Solved

DCDiag error: LDAP Error 0x5e (94)

Posted on 2015-01-02
3
656 Views
Last Modified: 2015-01-20
I have attached the DCDIAG report below:  Should I be concerned about the error and how do I resolve it?  I did not have this issue before raising the forest domain functional levels to 2102 R2.  I cannot successfully revert back to 2008 R2.  All other tests pass.



Directory Server Diagnosis


Performing initial setup:

   Trying to find home server...

   * Verifying that the local machine SAS-DC02, is a Directory Server.
   Home Server = SAS-DC02

   * Connecting to directory service on server SAS-DC02.

   * Identified AD Forest.
   Collecting AD specific global data
   * Collecting site info.

   Calling ldap_search_init_page(hld,CN=Sites,CN=Configuration,DC=LCSAS,DC=local,LDAP_SCOPE_SUBTREE,(objectCategory=ntDSSiteSettings),.......
   The previous call succeeded
   Iterating through the sites
   Looking at base site object: CN=NTDS Site Settings,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
   Getting ISTG and options for the site
   * Identifying all servers.

   Calling ldap_search_init_page(hld,CN=Sites,CN=Configuration,DC=LCSAS,DC=local,LDAP_SCOPE_SUBTREE,(objectClass=ntDSDsa),.......
   The previous call succeeded....
   The previous call succeeded
   Iterating through the list of servers
   Getting information for the server CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
   objectGuid obtained
   InvocationID obtained
   dnsHostname obtained
   site info obtained
   All the info for the server collected
   Getting information for the server CN=NTDS Settings,CN=SAS-DC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
   objectGuid obtained
   InvocationID obtained
   dnsHostname obtained
   site info obtained
   All the info for the server collected
   * Identifying all NC cross-refs.

   * Found 2 DC(s). Testing 2 of them.

   Done gathering initial info.


Doing initial required tests

   
   Testing server: Default-First-Site-Name\SAS-DC01

      Starting test: Connectivity

         * Active Directory LDAP Services Check
         Determining IP4 connectivity
         * Active Directory RPC Services Check
         ......................... SAS-DC01 passed test Connectivity

   
   Testing server: Default-First-Site-Name\SAS-DC02

      Starting test: Connectivity

         * Active Directory LDAP Services Check
         Determining IP4 connectivity
         * Active Directory RPC Services Check
         ......................... SAS-DC02 passed test Connectivity



Doing primary tests

   
   Testing server: Default-First-Site-Name\SAS-DC01

      Starting test: Advertising

         The DC SAS-DC01 is advertising itself as a DC and having a DS.
         The DC SAS-DC01 is advertising as an LDAP server
         The DC SAS-DC01 is advertising as having a writeable directory
         The DC SAS-DC01 is advertising as a Key Distribution Center
         The DC SAS-DC01 is advertising as a time server
         The DS SAS-DC01 is advertising as a GC.
         ......................... SAS-DC01 passed test Advertising

      Starting test: CheckSecurityError

         * Dr Auth:  Beginning security errors check!
         Found KDC SAS-DC02 for domain LCSAS.local in site Default-First-Site-Name
         Checking machine account for DC SAS-DC01 on DC SAS-DC02.
         * SPN found :LDAP/SAS-DC01.LCSAS.local/LCSAS.local
         * SPN found :LDAP/SAS-DC01.LCSAS.local
         * SPN found :LDAP/SAS-DC01
         * SPN found :LDAP/SAS-DC01.LCSAS.local/LCSAS
         * SPN found :LDAP/ff139bb6-abf2-488f-9a52-8bb1dfeceb46._msdcs.LCSAS.local
         * SPN found :E3514235-4B06-11D1-AB04-00C04FC2DCD2/ff139bb6-abf2-488f-9a52-8bb1dfeceb46/LCSAS.local
         * SPN found :HOST/SAS-DC01.LCSAS.local/LCSAS.local
         * SPN found :HOST/SAS-DC01.LCSAS.local
         * SPN found :HOST/SAS-DC01
         * SPN found :HOST/SAS-DC01.LCSAS.local/LCSAS
         * SPN found :GC/SAS-DC01.LCSAS.local/LCSAS.local
         Checking for CN=SAS-DC01,OU=Domain Controllers,DC=LCSAS,DC=local in domain DC=LCSAS,DC=local on 2 servers
            Object is up-to-date on all servers.
         [SAS-DC01] No security related replication errors were found on this

         DC!  To target the connection to a specific source DC use

         /ReplSource:<DC>.

         ......................... SAS-DC01 passed test CheckSecurityError

      Starting test: CutoffServers

         * Configuration Topology Aliveness Check
         * Analyzing the alive system replication topology for DC=ForestDnsZones,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the alive system replication topology for DC=DomainDnsZones,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the alive system replication topology for CN=Schema,CN=Configuration,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the alive system replication topology for CN=Configuration,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the alive system replication topology for DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         ......................... SAS-DC01 passed test CutoffServers

      Starting test: FrsEvent

         * The File Replication Service Event log test
         ......................... SAS-DC01 passed test FrsEvent

      Starting test: DFSREvent

         The DFS Replication Event Log.
         Skip the test because the server is running FRS.

         ......................... SAS-DC01 passed test DFSREvent

      Starting test: SysVolCheck

         * The File Replication Service SYSVOL ready test
         File Replication Service's SYSVOL is ready
         ......................... SAS-DC01 passed test SysVolCheck

      Starting test: FrsSysVol

         * The File Replication Service SYSVOL ready test
         File Replication Service's SYSVOL is ready
         ......................... SAS-DC01 passed test FrsSysVol

      Starting test: KccEvent

         * The KCC Event log test
         Found no KCC errors in "Directory Service" Event log in the last 15 minutes.
         ......................... SAS-DC01 passed test KccEvent

      Starting test: KnowsOfRoleHolders

         Role Schema Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         Role Domain Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         Role PDC Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         Role Rid Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         Role Infrastructure Update Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         ......................... SAS-DC01 passed test KnowsOfRoleHolders

      Starting test: MachineAccount

         Checking machine account for DC SAS-DC01 on DC SAS-DC01.
         * SPN found :LDAP/SAS-DC01.LCSAS.local/LCSAS.local
         * SPN found :LDAP/SAS-DC01.LCSAS.local
         * SPN found :LDAP/SAS-DC01
         * SPN found :LDAP/SAS-DC01.LCSAS.local/LCSAS
         * SPN found :LDAP/ff139bb6-abf2-488f-9a52-8bb1dfeceb46._msdcs.LCSAS.local
         * SPN found :E3514235-4B06-11D1-AB04-00C04FC2DCD2/ff139bb6-abf2-488f-9a52-8bb1dfeceb46/LCSAS.local
         * SPN found :HOST/SAS-DC01.LCSAS.local/LCSAS.local
         * SPN found :HOST/SAS-DC01.LCSAS.local
         * SPN found :HOST/SAS-DC01
         * SPN found :HOST/SAS-DC01.LCSAS.local/LCSAS
         * SPN found :GC/SAS-DC01.LCSAS.local/LCSAS.local
         ......................... SAS-DC01 passed test MachineAccount

      Starting test: NCSecDesc

         * Security Permissions check for all NC's on DC SAS-DC01.
         The forest is not ready for RODC. Will skip checking ERODC ACEs.
         * Security Permissions Check for

           DC=ForestDnsZones,DC=LCSAS,DC=local
            (NDNC,Version 3)
         * Security Permissions Check for

           DC=DomainDnsZones,DC=LCSAS,DC=local
            (NDNC,Version 3)
         * Security Permissions Check for

           CN=Schema,CN=Configuration,DC=LCSAS,DC=local
            (Schema,Version 3)
         * Security Permissions Check for

           CN=Configuration,DC=LCSAS,DC=local
            (Configuration,Version 3)
         * Security Permissions Check for

           DC=LCSAS,DC=local
            (Domain,Version 3)
         ......................... SAS-DC01 passed test NCSecDesc

      Starting test: NetLogons

         * Network Logons Privileges Check
         Verified share \\SAS-DC01\netlogon
         Verified share \\SAS-DC01\sysvol
         ......................... SAS-DC01 passed test NetLogons

      Starting test: ObjectsReplicated

         SAS-DC01 is in domain DC=LCSAS,DC=local
         Checking for CN=SAS-DC01,OU=Domain Controllers,DC=LCSAS,DC=local in domain DC=LCSAS,DC=local on 2 servers
            Object is up-to-date on all servers.
         Checking for CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local in domain CN=Configuration,DC=LCSAS,DC=local on 2 servers
            Object is up-to-date on all servers.
         ......................... SAS-DC01 passed test ObjectsReplicated

      Starting test: OutboundSecureChannels

         * The Outbound Secure Channels test
         ** Did not run Outbound Secure Channels test because /testdomain: was

         not entered

         ......................... SAS-DC01 passed test OutboundSecureChannels

      Starting test: Replications

         * Replications Check
         * Replication Latency Check
            DC=ForestDnsZones,DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
            DC=DomainDnsZones,DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
            CN=Schema,CN=Configuration,DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
            CN=Configuration,DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
            DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
         ......................... SAS-DC01 passed test Replications

      Starting test: RidManager

         * Available RID Pool for the Domain is 4604 to 1073741823
         * SAS-DC01.LCSAS.local is the RID Master
         * DsBind with RID Master was successful
         * rIDAllocationPool is 3604 to 4103
         * rIDPreviousAllocationPool is 3604 to 4103
         * rIDNextRID: 3702
         ......................... SAS-DC01 passed test RidManager

      Starting test: Services

         * Checking Service: EventSystem
         * Checking Service: RpcSs
         * Checking Service: NTDS
         * Checking Service: DnsCache
         * Checking Service: NtFrs
         * Checking Service: IsmServ
         * Checking Service: kdc
         * Checking Service: SamSs
         * Checking Service: LanmanServer
         * Checking Service: LanmanWorkstation
         * Checking Service: w32time
         * Checking Service: NETLOGON
         ......................... SAS-DC01 passed test Services

      Starting test: SystemLog

         * The System Event log test
         Found no errors in "System" Event log in the last 60 minutes.
         ......................... SAS-DC01 passed test SystemLog

      Starting test: Topology

         * Configuration Topology Integrity Check
         * Analyzing the connection topology for DC=ForestDnsZones,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the connection topology for DC=DomainDnsZones,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the connection topology for CN=Schema,CN=Configuration,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the connection topology for CN=Configuration,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the connection topology for DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         ......................... SAS-DC01 passed test Topology

      Starting test: VerifyEnterpriseReferences

         LDAP Error 0x5e (94) - No result present in message.
         ......................... SAS-DC01 failed test

         VerifyEnterpriseReferences

      Starting test: VerifyReferences

         The system object reference (serverReference)

         CN=SAS-DC01,OU=Domain Controllers,DC=LCSAS,DC=local and backlink on

         CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local

         are correct.
         The system object reference (serverReferenceBL)

         CN=SAS-DC01,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=LCSAS,DC=local

         and backlink on

         CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local

         are correct.
         The system object reference (frsComputerReferenceBL)

         CN=SAS-DC01,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=LCSAS,DC=local

         and backlink on CN=SAS-DC01,OU=Domain Controllers,DC=LCSAS,DC=local

         are correct.
         ......................... SAS-DC01 passed test VerifyReferences

      Starting test: VerifyReplicas

         ......................... SAS-DC01 passed test VerifyReplicas

   
   Testing server: Default-First-Site-Name\SAS-DC02

      Starting test: Advertising

         The DC SAS-DC02 is advertising itself as a DC and having a DS.
         The DC SAS-DC02 is advertising as an LDAP server
         The DC SAS-DC02 is advertising as having a writeable directory
         The DC SAS-DC02 is advertising as a Key Distribution Center
         The DC SAS-DC02 is advertising as a time server
         The DS SAS-DC02 is advertising as a GC.
         ......................... SAS-DC02 passed test Advertising

      Starting test: CheckSecurityError

         * Dr Auth:  Beginning security errors check!
         Found KDC SAS-DC02 for domain LCSAS.local in site Default-First-Site-Name
         Checking machine account for DC SAS-DC02 on DC SAS-DC02.
         * SPN found :LDAP/SAS-DC02.LCSAS.local/LCSAS.local
         * SPN found :LDAP/SAS-DC02.LCSAS.local
         * SPN found :LDAP/SAS-DC02
         * SPN found :LDAP/SAS-DC02.LCSAS.local/LCSAS
         * SPN found :LDAP/cfc883d6-0b96-421c-85b1-e3ef6dca1098._msdcs.LCSAS.local
         * SPN found :E3514235-4B06-11D1-AB04-00C04FC2DCD2/cfc883d6-0b96-421c-85b1-e3ef6dca1098/LCSAS.local
         * SPN found :HOST/SAS-DC02.LCSAS.local/LCSAS.local
         * SPN found :HOST/SAS-DC02.LCSAS.local
         * SPN found :HOST/SAS-DC02
         * SPN found :HOST/SAS-DC02.LCSAS.local/LCSAS
         * SPN found :GC/SAS-DC02.LCSAS.local/LCSAS.local
         [SAS-DC02] No security related replication errors were found on this

         DC!  To target the connection to a specific source DC use

         /ReplSource:<DC>.

         ......................... SAS-DC02 passed test CheckSecurityError

      Starting test: CutoffServers

         * Configuration Topology Aliveness Check
         * Analyzing the alive system replication topology for DC=ForestDnsZones,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the alive system replication topology for DC=DomainDnsZones,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the alive system replication topology for CN=Schema,CN=Configuration,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the alive system replication topology for CN=Configuration,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the alive system replication topology for DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         ......................... SAS-DC02 passed test CutoffServers

      Starting test: FrsEvent

         * The File Replication Service Event log test
         ......................... SAS-DC02 passed test FrsEvent

      Starting test: DFSREvent

         The DFS Replication Event Log.
         Skip the test because the server is running FRS.

         ......................... SAS-DC02 passed test DFSREvent

      Starting test: SysVolCheck

         * The File Replication Service SYSVOL ready test
         File Replication Service's SYSVOL is ready
         ......................... SAS-DC02 passed test SysVolCheck

      Starting test: FrsSysVol

         * The File Replication Service SYSVOL ready test
         File Replication Service's SYSVOL is ready
         ......................... SAS-DC02 passed test FrsSysVol

      Starting test: KccEvent

         * The KCC Event log test
         Found no KCC errors in "Directory Service" Event log in the last 15 minutes.
         ......................... SAS-DC02 passed test KccEvent

      Starting test: KnowsOfRoleHolders

         Role Schema Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         Role Domain Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         Role PDC Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         Role Rid Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         Role Infrastructure Update Owner = CN=NTDS Settings,CN=SAS-DC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local
         ......................... SAS-DC02 passed test KnowsOfRoleHolders

      Starting test: MachineAccount

         Checking machine account for DC SAS-DC02 on DC SAS-DC02.
         * SPN found :LDAP/SAS-DC02.LCSAS.local/LCSAS.local
         * SPN found :LDAP/SAS-DC02.LCSAS.local
         * SPN found :LDAP/SAS-DC02
         * SPN found :LDAP/SAS-DC02.LCSAS.local/LCSAS
         * SPN found :LDAP/cfc883d6-0b96-421c-85b1-e3ef6dca1098._msdcs.LCSAS.local
         * SPN found :E3514235-4B06-11D1-AB04-00C04FC2DCD2/cfc883d6-0b96-421c-85b1-e3ef6dca1098/LCSAS.local
         * SPN found :HOST/SAS-DC02.LCSAS.local/LCSAS.local
         * SPN found :HOST/SAS-DC02.LCSAS.local
         * SPN found :HOST/SAS-DC02
         * SPN found :HOST/SAS-DC02.LCSAS.local/LCSAS
         * SPN found :GC/SAS-DC02.LCSAS.local/LCSAS.local
         ......................... SAS-DC02 passed test MachineAccount

      Starting test: NCSecDesc

         * Security Permissions check for all NC's on DC SAS-DC02.
         The forest is not ready for RODC. Will skip checking ERODC ACEs.
         * Security Permissions Check for

           DC=ForestDnsZones,DC=LCSAS,DC=local
            (NDNC,Version 3)
         * Security Permissions Check for

           DC=DomainDnsZones,DC=LCSAS,DC=local
            (NDNC,Version 3)
         * Security Permissions Check for

           CN=Schema,CN=Configuration,DC=LCSAS,DC=local
            (Schema,Version 3)
         * Security Permissions Check for

           CN=Configuration,DC=LCSAS,DC=local
            (Configuration,Version 3)
         * Security Permissions Check for

           DC=LCSAS,DC=local
            (Domain,Version 3)
         ......................... SAS-DC02 passed test NCSecDesc

      Starting test: NetLogons

         * Network Logons Privileges Check
         Verified share \\SAS-DC02\netlogon
         Verified share \\SAS-DC02\sysvol
         ......................... SAS-DC02 passed test NetLogons

      Starting test: ObjectsReplicated

         SAS-DC02 is in domain DC=LCSAS,DC=local
         Checking for CN=SAS-DC02,OU=Domain Controllers,DC=LCSAS,DC=local in domain DC=LCSAS,DC=local on 2 servers
            Object is up-to-date on all servers.
         Checking for CN=NTDS Settings,CN=SAS-DC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local in domain CN=Configuration,DC=LCSAS,DC=local on 2 servers
            Object is up-to-date on all servers.
         ......................... SAS-DC02 passed test ObjectsReplicated

      Starting test: OutboundSecureChannels

         * The Outbound Secure Channels test
         ** Did not run Outbound Secure Channels test because /testdomain: was

         not entered

         ......................... SAS-DC02 passed test OutboundSecureChannels

      Starting test: Replications

         * Replications Check
         * Replication Latency Check
            DC=ForestDnsZones,DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
            DC=DomainDnsZones,DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
            CN=Schema,CN=Configuration,DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
            CN=Configuration,DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
            DC=LCSAS,DC=local
               Latency information for 4 entries in the vector were ignored.
                  4 were retired Invocations.  0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc.  0 had no latency information (Win2K DC).  
         ......................... SAS-DC02 passed test Replications

      Starting test: RidManager

         * Available RID Pool for the Domain is 4604 to 1073741823
         * SAS-DC01.LCSAS.local is the RID Master
         * DsBind with RID Master was successful
         * rIDAllocationPool is 4104 to 4603
         * rIDPreviousAllocationPool is 4104 to 4603
         * rIDNextRID: 4104
         ......................... SAS-DC02 passed test RidManager

      Starting test: Services

         * Checking Service: EventSystem
         * Checking Service: RpcSs
         * Checking Service: NTDS
         * Checking Service: DnsCache
         * Checking Service: NtFrs
         * Checking Service: IsmServ
         * Checking Service: kdc
         * Checking Service: SamSs
         * Checking Service: LanmanServer
         * Checking Service: LanmanWorkstation
         * Checking Service: w32time
         * Checking Service: NETLOGON
         ......................... SAS-DC02 passed test Services

      Starting test: SystemLog

         * The System Event log test
         Found no errors in "System" Event log in the last 60 minutes.
         ......................... SAS-DC02 passed test SystemLog

      Starting test: Topology

         * Configuration Topology Integrity Check
         * Analyzing the connection topology for DC=ForestDnsZones,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the connection topology for DC=DomainDnsZones,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the connection topology for CN=Schema,CN=Configuration,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the connection topology for CN=Configuration,DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         * Analyzing the connection topology for DC=LCSAS,DC=local.
         * Performing upstream (of target) analysis.
         * Performing downstream (of target) analysis.
         ......................... SAS-DC02 passed test Topology

      Starting test: VerifyEnterpriseReferences

         LDAP Error 0x5e (94) - No result present in message.
         ......................... SAS-DC02 failed test

         VerifyEnterpriseReferences

      Starting test: VerifyReferences

         The system object reference (serverReference)

         CN=SAS-DC02,OU=Domain Controllers,DC=LCSAS,DC=local and backlink on

         CN=SAS-DC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local

         are correct.
         The system object reference (serverReferenceBL)

         CN=SAS-DC02,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=LCSAS,DC=local

         and backlink on

         CN=NTDS Settings,CN=SAS-DC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=LCSAS,DC=local

         are correct.
         The system object reference (frsComputerReferenceBL)

         CN=SAS-DC02,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=LCSAS,DC=local

         and backlink on CN=SAS-DC02,OU=Domain Controllers,DC=LCSAS,DC=local

         are correct.
         ......................... SAS-DC02 passed test VerifyReferences

      Starting test: VerifyReplicas

         ......................... SAS-DC02 passed test VerifyReplicas

   
      Starting test: DNS

           
               Starting test: DNS

                 

                  DNS Tests are running and not hung. Please wait a few

                  minutes...

                  See DNS test in enterprise tests section for results
                  ......................... SAS-DC02 passed test DNS

         See DNS test in enterprise tests section for results
         ......................... SAS-DC01 passed test DNS

   
   Running partition tests on : ForestDnsZones

      Starting test: CheckSDRefDom

         ......................... ForestDnsZones passed test CheckSDRefDom

      Starting test: CrossRefValidation

         ......................... ForestDnsZones passed test

         CrossRefValidation

   
   Running partition tests on : DomainDnsZones

      Starting test: CheckSDRefDom

         ......................... DomainDnsZones passed test CheckSDRefDom

      Starting test: CrossRefValidation

         ......................... DomainDnsZones passed test

         CrossRefValidation

   
   Running partition tests on : Schema

      Starting test: CheckSDRefDom

         ......................... Schema passed test CheckSDRefDom

      Starting test: CrossRefValidation

         ......................... Schema passed test CrossRefValidation

   
   Running partition tests on : Configuration

      Starting test: CheckSDRefDom

         ......................... Configuration passed test CheckSDRefDom

      Starting test: CrossRefValidation

         ......................... Configuration passed test CrossRefValidation

   
   Running partition tests on : LCSAS

      Starting test: CheckSDRefDom

         ......................... LCSAS passed test CheckSDRefDom

      Starting test: CrossRefValidation

         ......................... LCSAS passed test CrossRefValidation

   
   Running enterprise tests on : LCSAS.local

      Starting test: DNS

         Test results for domain controllers:

           
            DC: SAS-DC01.LCSAS.local

            Domain: LCSAS.local

           

                 
               TEST: Authentication (Auth)
                  Authentication test: Successfully completed
                 
               TEST: Basic (Basc)
                  The OS

                  Microsoft Windows Server 2012 R2 Standard (Service Pack level: 0.0)

                  is supported.

                  NETLOGON service is running

                  kdc service is running

                  DNSCACHE service is running

                  DNS service is running

                  DC is a DNS server

                  Network adapters information:

                  Adapter [00000016] Hyper-V Virtual Ethernet Adapter:

                     MAC address is F8:BC:12:4D:16:FA
                     IP Address is static
                     IP address: 10.57.0.5
                     DNS servers:

                        10.57.0.5 (sas-dc01.) [Valid]
                        10.57.0.8 (sas-dc02.) [Valid]
                        127.0.0.1 (sas-dc01.) [Valid]
                  The A host record(s) for this DC was found
                  The SOA record for the Active Directory zone was found
                  The Active Directory zone on this DC/DNS server was found primary
                  Root zone on this DC/DNS server was not found
                 
               TEST: Forwarders/Root hints (Forw)
                  Recursion is enabled
                  Forwarders Information:
                     10.250.169.60 (<name unavailable>) [Valid]
                     10.250.169.61 (<name unavailable>) [Valid]
                 
               TEST: Delegations (Del)
                  Delegation information for the zone: LCSAS.local.
                     Delegated domain name: _msdcs.LCSAS.local.
                        DNS server: sas-dc01. IP:10.57.0.5 [Valid]
                        DNS server: sas-dc02. IP:10.57.0.8 [Valid]
                 
               TEST: Dynamic update (Dyn)
                  Test record dcdiag-test-record added successfully in zone LCSAS.local
                  Test record dcdiag-test-record deleted successfully in zone LCSAS.local
                 
               TEST: Records registration (RReg)
                  Network Adapter [00000016] Hyper-V Virtual Ethernet Adapter:

                     Matching CNAME record found at DNS server 10.57.0.5:
                     ff139bb6-abf2-488f-9a52-8bb1dfeceb46._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.5:
                     SAS-DC01.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.434da1c0-e999-40e4-9db2-1dbd7b5a60d7.domains._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._udp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kpasswd._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.gc._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.5:
                     gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _gc._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.pdc._msdcs.LCSAS.local

                     Matching CNAME record found at DNS server 10.57.0.8:
                     ff139bb6-abf2-488f-9a52-8bb1dfeceb46._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.8:
                     SAS-DC01.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.434da1c0-e999-40e4-9db2-1dbd7b5a60d7.domains._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._udp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kpasswd._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.gc._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.8:
                     gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _gc._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.pdc._msdcs.LCSAS.local

                     Matching CNAME record found at DNS server 10.57.0.5:
                     ff139bb6-abf2-488f-9a52-8bb1dfeceb46._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.5:
                     SAS-DC01.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.434da1c0-e999-40e4-9db2-1dbd7b5a60d7.domains._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._udp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kpasswd._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.gc._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.5:
                     gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _gc._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.pdc._msdcs.LCSAS.local

         
           
            DC: SAS-DC02.LCSAS.local

            Domain: LCSAS.local

           

                 
               TEST: Authentication (Auth)
                  Authentication test: Successfully completed
                 
               TEST: Basic (Basc)
                  The OS

                  Microsoft Windows Server 2012 R2 Standard (Service Pack level: 0.0)

                  is supported.

                  NETLOGON service is running

                  kdc service is running

                  DNSCACHE service is running

                  DNS service is running

                  DC is a DNS server

                  Network adapters information:

                  Adapter

                  [00000010] Broadcom BCM5709C NetXtreme II GigE (NDIS VBD Client):

                 

                     MAC address is A4:BA:DB:1A:20:96
                     IP Address is static
                     IP address: 10.57.0.8
                     DNS servers:

                        10.57.0.5 (sas-dc01.) [Valid]
                        10.57.0.8 (sas-dc02.) [Valid]
                        127.0.0.1 (sas-dc02.) [Valid]
                  The A host record(s) for this DC was found
                  The SOA record for the Active Directory zone was found
                  The Active Directory zone on this DC/DNS server was found primary
                  Root zone on this DC/DNS server was not found
                 
               TEST: Forwarders/Root hints (Forw)
                  Recursion is enabled
                  Forwarders Information:
                     10.250.169.60 (<name unavailable>) [Valid]
                     10.250.169.61 (<name unavailable>) [Valid]
                 
               TEST: Delegations (Del)
                  Delegation information for the zone: LCSAS.local.
                     Delegated domain name: _msdcs.LCSAS.local.
                        DNS server: sas-dc01. IP:10.57.0.5 [Valid]
                        DNS server: sas-dc02. IP:10.57.0.8 [Valid]
                 
               TEST: Dynamic update (Dyn)
                  Test record dcdiag-test-record added successfully in zone LCSAS.local
                  Test record dcdiag-test-record deleted successfully in zone LCSAS.local
                 
               TEST: Records registration (RReg)
                  Network Adapter

                  [00000010] Broadcom BCM5709C NetXtreme II GigE (NDIS VBD Client):

                 

                     Matching CNAME record found at DNS server 10.57.0.5:
                     cfc883d6-0b96-421c-85b1-e3ef6dca1098._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.5:
                     SAS-DC02.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.434da1c0-e999-40e4-9db2-1dbd7b5a60d7.domains._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._udp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kpasswd._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _kerberos._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.gc._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.5:
                     gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _gc._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.5:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.LCSAS.local

                     Matching CNAME record found at DNS server 10.57.0.8:
                     cfc883d6-0b96-421c-85b1-e3ef6dca1098._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.8:
                     SAS-DC02.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.434da1c0-e999-40e4-9db2-1dbd7b5a60d7.domains._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._udp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kpasswd._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.gc._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.8:
                     gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _gc._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.LCSAS.local

                     Matching CNAME record found at DNS server 10.57.0.8:
                     cfc883d6-0b96-421c-85b1-e3ef6dca1098._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.8:
                     SAS-DC02.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.434da1c0-e999-40e4-9db2-1dbd7b5a60d7.domains._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._udp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kpasswd._tcp.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _kerberos._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.gc._msdcs.LCSAS.local

                     Matching A record found at DNS server 10.57.0.8:
                     gc._msdcs.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _gc._tcp.Default-First-Site-Name._sites.LCSAS.local

                     Matching  SRV record found at DNS server 10.57.0.8:
                     _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.LCSAS.local

         
         Summary of test results for DNS servers used by the above domain

         controllers:

         

            DNS server: 10.250.169.60 (<name unavailable>)

               All tests passed on this DNS server

               
            DNS server: 10.250.169.61 (<name unavailable>)

               All tests passed on this DNS server

               
            DNS server: 10.57.0.5 (sas-dc01.)

               All tests passed on this DNS server

               Name resolution is functional._ldap._tcp SRV record for the forest root domain is registered
               DNS delegation for the domain  _msdcs.LCSAS.local. is operational on IP 10.57.0.5

               
            DNS server: 10.57.0.8 (sas-dc02.)

               All tests passed on this DNS server

               Name resolution is functional._ldap._tcp SRV record for the forest root domain is registered
               DNS delegation for the domain  _msdcs.LCSAS.local. is operational on IP 10.57.0.8

               
         Summary of DNS test results:

         
                                            Auth Basc Forw Del  Dyn  RReg Ext
            _________________________________________________________________
            Domain: LCSAS.local

               SAS-DC01                     PASS PASS PASS PASS PASS PASS n/a  
               SAS-DC02                     PASS PASS PASS PASS PASS PASS n/a  
         
         ......................... LCSAS.local passed test DNS

      Starting test: LocatorCheck

         GC Name: \\SAS-DC02.LCSAS.local

         Locator Flags: 0xe000f1fc
         PDC Name: \\SAS-DC01.LCSAS.local
         Locator Flags: 0xe000f3fd
         Time Server Name: \\SAS-DC02.LCSAS.local
         Locator Flags: 0xe000f1fc
         Preferred Time Server Name: \\SAS-DC01.LCSAS.local
         Locator Flags: 0xe000f3fd
         KDC Name: \\SAS-DC02.LCSAS.local
         Locator Flags: 0xe000f1fc
         ......................... LCSAS.local passed test LocatorCheck

      Starting test: FsmoCheck

         GC Name: \\SAS-DC02.LCSAS.local

         Locator Flags: 0xe000f1fc
         PDC Name: \\SAS-DC01.LCSAS.local
         Locator Flags: 0xe000f3fd
         Time Server Name: \\SAS-DC02.LCSAS.local
         Locator Flags: 0xe000f1fc
         Preferred Time Server Name: \\SAS-DC01.LCSAS.local
         Locator Flags: 0xe000f3fd
         KDC Name: \\SAS-DC02.LCSAS.local
         Locator Flags: 0xe000f1fc
         ......................... LCSAS.local passed test FsmoCheck

      Starting test: Intersite

         Skipping site Default-First-Site-Name, this site is outside the scope

         provided by the command line arguments provided.
         ......................... LCSAS.local passed test Intersite
0
Comment
Question by:ACSTLH
  • 2
3 Comments
 
LVL 32

Expert Comment

by:it_saige
ID: 40528168
This is, potentially, an expected error:

http://support.microsoft.com/kb/2512643

-saige-
0
 

Author Comment

by:ACSTLH
ID: 40528350
Is that because Server 2008 R2 and up use DFS Replication Service to replicate data instead of NT FRS replication?
0
 
LVL 32

Accepted Solution

by:
it_saige earned 500 total points
ID: 40528376
Most likely it is any one of the following:
The Windows Server 2008/200R2 versions of DCDIAG are designed to test RPCSS for the Windows Server 2008 shared process setting - not the previous isolated process setting used in Windows Server 2003 and older operating systems. The tool does not distinguish between OSs for this service.
The Windows Server 2008/200R2 versions of DCDIAG assume that a Windows Server 2008 domain functional level means the DCs are replicating SYSVOL with DFSR.
The Windows Server 2008/200R2 versions of DCDIAG does not correctly test trust health.
Windows Server 2008/2008 R2 does not allow remote connectivity to the event log based on default firewall rules.

My *gut*, though, tells me its because of the default firewall rules.

-saige-
0

Featured Post

Free Gift Card with Acronis Backup Purchase!

Backup any data in any location: local and remote systems, physical and virtual servers, private and public clouds, Macs and PCs, tablets and mobile devices, & more! For limited time only, buy any Acronis backup products and get a FREE Amazon/Best Buy gift card worth up to $200!

Join & Write a Comment

My GPO's made for 2008 R2 servers were not allowing me to RDP into a new 2012 server by default.  That’s why I tried to allow RDP via Powershell, because I could log into a remote shell without further configuration. Below I will describe how I wen…
What to do when Windows Update is not working correctly? What tools can I use to detect the cause of the malfunction problem? What does this numeric error code mean? These and other questions that you have been asking in the past are answered here (…
In this Micro Tutorial viewers will learn how to restore their server from Bare Metal Backup image created with Windows Server Backup feature. As an example Windows 2012R2 is used.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…

705 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now