Solved

DNS - DCDIAG - Records Registration fails from Client, but not from DC - Windows 2008 R2 Domain

Posted on 2013-06-28
5
856 Views
Last Modified: 2013-07-01
Greetings.  I've perused Experts Ex. for this problem and found several suggested solutions, none of which work.  When running:  dcdiag to test DNS from my workstation, the Records Registration test fails, showing missing SRV, CNAME and A records for the DC the test is run on.  We have three DCs and using any of them results in the same error.  The DNS settings on each DC are correct, in accordance with Microsoft best practices (1. Other internal DNS, 2. Other internal DNS, 3.127.0.0.1).

I've run ipconfig /registerdns for each DC - no fix.

I've checked that IPv6 ::1 are not listed as the first DNS servers.

I've run NLTEST /DSREGDNS to reregister DNS records for DCs.

When running the same DCDIAG test directly from the DCs, all tests pass.

Is this something I should be concerned with or just ignore ?

Thanks much.
Screen cap below:

=============================================


C:\Windows\system32>DCDIAG /s:XXXXXX /TEST:DNS

Directory Server Diagnosis

Performing initial setup:
   * Identified AD Forest.
   Done gathering initial info.

Doing initial required tests

   Testing server: Default-First-Site-Name\XXXXXX
      Starting test: Connectivity
         ......................... XXXXXX passed test Connectivity

Doing primary tests

   Testing server: Default-First-Site-Name\XXXXXX

      Starting test: DNS

         DNS Tests are running and not hung. Please wait a few minutes...
         ......................... XXXXXX passed test DNS

   Running partition tests on : ForestDnsZones

   Running partition tests on : DomainDnsZones

   Running partition tests on : Schema

   Running partition tests on : Configuration

   Running partition tests on : OUR_DOMAIN

   Running enterprise tests on : OUR_DOMAIN.LOCAL
      Starting test: DNS
         Test results for domain controllers:

            DC: XXXXXX.OUR_DOMAIN.LOCAL
            Domain: OUR_DOMAIN.LOCAL


               TEST: Records registration (RReg)
                  Network Adapter [00000012] Microsoft Virtual Machine Bus Network Adapter:
                     Warning:
                     Missing CNAME record at DNS server 192.168.1.30:
                     abb446ee-2257-4aec-a703-0ed71db0c6cd._msdcs.OUR_DOMAIN.LOCAL

                     Warning:
                     Missing A record at DNS server 192.168.1.30:
                     XXXXXX.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _ldap._tcp.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _ldap._tcp.e7017361-fefa-4b77-8b14-7cc8f684ea19.domains._msdcs.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _kerberos._tcp.dc._msdcs.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _ldap._tcp.dc._msdcs.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _kerberos._tcp.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _kerberos._udp.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _kpasswd._tcp.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _ldap._tcp.Default-First-Site-Name._sites.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _kerberos._tcp.Default-First-Site-Name._sites.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _ldap._tcp.gc._msdcs.OUR_DOMAIN.LOCAL

                     Warning:
                     Missing A record at DNS server 192.168.1.30:
                     gc._msdcs.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _gc._tcp.Default-First-Site-Name._sites.OUR_DOMAIN.LOCAL

                     Error:
                     Missing SRV record at DNS server 192.168.1.30:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.OUR_DOMAIN.LOCAL

               Error: Record registrations cannot be found for all the network adapters

         Summary of DNS test results:

                                            Auth Basc Forw Del  Dyn  RReg Ext
            _________________________________________________________________
            Domain: OUR_DOMAIN.LOCAL
               XXXXXX                       PASS PASS PASS PASS PASS FAIL n/a

         ......................... OUR_DOMAIN.LOCAL failed test DNS

C:\Windows\system32>
0
Comment
Question by:lapavoni
  • 3
  • 2
5 Comments
 
LVL 23

Expert Comment

by:Thomas Grassi
Comment Utility
What OS is this computer?

Have you tried nslookup from this computer? internal and external

can you ping FQDN of any server from this computer?

have you tried ipconfig /flushdns
0
 

Author Comment

by:lapavoni
Comment Utility
Windows 7 Pro
nslookup works fine ... internal an external resolution
Yes, can ping FQDN of all DCs and other machines on network
Have run ipconfig /flushdns too many times to count :-)
0
 
LVL 23

Accepted Solution

by:
Thomas Grassi earned 500 total points
Comment Utility
lets try this

NLTEST /DSREGDNS - Force registration of all DC-specific DNS records
0
 

Author Comment

by:lapavoni
Comment Utility
Did that already. It's in the question. Tried again .... nada.
0
 

Author Closing Comment

by:lapavoni
Comment Utility
Not definitive, but good suggestions.
0

Featured Post

Are end users causing IT problems again?

You’ve taken the time to design and update all your end user’s email signatures, only to find out they’re messing up the HTML, changing the font and ruining the imagery. What can you do to prevent this? Find out how you can save your signatures from end users today.

Join & Write a Comment

Some time ago I faced the need to use a uniform folder structure that spanned across numerous sites of an enterprise to be used as a common repository for the Software packages of the Configuration Manager 2007 infrastructure. Because the procedu…
Have you considered what group policies are backwards and forwards compatible? Windows Active Directory servers and clients use group policy templates to deploy sets of policies within your domain. But, there is a catch to deploying policies. The…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…
This video demonstrates how to create an example email signature rule for a department in a company using CodeTwo Exchange Rules. The signature will be inserted beneath users' latest emails in conversations and will be displayed in users' Sent Items…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

6 Experts available now in Live!

Get 1:1 Help Now