I have a Windows 2003 R2 (SRV1) and 2008 RS (SRV2). They are both Domain controllers. I added 4 new Windows 7 Pro workstations and noticed that some were not able to log into the security domain due to their computer account. I rebooted the troubled workstations and was back in. Obviously it depended on which server the workstations were trying to log in with. I checked the event logs to discover that AD replications was not happening.
I ran Dcdiag and repadmin. I received a number of errors that have me running in circles.
In order to clear the slate and start from the beginning, I went to each server and pushed an AD replication. I received the following error:
Replicate Now - window from SRV1
The Following error occured during the attempt to
synchronize naming context ABC.Local from domain controller
SRV2 to domain controller SRV1: Insufficient attributes
were given to create an object. This object may not exist
because it may have been deleted and already garbage
I believe AD replication has been down for a while - months. I don't want this to get worse. Can anybody help on this matter? How do I repair/restore replication? More importantly, ensure the health of my AD.
I will follow up with some of the Dcdiag errors