Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

Computer object is not replicated from one DC to another after 24 hours lapsed ?

Posted on 2016-10-31
4
Medium Priority
?
139 Views
Last Modified: 2016-11-06
People,

Can anyone here please assist me in troubleshooting the AD domain controller replication where some of my AD computer object is not replicated after waiting for more than 24 hours from one DC to another ?

Here's some background information:

PRODDC67-VM --> Data Center Domain Controller.
PRODDC70-VM --> Remote Office Domain Controller.

This is the PortQry tool result from one DC to another above:
portqry.exe -n PRODDC70-VM -e 135 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC70-VM -e 137 -p UDP exits with return code 0x80000003.
portqry.exe -n PRODDC70-VM -e 138 -p UDP exits with return code 0x00000002.
portqry.exe -n PRODDC70-VM -e 139 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC70-VM -e 3268 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC70-VM -e 3269 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC70-VM -e 389 -p BOTH exits with return code 0x00000000.
portqry.exe -n PRODDC70-VM -e 42 -p TCP exits with return code 0x00000001.
portqry.exe -n PRODDC70-VM -e 445 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC70-VM -e 53 -p BOTH exits with return code 0x00000000.
portqry.exe -n PRODDC70-VM -e 636 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC70-VM -e 88 -p BOTH exits with return code 0x00000002.

Open in new window


portqry.exe -n PRODDC67-VM -e 135 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC67-VM -e 137 -p UDP exits with return code 0x80000003.
portqry.exe -n PRODDC67-VM -e 138 -p UDP exits with return code 0x00000002.
portqry.exe -n PRODDC67-VM -e 139 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC67-VM -e 3268 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC67-VM -e 3269 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC67-VM -e 389 -p BOTH exits with return code 0x00000000.
portqry.exe -n PRODDC67-VM -e 42 -p TCP exits with return code 0x00000001.
portqry.exe -n PRODDC67-VM -e 445 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC67-VM -e 53 -p BOTH exits with return code 0x00000000.
portqry.exe -n PRODDC67-VM -e 636 -p TCP exits with return code 0x00000000.
portqry.exe -n PRODDC67-VM -e 88 -p BOTH exits with return code 0x00000002.

Open in new window


This is the error from the DCDIAG from PRODDC70-VM:

      Starting test: KccEvent
         A warning event occurred.  EventID: 0x8000061E
            Time Generated: 11/01/2016   17:21:00
            Event String:
            All directory servers in the following site that can replicate the directory partition over this transport are currently unavailable.
         An error event occurred.  EventID: 0xC000051F
            Time Generated: 11/01/2016   17:21:00
            Event String:
            The Knowledge Consistency Checker (KCC) has detected problems with the following directory partition.
         A warning event occurred.  EventID: 0x80000749
            Time Generated: 11/01/2016   17:21:00
            Event String:
            The Knowledge Consistency Checker (KCC) was unable to form a complete spanning tree network topology. As a result, the following list of sites cannot be reached from the local site.
         A warning event occurred.  EventID: 0x8000061E
            Time Generated: 11/01/2016   17:21:00
            Event String:
            All directory servers in the following site that can replicate the directory partition over this transport are currently unavailable.
         An error event occurred.  EventID: 0xC000051F
            Time Generated: 11/01/2016   17:21:00
            Event String:
            The Knowledge Consistency Checker (KCC) has detected problems with the following directory partition.
         A warning event occurred.  EventID: 0x80000749
            Time Generated: 11/01/2016   17:21:00
            Event String:
            The Knowledge Consistency Checker (KCC) was unable to form a complete spanning tree network topology. As a result, the following list of sites cannot be reached from the local site.
         A warning event occurred.  EventID: 0x8000061E
            Time Generated: 11/01/2016   17:21:00
            Event String:
            All directory servers in the following site that can replicate the directory partition over this transport are currently unavailable.
         An error event occurred.  EventID: 0xC000051F
            Time Generated: 11/01/2016   17:21:00
            Event String:
            The Knowledge Consistency Checker (KCC) has detected problems with the following directory partition.
         A warning event occurred.  EventID: 0x80000749
            Time Generated: 11/01/2016   17:21:00
            Event String:
            The Knowledge Consistency Checker (KCC) was unable to form a complete spanning tree network topology. As a result, the following list of sites cannot be reached from the local site.
         A warning event occurred.  EventID: 0x8000061E
            Time Generated: 11/01/2016   17:21:00
            Event String:
            All directory servers in the following site that can replicate the directory partition over this transport are currently unavailable.
         An error event occurred.  EventID: 0xC000051F
            Time Generated: 11/01/2016   17:21:00
            Event String:
            The Knowledge Consistency Checker (KCC) has detected problems with the following directory partition.
         A warning event occurred.  EventID: 0x80000749
            Time Generated: 11/01/2016   17:21:00
            Event String:
            The Knowledge Consistency Checker (KCC) was unable to form a complete spanning tree network topology. As a result, the following list of sites cannot be reached from the local site.

Open in new window


Any help would be greatly appreciated.

Thanks,
0
Comment
  • 3
4 Comments
 
LVL 7

Expert Comment

by:Niten Kumar
ID: 41867924
Can you also run repadmin /showrepl and repadmin /replsummary and post results
0
 
LVL 8

Author Comment

by:Senior IT System Engineer
ID: 41867932
Niten,

This is the error result from the PRODDC67-VM

PRODDC67-VM:  Current time is 2016-11-01 10:23:40.
   DC=ForestDnsZones,DC=MyDomain,DC=local
      Last replication received from PRODDC70-VM at 2016-10-11 20:06:33
   DC=DomainDnsZones,DC=MyDomain,DC=local
      Last replication received from PRODDC70-VM at 2016-10-11 20:06:33
   CN=Schema,CN=Configuration,DC=MyDomain,DC=local
      Last replication received from PRODDC70-VM at 2016-10-11 20:06:32
   CN=Configuration,DC=MyDomain,DC=local
      Last replication received from PRODDC70-VM at 2016-10-11 20:06:32
   DC=MyDomain,DC=local
      Last replication received from PRODDC70-VM at 2016-10-11 20:06:32

Open in new window

0
 
LVL 7

Expert Comment

by:Niten Kumar
ID: 41867956
Seems like you have connectivity issues since the last replication happened on 11-10-2016. Do you have two DCs in your environment only.  Is the time on both dcs synchronized.  Can you run repadmin /replsum and repadmin /syncall and see if you get any errors.
0
 
LVL 7

Accepted Solution

by:
Niten Kumar earned 2000 total points
ID: 41867965
There is a technet thread with an error similar to yours on at the link below.
The Knowledge Consistency Checker (KCC) was unable to form a complete spanning tree network topology. As a result, the following list of sites cannot be reached from the local site


https://social.technet.microsoft.com/Forums/windowsserver/en-US/e689b8d9-845e-4f2e-af6b-b237fb76ebb4/the-knowledge-consistency-checker-kcc-was-unable-to-form-a-complete-spanning-tree-network?forum=winserverDS

The issue was solved by registering the w32time...see link below:

https://awinish.wordpress.com/2011/10/07/time-server-role-in-forestdomain-2/
1

Featured Post

Problems using Powershell and Active Directory?

Managing Active Directory does not always have to be complicated.  If you are spending more time trying instead of doing, then it's time to look at something else. For nearly 20 years, AD admins around the world have used one tool for day-to-day AD management: Hyena. Discover why

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Here's a look at newsworthy articles and community happenings during the last month.
In the absence of a fully-fledged GPO Management product like AGPM, the script in this article will provide you with a simple way to watch the domain (or a select OU) for GPOs changes and automatically take backups when policies are added, removed o…
This tutorial will walk an individual through the process of configuring basic necessities in order to use the 2010 version of Data Protection Manager. These include storage, agents, and protection jobs. Launch Data Protection Manager from the deskt…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
Suggested Courses

810 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question