Solved

Adding a server 2008 server to an existing domain with two domain controllers

Posted on 2011-03-14
10
358 Views
Last Modified: 2012-05-11
Here is a little back round on my situation; we have recently purchased a new server to act as an esxi host one of our virtual machines is a domain controller which is going to ultimately replace our existing domain controller. Adprep has been run on our existing Server 2003 domain controller but we are running into some issues with sysvol information replicating around to our domain controllers.  Should adprep have been run on all domain controllers in the forest?  Thank you in advance.    
0
Comment
Question by:jmv973
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3
  • 2
  • +1
10 Comments
 
LVL 74

Expert Comment

by:Glen Knight
ID: 35132996
No, not at all, it only needs to be run once.
0
 
LVL 1

Expert Comment

by:janvanderwijk
ID: 35133005
Wat is your domain functional level?
0
 

Author Comment

by:jmv973
ID: 35133021
How would i determine my domain's functional level?  thank you for the fast responses
0
SharePoint Admin?

Enable Your Employees To Focus On The Core With Intuitive Onscreen Guidance That is With You At The Moment of Need.

 
LVL 74

Expert Comment

by:Glen Knight
ID: 35133062
The domain functional level can be found from Active Diretory Users and Computers.

See here for how and how to raise it: http://support.microsoft.com/kb/322692
0
 
LVL 1

Expert Comment

by:janvanderwijk
ID: 35133241
In AUC, Rightmouse on domain and click Raise Domain Functional Level. But before you do it, maybe it is wise to read about the functional levels before you apply these setting. That is wat I would do, in a live environment.
0
 
LVL 74

Expert Comment

by:Glen Knight
ID: 35133273
You may also find steps 1 to 4 of my article here useful: http://www.experts-exchange.com/Software/Server_Software/Email_Servers/Exchange/A_2881-Migrate-Small-Business-Server-2003-to-Exchange-2010-and-Windows-2008-R2.html they explain the process and the health checks you should perform.
0
 
LVL 35

Expert Comment

by:Seth Simmons
ID: 35133290
you really don't need to raise the function level for this issue.  post any event log messages that show sysvol replication errors.

is the 2008 server already a domain controller?  when you run adprep /forestprep and adprep /domainprep it will expand the schema; a one time operation.  did you notice sysvol errors before adprep? are the errors on every DC or just certain one(s)?
0
 

Accepted Solution

by:
jmv973 earned 0 total points
ID: 35134156
Results of dcdiag on new domain controller:
Microsoft Windows [Version 6.1.7600]
Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

C:\Users\administrator.>dcdiag

Directory Server Diagnosis

Performing initial setup:
   Trying to find home server...
   Home Server =
   * Identified AD Forest.
   Done gathering initial info.

Doing initial required tests

   Testing server: site\new dc
      Starting test: Connectivity
         ......................... new dc passed test Connectivity

Doing primary tests

   Testing server: site\new dc
      Starting test: Advertising
         Warning: DsGetDcName returned information for \\old dc.domain.com,
         when we were trying to reach new dc.
         SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE.
         ......................... new dc failed test Advertising
      Starting test: FrsEvent
         There are warning or error events within the last 24 hours after the
         SYSVOL has been shared.  Failing SYSVOL replication problems may cause
         Group Policy problems.
         ......................... new dc passed test FrsEvent
      Starting test: DFSREvent
         ......................... new dc passed test DFSREvent
      Starting test: SysVolCheck
         ......................... new dc passed test SysVolCheck
      Starting test: KccEvent
         ......................... new dc passed test KccEvent
      Starting test: KnowsOfRoleHolders
         ......................... new dc passed test KnowsOfRoleHolders
      Starting test: MachineAccount
         ......................... new dc passed test MachineAccount
      Starting test: NCSecDesc
         Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
            Replicating Directory Changes In Filtered Set
         access rights for the naming context:
         DC=ForestDnsZones,DC=domain,DC=com
         Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
            Replicating Directory Changes In Filtered Set
         access rights for the naming context:
         DC=DomainDnsZones,DC=domain,DC=com
         ......................... new dc failed test NCSecDesc
      Starting test: NetLogons
         Unable to connect to the NETLOGON share! (\\new dc\netlogon)
         [new dc] An net use or LsaPolicy operation failed with error 67,
         The network name cannot be found..
         ......................... new dc failed test NetLogons
      Starting test: ObjectsReplicated
         ......................... new dc passed test ObjectsReplicated
      Starting test: Replications
         ......................... new dc passed test Replications
      Starting test: RidManager
         ......................... new dc passed test RidManager
      Starting test: Services
         ......................... new dc passed test Services
      Starting test: SystemLog
         An error event occurred.  EventID: 0x00000457
            Time Generated: 03/14/2011   18:42:39
            Event String:
            Driver HP LaserJet 4050 Series PCL6 required for printer !!BF-AWP01!
HP LaserJet 4050 Front is unknown. Contact the administrator to install the driv
er before you log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 03/14/2011   18:45:52
            Event String:
            Driver HP LaserJet 4050 Series PCL6 required for printer !!BF-AWP01!
HP LaserJet 4050 Front is unknown. Contact the administrator to install the driv
er before you log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 03/14/2011   18:49:11
            Event String:
            Driver HP LaserJet 4050 Series PCL6 required for printer !!old dc!
HP LaserJet 4050 Front is unknown. Contact the administrator to install the driv
er before you log in again.
         ......................... new dc failed test SystemLog
      Starting test: VerifyReferences
         ......................... new dc passed test VerifyReferences


   Running partition tests on : ForestDnsZones
      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test
         CrossRefValidation

   Running partition tests on : DomainDnsZones
      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test
         CrossRefValidation

   Running partition tests on : Schema
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation

   Running partition tests on : Configuration
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation

   Running partition tests on : awplan
      Starting test: CheckSDRefDom
         ......................... awplan passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... domain passed test CrossRefValidation

   Running enterprise tests on : domain.com
      Starting test: LocatorCheck
         ......................... domain.com passed test LocatorCheck
      Starting test: Intersite
         ......................... domain.com passed test Intersite

C:\Users\administrator.domain>
0
 

Author Comment

by:jmv973
ID: 35147244
Can anyone further assist me with this issue? thank you.
0
 

Author Closing Comment

by:jmv973
ID: 35239121
was able to resolve this issue on my own.
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I was asked if I could set up a fax machine so that incoming faxes were delivered to people's Exchange inboxes and so that they could send faxes from their desktops without needing to print the document first.  I knew it was possible but I had no id…
Redirected folders in a windows domain can be quite useful for a number of reasons, one of them being that with redirected application data, you can give users more seamless experience when logging into different workstations.  For example, if a use…
To efficiently enable the rotation of USB drives for backups, storage pools need to be created. This way no matter which USB drive is installed, the backups will successfully write without any administrative intervention. Multiple USB devices need t…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…

732 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question