Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 310
  • Last Modified:

AD BPA Windows 2008 - DNS Errors

Hi,

I've running the new AD BPA Tool on my Windows Server 2008 R2 box and receiving about 20 errors relating to DNS.....even though DNS seems to be functioning perfectly internally

I've attahced a screen shot of the first error, can provide more if nessesary

These erorrs might be nothng to worry about asour domain/environemtn is working normally, but just a bit concerned about these BPA erorrs

Any help would be gretly appreciated

Thanks

Mike


Capture.JPG
0
MOSADMIN
Asked:
MOSADMIN
  • 5
  • 4
4 Solutions
 
Darius GhassemCommented:
Check this out.

http://technet.microsoft.com/en-us/library/dd723687(WS.10).aspx

Make sure you don't have a firewall blocking this.

I would run on your forest root DC.
0
 
MOSADMINAuthor Commented:
Yeah I read through that document and Disabled the Firewall on this server.....but has had no effect

Also the DirectoryServices_EngineReport.xml hasn't been any help in determinign why all these 20 elements of the BPA seem to fail....
0
 
Darius GhassemCommented:
Are you runn this on a DC? Have you tried running on another DC?

Run dcdiag look for errors.
0
Concerto Cloud for Software Providers & ISVs

Can Concerto Cloud Services help you focus on evolving your application offerings, while delivering the best cloud experience to your customers? From DevOps to revenue models and customer support, the answer is yes!

Learn how Concerto can help you.

 
MOSADMINAuthor Commented:
If I run DCDIAG /TEST:DNS on the DC inquestion if fails on the Delegation Test, but it's strange as it's referencing a really old DC which taken out of service a long time ago....


     TEST: Delegations (Del)
        Error: DNS server: castle.mos.local. IP:<Unavailable>
        [Missing glue A record]

I can't find any records of that old server (CASTLE) anywhere in DNS, AD Sites & Services, ADSI Edit etc!

If I run the same DCDIAG /TEST:DNS from another server if completes without any errors?!
0
 
Darius GhassemCommented:
Check to make sure that there are no SRV records.
0
 
Darius GhassemCommented:
0
 
MOSADMINAuthor Commented:
I've been through DNS and removed any references to this old server (there were a few entires under the Reverse Lookup Zones)

Metadatacleanup (NTDSUTIIL) doesn't list this old server!
0
 
Darius GhassemCommented:
Did you go through the msdcs.domain.com zone?
0
 
MOSADMINAuthor Commented:
thanks
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

  • 5
  • 4
Tackle projects and never again get stuck behind a technical roadblock.
Join Now