?
Solved

NTDS KCC 1801

Posted on 2010-11-15
7
Medium Priority
?
1,028 Views
Last Modified: 2012-05-10
Hi,

We have remote site that I created a new site for and moved the only domain controller to.  The thing that I noticed is that now I am getting a warning message that states:

Warning NTDS KCC 1801

The partition DC=DomainDnsZones,DC=vertex,DC=local should be hosted at site CN=LAX,CN=Sites,CN=Configuration,DC=vertex,DC=local, but has not been instantiated yet. However, the KCC could not find any hosts from which to replicate this partition.

I am not sure exactly what this means being that in the past I have always created a site and then did a dcpromo to bring up the domain controller.  we have about 50 machins in that site and I am trying to do this from a remote site.

How can I resolve this issue.  Also how critical is this issue.  Will this prevent the users from logging on to the nework or have access to shared resources such as files and printers
0
Comment
Question by:thomasm1948
  • 4
  • 3
7 Comments
 

Author Comment

by:thomasm1948
ID: 34136601
Also when I run the following command in the command prompt everything seems to be ok:

repadmin /replsum /bysrc /bydest /sort:delta

I see no errors when I run it.  The only thing that I see is that I tried to install the support tools on the remote server and I get an error that I do not have permissions to install the application on the server (I did this though remote desktops in console mode)
0
 
LVL 24

Accepted Solution

by:
Awinish earned 2000 total points
ID: 34137370
You have linked all the sites properly with their subnet.

If its fine then there can be Domaindnszones & forestdnszones are in corruption.

Change all the AD-Integrated DNS zone to Primary(Non-AD-Integrated) in forward lookup zone as well as in reverse lookup zone

Stop the dns service on problem dc,
Open ADSIEDIT.MSC from run, locate configuration partition
Expand configuration partition>Partitions> remove Domaindnszones & forestdnszones only which is on the right side.
Start the dns service & you will find those two partitions will be recreated.
Convert the zone back to AD-Integrated,

Note: Delete the Domaindnszones & forestdnszones only after you have converted all the zone under forward & reverse lookup zone to non AD-integrated.If you delete the Domaindnszones & forestdnszones w/o converting the zone Non AD-Integrated, it will delete all the zones under forward & reverse lookup zone.

If you are not sure take backup before doing it.
0
 
LVL 24

Expert Comment

by:Awinish
ID: 34137404
0
What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

 

Author Comment

by:thomasm1948
ID: 34137476
yes all of the sites are connected to their proper subnets.  I will try your recommendation after working hours.  

How critical is this warning message?  
0
 

Author Comment

by:thomasm1948
ID: 34137500
I do not receive any event IDs 4515 in my event log
0
 

Author Comment

by:thomasm1948
ID: 34137553
What would happen if I decide to demote the domain controller on the remote site and repromote it to a domain controller
0
 
LVL 24

Expert Comment

by:Awinish
ID: 34137821
Event id 4515 is related to dns but corruption can happen in dns, i gave you link to confirm you follow the steps properly.

You can do that nothing happens, but make sure before using same host name & IP again, make sure after demoting you clean up all the records & give time to replicate the changes to other dc else you will not able to configure the dc with same name.

Also,if you have clients pointed to that dc for dns need to make change on all the client machine.

0

Featured Post

Important Lessons on Recovering from Petya

In their most recent webinar, Skyport Systems explores ways to isolate and protect critical databases to keep the core of your company safe from harm.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Had a business requirement to store the mobile number in an environmental variable. This is just a quick article on how this was done.
How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…

850 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question