Unable to verify DC on domain using NETDOM

Hi Guys

Have run the NETDOM utlity on our local DC (see attached image) and found that the DC is not reporting its status correctly. When WinXP users are connecting to the DC to request group policy updates they also run into this error message that gets reported in the event logs on client PCs: The specified domain does not exist or could not be contacted.

I have read numerous articles that this could be a DNS issue but there are no errors appearing on the DC to suggest this. I recently installed the latest NIC drivers on the DC's NIC to be sure it wasn't a driver issue yet the problem remains and has done for some time.

Any help appreciated.

Regards,
RM
ERROR-MESSAGE.png
the3rdmanAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Shreedhar EtteCommented:
Hi,

Check Where the DC T3MSERVER DNS is pointing.

Does ther are any error events in application log of the server.

---------
Shree
0
the3rdmanAuthor Commented:
Hi, The DNS IP used by T3MSERVER is its own IP. I have checked the following app event log and found:

Process MAD.EXE (PID=2708). All Global Catalog Servers in use are not responding:
t3mserver.THE3RDMAN.local
0
Shreedhar EtteCommented:
Hi,

Post the output of the:

netdom query fsmo

netdom query dc

nltest /server:servername /sc_query:DOMAIN_NAME

-------------
Shree
0
Newly released Acronis True Image 2019

In announcing the release of the 15th Anniversary Edition of Acronis True Image 2019, the company revealed that its artificial intelligence-based anti-ransomware technology – stopped more than 200,000 ransomware attacks on 150,000 customers last year.

the3rdmanAuthor Commented:
Here are each of the outputs
nltest.png
0
the3rdmanAuthor Commented:
netdom dc query output
netdom-query-dc.png
0
the3rdmanAuthor Commented:
netdom query fsmo output
netdom-query-fsmo.png
0
Shreedhar EtteCommented:
Hi,

Check the server t3mserver directory service events logs and File Replication Service logs.

Does it contain any error? If yes, then post the details.

Also post netdiag and dcdiag output

----------
Shree
0
the3rdmanAuthor Commented:
1. In directory service event log; 1 error found:

Active Directory could not use DNS to resolve the IP address of the source domain controller listed below. To maintain the consistency of Security groups, group policy, users and computers and their passwords, Active Directory successfully replicated using the NetBIOS or fully qualified computer name of the source domain controller.
 
Invalid DNS configuration may be affecting other essential operations on member computers, domain controllers or application servers in this Active Directory forest, including logon authentication or access to network resources.
 
You should immediately resolve this DNS configuration error so that this domain controller can resolve the IP address of the source domain controller using DNS.
 
Alternate server name:
 t3mserver2.THE3RDMAN.local
Failing DNS host name:
 6e2e67db-39fb-4d4c-a93e-606f842ad9eb._msdcs.THE3RDMAN.local
 
NOTE: By default, only up to 10 DNS failures are shown for any given 12 hour period, even if more than 10 failures occur.  To log all individual failure events, set the following diagnostics registry value to 1:
 
Registry Path:
HKLM\System\CurrentControlSet\Services\NTDS\Diagnostics\22 DS RPC Client

2. No file system replication errors

3. DCDIAG output

Microsoft Windows [Version 5.2.3790]
(C) Copyright 1985-2003 Microsoft Corp.

C:\Documents and Settings\Administrator>dcdiag

Domain Controller Diagnosis

Performing initial setup:
   Done gathering initial info.

Doing initial required tests

   Testing server: Default-First-Site-Name\T3MSERVER
      Starting test: Connectivity
         ......................... T3MSERVER passed test Connectivity

Doing primary tests

   Testing server: Default-First-Site-Name\T3MSERVER
      Starting test: Replications
         ......................... T3MSERVER passed test Replications
      Starting test: NCSecDesc
         ......................... T3MSERVER passed test NCSecDesc
      Starting test: NetLogons
         ......................... T3MSERVER passed test NetLogons
      Starting test: Advertising
         ......................... T3MSERVER passed test Advertising
      Starting test: KnowsOfRoleHolders
         ......................... T3MSERVER passed test KnowsOfRoleHolders
      Starting test: RidManager
         ......................... T3MSERVER passed test RidManager
      Starting test: MachineAccount
         ......................... T3MSERVER passed test MachineAccount
      Starting test: Services
            IsmServ Service is stopped on [T3MSERVER]
         ......................... T3MSERVER failed test Services
      Starting test: ObjectsReplicated
         ......................... T3MSERVER passed test ObjectsReplicated
      Starting test: frssysvol
         ......................... T3MSERVER passed test frssysvol
      Starting test: frsevent
         ......................... T3MSERVER passed test frsevent
      Starting test: kccevent
         ......................... T3MSERVER passed test kccevent
      Starting test: systemlog
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 04/08/2010   08:39:27
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0xC0001B63
            Time Generated: 04/08/2010   08:42:48
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0xC0002719
            Time Generated: 04/08/2010   08:52:57
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0xC0002719
            Time Generated: 04/08/2010   08:53:39
            (Event String could not be retrieved)
         ......................... T3MSERVER failed test systemlog
      Starting test: VerifyReferences
         ......................... T3MSERVER passed test VerifyReferences

   Running partition tests on : ForestDnsZones
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test CrossRefValidation

      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom

   Running partition tests on : DomainDnsZones
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test CrossRefValidation

      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom

   Running partition tests on : Schema
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom

   Running partition tests on : Configuration
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom

   Running partition tests on : THE3RDMAN
      Starting test: CrossRefValidation
         ......................... THE3RDMAN passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... THE3RDMAN passed test CheckSDRefDom

   Running enterprise tests on : THE3RDMAN.local
      Starting test: Intersite
         ......................... THE3RDMAN.local passed test Intersite
      Starting test: FsmoCheck
         ......................... THE3RDMAN.local passed test FsmoCheck

C:\Documents and Settings\Administrator>

4. NETDIAG output

Microsoft Windows [Version 5.2.3790]
(C) Copyright 1985-2003 Microsoft Corp.

C:\Documents and Settings\Administrator>netdiag

....................................

    Computer Name: T3MSERVER
    DNS Host Name: t3mserver.THE3RDMAN.local
    System info : Microsoft Windows Server 2003 (Build 3790)
    Processor : x86 Family 15 Model 6 Stepping 4, GenuineIntel
    List of installed hotfixes :
        KB915800-v9
        KB921503
        KB923561
        KB924667-v2
        KB925398_WMP64
        KB925876
        KB925902
        KB926122
        KB927891
        KB929123
        KB930178
        KB931768
        KB931784
        KB931836
        KB932168
        KB933360
        KB933566
        KB933729
        KB933854
        KB935839
        KB935840
        KB935966
        KB936021
        KB936357
        KB936594
        KB936782
        KB937143
        KB938127
        KB938127-IE7
        KB938464
        KB938759-v4
        KB939653
        KB939653-IE7
        KB941202
        KB941568
        KB941569
        KB941644
        KB941672
        KB941693
        KB942615-IE7
        KB942763
        KB942830
        KB942831
        KB943055
        KB943460
        KB943484
        KB943485
        KB943729
        KB944533-IE7
        KB944653
        KB945553
        KB946026
        KB947864-IE7
        KB948496
        KB948590
        KB948745
        KB948881
        KB949014
        KB950759-IE7
        KB950760
        KB950762
        KB950974
        KB951066
        KB951072-v2
        KB951698
        KB951746
        KB951748
        KB952004
        KB952069
        KB952954
        KB953298
        KB953838-IE7
        KB953839
        KB954155
        KB954211
        KB954550-v5
        KB954600
        KB955069
        KB955759
        KB955839
        KB956390-IE7
        KB956391
        KB956572
        KB956744
        KB956802
        KB956803
        KB956841
        KB956844
        KB957095
        KB957097
        KB958215-IE7
        KB958644
        KB958687
        KB958690
        KB958869
        KB959426
        KB960225
        KB960714-IE7
        KB960715
        KB960803
        KB960859
        KB961063
        KB961064
        KB961118
        KB961260-IE7
        KB961371
        KB961371-v2
        KB961373
        KB961501
        KB963027-IE7
        KB967715
        KB967723
        KB968220-IE8
        KB968389
        KB968537
        KB968816
        KB969059
        KB969805
        KB969883
        KB969897-IE8
        KB969898
        KB969947
        KB970238
        KB970483
        KB970653-v3
        KB971032
        KB971180-IE8
        KB971468
        KB971486
        KB971557
        KB971633
        KB971657
        KB971737
        KB971961-IE8
        KB972260-IE8
        KB972270
        KB973037
        KB973346
        KB973354
        KB973507
        KB973525
        KB973540
        KB973687
        KB973815
        KB973825
        KB973869
        KB973904
        KB973917
        KB973917-v2
        KB974112
        KB974318
        KB974392
        KB974455-IE8
        KB974571
        KB975025
        KB975467
        KB975560
        KB975713
        KB976098-v2
        KB976325-IE8
        KB976662-IE8
        KB976749-IE8
        KB977165
        KB977290
        KB977914
        KB978037
        KB978207-IE8
        KB978251
        KB978262
        KB978706
        KB979306
        KB980182-IE8
        Q147222


Netcard queries test . . . . . . . : Passed



Per interface results:

    Adapter : Local Area Connection 1

        Netcard queries test . . . : Passed

        Host Name. . . . . . . . . : t3mserver
        IP Address . . . . . . . . : 192.168.2.50
        Subnet Mask. . . . . . . . : 255.255.255.0
        Default Gateway. . . . . . : 192.168.2.2
        Dns Servers. . . . . . . . : 192.168.2.50


        AutoConfiguration results. . . . . . : Passed

        Default gateway test . . . : Passed

        NetBT name test. . . . . . : Passed
        [WARNING] At least one of the <00> 'WorkStation Service', <03> 'Messenge
r Service', <20> 'WINS' names is missing.

        WINS service test. . . . . : Skipped
            There are no WINS servers configured for this interface.


Global results:


Domain membership test . . . . . . : Passed


NetBT transports test. . . . . . . : Passed
    List of NetBt transports currently configured:
        NetBT_Tcpip_{7D7124A6-1CFB-4300-809C-23B81AB24E57}
    1 NetBt transport currently configured.


Autonet address test . . . . . . . : Passed


IP loopback ping test. . . . . . . : Passed


Default gateway test . . . . . . . : Passed


NetBT name test. . . . . . . . . . : Passed
    [WARNING] You don't have a single interface with the <00> 'WorkStation Servi
ce', <03> 'Messenger Service', <20> 'WINS' names defined.


Winsock test . . . . . . . . . . . : Passed


DNS test . . . . . . . . . . . . . : Passed
    PASS - All the DNS entries for DC are registered on DNS server '192.168.2.50
' and other DCs also have some of the names registered.


Redir and Browser test . . . . . . : Passed
    List of NetBt transports currently bound to the Redir
        NetBT_Tcpip_{7D7124A6-1CFB-4300-809C-23B81AB24E57}
    The redir is bound to 1 NetBt transport.

    List of NetBt transports currently bound to the browser
        NetBT_Tcpip_{7D7124A6-1CFB-4300-809C-23B81AB24E57}
    The browser is bound to 1 NetBt transport.


DC discovery test. . . . . . . . . : Passed


DC list test . . . . . . . . . . . : Passed


Trust relationship test. . . . . . : Skipped


Kerberos test. . . . . . . . . . . : Passed


LDAP test. . . . . . . . . . . . . : Passed


Bindings test. . . . . . . . . . . : Passed


WAN configuration test . . . . . . : Skipped
    No active remote access connections.


Modem diagnostics test . . . . . . : Passed

IP Security test . . . . . . . . . : Skipped

    Note: run "netsh ipsec dynamic show /?" for more detailed information


The command completed successfully

C:\Documents and Settings\Administrator>
0
the3rdmanAuthor Commented:
In regard to DCDIAG output, Intersite messaging service was disabled on T3MSERVER. Have enabled this and now get the following dcidag:

Microsoft Windows [Version 5.2.3790]
(C) Copyright 1985-2003 Microsoft Corp.

C:\Documents and Settings\Administrator>dcdiag

Domain Controller Diagnosis

Performing initial setup:
   Done gathering initial info.

Doing initial required tests

   Testing server: Default-First-Site-Name\T3MSERVER
      Starting test: Connectivity
         ......................... T3MSERVER passed test Connectivity

Doing primary tests

   Testing server: Default-First-Site-Name\T3MSERVER
      Starting test: Replications
         ......................... T3MSERVER passed test Replications
      Starting test: NCSecDesc
         ......................... T3MSERVER passed test NCSecDesc
      Starting test: NetLogons
         ......................... T3MSERVER passed test NetLogons
      Starting test: Advertising
         ......................... T3MSERVER passed test Advertising
      Starting test: KnowsOfRoleHolders
         ......................... T3MSERVER passed test KnowsOfRoleHolders
      Starting test: RidManager
         ......................... T3MSERVER passed test RidManager
      Starting test: MachineAccount
         ......................... T3MSERVER passed test MachineAccount
      Starting test: Services
         ......................... T3MSERVER passed test Services
      Starting test: ObjectsReplicated
         ......................... T3MSERVER passed test ObjectsReplicated
      Starting test: frssysvol
         ......................... T3MSERVER passed test frssysvol
      Starting test: frsevent
         ......................... T3MSERVER passed test frsevent
      Starting test: kccevent
         ......................... T3MSERVER passed test kccevent
      Starting test: systemlog
         ......................... T3MSERVER passed test systemlog
      Starting test: VerifyReferences
         ......................... T3MSERVER passed test VerifyReferences

   Running partition tests on : ForestDnsZones
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test CrossRefValidation

      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom

   Running partition tests on : DomainDnsZones
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test CrossRefValidation

      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom

   Running partition tests on : Schema
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom

   Running partition tests on : Configuration
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom

   Running partition tests on : THE3RDMAN
      Starting test: CrossRefValidation
         ......................... THE3RDMAN passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... THE3RDMAN passed test CheckSDRefDom

   Running enterprise tests on : THE3RDMAN.local
      Starting test: Intersite
         ......................... THE3RDMAN.local passed test Intersite
      Starting test: FsmoCheck
         ......................... THE3RDMAN.local passed test FsmoCheck

C:\Documents and Settings\Administrator>
0
the3rdmanAuthor Commented:
Managed to find the solution myself:

Enable inter site messaging disabled on t3mserver.
Added thirdman.local DNS suffix to each of the DC primary network connections.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows Server 2003

From novice to tech pro — start learning today.