Solved

sysvol and netlogon missing but i still have old domain controller

Posted on 2016-07-16
3
38 Views
Last Modified: 2016-08-01
My scenario is this, I started with a network of two 2008 servers acting as domain controllers.  I added a 2012r2 server and then transferred the FSMO roles to it and set it as a global catalog server and then removed the two 2008 servers from being global catalog servers.  I then demoted the first of the two servers.  At this point I noticed the 2012r2 server did not have the sysvol and netlogon directory so I pointed DNS to it and had it assume FSMO roles.  Active directory is working on my network again, but I still have the 2012r2 server that is not working properly.  I have found articles about an authoritive and non-authoritive restore but I don't want to force this server into production if it isn't necessary.  I would rather do it via normal processes.

My question is this, can I simply demote it and promote it again and see if it will work properly on a second attempt?

can anyone explain the risks of using an authoritive or non-authoritive restore?
0
Comment
Question by:AdvNetSol
  • 2
3 Comments
 
LVL 74

Accepted Solution

by:
Jeffrey Kane - TechSoEasy earned 500 total points
ID: 41714601
If you have a solid working Server 2008 DC and the 2012 is just not working right, yes, you can demote it and remove it from the domain and then re-do -- but if you do that I would fully reinstall as well to get new SIDs.

But... this has happened to me a couple of times and it's not too difficult to just do a non-authoritative synchronization to get it working correctly.   Instructions for that are here:

https://support.microsoft.com/en-us/kb/2218556
0
 
LVL 74

Expert Comment

by:Jeffrey Kane - TechSoEasy
ID: 41714603
By the way... don't think of non-authoritative as being worse... it's actually the default directory services restore mode.  What it means is that data doesn't get overwritten -- whereas an Authoritative restore/sync will overwrite data even if that data is newer than what is being copied.
0
 

Author Closing Comment

by:AdvNetSol
ID: 41737951
I did end up demoting and repromoting the server but that didn't fix the problem.  the ultimate solution was to perform an authoritive restore and manually sharing the sysvol folder (it didn't work until the sysvol was manually shared at which point netlogon automatically shared...within seconds)  Very strange resolution but everything has been perfect on the domain since.
0

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Is your Office 365 signature not working the way you want it to? Are signature updates taking up too much of your time? Let's run through the most common problems that an IT administrator can encounter when dealing with Office 365 email signatures.
A project that enables an administrator to perform actions within a user session context not just at the time of login but any time later on day(s) or week(s) later.
This tutorial will walk an individual through the process of configuring basic necessities in order to use the 2010 version of Data Protection Manager. These include storage, agents, and protection jobs. Launch Data Protection Manager from the deskt…
This tutorial will show how to configure a new Backup Exec 2012 server and move an existing database to that server with the use of the BEUtility. Install Backup Exec 2012 on the new server and apply all of the latest hotfixes and service packs. The…

756 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question