Solved

Unable to Sync between Additional Domain Controller and Primary Domain Controller

Posted on 2013-05-18
4
1,508 Views
Last Modified: 2013-05-31
Hi,
We are running Active Directory and DNS Server on the Same Windows Server 2008 R2 as Virtual Machine on vSphere 5 Platform. Since it is for College environment every month we have to delete or create 1000 users. Recently iSCSI based Storage which is used to store the Virtual Machines (Includes Active Directory VM also) is corrupted. Then we have restored the Active Directory Server from the Clone image (of Active Directory) which was taken in Dec 2012. Here Some client machines are authenticating to the Active Directory but still some client machines are authenticating through ADC. But ADC unable to sync from PDC. What can do now in order to sync ADC from PDC. I executed dcdiag on the ADC also.
out.txt
0
Comment
Question by:dhanush_support
4 Comments
 
LVL 77

Expert Comment

by:arnold
ID: 39177878
AD is intolerant of the process you under took.
You have to either flush the secondary and rejoin the primary after restore.

The other problem you will run into is that systems will have different machine passwords than the AD and will not be able to authenticate (loss of trust) which will require you to rejoin all the systems from the beginign.

The sync issue is the rid master has a different count then the one on the secondary.

For future reference, use powershell to deactivate/delete users or add/create new ones.


A image can only be done when you have a single DC (which is not advisable) ref issue with workstations/systems from before..
0
 
LVL 79

Expert Comment

by:David Johnson, CD, MVP
ID: 39178006
0
 
LVL 16

Expert Comment

by:cantoris
ID: 39178210
Never restore a domain controller like this or you'll end up in a world of pain!

Do you have at least one original unaffected domain controller in existence (?the PDC you mention) as well as this restored one?  If so, I suspect you would be best decommissioning the restored one, doing a metadata cleanup to remove references to it and then manually installing a new DC and let replication do the rest.
0
 
LVL 27

Accepted Solution

by:
Steve earned 500 total points
ID: 39180737
the problem you appear to have is that you have restored a backup of your DC which contained an old version of your AD database. Your 2 domain controllers are therefore arguing about which one has the correct copy of AD and the two are not friends.

Shutdown the restored DC ASAP and fix AD. Once AD is fixed you can look at restoring your old DC WITHOUT AD and letting it replicate it from the working DC.
0

Featured Post

The Eight Noble Truths of Backup and Recovery

How can IT departments tackle the challenges of a Big Data world? This white paper provides a roadmap to success and helps companies ensure that all their data is safe and secure, no matter if it resides on-premise with physical or virtual machines or in the cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
SignTool Error with Windows 10 5 148
Excel formula lookup multiple charges 11 72
Any differences between redirected files & offline files? 4 66
Sharepoint 2013 error 4 54
INTRODUCTION The purpose of this document is to demonstrate the Installation and configuration of the Data Protection Manager product. Note that this demonstration was prepared on the basis of Windows OS is 2008 R2 and DPM 2010. DATA PROTECTI…
Deploying a Microsoft Access application in a Citrix environment is not difficult but takes a few steps. However, Citrix system people are often of little help, as they typically know next to nothing about Access. The script provided here will take …
In this video, we discuss why the need for additional vertical screen space has become more important in recent years, namely, due to the transition in the marketplace of 4x3 computer screens to 16x9 and 16x10 screens (so-called widescreen format). …
Viewers will learn the different options available in the Backstage view in Excel 2013.

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question