Solved

Unable to manually add a host record in Windows 2008 R2 DNS after DC Promo

Posted on 2014-07-17
7
1,504 Views
Last Modified: 2014-07-23
Hi All,

      I have recently introduced a new Windows 2008 R2 DC in our Windows 2003 Domain Environment. I have a strange issue on adding a host A record on the new W2K8 R2 DC's DNS. Everytime I try to add a record, I would get the following error prompt:

The host record xxxx.mydomain.local cannot be created. Refused

If I look at the DNS event log on the W2K8 DC, it would show the following error event:

Event ID 4015 Source: DNS-Server-Service

The DNS server has encountered a critical error from the Active Directory. Check that the Active Directory is functioning properly. The extended error debug information (which may be empty) is "0000051B: AtrErr: DSID-030F1F8D, #1:
      0: 0000051B: DSID-030F1F8D, problem 1005 (CONSTRAINT_ATT_TYPE), data 0, Att 20119 (nTSecurityDescriptor)". The event data contains the error.

---------------------------------------------------------------------------------------------------------------------------------------------------------


I can manually add the host record without any issue on the W2K3 DC, and it would replicated correctly to the W2K8 DC. Any idea how can I fix this issue?

Thank you.
0
Comment
Question by:livets
  • 4
  • 3
7 Comments
 
LVL 14

Expert Comment

by:Ben Hart
ID: 40203168
I'd say run a dcdiag on both machines and compare the results.  Also a replmon (2008) and repadmin /showrepl (2003).  Verify there's no errors anywhere.

Also what's your functional level?
0
 

Author Comment

by:livets
ID: 40203183
Hi Ben,

       Dcdiag on both W2K3 and W2K8 R2 dc pass without any error, repadmin /showrepl show success replication on both DC as well. My forest and domain functional level are Windows 2003.
0
 
LVL 14

Expert Comment

by:Ben Hart
ID: 40203196
Hmm.. did you move any FSMO roles to the 2008?  Did you run  adprep /forestprep and adprep /domainprep as well?
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 

Author Comment

by:livets
ID: 40204214
I have move all FSMO to the W2K8 R2 DC, yes adprep has been ran.
0
 

Accepted Solution

by:
livets earned 0 total points
ID: 40204597
The issue has been resolved after restarting active directory domain service.
0
 
LVL 14

Expert Comment

by:Ben Hart
ID: 40204609
heh. I was going to ask you if you;d rebooted lately, but figured that'd have been a stupid question lol.
0
 

Author Closing Comment

by:livets
ID: 40213729
The solution was tested after restarting AD DS service, and it indeed fix the problem.
0

Featured Post

Complete VMware vSphere® ESX(i) & Hyper-V Backup

Capture your entire system, including the host, with patented disk imaging integrated with VMware VADP / Microsoft VSS and RCT. RTOs is as low as 15 seconds with Acronis Active Restore™. You can enjoy unlimited P2V/V2V migrations from any source (even from a different hypervisor)

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I was supporting a handful of Windows 2008 (non-R2) 2 node clusters with shared quorum disks. Some had SQL 2008 installed and some were just a vendor application that we supported. For the purposes of this article it doesn’t really matter which so w…
A procedure for exporting installed hotfix details of remote computers using powershell
This tutorial will show how to push an installation of Backup Exec to an additional server in both 2012 and 2014 versions of the software. Click on the Backup Exec button in the upper left corner. From here, select Installation and Licensing, then I…
This tutorial will give a an overview on how to deploy remote agents in Backup Exec 2012 to new servers. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as connecting to a remote Back…

840 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question