DC not starting till another DC starts

Hi, noticed something during a recable at work
a DC lets call it AD1  has all the master roles and is a DSN WINS DHCP GC
none of these services would start when we sitched it on, the box only came to life when another DC was started.  why would this be? it was on a local network.

essentially it would not work independently

windows 2003 sp2
mhamerAsked:
Who is Participating?

Improve company productivity with a Business Account.Sign Up

x
 
tigermattConnect With a Mentor Commented:

Verify the DNS Server configuration on the DC. What server(s) does it have configured as DNS Servers to use? It should have itself as the Preferred DNS Server, and the other DC as the alternate DNS server.

-Matt
0
 
mhamerAuthor Commented:
yes thats how it is
0
 
AkhaterCommented:
on the DC that is "failing" what is its DNS configuration ?

i.e. who is it using as DNS server ?
0
What Kind of Coding Program is Right for You?

There are many ways to learn to code these days. From coding bootcamps like Flatiron School to online courses to totally free beginner resources. The best way to learn to code depends on many factors, but the most important one is you. See what course is best for you.

 
mhamerAuthor Commented:
Primary is its self
secondary is a server that was elseware

0
 
AkhaterCommented:
sorry Matt i posted before I refreshed and didn't know you replied to the thread


0
 
mhamerAuthor Commented:
it says (event viewer dns could not contact Active directory.
0
 
tigermattCommented:

Run a dcdiag /test:DNS /v to test DNS on this particular DC.

-Matt
0
 
mhamerAuthor Commented:
hi, it pass's with flying colours.

background:
as we were recabling we kept sever servers in a nother roomn so basic functionaltiy was till there for weekend users, aDC an exchange box and a SQL server and a firewall
The guys doing the work struggle dto get it to work as this DC would not start its services, as soon as the vpn came up they all sprang in to life.
0
 
tigermattCommented:
What errors are logged in the Event Logs? Is the DC a GC? It's unusual for a DC to not be able to start itself.

-Matt
0
 
AkhaterCommented:
in the DNS zone that is on the failing server, can you confirm that you have yourdomain.com and _msdcs.yourdomain.com zones ?

0
 
mhamerAuthor Commented:
1054
Windows cannot obtain the domain controller name for your computer network. (The specified domain either does not exist or could not be contacted. ). Group Policy processing aborted.


40960
The Security System detected an authentication error for the server ldap/asl-ad1.interquad.com.  The failure code from authentication protocol Kerberos was "There are currently no logon servers available to service the logon request.
 (0xc000005e)".



1059
The DHCP service failed to see a directory server for authorization.


5781
Dynamic registration or deletion of one or more DNS records associated with DNS domain 'interquad.com.' failed.  These records are used by other computers to locate this server as a domain controller (if the specified domain is an Active Directory domain) or as an LDAP server (if the specified domain is an application partition).  

Possible causes of failure include:  
- TCP/IP properties of the network connections of this computer contain wrong IP address(es) of the preferred and alternate DNS servers
- Specified preferred and alternate DNS servers are not running
- DNS server(s) primary for the records to be registered is not running
- Preferred or alternate DNS servers are configured with wrong root hints
- Parent DNS zone contains incorrect delegation to the child zone authoritative for the DNS records that failed registration  

USER ACTION  
Fix possible misconfiguration(s) specified above and initiate registration or deletion of the DNS records by running 'nltest.exe /dsregdns' from the command prompt or by restarting Net Logon service. Nltest.exe is available in the Microsoft Windows Server Resource Kit CD.

4013
The DNS server was unable to open the Active Directory.  This DNS server is configured to use directory service information and can not operate without access to the directory.  The DNS server will wait for the directory to start.  If the DNS server is started but the appropriate event has not been logged, then the DNS server is still waiting for the directory to start.
0
 
mhamerAuthor Commented:
yes i can confirm those zones exist, DNS looks fine
0
 
AkhaterCommented:
is it possible that your security log on that DC is full ?

http://support.microsoft.com/kb/316685
0
 
mhamerAuthor Commented:
nope its not full  set to over right as needed but has enough space for a months worth.
0
 
mhamerAuthor Commented:
I should also add i wasnt here when the event took place, so relying on a "true" account fo what happened

it was connecte dto the network
Logs are still in tact from before and after
nothing els ein the event viewer
no current issue
I just need to know why so it doesnt happen again, caused a lot fo grief for the guys working ove rthe weekend.
0
 
AkhaterCommented:
well i guess you will have to test off working hours. that's my best guess
0
 
mhamerAuthor Commented:
yep, I plan to but have to wait till saturday


was just wondering if there is anything obvious like it needs connection to the server thats listed as alternate

so its fair to say  a DC holding all the fsmo roles and dns to itself "should" work independently?
0
 
AkhaterConnect With a Mentor Commented:
any DC should be able to work independently

0
 
tigermattCommented:

It is correct that any DC should be able to work independently of other machines. I have some sites which are isolated from the remainder of the network (and the FSMO role holders) at times, and the network is able to continue running (and be restarted, if necessary) during this period of isolation. You must simply have at least one local DC & GC and a local DNS Server.

-Matt
0
 
mhamerAuthor Commented:
ok, enough info to  begoing on with thank you both for your input i'll post back if I find anything.
0
 
mhamerAuthor Commented:
more information, than a solution.  thank you
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.