Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
  • Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 362
  • Last Modified:

Issue promoting server to a Domain Controller 2012 Stardard R2

Hello,

We have an existing domain that has a Windows Server 2012 Standard DC/DNS server.  We are adding another server that is Windows 2012 Standard R2 as another DC and DNS server.  We brought the server online, added to the domain and added the ADDS role.

When promoting the server to a DC, the configuration hangs at the following step:

"Creating the NTDS Settins object for this Active Directory Domain COntroller on the remote AD DC fhSQL1.FHSaaS1.local"

In the event viewer Directory services log this is there:

The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.
 
Domain controller:
fhsql1.FHSaaS1.local
 
Additional Data
Error value:
8524 The DSA operation is unable to proceed because of a DNS lookup failure.


Here is the script from the wizard:
#
# Windows PowerShell script for AD DS Deployment
#

Import-Module ADDSDeployment
Install-ADDSDomainController `
-NoGlobalCatalog:$false `
-Credential (Get-Credential) `
-CriticalReplicationOnly:$false `
-DatabasePath "C:\Windows\NTDS" `
-DomainName "FHSaaS1.local" `
-InstallDns:$false `
-LogPath "C:\Windows\NTDS" `
-NoRebootOnCompletion:$false `
-SiteName "Default-First-Site-Name" `
-SysvolPath "C:\Windows\SYSVOL" `
-Force:$true

This is a very straight forward task that I cannot get to work.  Passwords are correct.  I can ping using UNC..thoughts?
0
posae
Asked:
posae
  • 4
  • 4
2 Solutions
 
it_saigeDeveloperCommented:
Just got to ask, but does this server have a single NIC that is statically set with the correct IP Scheme and is it's primary DNS server the current *active* DC on the domain?  If the server has multiple NIC's are the unused ones disabled?

-saige-
0
 
posaeAuthor Commented:
There are actually 3 connections (these are virtual servers in a Rackspace cloud).  It is statically set with the correct IP Scheme.  Yes the DNS server is the current active dc on the domain.  I have also configured the DNS server to only respond to DNS requests on the local IP scheme that the issue server is using
0
 
it_saigeDeveloperCommented:
0
Simplify Active Directory Administration

Administration of Active Directory does not have to be hard.  Too often what should be a simple task is made more difficult than it needs to be.The solution?  Hyena from SystemTools Software.  With ease-of-use as well as powerful importing and bulk updating capabilities.

 
it_saigeDeveloperCommented:
Also try running a 'dcdiag /test:dns' from your *active* DC.  Do you get any errors?

-saige-
0
 
posaeAuthor Commented:
so there are a bunch of errors, however, I don't care about anything that is not 192.168.4.0.  Does anything pop out?


Directory Server Diagnosis


Performing initial setup:

   Trying to find home server...

   Home Server = fhsql1

   * Identified AD Forest.
   Done gathering initial info.


Doing initial required tests

   
   Testing server: Default-First-Site-Name\FHSQL1

      Starting test: Connectivity

         ......................... FHSQL1 passed test Connectivity



Doing primary tests

   
   Testing server: Default-First-Site-Name\FHSQL1

   
      Starting test: DNS

         

         DNS Tests are running and not hung. Please wait a few minutes...

         ......................... FHSQL1 passed test DNS

   
   Running partition tests on : ForestDnsZones

   
   Running partition tests on : DomainDnsZones

   
   Running partition tests on : Schema

   
   Running partition tests on : Configuration

   
   Running partition tests on : FHSaaS1

   
   Running enterprise tests on : FHSaaS1.local

      Starting test: DNS

         Test results for domain controllers:

           
            DC: fhsql1.FHSaaS1.local

            Domain: FHSaaS1.local

           

                 
               TEST: Basic (Basc)
                  Warning: adapter [00000010] Citrix PV Ethernet Adapter has

                  invalid DNS server: 173.203.4.9 (<name unavailable>)

                  Warning: adapter [00000010] Citrix PV Ethernet Adapter has

                  invalid DNS server: 173.203.4.8 (<name unavailable>)

                  Warning: adapter [00000011] Citrix PV Ethernet Adapter has

                  invalid DNS server: 173.203.4.9 (<name unavailable>)

                  Warning: adapter [00000011] Citrix PV Ethernet Adapter has

                  invalid DNS server: 173.203.4.8 (<name unavailable>)

                  Warning: The A record for this DC was not found
                  Warning: The AAAA record for this DC was not found
                  No host records (A or AAAA) were found for this DC

                 
               TEST: Forwarders/Root hints (Forw)
                  Error: All forwarders in the forwarder list are invalid.

                 
               TEST: Records registration (RReg)
                  Network Adapter [00000010] Citrix PV Ethernet Adapter:

                     Warning:
                     Missing CNAME record at DNS server 173.203.4.9:
                     db4b1d02-5b9a-44ff-9e37-8257c2fa783f._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing A record at DNS server 173.203.4.9:
                     fhsql1.FHSaaS1.local
                     
                     Warning:
                     Missing AAAA record at DNS server 173.203.4.9:
                     fhsql1.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.651306d2-0481-41a4-9986-2eaf019fb616.domains._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._tcp.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._udp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kpasswd._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.gc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing A record at DNS server 173.203.4.9:
                     gc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing AAAA record at DNS server 173.203.4.9:
                     gc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _gc._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.pdc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing CNAME record at DNS server 173.203.4.8:
                     db4b1d02-5b9a-44ff-9e37-8257c2fa783f._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing A record at DNS server 173.203.4.8:
                     fhsql1.FHSaaS1.local
                     
                     Warning:
                     Missing AAAA record at DNS server 173.203.4.8:
                     fhsql1.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.651306d2-0481-41a4-9986-2eaf019fb616.domains._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._tcp.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._udp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kpasswd._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.gc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing A record at DNS server 173.203.4.8:
                     gc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing AAAA record at DNS server 173.203.4.8:
                     gc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _gc._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.pdc._msdcs.FHSaaS1.local
                     
                  Network Adapter [00000011] Citrix PV Ethernet Adapter:

                     Warning:
                     Missing CNAME record at DNS server 173.203.4.9:
                     db4b1d02-5b9a-44ff-9e37-8257c2fa783f._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing A record at DNS server 173.203.4.9:
                     fhsql1.FHSaaS1.local
                     
                     Warning:
                     Missing AAAA record at DNS server 173.203.4.9:
                     fhsql1.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.651306d2-0481-41a4-9986-2eaf019fb616.domains._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._tcp.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._udp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kpasswd._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _kerberos._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.gc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing A record at DNS server 173.203.4.9:
                     gc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing AAAA record at DNS server 173.203.4.9:
                     gc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _gc._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.9:
                     _ldap._tcp.pdc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing CNAME record at DNS server 173.203.4.8:
                     db4b1d02-5b9a-44ff-9e37-8257c2fa783f._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing A record at DNS server 173.203.4.8:
                     fhsql1.FHSaaS1.local
                     
                     Warning:
                     Missing AAAA record at DNS server 173.203.4.8:
                     fhsql1.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.651306d2-0481-41a4-9986-2eaf019fb616.domains._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._tcp.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._udp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kpasswd._tcp.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.gc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing A record at DNS server 173.203.4.8:
                     gc._msdcs.FHSaaS1.local
                     
                     Warning:
                     Missing AAAA record at DNS server 173.203.4.8:
                     gc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _gc._tcp.Default-First-Site-Name._sites.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.FHSaaS1.local
                     
                     Error:
                     Missing SRV record at DNS server 173.203.4.8:
                     _ldap._tcp.pdc._msdcs.FHSaaS1.local
                     
               Warning: Record Registrations not found in some network adapters

         
         Summary of test results for DNS servers used by the above domain

         controllers:

         

            DNS server: 173.203.4.8 (<name unavailable>)

               3 test failure on this DNS server

               Name resolution is not functional. _ldap._tcp.FHSaaS1.local. failed on the DNS server 173.203.4.8
               
            DNS server: 173.203.4.9 (<name unavailable>)

               3 test failure on this DNS server

               Name resolution is not functional. _ldap._tcp.FHSaaS1.local. failed on the DNS server 173.203.4.9
               
            DNS server: 128.8.10.90 (d.root-servers.net.)

               1 test failure on this DNS server

               PTR record query for the 1.0.0.127.in-addr.arpa. failed on the DNS server 128.8.10.90              
         Summary of DNS test results:

         
                                            Auth Basc Forw Del  Dyn  RReg Ext
            _________________________________________________________________
            Domain: FHSaaS1.local

               fhsql1                       PASS FAIL FAIL PASS PASS WARN n/a  
         
         ......................... FHSaaS1.local failed test DNS
0
 
it_saigeDeveloperCommented:
Please provide the results of:

netsh interface ipv4 show config

-saige-
0
 
posaeAuthor Commented:
Hello...so it looks like i have solved the issue...but your posts DID help me to do so.  When we create all of our VMs (in Rackspace), it is assumed that we do not have a DNS server so all of our virtual NICs have a DNS server configured that is not on our network.  I had to change all of the NICS for BOTH VMs to point to the existing DNS server.  Once i did that, the dcdiag /test:dns worked perfectly and the DCPROMO worked instantly.

Thanks for your help.  without the troubleshooting commands I would not have stumbled across this.
0
 
posaeAuthor Commented:
was able to solve the issue on my own but the information provided by the expert did help
0

Featured Post

What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

  • 4
  • 4
Tackle projects and never again get stuck behind a technical roadblock.
Join Now