\dtc\dtc\adme\uiname.cpp:9280, Pid: 1628
No Callstack,
 CmdLine: C:\WINDOWS\system32\msdtc.exe

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 05 00 07 80               ...€    

********************************************************************************************************************
Event Type:      Warning
Event Source:      MSDTC
Event Category:      SVC
Event ID:      53258
Date:            1/22/2009
Time:            7:29:06 AM
User:            N/A
Computer:      100-AD-006
Description:
MS DTC could not correctly process a DC Promotion/Demotion event. MS DTC will continue to function and will use the existing security settings. Error Specifics: %1

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
********************************************************************************************************************

No new errors in the Dir Svs, DNS Server, File Repl Svs logs.  I do have a repeating entry in the System log:
********************************************************************************************************************
Event Type:      Error
Event Source:      Wins
Event Category:      None
Event ID:      4102
Date:            1/22/2009
Time:            4:31:55 AM
User:            N/A
Computer:      DC06
Description:
The connection was aborted by the remote WINS. Remote WINS may not be configured to replicate with the server.

For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Data:
0000: 1c 03 00 00 08 00 00 e0   .......à

********************************************************************************************************************
ADST still indicates errors.  Any help?!
Experts Exchange is like having an extremely knowledgeable team sitting and waiting for your call. Couldn't do my job half as well as I do without it!
James Murphy
ASKER
fedsig

It seems that I had to point the DCs to another DC for DNS.  I gave it about a day or 2, and the errors stopped.