Solved

AD Login Issues after DC demoted

Posted on 2014-12-04
9
102 Views
Last Modified: 2014-12-10
Here is my environment.  I had 1 2008 Domain Controller and 2 Server 2012 R2 DC's.  All of the roles are on DC1 (2012 R2 Server).  I just demoted the 2008  server and now login are taking forever, and users are having issues opening and saving documents to network drives.  I checked DNS and all "seems" well.  I run a repadmin /syncall and no errors are returned.

I saw errors in the event viewer regarding time... I then saw that the time server was the 2008 box.....  I configured the 2012 R2 box to get the time from an external source...  Now both of the DCs are syncing the time exactly the same....  I have also verified that the DHCP clients are poiinting to the correct DNS servers... both 2012 r2 boxes....

What am I missing.... please help!!
0
Comment
Question by:BSModlin
9 Comments
 
LVL 34

Expert Comment

by:Seth Simmons
ID: 40481197
what does netdom query fsmo show on the 2012 servers?
if the roles are between those servers then the 2008 server was not the time server since clients get their time from the server with the PDC emulator role
0
 

Author Comment

by:BSModlin
ID: 40481201
All roles are on the 2012 R2 server DC1, as they should..... What else to check for the slow logins?
0
 
LVL 34

Expert Comment

by:Seth Simmons
ID: 40481276
are the 2012 servers global catalogs?
0
 

Author Comment

by:BSModlin
ID: 40481289
Yes
0
 
LVL 10

Expert Comment

by:Walter Padrón
ID: 40481554
Have you raised the functional level of the domain?

Also, restart the KDC (Kerberos Key Distribution Center) service on both DC's

Best regards
0
 
LVL 19

Expert Comment

by:compdigit44
ID: 40487801
have you run a dcdiag /v /e >c:dcdiag.txt

Are saving files to the network the only thing that is slow? how about user logins from their workstations?

Was your old server running WINS?
0
 

Accepted Solution

by:
BSModlin earned 0 total points
ID: 40488903
Found the issue... It was my EMC SAN/NAS.... Had old DNS info in it, and user home directories where contributing to slow logon times..... thank you all!!
0
 

Author Comment

by:BSModlin
ID: 40488930
I've requested that this question be closed as follows:

Accepted answer: 0 points for BSModlin's comment #a40488903
Assisted answer: 167 points for Seth Simmons's comment #a40481197
Assisted answer: 167 points for Walter Padrón's comment #a40481554
Assisted answer: 166 points for compdigit44's comment #a40487801

for the following reason:

Found my own solution
0
 
LVL 34

Expert Comment

by:Seth Simmons
ID: 40488931
select your own comment as the solution
nobody else gets points since not all details were provided and none of us would have known your NAS was a contributing factor
0

Join & Write a Comment

I will assume you are running a non-server version of some sort of Windows throughout this article. There are many flavors of Windows since Windows Server 2000 - 2008, XP Home & Pro, Vista Home & Pro, and Windows 7 Starter, Home, Pro, Ultimate, etc.…
BIND is the most widely used Name Server. A Name Server is the one that translates a site name to it's IP address. There is a new bug in BIND (https://kb.isc.org/article/AA-01272), affecting all versions of BIND 9 from BIND 9.1.0 (inclusive) thro…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…

746 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now