troubleshooting Question

Active Directory replication errors

Avatar of Dale Forguson
Dale ForgusonFlag for United States of America asked on
* Active Directory ReplicationActive Directory
28 Comments1 Solution30 ViewsLast Modified:
The Customer has 4 sites which are configured in AD sites and services. There is one domain, no sub-domains. Servers are a combination of 2012, 2016, and 2019. Site A has two DCs one of which is the FSMO role holder for all 5 roles. Each of the other sites have one DC each. The DC at Site D reports that it is the role holder for Schema Master. This is the only role which is not synched for all DCs. All four sites are connected with site to site VPN. Each site is on a separate subnet. All DCs can ping all other DCs by name or IP address.

If I run repadmin /syncall /Adeq on the FSMO role holder at Site A I see error 1722 "The RPC server is unavailable" from Site C to Site B.  
If I run repadmin /replsum on the DC at Site D it reports operational error 8341 for all 4 other DC replications. Source (Site A FSMO role holder) fails 40% error 8606 "Insufficient attributes were given to create an object. This object may not exist because it may have been deleted and already garbage collected"
Destination (Site D) has the same failure rate, error code and error message.
At Site D DC in Sites and Services if I navigate to NTDS settings for the FSMO role holder at Site A and select "Replicate configuration from the selected DC" it is successful.
This thread seems to be most similar to the issues I have; https://community.spiceworks.com/topic/2178528-the-target-principal-name-is-incorrect based on Dcdiag results. I have followed the steps in the last post in the thread marked as the solution but my problems are not resolved.
ASKER CERTIFIED SOLUTION
Michael Pfister

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Join our community to see this answer!
Unlock 1 Answer and 28 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 28 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros