Link to home
Start Free TrialLog in
Avatar of wjl3698
wjl3698Flag for United States of America

asked on

Server 2008r2 DNS corrupt, can't fix

One of our staff was trying to fix DNS issues, they deleted the DNS, now we can't start the netlogon, dcdiag has errors.  I will attach it.  We are down, the users will be there at 8am EST, please help.  I will pull a addiag report and attach.  It appears my dns/fsmo roles may be messed up.
dcdiag2.txt
Avatar of arnold
arnold
Flag of United States of America image

What was done?

Do you have another server on which you can install the DNS service?
The DNS is AD integrated,

Is the DNS service still installed and is running?
Avatar of wjl3698

ASKER

my employee was trying to fix some issues with dns, but he removed it.  then he said he tried to put it back but the information seemed to be there but the active directory won't work.  

No we don't have another server, this is the only one.
When I go to the DNS management the only thing is under the reverser lookup zone and that is my server ip address.  attaching my addiag now.
addiag.txt
DO you have forward ZONES
You may need to add your AD domain to the FORWARD zones as well as _msdcs.AD_DOMAINNAME
make sure they are AD integrated zones

you need to run the command nltest /DSREGDNS

What was the person supposed to FIX?
what does your DNS looks like?
Avatar of wjl3698

ASKER

I ran the nltest/dsregdns the results are I_netlogoncontrol failed: status = 1717 0x6b5 rpc_s_unknown_if

It didn't have a  _msdcs.AD_DOMAINNAME he was running the best practice analysis to correct whatever needed.  

I had to go to sleep is the reason for my delay responding.   Thank you for all your help.  I am adding my forward zone now.  It's like the services are not running.   I can start the time or the netlogon
Avatar of wjl3698

ASKER

Was running Best Practice Analyzer on the server. which returned 33 ' Errors ' when it was completed. after doing some reading about a few of the errors people were saying the DNS was messed up. i was missing  _msdcs.AD_DOMAINNAME folder which should have the dc/ac sub folders below that, i compared to another server we have and sure enough we were missing those zones, i couldn't create the zones because it was saying name already existed. i removed DNS Role and rebooted and reinstalled DNS role but the same information is there. we are missing sub folders under the domain, ill attach a picture and ill attach another picture of a working server on what im talking about. when we first installed this server when we installed AD Role it auto installed DNS and created the DNS for us to work with AD. when i reinstalled DNS after removing the role no information was there and i couldn't get it to talk to the AD.

please help.
Avatar of wjl3698

ASKER

here is another server with working DNS. compare them and you see the issue.
Avatar of wjl3698

ASKER

User generated imageUser generated image
ASKER CERTIFIED SOLUTION
Avatar of VB ITS
VB ITS
Flag of Australia image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of wjl3698

ASKER

We are looking at that now.
did you try hitting the reload on the forwarding zones?

try right-clicking on the DNS server and select the tasks and configure DNS server, see whether that brings the AD zones back in.

Without knowing what the issue was that needed to be corrected and what was done, it is hard to guess how to reverse this when there is no additional server even Virtual for a short time.

Could the person have reconfigured the DNS service settings such that ad zone was excluded?

.......
Avatar of wjl3698

ASKER

we are doing a full c: drive image restore.  Then we can see what is needed from that stand point.
hopefully, before you started the full image restored, you copied off the files/data that was changed since the image was taken to a separate/external data source.
Avatar of wjl3698

ASKER

the data was stored on a Q: Data 240gig SSD drive. C was only used for windows. server is back up. thanks