Solved

Domain Controller server crash  during update and constanly reboot , work on directory service restore mode

Posted on 2010-11-25
8
727 Views
Last Modified: 2012-05-10
Dell 2850 Windows Server 2008 Enterprise with SP1, Main Domain controller, DNS and GC  crash when  RAID 1 fail  at the moment when  installation of updates was perform . I have manage to bring up logical driver   but   OS constantly reboot when GUI come.  I have managed to start in save mode with f8 directory service restore mode. Then OS try to install   3/3 update and restart and reboot again. When I bring up with directory restore mode than OS start to reinstall last update as a not properly install. But again restart and reboot in loop. I have try with and without network connection but  no success.
0
Comment
Question by:mljupco
  • 6
8 Comments
 
LVL 11

Expert Comment

by:louisreeves
ID: 34213529
If the windows installer is stuck. you may be able to use the msi removal tool to see if you can stop it or remove it. This tool is no longer available from microsoft. You should be able to use a search engine to locate it. Also you can set the msiexec to try to remove it or to use add remove programs. There is a registry key to allow this to work is safe move.

1. Boot into Safe Mode.

2. Create the following registry key (it won't exist by default, :
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\msiserver

(If you also want it available in Safe Mode w/ Networking, add the "msiserver" key under the HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ key found here as well)


3. Edit the "(Default)" value in the new "msiserver" registry key, and enter "Service" in the "Value Data" box. Click OK, and close the registry editor.

4. Reboot back into Safe Mode, and the Windows Installer service should now run and allow you to add or remove programs in Safe Mode.

0
 
LVL 57

Expert Comment

by:Mike Kline
ID: 34213644
Do you have other domain controllers/DNS/GCs?

Thanks

Mike
0
 

Author Comment

by:mljupco
ID: 34214348
Yes I have another 2 DC/DNS  but this one was main DC with  only Global Catalog.
0
Are your AD admin tools letting you down?

Managing Active Directory can get complicated.  Often, the native tools for managing AD are just not up to the task.  The largest Active Directory installations in the world have relied on one tool to manage their day-to-day administration tasks: Hyena. Start your trial today.

 

Author Comment

by:mljupco
ID: 34214389

Thank you louisreevesI. I   have manage to stop automatic windows update from the services in save mode.
But when I start  in normal mode or any other f8 option except directory service restore mode  , OS keep rebooting. Now OS do not try to install or reinstall updates.  
0
 

Author Comment

by:mljupco
ID: 34218217
This is Event 11, CAPI2  error
Failed extract of third-party root list from auto update cab at: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootstl.cab> with error: A required certificate is not within its validity period when verifying against the current system clock or the timestamp in the signed file.
.
0
 

Accepted Solution

by:
mljupco earned 0 total points
ID: 34238309
I have repair AD database and clear logs and work
0
 

Author Comment

by:mljupco
ID: 34238335
No coment
0
 

Author Closing Comment

by:mljupco
ID: 34276684
reason for accepting your own comment as the solution.
It work
0

Featured Post

Backup Solution for AWS

Read about how CloudBerry Backup fully integrates your backups with Amazon S3 and Amazon Glacier to provide military-grade encryption and dramatically cut storage costs on any platform.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A company’s centralized system that manages user data, security, and distributed resources is often a focus of criminal attention. Active Directory (AD) is no exception. In truth, it’s even more likely to be targeted due to the number of companies …
Recently, Microsoft released a best-practice guide for securing Active Directory. It's a whopping 300+ pages long. Those of us tasked with securing our company’s databases and systems would, ideally, have time to devote to learning the ins and outs…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question