Solved

Adding a server 2008 server to an existing domain with two domain controllers

Posted on 2011-03-14
10
351 Views
Last Modified: 2012-05-11
Here is a little back round on my situation; we have recently purchased a new server to act as an esxi host one of our virtual machines is a domain controller which is going to ultimately replace our existing domain controller. Adprep has been run on our existing Server 2003 domain controller but we are running into some issues with sysvol information replicating around to our domain controllers.  Should adprep have been run on all domain controllers in the forest?  Thank you in advance.    
0
Comment
Question by:jmv973
  • 4
  • 3
  • 2
  • +1
10 Comments
 
LVL 74

Expert Comment

by:Glen Knight
ID: 35132996
No, not at all, it only needs to be run once.
0
 
LVL 1

Expert Comment

by:janvanderwijk
ID: 35133005
Wat is your domain functional level?
0
 

Author Comment

by:jmv973
ID: 35133021
How would i determine my domain's functional level?  thank you for the fast responses
0
 
LVL 74

Expert Comment

by:Glen Knight
ID: 35133062
The domain functional level can be found from Active Diretory Users and Computers.

See here for how and how to raise it: http://support.microsoft.com/kb/322692
0
 
LVL 1

Expert Comment

by:janvanderwijk
ID: 35133241
In AUC, Rightmouse on domain and click Raise Domain Functional Level. But before you do it, maybe it is wise to read about the functional levels before you apply these setting. That is wat I would do, in a live environment.
0
What Security Threats Are You Missing?

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

 
LVL 74

Expert Comment

by:Glen Knight
ID: 35133273
You may also find steps 1 to 4 of my article here useful: http://www.experts-exchange.com/Software/Server_Software/Email_Servers/Exchange/A_2881-Migrate-Small-Business-Server-2003-to-Exchange-2010-and-Windows-2008-R2.html they explain the process and the health checks you should perform.
0
 
LVL 34

Expert Comment

by:Seth Simmons
ID: 35133290
you really don't need to raise the function level for this issue.  post any event log messages that show sysvol replication errors.

is the 2008 server already a domain controller?  when you run adprep /forestprep and adprep /domainprep it will expand the schema; a one time operation.  did you notice sysvol errors before adprep? are the errors on every DC or just certain one(s)?
0
 

Accepted Solution

by:
jmv973 earned 0 total points
ID: 35134156
Results of dcdiag on new domain controller:
Microsoft Windows [Version 6.1.7600]
Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

C:\Users\administrator.>dcdiag

Directory Server Diagnosis

Performing initial setup:
   Trying to find home server...
   Home Server =
   * Identified AD Forest.
   Done gathering initial info.

Doing initial required tests

   Testing server: site\new dc
      Starting test: Connectivity
         ......................... new dc passed test Connectivity

Doing primary tests

   Testing server: site\new dc
      Starting test: Advertising
         Warning: DsGetDcName returned information for \\old dc.domain.com,
         when we were trying to reach new dc.
         SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE.
         ......................... new dc failed test Advertising
      Starting test: FrsEvent
         There are warning or error events within the last 24 hours after the
         SYSVOL has been shared.  Failing SYSVOL replication problems may cause
         Group Policy problems.
         ......................... new dc passed test FrsEvent
      Starting test: DFSREvent
         ......................... new dc passed test DFSREvent
      Starting test: SysVolCheck
         ......................... new dc passed test SysVolCheck
      Starting test: KccEvent
         ......................... new dc passed test KccEvent
      Starting test: KnowsOfRoleHolders
         ......................... new dc passed test KnowsOfRoleHolders
      Starting test: MachineAccount
         ......................... new dc passed test MachineAccount
      Starting test: NCSecDesc
         Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
            Replicating Directory Changes In Filtered Set
         access rights for the naming context:
         DC=ForestDnsZones,DC=domain,DC=com
         Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
            Replicating Directory Changes In Filtered Set
         access rights for the naming context:
         DC=DomainDnsZones,DC=domain,DC=com
         ......................... new dc failed test NCSecDesc
      Starting test: NetLogons
         Unable to connect to the NETLOGON share! (\\new dc\netlogon)
         [new dc] An net use or LsaPolicy operation failed with error 67,
         The network name cannot be found..
         ......................... new dc failed test NetLogons
      Starting test: ObjectsReplicated
         ......................... new dc passed test ObjectsReplicated
      Starting test: Replications
         ......................... new dc passed test Replications
      Starting test: RidManager
         ......................... new dc passed test RidManager
      Starting test: Services
         ......................... new dc passed test Services
      Starting test: SystemLog
         An error event occurred.  EventID: 0x00000457
            Time Generated: 03/14/2011   18:42:39
            Event String:
            Driver HP LaserJet 4050 Series PCL6 required for printer !!BF-AWP01!
HP LaserJet 4050 Front is unknown. Contact the administrator to install the driv
er before you log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 03/14/2011   18:45:52
            Event String:
            Driver HP LaserJet 4050 Series PCL6 required for printer !!BF-AWP01!
HP LaserJet 4050 Front is unknown. Contact the administrator to install the driv
er before you log in again.
         An error event occurred.  EventID: 0x00000457
            Time Generated: 03/14/2011   18:49:11
            Event String:
            Driver HP LaserJet 4050 Series PCL6 required for printer !!old dc!
HP LaserJet 4050 Front is unknown. Contact the administrator to install the driv
er before you log in again.
         ......................... new dc failed test SystemLog
      Starting test: VerifyReferences
         ......................... new dc passed test VerifyReferences


   Running partition tests on : ForestDnsZones
      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test
         CrossRefValidation

   Running partition tests on : DomainDnsZones
      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test
         CrossRefValidation

   Running partition tests on : Schema
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation

   Running partition tests on : Configuration
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation

   Running partition tests on : awplan
      Starting test: CheckSDRefDom
         ......................... awplan passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... domain passed test CrossRefValidation

   Running enterprise tests on : domain.com
      Starting test: LocatorCheck
         ......................... domain.com passed test LocatorCheck
      Starting test: Intersite
         ......................... domain.com passed test Intersite

C:\Users\administrator.domain>
0
 

Author Comment

by:jmv973
ID: 35147244
Can anyone further assist me with this issue? thank you.
0
 

Author Closing Comment

by:jmv973
ID: 35239121
was able to resolve this issue on my own.
0

Featured Post

Want to promote your upcoming event?

Are you going to an event? Are you going to be exhibiting at a tradeshow? Talking at a conference? Using a promotional banner in your email signature ensures that your organization’s most important contacts stay in the know and can potentially spread the word about the event.

Join & Write a Comment

Sometimes drives fill up and we don't know why.  If you don't understand the best way to use the tools available, you may end up being stumped as to why your drive says it's not full when you have no space left!  Here's how you can find out...
Possible fixes for Windows 7 and Windows Server 2008 updating problem. Solutions mentioned are from Microsoft themselves. I started a case with them from our Microsoft Silver Partner option to open a case and get direct support from Microsoft. If s…
This tutorial will show how to push an installation of Backup Exec to an additional server in both 2012 and 2014 versions of the software. Click on the Backup Exec button in the upper left corner. From here, select Installation and Licensing, then I…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now