Solved

win 2012R2 active directory issues

Posted on 2015-02-23
7
23 Views
Last Modified: 2016-06-23
unable to connect to the NETlogon share !
0
Comment
Question by:MNwks
  • 4
  • 2
7 Comments
 

Author Comment

by:MNwks
ID: 40626491
NetLogons failed test via dcdiag.  while adding 2nd domain controller.

replication tests are is ok !
0
 
LVL 53

Expert Comment

by:Will Szymkowski
ID: 40626500
We will require more information then what you have provided. Run the following commands...
repadmin /replsum
repadmin /showrepl
dcdiag /v

Also login to the domain controllers and type net share and make sure that the Sysvol and Netlogon Shares are in fact sharing.

I would also be checking the logs on the DC's as well.

Will.
0
 

Author Comment

by:MNwks
ID: 40626601
Hello, and thanks.

The \sysvol was not shared at all, but worked after I did this...  \netlogon never shared.

I can see the \netlogon  on the pdc from \\sei-ad2 ?

********** get sysvlo up*********
To work around this issue, set the SysvolReady Flag registry value to "0" and then back to "1" in the registry. To do this, follow these steps:1.Click Start, click Run, type regedit, and then click OK.
2.Locate the following subkey in Registry Editor:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Netlogon\Parameters

3.In the details pane, right-click the SysvolReady flag, and then click Modify.
4. In the Value data box, type 0, and then click OK.
5.Again in the details pane, right-click the SysvolReady flag, and then click Modify.
6.In the Value data box, type 1, and then click OK.
Note This will cause Netlogon to share out SYSVOL, and the scripts folder will be present.
********** .end get sysvlo up *********


We will require more information then what you have provided. Run the following commands...
==========================*****************************

 repadmin /replsum


C:\Users\seiadmin>repadmin /replsum
Replication Summary Start Time: 2015-02-23 15:25:01

Beginning data collection for replication summary, this may take awhile:
  .....


Source DSA          largest delta    fails/total %%   error
 SEI-AD2               02h:24m:12s    0 /   5    0
 SEI-S2                02h:16m:42s    0 /   5    0


Destination DSA     largest delta    fails/total %%   error
 SEI-AD2               02h:16m:43s    0 /   5    0
 SEI-S2                02h:18m:46s    0 /   5    0

===========================**************************
 C:\Windows\system32>repadmin /showrepl

Repadmin: running command /showrepl against full DC localhost
SEI-441\SEI-AD2
DSA Options: IS_GC
Site Options: (none)
DSA object GUID: 80bb5ef9-511c-4e62-beb2-95a9820411cd
DSA invocationID: 65f9d7ad-4909-4936-a854-b1a526cbd967

==== INBOUND NEIGHBORS ======================================

DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

CN=Configuration,DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

CN=Schema,CN=Configuration,DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

DC=DomainDnsZones,DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

DC=ForestDnsZones,DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

===========================********************
repadmin /showrepl      ( at a different time)  ===

C:\Users\seiadmin>repadmin /showrepl

Repadmin: running command /showrepl against full DC localhost
SEI-441\SEI-AD2
DSA Options: IS_GC
Site Options: (none)
DSA object GUID: 80bb5ef9-511c-4e62-beb2-95a9820411cd
DSA invocationID: 65f9d7ad-4909-4936-a854-b1a526cbd967

==== INBOUND NEIGHBORS ======================================

DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

CN=Configuration,DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

CN=Schema,CN=Configuration,DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

DC=DomainDnsZones,DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.

DC=ForestDnsZones,DC=seicomm,DC=local
    SEI-Orange\SEI-S2 via RPC
        DSA object GUID: 5b8f9f74-17a4-4a1c-946b-08376f7b0712
        Last attempt @ 2015-02-23 13:08:19 was successful.
DsReplicaGetInfo() failed with status 8453 (0x2105):
    Replication access was denied.
DsReplicaGetInfo() failed with status 8453 (0x2105):
    Replication access was denied.


C:\Users\seiadmin>

===========================********************

 dcdiag /v

Windows PowerShell
Copyright (C) 2013 Microsoft Corporation. All rights reserved.

PS C:\Users\seiadmin> dcdiag /v

Directory Server Diagnosis

Performing initial setup:
   Trying to find home server...
   * Verifying that the local machine SEI-AD2, is a Directory Server.
   Home Server = SEI-AD2
   * Connecting to directory service on server SEI-AD2.
   * Identified AD Forest.
   Collecting AD specific global data
   * Collecting site info.
   Calling ldap_search_init_page(hld,CN=Sites,CN=Configuration,DC=seicomm,DC=local,LDAP_SCOPE_SUBTREE,(objectCategory=nt
DSSiteSettings),.......
   The previous call succeeded
   Iterating through the sites
   Looking at base site object: CN=NTDS Site Settings,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=seicomm,DC
=local
   Getting ISTG and options for the site
   Looking at base site object: CN=NTDS Site Settings,CN=SEI-Orange,CN=Sites,CN=Configuration,DC=seicomm,DC=local
   Getting ISTG and options for the site
   Looking at base site object: CN=NTDS Site Settings,CN=SEI-441,CN=Sites,CN=Configuration,DC=seicomm,DC=local
   Getting ISTG and options for the site
   * Identifying all servers.
   Calling ldap_search_init_page(hld,CN=Sites,CN=Configuration,DC=seicomm,DC=local,LDAP_SCOPE_SUBTREE,(objectClass=ntDSD
sa),.......
   The previous call succeeded....
   The previous call succeeded
   Iterating through the list of servers
   Getting information for the server CN=NTDS Settings,CN=SEI-S2,CN=Servers,CN=SEI-Orange,CN=Sites,CN=Configuration,DC=s
eicomm,DC=local
   objectGuid obtained
   InvocationID obtained
   dnsHostname obtained
   site info obtained
   All the info for the server collected
   Getting information for the server CN=NTDS Settings,CN=SEI-AD2,CN=Servers,CN=SEI-441,CN=Sites,CN=Configuration,DC=sei
comm,DC=local
   objectGuid obtained
   InvocationID obtained
   dnsHostname obtained
   site info obtained
   All the info for the server collected
   * Identifying all NC cross-refs.
   * Found 2 DC(s). Testing 1 of them.
   Done gathering initial info.

Doing initial required tests

   Testing server: SEI-441\SEI-AD2
      Starting test: Connectivity
         * Active Directory LDAP Services Check
         Determining IP4 connectivity
         * Active Directory RPC Services Check
         ......................... SEI-AD2 passed test Connectivity

Doing primary tests

   Testing server: SEI-441\SEI-AD2
      Starting test: Advertising
         The DC SEI-AD2 is advertising itself as a DC and having a DS.
         The DC SEI-AD2 is advertising as an LDAP server
         The DC SEI-AD2 is advertising as having a writeable directory
         The DC SEI-AD2 is advertising as a Key Distribution Center
         The DC SEI-AD2 is advertising as a time server
         The DS SEI-AD2 is advertising as a GC.
         ......................... SEI-AD2 passed test Advertising
      Test omitted by user request: CheckSecurityError
      Test omitted by user request: CutoffServers
      Starting test: FrsEvent
         * The File Replication Service Event log test
         Skip the test because the server is running DFSR.
         ......................... SEI-AD2 passed test FrsEvent
      Starting test: DFSREvent
         The DFS Replication Event Log.
         There are warning or error events within the last 24 hours after the SYSVOL has been shared.  Failing SYSVOL
         replication problems may cause Group Policy problems.
         A warning event occurred.  EventID: 0x800008A4
            Time Generated: 02/23/2015   09:55:29
            Event String:
            The DFS Replication service has detected an unexpected shutdown on volume C:. This can occur if the service
terminated abnormally (due to a power loss, for example) or an error occurred on the volume. The service has automatical
ly initiated a recovery process. The service will rebuild the database if it determines it cannot reliably recover. No u
ser action is required.

            Additional Information:
            Volume: C:
            GUID: 88FE3922-81C6-4B74-A6E5-3C5312B52C09
         ......................... SEI-AD2 passed test DFSREvent
      Starting test: SysVolCheck
         * The File Replication Service SYSVOL ready test
         File Replication Service's SYSVOL is ready
         ......................... SEI-AD2 passed test SysVolCheck
      Starting test: KccEvent
         * The KCC Event log test
         Found no KCC errors in "Directory Service" Event log in the last 15 minutes.
         ......................... SEI-AD2 passed test KccEvent
      Starting test: KnowsOfRoleHolders
         Role Schema Owner = CN=NTDS Settings,CN=SEI-S2,CN=Servers,CN=SEI-Orange,CN=Sites,CN=Configuration,DC=seicomm,DC
=local
         Role Domain Owner = CN=NTDS Settings,CN=SEI-S2,CN=Servers,CN=SEI-Orange,CN=Sites,CN=Configuration,DC=seicomm,DC
=local
         Role PDC Owner = CN=NTDS Settings,CN=SEI-S2,CN=Servers,CN=SEI-Orange,CN=Sites,CN=Configuration,DC=seicomm,DC=lo
cal
         Role Rid Owner = CN=NTDS Settings,CN=SEI-S2,CN=Servers,CN=SEI-Orange,CN=Sites,CN=Configuration,DC=seicomm,DC=lo
cal
         Role Infrastructure Update Owner = CN=NTDS Settings,CN=SEI-S2,CN=Servers,CN=SEI-Orange,CN=Sites,CN=Configuratio
n,DC=seicomm,DC=local
         ......................... SEI-AD2 passed test KnowsOfRoleHolders
      Starting test: MachineAccount
         Checking machine account for DC SEI-AD2 on DC SEI-AD2.
         * SPN found :LDAP/SEI-AD2.seicomm.local/seicomm.local
         * SPN found :LDAP/SEI-AD2.seicomm.local
         * SPN found :LDAP/SEI-AD2
         * SPN found :LDAP/SEI-AD2.seicomm.local/SEICOMM
         * SPN found :LDAP/80bb5ef9-511c-4e62-beb2-95a9820411cd._msdcs.seicomm.local
         * SPN found :E3514235-4B06-11D1-AB04-00C04FC2DCD2/80bb5ef9-511c-4e62-beb2-95a9820411cd/seicomm.local
         * SPN found :HOST/SEI-AD2.seicomm.local/seicomm.local
         * SPN found :HOST/SEI-AD2.seicomm.local
         * SPN found :HOST/SEI-AD2
         * SPN found :HOST/SEI-AD2.seicomm.local/SEICOMM
         * SPN found :GC/SEI-AD2.seicomm.local/seicomm.local
         ......................... SEI-AD2 passed test MachineAccount
      Starting test: NCSecDesc
         * Security Permissions check for all NC's on DC SEI-AD2.
         * Security Permissions Check for
           DC=ForestDnsZones,DC=seicomm,DC=local
            (NDNC,Version 3)
         * Security Permissions Check for
           DC=DomainDnsZones,DC=seicomm,DC=local
            (NDNC,Version 3)
         * Security Permissions Check for
           CN=Schema,CN=Configuration,DC=seicomm,DC=local
            (Schema,Version 3)
         * Security Permissions Check for
           CN=Configuration,DC=seicomm,DC=local
            (Configuration,Version 3)
         * Security Permissions Check for
           DC=seicomm,DC=local
            (Domain,Version 3)
         ......................... SEI-AD2 passed test NCSecDesc
      Starting test: NetLogons
         * Network Logons Privileges Check
         Unable to connect to the NETLOGON share! (\\SEI-AD2\netlogon)
         [SEI-AD2] An net use or LsaPolicy operation failed with error 67, The network name cannot be found..
         ......................... SEI-AD2 failed test NetLogons
      Starting test: ObjectsReplicated
         SEI-AD2 is in domain DC=seicomm,DC=local
         Checking for CN=SEI-AD2,OU=Domain Controllers,DC=seicomm,DC=local in domain DC=seicomm,DC=local on 1 servers
            Object is up-to-date on all servers.
         Checking for CN=NTDS Settings,CN=SEI-AD2,CN=Servers,CN=SEI-441,CN=Sites,CN=Configuration,DC=seicomm,DC=local in
 domain CN=Configuration,DC=seicomm,DC=local on 1 servers
            Object is up-to-date on all servers.
         ......................... SEI-AD2 passed test ObjectsReplicated
      Test omitted by user request: OutboundSecureChannels
      Starting test: Replications
         * Replications Check
         [Replications Check,SEI-AD2] DsReplicaGetInfo(PENDING_OPS, NULL) failed, error 0x2105
         "Replication access was denied."
         ......................... SEI-AD2 failed test Replications
      Starting test: RidManager
         * Available RID Pool for the Domain is 2101 to 1073741823
         * SEI-S2.seicomm.local is the RID Master
         * DsBind with RID Master was successful
         * rIDAllocationPool is 1601 to 2100
         * rIDPreviousAllocationPool is 1601 to 2100
         * rIDNextRID: 1603
         ......................... SEI-AD2 passed test RidManager
      Starting test: Services
         * Checking Service: EventSystem
         * Checking Service: RpcSs
         * Checking Service: NTDS
            Could not open NTDS Service on SEI-AD2, error 0x5 "Access is denied."
         * Checking Service: DnsCache
         * Checking Service: DFSR
         * Checking Service: IsmServ
         * Checking Service: kdc
         * Checking Service: SamSs
         * Checking Service: LanmanServer
         * Checking Service: LanmanWorkstation
         * Checking Service: w32time
         * Checking Service: NETLOGON
         ......................... SEI-AD2 failed test Services
      Starting test: SystemLog
         * The System Event log test
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   14:33:53
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   14:38:53
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   14:43:54
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   14:48:54
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   14:53:54
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   14:58:54
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   15:03:54
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   15:08:46
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\SysVol\seicomm.loc
al\Policies\{4DD12C4C-1501-43FB-9A0D-ED31442141C7}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   15:08:54
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   15:13:54
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   15:18:54
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   15:23:55
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         An error event occurred.  EventID: 0x00000422
            Time Generated: 02/23/2015   15:28:55
            Event String:
            The processing of Group Policy failed. Windows attempted to read the file \\seicomm.local\sysvol\seicomm.loc
al\Policies\{31B2F340-016D-11D2-945F-00C04FB984F9}\gpt.ini from a domain controller and was not successful. Group Policy
 settings may not be applied until this event is resolved. This issue may be transient and could be caused by one or mor
e of the following:
            a) Name Resolution/Network Connectivity to the current domain controller.
            b) File Replication Service Latency (a file created on another domain controller has not replicated to the c
urrent domain controller).
            c) The Distributed File System (DFS) client has been disabled.
         ......................... SEI-AD2 failed test SystemLog
      Test omitted by user request: Topology
      Test omitted by user request: VerifyEnterpriseReferences
      Starting test: VerifyReferences
         The system object reference (serverReference) CN=SEI-AD2,OU=Domain Controllers,DC=seicomm,DC=local and
         backlink on CN=SEI-AD2,CN=Servers,CN=SEI-441,CN=Sites,CN=Configuration,DC=seicomm,DC=local are correct.
         The system object reference (serverReferenceBL)
         CN=SEI-AD2,CN=Topology,CN=Domain System Volume,CN=DFSR-GlobalSettings,CN=System,DC=seicomm,DC=local and
         backlink on CN=NTDS Settings,CN=SEI-AD2,CN=Servers,CN=SEI-441,CN=Sites,CN=Configuration,DC=seicomm,DC=local
         are correct.
         The system object reference (msDFSR-ComputerReferenceBL)
         CN=SEI-AD2,CN=Topology,CN=Domain System Volume,CN=DFSR-GlobalSettings,CN=System,DC=seicomm,DC=local and
         backlink on CN=SEI-AD2,OU=Domain Controllers,DC=seicomm,DC=local are correct.
         ......................... SEI-AD2 passed test VerifyReferences
      Test omitted by user request: VerifyReplicas

      Test omitted by user request: DNS
      Test omitted by user request: DNS

   Running partition tests on : ForestDnsZones
      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test CrossRefValidation

   Running partition tests on : DomainDnsZones
      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test CrossRefValidation

   Running partition tests on : Schema
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation

   Running partition tests on : Configuration
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation

   Running partition tests on : seicomm
      Starting test: CheckSDRefDom
         ......................... seicomm passed test CheckSDRefDom
      Starting test: CrossRefValidation
         ......................... seicomm passed test CrossRefValidation

   Running enterprise tests on : seicomm.local
      Test omitted by user request: DNS
      Test omitted by user request: DNS
      Starting test: LocatorCheck
         GC Name: \\SEI-AD2.seicomm.local
         Locator Flags: 0xe000f1fc
         PDC Name: \\SEI-S2.seicomm.local
         Locator Flags: 0xe000737d
         Time Server Name: \\SEI-AD2.seicomm.local
         Locator Flags: 0xe000f1fc
         Preferred Time Server Name: \\SEI-S2.seicomm.local
         Locator Flags: 0xe000737d
         KDC Name: \\SEI-AD2.seicomm.local
         Locator Flags: 0xe000f1fc
         ......................... seicomm.local passed test LocatorCheck
      Starting test: Intersite
         Skipping site Default-First-Site-Name, this site is outside the scope provided by the command line arguments
         provided.
         Skipping site SEI-Orange, this site is outside the scope provided by the command line arguments provided.
         Skipping site SEI-441, this site is outside the scope provided by the command line arguments provided.
         ......................... seicomm.local passed test Intersite
PS C:\Users\seiadmin>



 Also login to the domain controllers and type net share and make sure that the Sysvol and Netlogon Shares are in fact sharing.

============================================

Microsoft Windows [Version 6.3.9600]
(c) 2013 Microsoft Corporation. All rights reserved.

C:\Users\seiadmin>net share

Share name   Resource                        Remark

---------------------------------------------------------------------
C$           C:\                             Default share
D$           D:\                             Default share
IPC$                                         Remote IPC
ADMIN$       C:\Windows                      Remote Admin
SEI-Data2    D:\Shares\SEI-Data2
SYSVOL       C:\Windows\SYSVOL\sysvol        Logon server share
The command completed successfully.


C:\Users\seiadmin>


 I would also be checking the logs on the DC's as well.
0
Highfive Gives IT Their Time Back

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

 

Author Comment

by:MNwks
ID: 40628166
Hello,

could we simply create the NETLOGON share instead of have it system generated ? Also the "clean"  repadmin /showrepl
is consistently error free if cli is administrative.
0
 
LVL 53

Accepted Solution

by:
Will Szymkowski earned 500 total points
ID: 40628191
I would be doing an Authoritative Restore for the Sysvol Folder to ensure that all of the DC's get the updated sysvol/netlogon shares and to ensure they are insync.

Will.
0
 

Author Comment

by:MNwks
ID: 40628375
Will,

Thanks for the info. I'll report findings.
0

Featured Post

How your wiki can always stay up-to-date

Quip doubles as a “living” wiki and a project management tool that evolves with your organization. As you finish projects in Quip, the work remains, easily accessible to all team members, new and old.
- Increase transparency
- Onboard new hires faster
- Access from mobile/offline

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
Roaming Profiles 8 61
exchange, active directory 5 16
ADFS 3.0 and UPN Problem 6 15
ACTIVE DIRECTORY 12 33
Find out how to use Active Directory data for email signature management in Microsoft Exchange and Office 365.
Restoring deleted objects in Active Directory has been a standard feature in Active Directory for many years, yet some admins may not know what is available.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

757 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

19 Experts available now in Live!

Get 1:1 Help Now