[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

Cannot rename domain controller .... domain could not be contacted

Posted on 2012-09-12
12
Medium Priority
?
748 Views
Last Modified: 2012-09-24
We have upgraded from SBS 2003 server to 2008 R2 STD server.

Dcpromo'd and all 5 roles transferred.
Old SBS dcpromo /forceremoval done

Ran meta data cleanup to remove old server name

Ran list servers and only my new server is online

Now,  I dont want to fix the UNC paths on all clients
So we need to NETDOM computername

Old server was "server"
New server is "dcserver"

When I run the command  NETDOM COMPUTERNAME DCSERVER.Domain.local /add SERVER.DOMAIN.LOCAL  it waits then says the domain could not be contacted?

Is there some DNS issue or?  I can open AD and see my objects ?
0
Comment
Question by:j-teksolutions
  • 9
  • 3
12 Comments
 
LVL 1

Author Comment

by:j-teksolutions
ID: 38393171
Side note  AD was working.  Upon reboot it no longer was!
I noticed in DNS the old server a record was back in !

so there were 2 entries    server.domain.local   192.168.15.30    and  dcserver.domain.local  192.168.45.30

I am trying to flushdns and get ad fixed... any suggestions?  This must be related to the above
0
 
LVL 18

Expert Comment

by:Sarang Tinguria
ID: 38393177
can you provide output of dcdiag /q dcdiag /test:dns and netdom query dc
0
 
LVL 1

Author Comment

by:j-teksolutions
ID: 38393183
sure will just rebooting
0
Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

 
LVL 1

Author Comment

by:j-teksolutions
ID: 38393184
FYI - Applying computer settings seems really long - probably the above issues stand by
0
 
LVL 18

Expert Comment

by:Sarang Tinguria
ID: 38393191
DC might be looking for DC :-) lol..
0
 
LVL 1

Author Comment

by:j-teksolutions
ID: 38393200
An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_ldap._tcp.a6165290-7165
-4741-8485-51ba2e407024.domains._msdcs.server45.local. 600 IN SRV 0 100 389 dcse
rver.server45.local.' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '2bfbd82d-1ec8-4db8-b356-
96196f6c03eb._msdcs.server45.local. 600 IN CNAME dcserver.server45.local.' faile
d on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_kerberos._tcp.dc._msdcs
.server45.local. 600 IN SRV 0 100 88 dcserver.server45.local.' failed on the fol
lowing DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_kerberos._tcp.Default-F
irst-Site-Name._sites.dc._msdcs.server45.local. 600 IN SRV 0 100 88 dcserver.ser
ver45.local.' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_ldap._tcp.dc._msdcs.ser
ver45.local. 600 IN SRV 0 100 389 dcserver.server45.local.' failed on the follow
ing DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_ldap._tcp.Default-First
-Site-Name._sites.dc._msdcs.server45.local. 600 IN SRV 0 100 389 dcserver.server
45.local.' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_kerberos._tcp.server45.
local. 600 IN SRV 0 100 88 dcserver.server45.local.' failed on the following DNS
 server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_kerberos._tcp.Default-F
irst-Site-Name._sites.server45.local. 600 IN SRV 0 100 88 dcserver.server45.loca
l.' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_gc._tcp.server45.local.
 600 IN SRV 0 100 3268 dcserver.server45.local.' failed on the following DNS ser
ver:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_gc._tcp.Default-First-S
ite-Name._sites.server45.local. 600 IN SRV 0 100 3268 dcserver.server45.local.'
failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_kerberos._udp.server45.
local. 600 IN SRV 0 100 88 dcserver.server45.local.' failed on the following DNS
 server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_kpasswd._tcp.server45.l
ocal. 600 IN SRV 0 100 464 dcserver.server45.local.' failed on the following DNS
 server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_kpasswd._udp.server45.l
ocal. 600 IN SRV 0 100 464 dcserver.server45.local.' failed on the following DNS
 server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_ldap._tcp.DomainDnsZone
s.server45.local. 600 IN SRV 0 100 389 dcserver.server45.local.' failed on the f
ollowing DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_ldap._tcp.Default-First
-Site-Name._sites.DomainDnsZones.server45.local. 600 IN SRV 0 100 389 dcserver.s
erver45.local.' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_ldap._tcp.ForestDnsZone
s.server45.local. 600 IN SRV 0 100 389 dcserver.server45.local.' failed on the f
ollowing DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_ldap._tcp.Default-First
-Site-Name._sites.ForestDnsZones.server45.local. 600 IN SRV 0 100 389 dcserver.s
erver45.local.' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record '_ldap._tcp.pdc._msdcs.se
rver45.local. 600 IN SRV 0 100 389 dcserver.server45.local.' failed on the follo
wing DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record 'server45.local. 600 IN A
 192.168.45.30' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record 'gc._msdcs.server45.local
. 600 IN A 192.168.45.30' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record 'DomainDnsZones.server45.
local. 600 IN A 192.168.45.30' failed on the following DNS server:
         An error event occurred.  EventID: 0x0000168E
            Time Generated: 09/12/2012   19:16:55
            Event String:
            The dynamic registration of the DNS record 'ForestDnsZones.server45.
local. 600 IN A 192.168.45.30' failed on the following DNS server:
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:16:56
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:17:11
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:17:26
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:17:41
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:17:56
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:18:11
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:18:26
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:18:41
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:18:56
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:19:11
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0x00000469
            Time Generated: 09/12/2012   19:21:11
            Event String:
            The processing of Group Policy failed because of lack of network con
nectivity to a domain controller. This may be a transient condition. A success m
essage would be generated once the machine gets connected to the domain controll
er and Group Policy has succesfully processed. If you do not see a success messa
ge for several hours, then contact your administrator.
         An error event occurred.  EventID: 0x00000469
            Time Generated: 09/12/2012   19:21:23
            Event String:
            The processing of Group Policy failed because of lack of network con
nectivity to a domain controller. This may be a transient condition. A success m
essage would be generated once the machine gets connected to the domain controll
er and Group Policy has succesfully processed. If you do not see a success messa
ge for several hours, then contact your administrator.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:23:58
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:24:14
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:24:29
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:24:44
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:24:59
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:25:14
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:25:29
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:25:44
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:25:59
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:26:14
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0xC00038D6
            Time Generated: 09/12/2012   19:26:29
            Event String:
            The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
         An error event occurred.  EventID: 0x00000469
            Time Generated: 09/12/2012   19:28:11
            Event String:
            The processing of Group Policy failed because of lack of network con
nectivity to a domain controller. This may be a transient condition. A success m
essage would be generated once the machine gets connected to the domain controll
er and Group Policy has succesfully processed. If you do not see a success messa
ge for several hours, then contact your administrator.
         An error event occurred.  EventID: 0x00000469
            Time Generated: 09/12/2012   19:28:35
            Event String:
            The processing of Group Policy failed because of lack of network con
nectivity to a domain controller. This may be a transient condition. A success m
essage would be generated once the machine gets connected to the domain controll
er and Group Policy has succesfully processed. If you do not see a success messa
ge for several hours, then contact your administrator.
         ......................... DCSERVER failed test SystemLog
         Warning: DcGetDcName(GC_SERVER_REQUIRED) call failed, error 1355
         A Global Catalog Server could not be located - All GC's are down.
         Warning: DcGetDcName(TIME_SERVER) call failed, error 1355
         A Time Server could not be located.
         The server holding the PDC role is down.
         Warning: DcGetDcName(GOOD_TIME_SERVER_PREFERRED) call failed, error
         1355
         A Good Time Server could not be located.
         Warning: DcGetDcName(KDC_REQUIRED) call failed, error 1355
         A KDC could not be located - All the KDCs are down.
         ......................... server45.local failed test LocatorCheck

C:\Users\administrator.SERVER45>
0
 
LVL 1

Author Comment

by:j-teksolutions
ID: 38393203
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation.  All rights reserved.

C:\Users\administrator.SERVER45>dcdiag /test:dns

Directory Server Diagnosis

Performing initial setup:
   Trying to find home server...
   Home Server = dcserver
   * Identified AD Forest.
   Done gathering initial info.

Doing initial required tests

   Testing server: Default-First-Site-Name\DCSERVER
      Starting test: Connectivity
         ......................... DCSERVER passed test Connectivity

Doing primary tests

   Testing server: Default-First-Site-Name\DCSERVER

      Starting test: DNS

         DNS Tests are running and not hung. Please wait a few minutes...
         ......................... DCSERVER passed test DNS

   Running partition tests on : ForestDnsZones

   Running partition tests on : DomainDnsZones

   Running partition tests on : Schema

   Running partition tests on : Configuration

   Running partition tests on : server45

   Running enterprise tests on : server45.local
      Starting test: DNS
         Test results for domain controllers:

            DC: dcserver.server45.local
            Domain: server45.local


               TEST: Basic (Basc)
                  Warning: The AAAA record for this DC was not found

               TEST: Records registration (RReg)
                  Network Adapter
                  [00000007] Intel(R) 82579LM Gigabit Network Connection:
                     Warning:
                     Missing AAAA record at DNS server 192.168.45.30:
                     dcserver.server45.local

                     Warning:
                     Missing AAAA record at DNS server 192.168.45.30:
                     gc._msdcs.server45.local

                     Warning:
                     Missing AAAA record at DNS server ::1:
                     dcserver.server45.local

                     Warning:
                     Missing AAAA record at DNS server ::1:
                     gc._msdcs.server45.local

               Warning: Record Registrations not found in some network adapters

               dcserver                     PASS WARN PASS PASS PASS WARN n/a
         ......................... server45.local passed test DNS

C:\Users\administrator.SERVER45>
0
 
LVL 1

Author Comment

by:j-teksolutions
ID: 38393213
FYI - the a record server appeared again with the same ip 192.168.45.30
You delete it and it comes back after reboots and AD breaks again
Sorry I dont fully understand DNS and its tie in to AD thanks for you help so far...stuck at a clients after hrs here =(((
0
 
LVL 18

Expert Comment

by:Sarang Tinguria
ID: 38393284
Can you start Key distribution service , Make sure new server is global catalog
Run below series of command to make new server as a authorative time server

net stop w32time 
w32tm /unregister 
w32tm /register 
net start w32time 
net time /setsntp: 
Net stop w32time & net start w32time 
W32tm /config /manualpeerlist:pool.ntp.org /syncfromflags:manual /reliable:yes /update 
W32tm /resync /rediscover 
net stop w32time & net start w32time  

Open in new window

0
 
LVL 1

Accepted Solution

by:
j-teksolutions earned 0 total points
ID: 38414737
Had to abort and reload DC from scratch new domain for the sake of time=(
0
 
LVL 1

Author Comment

by:j-teksolutions
ID: 38414740
Aborted for the sake of time
0
 
LVL 1

Author Closing Comment

by:j-teksolutions
ID: 38427986
Aborted
0

Featured Post

Get your Disaster Recovery as a Service basics

Disaster Recovery as a Service is one go-to solution that revolutionizes DR planning. Implementing DRaaS could be an efficient process, easily accessible to non-DR experts. Learn about monitoring, testing, executing failovers and failbacks to ensure a "healthy" DR environment.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Compliance and data security require steps be taken to prevent unauthorized users from copying data.  Here's one method to prevent data theft via USB drives (and writable optical media).
Active Directory can easily get cluttered with unused service, user and computer accounts. In this article, I will show you the way I like to implement ADCleanup..
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

834 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question