2012 DC rename causes problems
i had 2003 domain 1 dc called server1. i added 2012 r2 dc called server2 domain , transferred fsmo roles it.
demoted original server1 , renamed oldserver1. everything seemed working fine. i needed rename server2 server1 applications reasons. i performed rename using gui. there error, appeared rename did take place. i rebooted and <g class="gr_ gr_950 gr-alert gr_spell gr_run_anim contextualspelling ins-del multireplace" data-gr-id="950" id="950">netlogon</g> did not work. <g class="gr_ gr_1039 gr-alert gr_gramm gr_run_anim punctuation only-ins replacewithoutsep" data-gr-id="1039" id="1039">unfortunately</g> i did not system state of <g class="gr_ gr_1038 gr-alert gr_gramm gr_run_anim grammar only-del replacewithoutsep" data-gr-id="1038" id="1038">the 2012</g> before rename. any ideas appreciated.
performing initial setup:
trying find home server...
* verifying local machine <g class="gr_ gr_1021 gr-alert gr_gramm gr_run_anim punctuation only-del replacewithoutsep" data-gr-id="1021" id="1021">server1,</g> is directory server.
home server = server1
* connecting directory service on server server1.
* identified ad forest.
collecting <g class="gr_ gr_943 gr-alert gr_spell gr_run_anim contextualspelling ins-del multireplace" data-gr-id="943" id="943">ad specific</g> global data
* collecting site info.
calling ldap_search_init_page(hld,cn=sites,cn=configuration,dc=domainname,dc=local,ldap_scope_subtree,(objectcategory=ntdssitesettings),.......
the previous call succeeded
iterating through sites
looking @ base site object: cn=ntds site settings,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
getting istg , options site
* identifying servers.
calling ldap_search_init_page(hld,cn=sites,cn=configuration,dc=domainname,dc=local,ldap_scope_subtree,(objectclass=ntdsdsa),.......
the previous call succeeded....
the previous call succeeded
iterating through list of servers
getting information server cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
objectguid obtained
invocationid obtained
dnshostname obtained
site info obtained
all info server collected
* identifying nc cross-refs.
* found 1 dc(s). testing 1 of them.
done gathering initial info.
doing initial required tests
testing server: default-first-site-name\server2
starting test: connectivity
* active directory ldap services check
determining ip4 connectivity
determining ip6 connectivity
* active directory rpc services check
......................... server2 passed test connectivity
doing primary tests
testing server: default-first-site-name\server2
starting test: advertising
fatal error:dsgetdcname (server2) call failed, error 1717
the locator not find server.
rpc extended error info not available. use group policy on local
machine @ "computer configuration/administrative
templates/system/remote procedure call" enable it.
......................... server2 failed test advertising
test omitted user request: checksecurityerror
test omitted user request: cutoffservers
starting test: frsevent
* file replication service event log test
there warning or error events within last 24 hours after the
sysvol has been shared. failing sysvol replication problems may cause
group policy problems.
a warning event occurred. eventid: 0x800034fa
time generated: 02/23/2017 08:27:40
event string:
following summary of warnings , errors encountered file replication service while polling domain controller server1.domainname.local frs replica set configuration information.
could not find computer object computer. try again @ next polling cycle.
......................... server2 passed test frsevent
starting test: dfsrevent
the dfs replication event log.
skip test because server running frs.
......................... server2 passed test dfsrevent
starting test: sysvolcheck
* file replication service sysvol ready test
file replication service's sysvol ready
......................... server2 passed test sysvolcheck
starting test: knowsofroleholders
role schema owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
role domain owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
role pdc owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
role rid owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
role infrastructure update owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
......................... server2 passed test knowsofroleholders
starting test: machineaccount
checking machine account dc server2 on dc server2.
* spn found :ldap/server2.domainname.local/domainname.local
* spn found :ldap/server2.domainname.local
* spn found :ldap/server2
* spn found :ldap/server2.domainname.local/domainname
* spn found :ldap/2f9e64f3-5318-40eb-9a01-a5ae73bdf140._msdcs.domainname.local
* spn found :e3514235-4b06-11d1-ab04-00c04fc2dcd2/2f9e64f3-5318-40eb-9a01-a5ae73bdf140/domainname.local
* spn found :host/server2.domainname.local/domainname.local
* spn found :host/server2.domainname.local
* spn found :host/server2
* spn found :host/server2.domainname.local/domainname
* spn found :gc/server2.domainname.local/domainname.local
......................... server2 passed test machineaccount
starting test: ncsecdesc
* security permissions check nc's on dc server2.
the forest not ready rodc. skip checking <g class="gr_ gr_944 gr-alert gr_spell gr_run_anim contextualspelling ins-del multireplace" data-gr-id="944" id="944">erodc</g> aces.
* security permissions check for
dc=domaindnszones,dc=domainname,dc=local
(ndnc,version 3)
* security permissions check for
dc=forestdnszones,dc=domainname,dc=local
(ndnc,version 3)
* security permissions check for
cn=schema,cn=configuration,dc=domainname,dc=local
(schema,version 3)
* security permissions check for
cn=configuration,dc=domainname,dc=local
(configuration,version 3)
* security permissions check for
dc=domainname,dc=local
(domain,version 3)
......................... server2 passed test ncsecdesc
starting test: netlogons
* network logons privileges check
unable connect netlogon share! (\\server2\netlogon)
[server2] <g class="gr_ gr_1002 gr-alert gr_gramm gr_run_anim grammar multireplace" data-gr-id="1002" id="1002">an net</g> use or lsapolicy operation failed error 67,
the network name cannot be <g class="gr_ gr_1003 gr-alert gr_gramm gr_run_anim punctuation multireplace" data-gr-id="1003" id="1003">found..</g>
......................... server2 failed test netlogons
starting test: objectsreplicated
server2 in domain dc=domainname,dc=local
checking cn=server1,ou=domain controllers,dc=domainname,dc=local in domain dc=domainname,dc=local on 1 servers
<g class="gr_ gr_965 gr-alert gr_gramm gr_run_anim grammar multireplace" data-gr-id="965" id="965">object</g> is up-to-date on servers.
checking cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local in domain cn=configuration,dc=domainname,dc=local on 1 servers
<g class="gr_ gr_992 gr-alert gr_gramm gr_run_anim grammar multireplace" data-gr-id="992" id="992">object</g> is up-to-date on servers.
......................... server2 passed test objectsreplicated
test omitted user request: outboundsecurechannels
starting test: replications
* replications check
* replication latency check
dc=domaindnszones,dc=domainname,dc=local
hi
alternate can rename dc netdom command,check article follow dns settings;
https://technet.microsoft.com/en-us/library/cc816601%28v=ws.10%29.aspx?f=255&mspperror=-2147217396
also after run "ipconfig /flushdns","ipconfig /registerdns"..
otherwise if issue persist share "dcdiag" result here.
this posting provided no warranties or guarantees,and confers no rights. best regards burak uğur
Windows Server > Directory Services
Comments
Post a Comment