AD Login Issues after DC demoted

Here is my environment.  I had 1 2008 Domain Controller and 2 Server 2012 R2 DC's.  All of the roles are on DC1 (2012 R2 Server).  I just demoted the 2008  server and now login are taking forever, and users are having issues opening and saving documents to network drives.  I checked DNS and all "seems" well.  I run a repadmin /syncall and no errors are returned.

I saw errors in the event viewer regarding time... I then saw that the time server was the 2008 box.....  I configured the 2012 R2 box to get the time from an external source...  Now both of the DCs are syncing the time exactly the same....  I have also verified that the DHCP clients are poiinting to the correct DNS servers... both 2012 r2 boxes....

What am I missing.... please help!!
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Seth SimmonsSr. Systems AdministratorCommented:
what does netdom query fsmo show on the 2012 servers?
if the roles are between those servers then the 2008 server was not the time server since clients get their time from the server with the PDC emulator role
BSModlinAuthor Commented:
All roles are on the 2012 R2 server DC1, as they should..... What else to check for the slow logins?
Seth SimmonsSr. Systems AdministratorCommented:
are the 2012 servers global catalogs?
Determine the Perfect Price for Your IT Services

Do you wonder if your IT business is truly profitable or if you should raise your prices? Learn how to calculate your overhead burden with our free interactive tool and use it to determine the right price for your IT services. Download your free eBook now!

BSModlinAuthor Commented:
Walter PadrónCommented:
Have you raised the functional level of the domain?

Also, restart the KDC (Kerberos Key Distribution Center) service on both DC's

Best regards
have you run a dcdiag /v /e >c:dcdiag.txt

Are saving files to the network the only thing that is slow? how about user logins from their workstations?

Was your old server running WINS?
BSModlinAuthor Commented:
Found the issue... It was my EMC SAN/NAS.... Had old DNS info in it, and user home directories where contributing to slow logon times..... thank you all!!

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
BSModlinAuthor Commented:
I've requested that this question be closed as follows:

Accepted answer: 0 points for BSModlin's comment #a40488903
Assisted answer: 167 points for Seth Simmons's comment #a40481197
Assisted answer: 167 points for Walter Padrón's comment #a40481554
Assisted answer: 166 points for compdigit44's comment #a40487801

for the following reason:

Found my own solution
Seth SimmonsSr. Systems AdministratorCommented:
select your own comment as the solution
nobody else gets points since not all details were provided and none of us would have known your NAS was a contributing factor
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Active Directory

From novice to tech pro — start learning today.