Link to home
Start Free TrialLog in
Avatar of nokyplease
nokypleaseFlag for Hong Kong

asked on

cannot contact domain controllers when dcpromo - windows 2008 R2

Hi experts,

I am trying to dcpromo a server to a DC at branch office. I got the follow error:

DNS was successfully queried for the service location (SRV) resource record used to locate a domain controller for domain "my.domain.name".

The query was for the SRV record for _ldap._tcp.dc._msdcs.my.domain.name

the following domain controllers were identified by the query:
dc1.my.domain.name
dc2.my.domain.name

however no domain controllers could be contacted

common causes of the error include:
- host (A) or (AAAA) records that map the names of the domain controllers to their IP adresses are missing or contain incorrect addresses.

- domain controllers registered in DNS are not connected to the network or are not running.

I checked the A record for both DC are in place and also i can contract the DC by ping, ldp.

any one can help me with this issue?

thanks.
ASKER CERTIFIED SOLUTION
Avatar of Mike Kline
Mike Kline
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of nokyplease

ASKER

it is pointing to the main office dns server (dc1.my.domain.name)

there is a firewall between 2 site, however i checked all traffic are allowed to dc1.my.domain.name, while the traffic is blocked for all connections to dc2.my.domain name as dc2 is actually in another subnet.

do i need to allow the branch office server to talk to both DCs, i thought it only need to have either one.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I can finally dcpromo my server in the branch office after allowing the traffic to go to both dc1 and dc2.

many thanks for all the help!
Nice work!!   Ports and DNS are the two biggest issues when it comes to AD.  If those are working then AD is usually happy :)