Solved

SYSVOL at branch site not same as HQ site

Posted on 2014-02-04
10
338 Views
Last Modified: 2014-02-10
Our AD comprises of 2 Sites and 3DCS (All Windows Server 2008 R2, forest and domain functional levels also 2008 R2)

Our Head Office has 2 DCs and our branch office (4k miles away) has 1 DC.

The branch office DC has a SYSVOL folder that is different to the Head office SYSVOL folder.

I have attached DCDIAG output, be grateful for any help/advice on resolving this issue.
dcdiag.log
0
Comment
Question by:antonioking
  • 5
  • 4
10 Comments
 
LVL 9

Expert Comment

by:Ahmed786
ID: 39832319
Is your Group policies working fine on both sites ?
0
 
LVL 9

Expert Comment

by:Ahmed786
ID: 39832351
Check below few command and update us the output.

¿      Repadmin /showrepl & Repadmin /Syncall DCName

¿      Dcdiag /s:Serverdc01 /test:replications

¿      Dcdiag /s:Serverdc01 /test:netlogons


So if u have not ran below command pls get it and update us the output.

C:\>Dcdiag /s:DCName --> Enter
0
 

Author Comment

by:antonioking
ID: 39832482
Repadmin /showrepl displayed errors (see attached)
Repadmin /Syncall HQDC01 terminated with no errors.

Dcdiag /s:HQDC01 /test:replications passed all tests without any failures
Dcdiag /s:HQDC01 /test:netlogons passed all tests without any failures

I have also attached results from DCdiag /s:BRANCHDC

Thanks for your help!
repadminshowrepl.log
dcdiag.log
0
 
LVL 53

Expert Comment

by:Will Szymkowski
ID: 39832581
Take a look at the below link which illustrates common replication issues and ways to resolve them. Make sure that the DC in the remote site has the proper time.

Troubleshooting Steps for AD Replication

If you cannot get Sysvol to replicate properly, you may need to demote that DC in the branch office and promote it again and allow replication to happen.

Will.
0
 
LVL 9

Expert Comment

by:Ahmed786
ID: 39832627
Have u checked your Group Policy, is it working fine ?

gpupdate /force --> Enter


Also check your DNS Server settings IP address and all IP on Dcs as well


Also ensure the following on DC:
1. Each DC / DNS server points to its private IP address as primary DNS server and other remote/local DNS servers as secondary in TCP/IP properties.
2. Each DC has just one IP address and single network adapter is enabled.
3. Contact your ISP and get valid DNS IPs from them and add it in to the forwarders, Do not set public DNS server in TCP/IP setting of DC.
4. Once you are done, run "ipconfig /flushdns & ipconfig /registerdns", restart DNS and NETLOGON service each DC.
5.Also, disable local windows firewall service, by default it is enabled in vista/windows 2008 and above
0
 
LVL 9

Expert Comment

by:Ahmed786
ID: 39832945
You may go through below microsoft article as well to resolve ur mentioned related errors.

http://support.microsoft.com/kb/2183411/en-gb
0
 
LVL 9

Expert Comment

by:Ahmed786
ID: 39838316
Is your issue resolved ?
0
 

Accepted Solution

by:
antonioking earned 0 total points
ID: 39838367
Yes, I demoted and re-promoted the DC and everything is replicating fine now.
0
 

Author Comment

by:antonioking
ID: 39838385
Thanks for your help, sorry I didn't go through the MS article. I needed a quick resolution.
Appreciate it doesn't help me or anyone else find the root cause but demoting and re-promoting certainly fixed the problem.!
0
 

Author Closing Comment

by:antonioking
ID: 39846864
Demoting/Promoting resolved the issue
0

Join & Write a Comment

New Windows 7 Installations take days for Windows-Updates to show up and install. This can easily be fixed. I have finally decided to write an article because this seems to get asked several times a day lately. This Article and the Links apply to…
Is your Office 365 signature not working the way you want it to? Are signature updates taking up too much of your time? Let's run through the most common problems that an IT administrator can encounter when dealing with Office 365 email signatures.
This tutorial will give a short introduction and overview of Backup Exec 2012 and how to navigate and perform basic functions. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as conne…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now