Domain Controller Syncing issue.

Dear EE's,

I am having an issue in facing syncing with PDC and Additional domain controllers. Intially issue is noticed with the repadmin error, which mentioned the time difference between the domain controllers.

I tried to recitify the issue by setting up the PDC emulator to NTP servers, which results to sync time addtional servers exept one. (adcsvr)

Then on another searching of troubleshooting there is something i noticed with "sites and services" I here attached the Screenshots. I have total of 4 Domain controllers, PDC emulator is Physical server and other 3 are Virtual servers.

dc_list
PDC
adc01
adc02
adc03

In AD sites and services, Each server's NTDS settings only have 2 automatically generated connections only.. Once i created new i have informed with an error. (screen shot attached).

ConnectionError
For this issue noticed, i tried to restire Authorative and Non-Authorative AD recovery also. Didnt helped me.

Here i attahed DCDIAG /a, repadmin results also..

Dear fellow, i really need you guys expertise in syncing time and AD sites and services objects.

Regards
Shamil
dcdiagall.txt
repadmin-showrepl.txt
repadmin-replsummary.txt
LVL 1
Shamil MohamedIT Infrastructure Engineer/IT Systems ManagerAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Ganesh Kumar ASr Infrastructure SpecialistCommented:
There is an opensource time sync tool which does better than the internal NTP configurations.  I have personally experienced with this tool, we even tried implementing the NTP time server on AD and sync across device, we found some cases it wont work as expected so we started exploring for the free opensource time sync you can download and setup it easily http://www.timesynctool.com/ once you sync this tool, run DCDIAG /a /e /v /fix   and post the result.  

Run the following commands

repadmin /showreps
repadmin /showrepl
repadmin /syncall
repadmin /replsum

Post the result as well.

Meanwhile turn off the windows firewall on the DC's.

Check if you can ping and reach all the servers from each DC's

Check the DNS server configurtions, try to setup Reverse Lookup Zone if you dont have it.

Let me know if all the above helps.
0
MaheshArchitectCommented:
You don't have any issues apart from time sync

Configure your PDC to sync it time from itself or from external time source
https://support.microsoft.com/en-us/kb/816042

If you already done that, run below commands on PDC and ensure there are no errors
w32tm / query /source
w32tm /query /status

If this is VMs, make sure that they don't sync time with host server
Go to VM properties and remove time sync with host

On other ADC servers run below command
net time \\pdc_IP /set
It will ask for confirmation, type y and hit enter

Then run below commands to ensure there are no errors
w32tm / query /source
w32tm /query /status

Then create new connection objects and run repadmin /kcc command from elevated prompt on DC to trigger / validate AD replication
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows Server 2012

From novice to tech pro — start learning today.

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.