?
Solved

Replication issue - temp fix possible?

Posted on 2010-09-17
4
Medium Priority
?
361 Views
Last Modified: 2012-06-22
I've got a secondary DC in a remote office which hasn't replicated in ages and I think is tombstoned.  Other member servers are occasionally having the dreaded "The Trust relationship between this workstation and the domain failed" message on RDP login. - causing system downtime while I de-join/rejoin to get people working again.  I'm assuming this has to do with the long-failed replication on the remote server.  I've seen in other articles that reformatting the server is the quickest way to restore health to the domain but I am unable to get to the location for several weeks due to other commitments.

Is there a stop-gap measure or workaround to stop this awful "Trust relationship failed..." error?  The dejoin/rejoin works for maybe a day.

Could I simply shut down the non-replicating server in the meantime or would this cause additional problems - the remote machines could authenticate across the VPN to the PDC...

Thanks
0
Comment
Question by:JSEE18
  • 3
4 Comments
 

Expert Comment

by:ashwinee
ID: 33702387
reinstall this
0
 
LVL 74

Accepted Solution

by:
Glen Knight earned 500 total points
ID: 33702397
Simply running DCPROMO to remove Active Directory then running DCPROMO again to re-promote the server will sort this out.
0
 
LVL 74

Expert Comment

by:Glen Knight
ID: 33702418
Dorothy to add that if for some reason you are unable to gracefully remove Active Directory run DCPROMO /forceremoval then do a METADATA cleanup to remove it from Active Directory as per: http://www.petri.co.il/delete_failed_dcs_from_ad.htm

Hopefully it doesn't have any FSMObroles? If so that makes it more complicated.
0
 
LVL 74

Expert Comment

by:Glen Knight
ID: 33702423
FSMObroles= FSMO roles
0

Featured Post

Has Powershell sent you back into the Stone Age?

If managing Active Directory using Windows Powershell® is making you feel like you stepped back in time, you are not alone.  For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
It’s time for spooky stories and consuming way too much sugar, including the many treats we’ve whipped for you in the world of tech. Check it out!
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
Suggested Courses

807 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question