Link to home
Start Free TrialLog in
Avatar of ANUPKUMAR NAIR
ANUPKUMAR NAIRFlag for India

asked on

Unable to create users in additional domain controller when PDC is offline

Scenario

I have a Primary domain controller at central location & had configured additional domain controller at remote locations. when my remote location link is down, even after having an additional domain controller with global catalog enabled at the NTDS settings, Iam not able to create any users or manage users in the additional domain controller. The active directory users & groups shows offline.
SOLUTION
Avatar of scraby
scraby

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of ANUPKUMAR NAIR

ASKER

Hi Scarby,

Windows Server 2003 R2 with SP2at central location & windows 2008 R2 64 bit at remote location.

Right said the term PDC no more exist, It is a domain controller at central location & the other domain controler at remote location.

I have attached the screen shot.

User generated image
SOLUTION
Avatar of Sandesh Dubey
Sandesh Dubey
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
10.0.0.32 (First Domain in the forest at central location) windows 2003 R2 32 Bit
10.0.0.33 (Additional Domain controller at Central location)windows 2003 R2 32 Bit
100.8.1.15(Active directory at DR Site) windows 2003 R2 32 Bit
100.100.100.11 ( Backup Domain controller) Windows 2008 R2 64 Bit

Apart from this I have 4 domain controlers at my remote locations

C:\Documents and Settings\anupnair>ipconfig /all

Windows IP Configuration

   Host Name . . . . . . . . . . . . : pdcmum
   Primary Dns Suffix  . . . . . . . : srlnt.com
   Node Type . . . . . . . . . . . . : Unknown
   IP Routing Enabled. . . . . . . . : No
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : srlnt.com

Ethernet adapter Local Area Connection 4:

   Connection-specific DNS Suffix  . : srlnt.com
   Description . . . . . . . . . . . : Broadcom NetXtreme Gigabit Ethernet #2
   Physical Address. . . . . . . . . : 00-14-5E-FE-12-45
   DHCP Enabled. . . . . . . . . . . : No
   IP Address. . . . . . . . . . . . : 10.0.0.32
   Subnet Mask . . . . . . . . . . . : 255.255.252.0
   Default Gateway . . . . . . . . . : 10.0.0.1
   DNS Servers . . . . . . . . . . . : 10.0.0.33
                                       100.8.1.15

C:\Documents and Settings\anupnair>

----------------------------------------------------------------------------------------------------
BDC (100.100.100.11)

C:\Users\anupnair>ipconfig /all

Windows IP Configuration

   Host Name . . . . . . . . . . . . : BDCMUM
   Primary Dns Suffix  . . . . . . . : srlnt.com
   Node Type . . . . . . . . . . . . : Hybrid
   IP Routing Enabled. . . . . . . . : Yes
   WINS Proxy Enabled. . . . . . . . : No
   DNS Suffix Search List. . . . . . : srlnt.com

Ethernet adapter Local Area Connection:

   Connection-specific DNS Suffix  . : srlnt.com
   Description . . . . . . . . . . . : Intel(R) PRO/1000 MT Network Connection
   Physical Address. . . . . . . . . : 00-0C-29-13-FF-28
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   Link-local IPv6 Address . . . . . : fe80::e874:3b82:b2ea:2e9e%11(Preferred)
   IPv4 Address. . . . . . . . . . . : 100.100.100.11(Preferred)
   Subnet Mask . . . . . . . . . . . : 255.255.255.0
   Default Gateway . . . . . . . . . : 100.100.100.1
   DHCPv6 IAID . . . . . . . . . . . : 234884137
   DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-18-B1-86-34-00-0C-29-FA-D1-65

   DNS Servers . . . . . . . . . . . : 10.0.0.32
                                       4.2.2.2
                                       8.8.8.8
   NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.srlnt.com:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . : srlnt.com
   Description . . . . . . . . . . . : Microsoft ISATAP Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

Tunnel adapter 6TO4 Adapter:

   Connection-specific DNS Suffix  . : srlnt.com
   Description . . . . . . . . . . . : Microsoft 6to4 Adapter
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes
   IPv6 Address. . . . . . . . . . . : 2002:6464:640b::6464:640b(Preferred)
   Default Gateway . . . . . . . . . :
   DNS Servers . . . . . . . . . . . : 10.0.0.32
                                       4.2.2.2
                                       8.8.8.8
   NetBIOS over Tcpip. . . . . . . . : Disabled

Tunnel adapter Teredo Tunneling Pseudo-Interface:

   Media State . . . . . . . . . . . : Media disconnected
   Connection-specific DNS Suffix  . :
   Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
   Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
   DHCP Enabled. . . . . . . . . . . : No
   Autoconfiguration Enabled . . . . : Yes

C:\Users\anupnair>
Hi, I have noticed some thing.

My Additional domain controller (100.100.100.11) shows only a shortcut in the SYSVOL folder.
Sysvol.bmp
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Hi Sandesh,
I have removed the public IP entries from the DNS & has primary DNS pointing to itself & the alternate pointing to first domain in the network.

Dcdiag /q output

C:\Documents and Settings\anupnair>dcdiag /q
         [Replications Check,PDCMUM] No replication recently attempted:
            From BEAS-DOMAIN-SER to PDCMUM
            Naming Context: DC=DomainDnsZones,DC=srlnt,DC=com
            The last attempt occurred at 2013-06-10 03:21:40 (about 11 hours ago
).
         [Replications Check,PDCMUM] No replication recently attempted:
            From BEAS-DOMAIN-SER to PDCMUM
            Naming Context: DC=ForestDnsZones,DC=srlnt,DC=com
            The last attempt occurred at 2013-06-10 03:21:40 (about 11 hours ago
).
         [Replications Check,PDCMUM] No replication recently attempted:
            From BEAS-DOMAIN-SER to PDCMUM
            Naming Context: CN=Schema,CN=Configuration,DC=srlnt,DC=com
            The last attempt occurred at 2013-06-10 03:21:40 (about 11 hours ago
).
         [Replications Check,PDCMUM] No replication recently attempted:
            From BEAS-DOMAIN-SER to PDCMUM
            Naming Context: CN=Configuration,DC=srlnt,DC=com
            The last attempt occurred at 2013-06-10 03:21:40 (about 11 hours ago
).
         [Replications Check,PDCMUM] No replication recently attempted:
            From BEAS-DOMAIN-SER to PDCMUM
            Naming Context: DC=srlnt,DC=com
            The last attempt occurred at 2013-06-10 03:21:39 (about 11 hours ago
).
         REPLICATION-RECEIVED LATENCY WARNING
         PDCMUM:  Current time is 2013-06-10 14:48:35.
            DC=DomainDnsZones,DC=srlnt,DC=com
               Last replication recieved from SRLADC-DR at 2013-05-25 16:20:05.
               Last replication recieved from BGLRADC at 2013-05-25 12:23:43.
               Last replication recieved from GGNADC at 2013-06-10 00:22:52.
            DC=ForestDnsZones,DC=srlnt,DC=com
               Last replication recieved from SRLADC-DR at 2013-05-25 16:20:05.
               Last replication recieved from BGLRADC at 2013-05-25 12:23:42.
               Last replication recieved from GGNADC at 2013-06-10 00:22:51.
            CN=Schema,CN=Configuration,DC=srlnt,DC=com
               Last replication recieved from SRLADC-DR at 2013-05-25 16:21:07.
               Last replication recieved from BGLRADC at 2013-05-25 12:22:35.
               Last replication recieved from GGNADC at 2013-06-10 02:29:09.
            CN=Configuration,DC=srlnt,DC=com
               Last replication recieved from SRLADC-DR at 2013-05-25 16:21:07.
               Last replication recieved from BGLRADC at 2013-05-25 12:20:40.
               Last replication recieved from GGNADC at 2013-06-10 02:29:09.
            DC=srlnt,DC=com
               Last replication recieved from SRLPDC at 2013-06-10 00:17:42.
               Last replication recieved from SRLADC-DR at 2013-05-25 16:25:35.
               Last replication recieved from BGLRADC at 2013-05-25 12:23:42.
               Last replication recieved from GGNADC at 2013-06-10 00:22:09.
         Warning: PDCMUM is not advertising as a time server.
         ......................... PDCMUM failed test Advertising
            NtFrs Service is stopped on [PDCMUM]
            Could not open w32time Service on [PDCMUM]:failed with 1060: The spe
cified service does not exist as an installed service.
         ......................... PDCMUM failed test Services
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 06/10/2013   14:26:25
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 06/10/2013   14:26:29
            (Event String could not be retrieved)
         An Error Event occured.  EventID: 0x00000457
            Time Generated: 06/10/2013   14:26:32
            (Event String could not be retrieved)
         ......................... PDCMUM failed test systemlog


.......................................................................................................................................................
repadmin /replsum output as folows

Replication Summary Start Time: 2013-06-10 15:02:12



Beginning data collection for replication summary, this may take awhile:

  ...........









Destination DC    largest delta    fails/total  %%  error

 BDCMUM                    38m:14s    0 /  10    0  

 BEAS-DOMAIN-SER  >60 days           15 /  18   83  (1722) The RPC server is unavailable.

 GGNADC            15d.22h:39m:27s    5 /  13   38  (1722) The RPC server is unavailable.

 PDCMUM                11h:40m:33s    0 /  15    0  

 SRLPDC           >60 days            6 /   9   66  (1722) The RPC server is unavailable.

 SRLSERVER             11h:36m:40s    0 /  15    0  





Experienced the following operational errors trying to retrieve replication information:

          58 - BGLRADC.srlnt.com

          58 - SRLADC-DR.srlnt.com
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Thank you all for helping me, resolve this issue
Thank you all for helping me, resolve this issue