Solved

You do not have administrative privileges on the server 'servername' ?

Posted on 2014-01-15
9
3,476 Views
Last Modified: 2014-01-23
Good morning EE's,

I would like to post a question which i really expecting a solution.

I got 2 domain in one single forest.

Domain 1: hg.corp
Domain 2: iac.corp (iac.corp is a tree domain under hg.corp forest)
Trust : Transitive trust between hg.corp and iac.corp

Domain controller 1: dc.hg.corp (for hg.corp)
Domain controller 2: iacdc.iac.corp (for iac.corp)

I want to make a Fail-over cluster between this 2 domain controllers ( But both are in different domain literally, but in same forest )

Process Validate cluster in dc.hg.corp
dc.hg.corp can added, but iacdc.iac.corp failed (Error: You do not have administrative privilages on the server 'iacdc')

Process Validate cluster in iacdc.iac.corp
iacdc.iac.corp can added, but dc.hg.corp failed (Error: You do not have administrative privilages on the server 'dc.hg.corp')

EE's please provide me a solution for this issue, So i can reduce server box counts.

Thank you
Shamil
hg.jpg
iac.jpg
0
Comment
Question by:Shamil Mohamed
  • 5
  • 4
9 Comments
 
LVL 36

Expert Comment

by:Mahesh
ID: 39784680
In reality domain controllers high availability shouldn't be build with failover cluster.

You can have each domain ADC each within every site to get redundency and clients must be having preferred and alternate DNS servers set in tcp/ip so that if primary server gone down, secondary will take care of that.

Mahesh
0
 
LVL 1

Author Comment

by:Shamil Mohamed
ID: 39784923
I tried this scenario with with ad joined nodes also as a test.. Scenarios as below.

Cluster node 1: member01.hg.corp
Cluster node 2: member01.iac.corp

But it ends up with same isssue as "You do not have administrative privileges on the server".

I look forward to a solution. Kindly provide some ideas please.
0
 
LVL 36

Expert Comment

by:Mahesh
ID: 39784958
Ok
Does your domain account you used to logon on member servers is member of local administrator on both servers ?
The requirement is that whatever user is logged on to the cluster nodes to run validation must be a local admin on each node in that cluster.

Does remote registry and server service is running on both servers ?
If not please start it
Also disable firewll completely on both servers by running below command in elevated command prompt
netsh advfirewall set allprofiles state off

Mahesh
0
Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

 
LVL 1

Author Comment

by:Shamil Mohamed
ID: 39785042
I logged in with domain administrators only.
0
 
LVL 1

Author Comment

by:Shamil Mohamed
ID: 39785114
Bro i rectified this my adding parent domain administrator to tree domain controller local administrator group with below mentioned command:

net localgroup administrators hg.corp\administrator /add

Once after the cluster validation will update... thank youuuuu.....

-
Shamil
0
 
LVL 1

Author Comment

by:Shamil Mohamed
ID: 39785138
Hi,

I came up with an error once after adding the nodes from different domains as attached picture.

Please help me in this.

Thank you.
Shamil
TestSvr-01-2014-01-16-20-40-26.png
0
 
LVL 36

Accepted Solution

by:
Mahesh earned 500 total points
ID: 39785931
It seems from screen shots that you are trying to add servers from different domains to a cluster which is just not supported
I can see you are trying to build cluster with domain controllers in different domains which is simply not required and not supported.
You must add member servers from same domain to cluster

This will not achieve any high availability since both domain controllers domain directory partition is different and this is not the way to achieve domain controllers HA

Please check my 1st comment for possible HA scenario

Mahesh
0
 
LVL 1

Author Comment

by:Shamil Mohamed
ID: 39803942
Thank you Mahesh.. thanks alot for your support..
Mahesh if you don't mind may I have your Skype ID. Thanks again.
-shamil
0
 
LVL 36

Expert Comment

by:Mahesh
ID: 39804022
Hi Shamil,

I am not using Skype

I am here on this forum to help.

Mahesh
0

Featured Post

Free Tool: Postgres Monitoring System

A PHP and Perl based system to collect and display usage statistics from PostgreSQL databases.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Disk Quota Windows 2012 R2 6 96
Windows 2012 R2 Terminal Server 3 32
Migrating a Linux server to VMware 3 51
windows server 2012 R2 DHCP clustering ? 5 18
OfficeMate Freezes on login or does not load after login credentials are input.
The recent Microsoft changes on update philosophy for Windows pre-10 and their impact on existing WSUS implementations.
In this Micro Tutorial viewers will learn how to restore single file or folder from Bare Metal backup image of their system. Tutorial shows how to restore files and folders from system backup. Often it is not needed to restore entire system when onl…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

809 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question