Patrick
asked on
The RPC server is unavailable
I'm getting quite a few Automatic certificate enrollment for local system failed (0x800706ba) The RPC server is unavailable and Certificate enrollment for Local system failed to enroll for a DomainController certificate with request ID N/A from LEVERE.SAE.net\levere (The RPC server is unavailable. 0x800706ba (WIN32: 1722)).
Problem is - it's looking for a server that was dcpromo-ed and removed from the network (Levere.sae.net\levere). Troubling still is I'm working to figure out why on a new DNS server, the A record for our e-mail server would be automatically deleted from DNS, which may or may not be related but am going through all the error logs trying to resolve to deduce (I already turned off aging/scavenging which was already disabled).
How can I remove need for our network to automatically renew a certificate enrollment?
Problem is - it's looking for a server that was dcpromo-ed and removed from the network (Levere.sae.net\levere). Troubling still is I'm working to figure out why on a new DNS server, the A record for our e-mail server would be automatically deleted from DNS, which may or may not be related but am going through all the error logs trying to resolve to deduce (I already turned off aging/scavenging which was already disabled).
How can I remove need for our network to automatically renew a certificate enrollment?
ASKER
No mention of the old server in any DC - however when I attempt to list servers in site in on DC, it only finds 1 server when it should find 3
Run dcdiag post results
ASKER
Edit: No mention of the old server in any DC - however when I attempt to list servers in site in on ONE DC, Minerva , it only finds 1 server when it should find 3 and lists it as 0 - (null) when on another DC - when you go to that Domain DC, it finds all three servers, none being the old one
ASKER
Old DC:
Microsoft Windows [Version 5.2.3790]
(C) Copyright 1985-2003 Microsoft Corp.
C:\Documents and Settings\Administrator.SIG MA.000>dcd iag
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\MI NERVA
Starting test: Connectivity
......................... MINERVA passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\MI NERVA
Starting test: Replications
......................... MINERVA passed test Replications
Starting test: NCSecDesc
......................... MINERVA passed test NCSecDesc
Starting test: NetLogons
......................... MINERVA passed test NetLogons
Starting test: Advertising
......................... MINERVA passed test Advertising
Starting test: KnowsOfRoleHolders
......................... MINERVA passed test KnowsOfRoleHolders
Starting test: RidManager
......................... MINERVA passed test RidManager
Starting test: MachineAccount
......................... MINERVA passed test MachineAccount
Starting test: Services
......................... MINERVA passed test Services
Starting test: ObjectsReplicated
......................... MINERVA passed test ObjectsReplicated
Starting test: frssysvol
......................... MINERVA passed test frssysvol
Starting test: frsevent
......................... MINERVA passed test frsevent
Starting test: kccevent
......................... MINERVA passed test kccevent
Starting test: systemlog
......................... MINERVA passed test systemlog
Starting test: VerifyReferences
......................... MINERVA passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : SAE
Starting test: CrossRefValidation
......................... SAE passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... SAE passed test CheckSDRefDom
Running enterprise tests on : SAE.net
Starting test: Intersite
......................... SAE.net passed test Intersite
Starting test: FsmoCheck
......................... SAE.net passed test FsmoCheck
C:\Documents and Settings\Administrator.SIG MA.000>
Microsoft Windows [Version 5.2.3790]
(C) Copyright 1985-2003 Microsoft Corp.
C:\Documents and Settings\Administrator.SIG
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\MI
Starting test: Connectivity
......................... MINERVA passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\MI
Starting test: Replications
......................... MINERVA passed test Replications
Starting test: NCSecDesc
......................... MINERVA passed test NCSecDesc
Starting test: NetLogons
......................... MINERVA passed test NetLogons
Starting test: Advertising
......................... MINERVA passed test Advertising
Starting test: KnowsOfRoleHolders
......................... MINERVA passed test KnowsOfRoleHolders
Starting test: RidManager
......................... MINERVA passed test RidManager
Starting test: MachineAccount
......................... MINERVA passed test MachineAccount
Starting test: Services
......................... MINERVA passed test Services
Starting test: ObjectsReplicated
......................... MINERVA passed test ObjectsReplicated
Starting test: frssysvol
......................... MINERVA passed test frssysvol
Starting test: frsevent
......................... MINERVA passed test frsevent
Starting test: kccevent
......................... MINERVA passed test kccevent
Starting test: systemlog
......................... MINERVA passed test systemlog
Starting test: VerifyReferences
......................... MINERVA passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : SAE
Starting test: CrossRefValidation
......................... SAE passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... SAE passed test CheckSDRefDom
Running enterprise tests on : SAE.net
Starting test: Intersite
......................... SAE.net passed test Intersite
Starting test: FsmoCheck
......................... SAE.net passed test FsmoCheck
C:\Documents and Settings\Administrator.SIG
ASKER
New DC:
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
C:\Users\Administrator.SIG MA>dcdiag
Directory Server Diagnosis
Performing initial setup:
Trying to find home server...
Home Server = NetOps
* Identified AD Forest.
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\NE TOPS
Starting test: Connectivity
......................... NETOPS passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\NE TOPS
Starting test: Advertising
......................... NETOPS passed test Advertising
Starting test: FrsEvent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... NETOPS passed test FrsEvent
Starting test: DFSREvent
......................... NETOPS passed test DFSREvent
Starting test: SysVolCheck
......................... NETOPS passed test SysVolCheck
Starting test: KccEvent
......................... NETOPS passed test KccEvent
Starting test: KnowsOfRoleHolders
......................... NETOPS passed test KnowsOfRoleHolders
Starting test: MachineAccount
......................... NETOPS passed test MachineAccount
Starting test: NCSecDesc
......................... NETOPS passed test NCSecDesc
Starting test: NetLogons
......................... NETOPS passed test NetLogons
Starting test: ObjectsReplicated
......................... NETOPS passed test ObjectsReplicated
Starting test: Replications
......................... NETOPS passed test Replications
Starting test: RidManager
......................... NETOPS passed test RidManager
Starting test: Services
......................... NETOPS passed test Services
Starting test: SystemLog
......................... NETOPS passed test SystemLog
Starting test: VerifyReferences
......................... NETOPS passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... ForestDnsZones passed test
CrossRefValidation
Running partition tests on : DomainDnsZones
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... DomainDnsZones passed test
CrossRefValidation
Running partition tests on : Schema
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Running partition tests on : Configuration
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Running partition tests on : SAE
Starting test: CheckSDRefDom
......................... SAE passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... SAE passed test CrossRefValidation
Running enterprise tests on : SAE.net
Starting test: LocatorCheck
......................... SAE.net passed test LocatorCheck
Starting test: Intersite
......................... SAE.net passed test Intersite
C:\Users\Administrator.SIG MA>
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
C:\Users\Administrator.SIG
Directory Server Diagnosis
Performing initial setup:
Trying to find home server...
Home Server = NetOps
* Identified AD Forest.
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\NE
Starting test: Connectivity
......................... NETOPS passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\NE
Starting test: Advertising
......................... NETOPS passed test Advertising
Starting test: FrsEvent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... NETOPS passed test FrsEvent
Starting test: DFSREvent
......................... NETOPS passed test DFSREvent
Starting test: SysVolCheck
......................... NETOPS passed test SysVolCheck
Starting test: KccEvent
......................... NETOPS passed test KccEvent
Starting test: KnowsOfRoleHolders
......................... NETOPS passed test KnowsOfRoleHolders
Starting test: MachineAccount
......................... NETOPS passed test MachineAccount
Starting test: NCSecDesc
......................... NETOPS passed test NCSecDesc
Starting test: NetLogons
......................... NETOPS passed test NetLogons
Starting test: ObjectsReplicated
......................... NETOPS passed test ObjectsReplicated
Starting test: Replications
......................... NETOPS passed test Replications
Starting test: RidManager
......................... NETOPS passed test RidManager
Starting test: Services
......................... NETOPS passed test Services
Starting test: SystemLog
......................... NETOPS passed test SystemLog
Starting test: VerifyReferences
......................... NETOPS passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... ForestDnsZones passed test
CrossRefValidation
Running partition tests on : DomainDnsZones
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... DomainDnsZones passed test
CrossRefValidation
Running partition tests on : Schema
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Running partition tests on : Configuration
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Running partition tests on : SAE
Starting test: CheckSDRefDom
......................... SAE passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... SAE passed test CrossRefValidation
Running enterprise tests on : SAE.net
Starting test: LocatorCheck
......................... SAE.net passed test LocatorCheck
Starting test: Intersite
......................... SAE.net passed test Intersite
C:\Users\Administrator.SIG
ASKER
I added Domain Controllers to that security group, but why would it be refrencing a server that's no longer on the network?
I have had the issue before I don't remember why to be honest.
Lets see if this actually fixes the problem
Lets see if this actually fixes the problem
ASKER
The error still pops up maybe twice a day on the old DC, it's occured once on the new DC, so I guess the issue remains?
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
How woud I double check that I don't have a new CA -
ASKER
Sorry - that was a dumb question, I don't.
There are 2 mentions of the certificate under Certification Autorities, CDP, and KRA, is it safe to delete from there as well?
There are 2 mentions of the certificate under Certification Autorities, CDP, and KRA, is it safe to delete from there as well?
Yes
ASKER
Absolutely pefect - THANKS!!!
http://www.petri.co.il/delete_failed_dcs_from_ad.htm