Solved

Server 2008 r2 missing netlogin and failed test advertising

Posted on 2014-03-09
3
351 Views
Last Modified: 2014-03-10
Hello,

We have a Server 2008 r2 machine promoted to domain controller with a current server 2000 DC.

When DCDIAG is run these errors occur:

1. failed test advertising

2. NetLogin share cannot be found

3. KDC cannot find a suitable certificate

We would like to resolve the issues before moving the FSMO roles over from the 2000 server.
0
Comment
Question by:networkadmin
3 Comments
 
LVL 57

Expert Comment

by:Mike Kline
ID: 39916528
Are there firewalls between the two DCs?   Just want to make sure the proper ports are open

Start with this KB  http://support.microsoft.com/kb/947022/en-us

What events are you seeing in your logs?

Thanks

Mike
0
 

Author Comment

by:networkadmin
ID: 39916547
No Firewalls are between the servers.

The log shows this after making the change shown by the above KB:

Log Name:      System
Source:        NETLOGON
Date:          3/9/2014 6:15:17 PM
Event ID:      5706
Task Category: None
Level:         Error
Keywords:      Classic

The Netlogon service could not create server share C:\Windows\SYSVOL\sysvol\domain.local\SCRIPTS.  The following error occurred:
The system cannot find the file specified.
0
 
LVL 13

Accepted Solution

by:
Santosh Gupta earned 500 total points
ID: 39917935
if you are unable to see the sysvol share then follow and enable the share.


Set the SysvolReady Flag registry value to "0" and then back to "1" in the registry.

 Click Start, click Run, type regedit, and then click OK.
 Locate the following subkey in Registry Editor:

 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters]

 In the details pane, right-click SysvolReady Flag, and then click Modify.
 In the Value data box, type 0 and then click OK.
 Again in the details pane, right-click SysvolReady Flag, and then click
 Modify.  In the Value data box, type 1, and then click OK.

 Then run NET SHARE and see if the SYSVOL and NETLOGON share is present.
------------------------------------

check if DNS is working fine with NSLOOKUP command.
0

Featured Post

Efficient way to get backups off site to Azure

This user guide provides instructions on how to deploy and configure both a StoneFly Scale Out NAS Enterprise Cloud Drive virtual machine and Veeam Cloud Connect in the Microsoft Azure Cloud.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article runs through the process of deploying a single EXE application selectively to a group of user.
This article outlines the process to identify and resolve account lockout in an Active Directory environment.
This tutorial will give a short introduction and overview of Backup Exec 2012 and how to navigate and perform basic functions. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as conne…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …

756 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question