Solved

KCC Errors / Event ID 1865, 1311, 1566 - Active Directory

Posted on 2011-03-14
11
4,241 Views
Last Modified: 2012-09-20
I have a single domain, multi site Active Directory setup and both remote Windows 2008 servers are full of Event ID 1865, 1311 and 1566 in the ADS logs.

All DC's are replicating fine (checked via NTDS) and I have modified the MTU to 1492 as I'm sure I have read on here somewhere and have rebooted the servers.

Can anyone advise on where  to go next?
0
Comment
Question by:Mr_OCD
  • 6
  • 4
11 Comments
 
LVL 74

Expert Comment

by:Glen Knight
Comment Utility
OK, let's start first by running DCDIAG on all DC's, please post the results.

Do you have them all configured to use a valid Windows DNS server only?

Also, do you have all your Active Directory Sites and Services Sites and Subnets configured correctly?
0
 

Author Comment

by:Mr_OCD
Comment Utility
From running DCDIAG I can see we have replication errors between the two remote sites that are causing the problems.

I'm not sure how to post the results of the logs as they are quite long?

All DC's are configured to use valid Windows DNS servers only.

I have configured AD sites and services subnets, etc correctly but AD automatically generated the links itself.

0
 
LVL 74

Expert Comment

by:Glen Knight
Comment Utility
Can you run the following:

DCDIAG > C:\DCDIAG-COMPUTERNAME.TXT

Replace the computername with the name of the server and then upload the text files.
0
 

Author Comment

by:Mr_OCD
Comment Utility
Ok here we go...

 DCDIAG-DRS.txt

*****************************************

 DCDIAG-STC.txt
0
 
LVL 74

Expert Comment

by:Glen Knight
Comment Utility
And you have confirmed that both DC's are able to communicate with each other?

Can you run: dcdiag /test:connectivity

On both servers.  What are the results?
0
Want to promote your upcoming event?

Is your company attending an event or exhibiting at a trade show soon? Are you speaking at a conference? Spread the word by using a promotional banner in your email signature. This will ensure your organization’s most important contacts are in the know.

 

Author Comment

by:Mr_OCD
Comment Utility
Both servers pass connectivity tests.
0
 
LVL 74

Expert Comment

by:Glen Knight
Comment Utility
Can you post the content of the errors you are receiving in the event log please?
0
 

Author Comment

by:Mr_OCD
Comment Utility
Event 1865:

KCC was unable to form a complete spanning tree network topology. As a result the following list of sites cannot be reached from the locate site.

Sites:
Remote Site 1

Event 1311:

KCC has detected problems with the following directory partition.

There is insufficient site connectivity information for the KCC to create a spanniong tree replication topology. Or, one or more directory servers with this directory partition are unable to replicate the directory information.

Event 1566:

All directory servers in the following site that can replicate the directory partition over this transport are currently unavailable.
0
 
LVL 12

Expert Comment

by:Navdeep
Comment Utility
Hi,

How about you site links and site link bridging.

Do you have physically connectivity among all sites or it is it like hub - spoke topology.

Your site links should map you physical links. Please re verify site links
0
 

Accepted Solution

by:
Mr_OCD earned 0 total points
Comment Utility
All fixed.

Re-created the IPSEC VPN tunnel between the remote sites and all of the errors have stopped.
0
 

Author Closing Comment

by:Mr_OCD
Comment Utility
None
0

Featured Post

Do You Know the 4 Main Threat Actor Types?

Do you know the main threat actor types? Most attackers fall into one of four categories, each with their own favored tactics, techniques, and procedures.

Join & Write a Comment

Sometimes drives fill up and we don't know why.  If you don't understand the best way to use the tools available, you may end up being stumped as to why your drive says it's not full when you have no space left!  Here's how you can find out...
A safe way to clean winsxs folder from your windows server 2008 R2 editions
This tutorial will give a an overview on how to deploy remote agents in Backup Exec 2012 to new servers. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as connecting to a remote Back…
This tutorial will walk an individual through locating and launching the BEUtility application and how to execute it on the appropriate database. Log onto the server running the Backup Exec database. In a larger environment, this would generally be …

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now