Solved

Sysvol Not Replicating

Posted on 2012-03-19
6
1,878 Views
Last Modified: 2012-03-19
I have an SBS2003 server that is the only domain controller. I recently installed a Server 2008 R2 server and ran DCpromo. All went well with no errors, but when I look in C:\Windows\SYSVOL\sysvol\allsaintsaustin.local

all I see is: DO_NOT_REMOVE_NtFrs_PreInstall_Directory (hidden)

there is nothing else.

When I run Dcdiag these are the results:

C:\Users\Administrator.ALLSAINTSAUSTIN>dcdiag

Directory Server Diagnosis

Performing initial setup:
   Trying to find home server...
   Home Server = AllSaints-DC
   * Identified AD Forest.
   Done gathering initial info.

Doing initial required tests

   Testing server: Default-First-Site-Name\ALLSAINTS-DC
      Starting test: Connectivity
         ......................... ALLSAINTS-DC passed test Connectivity

Doing primary tests

   Testing server: Default-First-Site-Name\ALLSAINTS-DC
      Starting test: Advertising
         ......................... ALLSAINTS-DC passed test Advertising
      Starting test: FrsEvent
         There are warning or error events within the last 24 hours after the
         SYSVOL has been shared.  Failing SYSVOL replication problems may cause
         Group Policy problems.
         ......................... ALLSAINTS-DC passed test FrsEvent
      Starting test: DFSREvent
         ......................... ALLSAINTS-DC passed test DFSREvent
      Starting test: SysVolCheck
         ......................... ALLSAINTS-DC passed test SysVolCheck
      Starting test: KccEvent
         ......................... ALLSAINTS-DC passed test KccEvent
      Starting test: KnowsOfRoleHolders
         ......................... ALLSAINTS-DC passed test KnowsOfRoleHolders
      Starting test: MachineAccount
         ......................... ALLSAINTS-DC passed test MachineAccount
      Starting test: NCSecDesc
         ......................... ALLSAINTS-DC passed test NCSecDesc
      Starting test: NetLogons
         Unable to connect to the NETLOGON share! (\\ALLSAINTS-DC\netlogon)
         [ALLSAINTS-DC] An net use or LsaPolicy operation failed with error 67,
         The network name cannot be found..
         ......................... ALLSAINTS-DC failed test NetLogons
      Starting test: ObjectsReplicated
         ......................... ALLSAINTS-DC passed test ObjectsReplicated
      Starting test: Replications
         ......................... ALLSAINTS-DC passed test Replications
      Starting test: RidManager
         ......................... ALLSAINTS-DC passed test RidManager
      Starting test: Services
         ......................... ALLSAINTS-DC passed test Services
      Starting test: SystemLog
         An error event occurred.  EventID: 0xC0001B58
            Time Generated: 03/19/2012   09:41:20
            Event String:
            The Diagnostic Service Host service failed to start due to the follo
wing error:
         A warning event occurred.  EventID: 0x80040020
            Time Generated: 03/19/2012   09:49:46
            Event String:
            The driver detected that the device \Device\Harddisk0\DR0 has its wr
ite cache enabled. Data corruption may occur.
         A warning event occurred.  EventID: 0x80040020
            Time Generated: 03/19/2012   09:49:46
            Event String:
            The driver detected that the device \Device\Harddisk0\DR0 has its wr
ite cache enabled. Data corruption may occur.
         A warning event occurred.  EventID: 0x80040020
            Time Generated: 03/19/2012   09:49:46
            Event String:
            The driver detected that the device \Device\Harddisk0\DR0 has its wr
ite cache enabled. Data corruption may occur.
         A warning event occurred.  EventID: 0x80040020
            Time Generated: 03/19/2012   09:52:22
            Event String:
            The driver detected that the device \Device\Harddisk0\DR0 has its wr
ite cache enabled. Data corruption may occur.
         A warning event occurred.  EventID: 0x80040020
            Time Generated: 03/19/2012   09:52:22
            Event String:
            The driver detected that the device \Device\Harddisk0\DR0 has its wr
ite cache enabled. Data corruption may occur.
         A warning event occurred.  EventID: 0x80040020
            Time Generated: 03/19/2012   09:52:22
            Event String:
            The driver detected that the device \Device\Harddisk0\DR0 has its wr
ite cache enabled. Data corruption may occur.
         A warning event occurred.  EventID: 0x8000001D
            Time Generated: 03/19/2012   09:52:28
            Event String:
            The Key Distribution Center (KDC) cannot find a suitable certificate
 to use for smart card logons, or the KDC certificate could not be verified. Sma
rt card logon may not function correctly if this problem is not resolved. To cor
rect this problem, either verify the existing KDC certificate using certutil.exe
 or enroll for a new KDC certificate.
         A warning event occurred.  EventID: 0x00002724
            Time Generated: 03/19/2012   09:52:46
            Event String:
            This computer has at least one dynamically assigned IPv6 address.For
 reliable DHCPv6 server operation, you should use only static IPv6 addresses.
         A warning event occurred.  EventID: 0x80001B7F
            Time Generated: 03/19/2012   09:52:50
            Event String:
            A service process other than the one launched by the Service Control
 Manager connected when starting the ShadowProtect Service service.  The Service
 Control Manager launched process 2372 and process 2416 connected instead.
         ......................... ALLSAINTS-DC failed test SystemLog
      Starting test: VerifyReferences
         ......................... ALLSAINTS-DC passed test VerifyReferences


   Running partition tests on : ForestDnsZones
      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test
         CrossRefValidation

   Running partition tests on : DomainDnsZones
      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test
         CrossRefValidation

   Running partition tests on : Schema
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation

   Running partition tests on : Configuration
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation

   Running partition tests on : allsaintsaustin
      Starting test: CheckSDRefDom
         ......................... allsaintsaustin passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... allsaintsaustin passed test
         CrossRefValidation

   Running enterprise tests on : allsaintsaustin.local
      Starting test: LocatorCheck
         ......................... allsaintsaustin.local passed test
         LocatorCheck
      Starting test: Intersite
         ......................... allsaintsaustin.local passed test Intersite
0
Comment
Question by:Jesse2035
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
6 Comments
 
LVL 59

Accepted Solution

by:
Darius Ghassem earned 500 total points
ID: 37738220
Alright so, we are going to do the burflag method to fix this problem. Make sure Windows 2008 Server is pointing to other DC for DNS


Take backup of the policies and script folders from both the servers from c:\Windows\Sysvol\domain

Stopp NTFRS service on both DCs.
Make one of the DCs authoritative server by modifying registry setting : Navigate to registry HKLM\System\CCS\Services\NTFRS\Parameters\CumlativeReplicaSets and Set the Burflags value to D4. This should be done with server which has the Updated information available or correct data.

Go to other DC and make that Non-authoritative by navigating to same registry location HKLM\System\CCS\Services\NTFRS\Parameters\CumlativeReplicaSets and Set the Burflags value to D2.

Restarted Ntfrs service on both servers and forced replication to see event 13516 in event viewer for FRS.
0
 

Author Comment

by:Jesse2035
ID: 37738448
I did the blur flags already and restarted the ntfrs service as well. how do I force replication now or does restarting the ntfrs service force replication?
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 37738490
Yes
0
Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

 

Author Comment

by:Jesse2035
ID: 37738518
I do see event 13516. Everything seems to have replicated and dcdiag looks good now.

One more question. I am decommissioning the SBS2003 server tomorrow and the new 2008 server is going to be the only DC. Do I need to set the blur flags back to default on the 2008 and 2003 server before I do this?
0
 
LVL 59

Expert Comment

by:Darius Ghassem
ID: 37738595
No this is done all when you restart the service
0
 

Author Closing Comment

by:Jesse2035
ID: 37738782
Thank you for your help. You saved me a great deal of time!
0

Featured Post

Use Case: Protecting a Hybrid Cloud Infrastructure

Microsoft Azure is rapidly becoming the norm in dynamic IT environments. This document describes the challenges that organizations face when protecting data in a hybrid cloud IT environment and presents a use case to demonstrate how Acronis Backup protects all data.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
ADFS trust for Skype 4 29
PEN and Issuance policy for 2 tier Windows 2012 PKI 3 86
How ldap located a Domain controller? 22 79
Domain controller sizing 7 62
This article shows the method of using the Resultant Set of Policy Tool to locate Group Policy that applies a particular setting.
Auditing domain password hashes is a commonly overlooked but critical requirement to ensuring secure passwords practices are followed. Methods exist to extract hashes directly for a live domain however this article describes a process to extract u…
This tutorial will walk an individual through setting the global and backup job media overwrite and protection periods in Backup Exec 2012. Log onto the Backup Exec Central Administration Server. Examine the services. If all or most of them are stop…
Are you ready to implement Active Directory best practices without reading 300+ pages? You're in luck. In this webinar hosted by Skyport Systems, you gain insight into Microsoft's latest comprehensive guide, with tips on the best and easiest way…

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question