Server 2008R2 Replication problem

Posted on 2014-02-05
Last Modified: 2014-02-12
My network is setup in a "hub and spoke" configuration with the main office being the hub and three branch locations.  All branches can communicate with the main office via VPN connections.  There are no firewalls blocking any internal traffic.

Main office subnet   Server Name: APP2 (2008R2) Server Name: TS  (2003R2)

Fraser branch subnet  Server Name: FRAS3 (2008R2)

Kremmling branch Server Name: KREM (2008R2)

Grand Lake branch  Server Name: GL
Each of the servers is a DC running AD integrated DNS.  All servers successfully resolve NSLOOKUP of each other.  All servers successfully reply to pings from APP2 server.

Just to be clear, all the branches have full two way unblocked communication with the main office, but they do not have direct communication to each other.  

The problem is, I had to do a dcpromo /forecremoval from a failed server named FRAS2 at Fraser  I replaced it with a server named FRAS3.  I promoted FRAS3 to a DC two days ago.  The server APP2 located at the main office holds all FSMO roles.  AD Sites and Services on APP2 at the main office did not have a ntds connection to FRAS3.  I manually created a connection.  I forced replication  and received the error "The naming context is in the process of being removed."  SEE ATTACHED SCREEN PRINT.  
How do I fix replicaiton?  I have downloaded Microsoft's AD Replication status tool and will post more information as it becomes available.
Question by:dbldiamond
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 2
LVL 19

Expert Comment

ID: 39835488
i take it you have gone through this article >>>

Author Comment

ID: 39835495
Yes, I have read the article but have not found any actions that resolve the issue.
LVL 19

Expert Comment

ID: 39835512
is it possible to initiate replication from app2?

there is this article which is more informative >>>>
Back Up Your Microsoft Windows Server®

Back up all your Microsoft Windows Server – on-premises, in remote locations, in private and hybrid clouds. Your entire Windows Server will be backed up in one easy step with patented, block-level disk imaging. We achieve RTOs (recovery time objectives) as low as 15 seconds.


Author Comment

ID: 39835529
FRAS successfully replicates to APP2.  When I try to force replication from APP2 to FRAS I get the error shown in the screen print.  APP2 is the main DC that should be replicating to all of the branch offices.  I am looking at the blog post you mentioned.  Will investigate further...
LVL 10

Expert Comment

by:Pramod Ubhe
ID: 39838204
per your screen shot, it is clear that most of the replication paths are manually configured.
It is common problem when you configure the replication paths manually.

By any chance, is there any possibility to delete manual paths and have KCC to auto-build replication topology?

Accepted Solution

dbldiamond earned 0 total points
ID: 39841579
Sorry I have not posted updates as I have been busy with this problem.  About two weeks ago one of the RAID1 mirrored drives failed.  I replaced the drive and the ARRAY rebuilt.  Apparently, when the drive failed, it created corruption in the AD.  I tried offline AD repair and DB compaction but that failed.  I purchased a Microsoft Support Incident and turned it over to their AD technicians.  I worked with three engineers over two days trying to repair the directory.  It's a very long story and MS Tech Support did many things that did not solve the problem.   Yesterday, the server was so hosed that I could not login in with domain or local administrator accounts in normal, safe, ore DSR Mode.  Ultimately, I decided to bite the bullet and rebuild the server.  Last night I pulled all the old hard drives from the server, installed new ones and rebuilt the server using a different name just to avoid any problems with old metadata.  Then I restored all our data from backup.  This morning I expect to have a few minor issues, but nothing serious.  So the answer for this situation was to rebuild a new server.  The issue that caused the problems to begin with was AD corruption due to HD failure.  

Thanks for the suggestions.  I will ask that this question be closed.

Author Comment

ID: 39841599
Pramod_ubhe, Yes the replication paths were created manually because the auto configure would not work.  I was trying desperately to force replication.  The server I had problems with as the PDC that held all FSMO roles.  I tried to transfer the roles gracefully but had to size the roles by another server.  The server that was not replicating that had the AD corruption, did manage to replicate to it's same site partner.  However, it appears that replication contained corrupt data.  Both the PDC and the same site partner had to be demoted to member servers.  Yesterday we were able to get the same site partner server promoted back up to a DC.  We attempted to promote APP2 backup up to a DC that failed.  Now that I have rebuilt the server, all NTDS connections are being automatically created.

Author Closing Comment

ID: 39852784
Ultimately this issue was created by hardware failure and the solution was to rebuild the server with new hard drives.

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

While rebooting windows server 2003 server , it's showing "active directory rebuilding indices please wait" at startup. It took a little while for this process to complete and once we logged on not all the services were started so another reboot is …
Active Directory security has been a hot topic of late, and for good reason. With 90% of the world’s organization using this system to manage access to all parts of their IT infrastructure, knowing how to protect against threats and keep vulnerabil…
This tutorial will show how to configure a single USB drive with a separate folder for each day of the week. This will allow each of the backups to be kept separate preventing the previous day’s backup from being overwritten. The USB drive must be s…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question