Domain connection failure

Posted on 2013-01-30
Last Modified: 2013-08-06
following advise of today after a major power failure in the office.  Win7 clients stopped being able to connect to NAS drive and folder shares.  Suggestion was to reconnect the clients to the domain.  Have tried one client and it fails on the Network stage.  One trying from the Control panel this error is reported.  Anyone know of a solution?


The following error occurred when DNS was queried for the service location (SRV) resource record used to locate an Active Directory Domain Controller (AD DC) for domain "cs.loca":

The error was: "DNS name does not exist."
(error code 0x0000232B RCODE_NAME_ERROR)

The query was for the SRV record for _ldap._tcp.dc._msdcs.cs.loca

Common causes of this error include the following:

- The DNS SRV records required to locate a AD DC for the domain are not registered in DNS. These records are registered with a DNS server automatically when a AD DC is added to a domain. They are updated by the AD DC at set intervals. This computer is configured to use DNS servers with the following IP addresses:
Question by:TMS
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 9
LVL 18

Expert Comment

by:Sarang Tinguria
ID: 38837333
Please check you DNS settings and make sure below best practices are correctly defined in your env

Best practices for DNS client settings on DC and domain members.

Author Comment

ID: 38837458
Sarang, The DNS looks fine.  I have noticed another issue after restarting the server and that is the RPC shows running in services but if I open Active Directory it say it is not and I can't open Active directory.  Outlook clients can't connect to exchange but my iphone does.
Seems something a little more fundimental is wrong.

Author Comment

ID: 38837477
One other thing.  I noticed that when using my account to log into one client it denied me with the trust error on the domain. When I used another admin account it logged in.  I'm wondering if some credentials have been corrupted?
Creating Instructional Tutorials  

For Any Use & On Any Platform

Contextual Guidance at the moment of need helps your employees/users adopt software o& achieve even the most complex tasks instantly. Boost knowledge retention, software adoption & employee engagement with easy solution.

LVL 70

Expert Comment

ID: 38837478
stop and restart the NETLOGON service, then check to see if the SRV records have been created.

Author Comment

ID: 38837526
Are you saying svr records will be created by the netlogon service?  It's restarting now.  It didn't let me the first time but second try and it is stopping and starting all the other services.

Author Comment

ID: 38837534
Ok, all the svr records in DNS were time stamped an hour ago, probably when I restarted the server before

Author Comment

ID: 38837552
I have also noticed there are "?" Next to default domain and share point web services.  The sbs company web doesn't work and when I try to log onto the server via Remote Desktop or owa I get a certificate warning.

Author Comment

ID: 38837560
Sorry when I mentioned the rpc service I was not looking at exchange which I meant to.  Anyway for some reason that doesn't start automatically now.  I sense I'm heading to a new installation at some point but I agree the domain join issue can't be caused by many things.

Author Comment

ID: 38837660
Running dcdiag the enterprise test says error 1355 global catalog server could not be located.

Accepted Solution

TMS earned 0 total points
ID: 38860077
This problem was as a result of the Sysvol subfolders not mounting during startup.  The NTDFS service did not produce the Do Not Delete folder so the NETLOGIN could not create the subfolders.  I copied over the sysvol folders from the RODC and the server started to report as a Catalogue Server.

Author Closing Comment

ID: 38875431
Reason I accepted my own solution is because I go it working but not fixed.

Featured Post

Get 15 Days FREE Full-Featured Trial

Benefit from a mission critical IT monitoring with Monitis Premium or get it FREE for your entry level monitoring needs.
-Over 200,000 users
-More than 300,000 websites monitored
-Used in 197 countries
-Recommended by 98% of users

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Active Directory security has been a hot topic of late, and for good reason. With 90% of the world’s organization using this system to manage access to all parts of their IT infrastructure, knowing how to protect against threats and keep vulnerabil…
Recently, Microsoft released a best-practice guide for securing Active Directory. It's a whopping 300+ pages long. Those of us tasked with securing our company’s databases and systems would, ideally, have time to devote to learning the ins and outs…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question