Solved

Unable to login to DC and DCDIAG errors

Posted on 2013-10-23
3
215 Views
Last Modified: 2014-03-28
After restarting our primary DC, we are not able to login to the server with Domain Admin account. From a second DC, DCDIAG gives the following error (Windows Svr 2008):
         Role Schema Owner = CN=NTDS Settings,CN=LEASVRDCO02,CN=Servers,CN=Defa
lt-First-Site-Name,CN=Sites,CN=Configuration,DC=LEALGROUP,DC=LOCAL
         [LEASVRDCO02] DsBindWithSpnEx() failed with error -2146893022,
         The target principal name is incorrect..
         Warning: LEASVRDCO02 is the Schema Owner, but is not responding to DS
         RPC Bind.
         [LEASVRDCO02] LDAP bind failed with error 8341,
         A directory service error has occurred..
         Warning: LEASVRDCO02 is the Schema Owner, but is not responding to
         LDAP Bind.
         Role Domain Owner = CN=NTDS Settings,CN=LEASVRDCO02,CN=Servers,CN=Defa
lt-First-Site-Name,CN=Sites,CN=Configuration,DC=LEALGROUP,DC=LOCAL
         Warning: LEASVRDCO02 is the Domain Owner, but is not responding to DS
         RPC Bind.
         Warning: LEASVRDCO02 is the Domain Owner, but is not responding to
         LDAP Bind.
         Role PDC Owner = CN=NTDS Settings,CN=LEASVRDCO02,CN=Servers,CN=Default
First-Site-Name,CN=Sites,CN=Configuration,DC=LEALGROUP,DC=LOCAL
         Warning: LEASVRDCO02 is the PDC Owner, but is not responding to DS RPC
         Bind.
         Warning: LEASVRDCO02 is the PDC Owner, but is not responding to LDAP
         Bind.
         Role Rid Owner = CN=NTDS Settings,CN=LEASVRDCO02,CN=Servers,CN=Default
First-Site-Name,CN=Sites,CN=Configuration,DC=LEALGROUP,DC=LOCAL
         Warning: LEASVRDCO02 is the Rid Owner, but is not responding to DS RPC
         Bind.
         Warning: LEASVRDCO02 is the Rid Owner, but is not responding to LDAP
         Bind.
         Role Infrastructure Update Owner = CN=NTDS Settings,CN=LEASVRDCO02,CN=
ervers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LEALGROUP,DC=LOC
L
         Warning: LEASVRDCO02 is the Infrastructure Update Owner, but is not
         responding to DS RPC Bind.
         Warning: LEASVRDCO02 is the Infrastructure Update Owner, but is not
         responding to LDAP Bind.
0
Comment
Question by:LealIT
  • 2
3 Comments
 
LVL 9

Expert Comment

by:VirastaR
ID: 39593875
Hi,

Check this..similar kind of scenario

Replication between two DC's is broken during 5 month, how to restore it?
http://social.technet.microsoft.com/Forums/windowsserver/en-US/bb0c1b17-ffff-4cbc-b33e-7f85b0ebdbd3/replication-between-two-dcs-is-broken-during-5-month-how-to-restore-it

Replication Issue: The target principal name is incorrect
http://www.experts-exchange.com/Networking/Windows_Networking/Q_22447953.html

Hope that helps :)
0
 

Accepted Solution

by:
LealIT earned 0 total points
ID: 39949640
The solutions above were of no help. We resolved our issue by having to seize the FSMO roles as per the article below.

http://www.petri.co.il/seizing_fsmo_roles.htm#
0
 

Author Closing Comment

by:LealIT
ID: 39961041
This was the only solution that worked for us.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

The password reset disk is often mentioned as the best solution to deal with the lost Windows password problem. In Windows 2008, 7, Vista and XP, a password reset disk can be easily created. But besides Windows 7/Vista/XP, Windows Server 2008 and ot…
Issue: One Windows 2008 R2 64bit server on the network unable to connect to a buffalo Device (Linkstation) with firmware version 1.56. There are a total of four servers on the network this being one of them. Troubleshooting Steps: Connect via h…
This tutorial will walk an individual through setting the global and backup job media overwrite and protection periods in Backup Exec 2012. Log onto the Backup Exec Central Administration Server. Examine the services. If all or most of them are stop…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

778 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question