Ax Ma
asked on
Replication error tombstone lifetime and figuring out FSMO roles
Hey,
So I am trying to troubleshoot replication issues in this domain with two domain controllers DC1(PDC), DC2(BDC). About a year ago the PDC stopped working and they were having issues with users logging, changing passwords and stuff so they promoted DC2(BDC). Upon inspecting today I found that the replication issues were caused due to netlogon service not running and every time a manual replication was tired "The target principal name is incorrect" as an error was thrown.
So after some troubleshooting the netlogon service is running now without any issues but now I am get the following error when I try manual replication.
Also when I run the "netdom query fsmo" command both server claim to be owner of all roles except for DC2 not claiming Domain Naming Master Role.
netdom query fsmo on DC2
netdom query fsmo on DC1
Can you please tell me what's the best solution here for me?
Thanks so much!
So I am trying to troubleshoot replication issues in this domain with two domain controllers DC1(PDC), DC2(BDC). About a year ago the PDC stopped working and they were having issues with users logging, changing passwords and stuff so they promoted DC2(BDC). Upon inspecting today I found that the replication issues were caused due to netlogon service not running and every time a manual replication was tired "The target principal name is incorrect" as an error was thrown.
So after some troubleshooting the netlogon service is running now without any issues but now I am get the following error when I try manual replication.
The following error occurred during the attempt to syncronize naming context CN=Configuration,DC=Domain,DC=Local from Domain Controller AD to Domain Controller AD2; The directory service cannot replicate with this server because the time since the last replication with this server has exceeded the tombstone lifetime. This operation will not continue.
Also when I run the "netdom query fsmo" command both server claim to be owner of all roles except for DC2 not claiming Domain Naming Master Role.
netdom query fsmo on DC2
Schema master DC2.company.local
Domain naming master DC1.company.local
PDC DC2.company.local
RID pool manager DC2.company.local
Infrastructure master DC2.company.local
The command completed successfully.
netdom query fsmo on DC1
Schema master DC1.company.local
Domain naming master DC1.company.local
PDC DC1.company.local
RID pool manager DC1.company.local
Infrastructure master DC1.company.local
The command completed successfully.
Can you please tell me what's the best solution here for me?
Thanks so much!
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
I have recommended this question be closed as follows:
Accept: FOX (https:#a42646476)
If you feel this question should be closed differently, post an objection and the moderators will review all objections and close it as they feel fit. If no one objects, this question will be closed automatically the way described above.
seth2740
Experts-Exchange Cleanup Volunteer