2012 DC rename causes problems


i had 2003 domain 1 dc called server1.  i  added 2012 r2 dc called server2 domain , transferred fsmo roles it.

demoted original server1 , renamed oldserver1.  everything seemed working fine.  i needed rename server2 server1 applications reasons.  i performed rename using gui. there error, appeared rename did take place.  i rebooted and <g class="gr_ gr_950 gr-alert gr_spell gr_run_anim contextualspelling ins-del multireplace" data-gr-id="950" id="950">netlogon</g> did not work.  <g class="gr_ gr_1039 gr-alert gr_gramm gr_run_anim punctuation only-ins replacewithoutsep" data-gr-id="1039" id="1039">unfortunately</g> i did not system state of <g class="gr_ gr_1038 gr-alert gr_gramm gr_run_anim grammar only-del replacewithoutsep" data-gr-id="1038" id="1038">the 2012</g> before rename.  any ideas appreciated.


directory server diagnosis

performing initial setup:
   trying find home server...
   * verifying local machine <g class="gr_ gr_1021 gr-alert gr_gramm gr_run_anim punctuation only-del replacewithoutsep" data-gr-id="1021" id="1021">server1,</g> is directory server. 
   home server = server1
   * connecting directory service on server server1.
   * identified ad forest. 
   collecting <g class="gr_ gr_943 gr-alert gr_spell gr_run_anim contextualspelling ins-del multireplace" data-gr-id="943" id="943">ad specific</g> global data 
   * collecting site info.
   calling ldap_search_init_page(hld,cn=sites,cn=configuration,dc=domainname,dc=local,ldap_scope_subtree,(objectcategory=ntdssitesettings),.......
   the previous call succeeded 
   iterating through sites 
   looking @ base site object: cn=ntds site settings,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
   getting istg , options site
   * identifying servers.
   calling ldap_search_init_page(hld,cn=sites,cn=configuration,dc=domainname,dc=local,ldap_scope_subtree,(objectclass=ntdsdsa),.......
   the previous call succeeded....
   the previous call succeeded
   iterating through list of servers 
   getting information server cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local 
   objectguid obtained
   invocationid obtained
   dnshostname obtained
   site info obtained
   all info server collected
   * identifying nc cross-refs.
   * found 1 dc(s). testing 1 of them.
   done gathering initial info.
doing initial required tests
     testing server: default-first-site-name\server2
      starting test: connectivity
         * active directory ldap services check
         determining ip4 connectivity 
         determining ip6 connectivity 
         * active directory rpc services check
         ......................... server2 passed test connectivity
doing primary tests
    testing server: default-first-site-name\server2
      starting test: advertising
         fatal error:dsgetdcname (server2) call failed, error 1717
         the locator not find server.
         rpc extended error info not available. use group policy on local
         machine @ "computer configuration/administrative
         templates/system/remote procedure call" enable it.
         ......................... server2 failed test advertising
      test omitted user request: checksecurityerror
      test omitted user request: cutoffservers
      starting test: frsevent
         * file replication service event log test 
         there warning or error events within last 24 hours after the
         sysvol has been shared.  failing sysvol replication problems may cause
        group policy problems. 
         a warning event occurred.  eventid: 0x800034fa
            time generated: 02/23/2017   08:27:40
            event string:
            following summary of warnings , errors encountered file replication service while polling domain controller server1.domainname.local frs replica set configuration information. 
                  could not find computer object computer. try again @ next polling cycle.
     
         ......................... server2 passed test frsevent

      starting test: dfsrevent

         the dfs replication event log. 
         skip test because server running frs.

         ......................... server2 passed test dfsrevent

      starting test: sysvolcheck
         * file replication service sysvol ready test 
         file replication service's sysvol ready 
         ......................... server2 passed test sysvolcheck
    

      starting test: knowsofroleholders

         role schema owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
         role domain owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
         role pdc owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
         role rid owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
         role infrastructure update owner = cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local
         ......................... server2 passed test knowsofroleholders
      starting test: machineaccount
         checking machine account dc server2 on dc server2.
         * spn found :ldap/server2.domainname.local/domainname.local
         * spn found :ldap/server2.domainname.local
         * spn found :ldap/server2
         * spn found :ldap/server2.domainname.local/domainname
         * spn found :ldap/2f9e64f3-5318-40eb-9a01-a5ae73bdf140._msdcs.domainname.local
         * spn found :e3514235-4b06-11d1-ab04-00c04fc2dcd2/2f9e64f3-5318-40eb-9a01-a5ae73bdf140/domainname.local
         * spn found :host/server2.domainname.local/domainname.local
         * spn found :host/server2.domainname.local
         * spn found :host/server2
         * spn found :host/server2.domainname.local/domainname
         * spn found :gc/server2.domainname.local/domainname.local
         ......................... server2 passed test machineaccount
      starting test: ncsecdesc
         * security permissions check nc's on dc server2.
         the forest not ready rodc. skip checking <g class="gr_ gr_944 gr-alert gr_spell gr_run_anim contextualspelling ins-del multireplace" data-gr-id="944" id="944">erodc</g> aces.
         * security permissions check for
           dc=domaindnszones,dc=domainname,dc=local
            (ndnc,version 3)
         * security permissions check for
           dc=forestdnszones,dc=domainname,dc=local
            (ndnc,version 3)
         * security permissions check for
           cn=schema,cn=configuration,dc=domainname,dc=local
            (schema,version 3)
         * security permissions check for
           cn=configuration,dc=domainname,dc=local
            (configuration,version 3)
         * security permissions check for
           dc=domainname,dc=local
            (domain,version 3)
         ......................... server2 passed test ncsecdesc

      starting test: netlogons
         * network logons privileges check
         unable connect netlogon share! (\\server2\netlogon)
         [server2] <g class="gr_ gr_1002 gr-alert gr_gramm gr_run_anim grammar multireplace" data-gr-id="1002" id="1002">an net</g> use or lsapolicy operation failed error 67,
         the network name cannot be <g class="gr_ gr_1003 gr-alert gr_gramm gr_run_anim punctuation multireplace" data-gr-id="1003" id="1003">found..</g>
         ......................... server2 failed test netlogons
      starting test: objectsreplicated
         server2 in domain dc=domainname,dc=local
         checking cn=server1,ou=domain controllers,dc=domainname,dc=local in domain dc=domainname,dc=local on 1 servers
            <g class="gr_ gr_965 gr-alert gr_gramm gr_run_anim grammar multireplace" data-gr-id="965" id="965">object</g> is up-to-date on servers.
         checking cn=ntds settings,cn=server2,cn=servers,cn=default-first-site-name,cn=sites,cn=configuration,dc=domainname,dc=local in domain cn=configuration,dc=domainname,dc=local on 1 servers
            <g class="gr_ gr_992 gr-alert gr_gramm gr_run_anim grammar multireplace" data-gr-id="992" id="992">object</g> is up-to-date on servers.
         ......................... server2 passed test objectsreplicated
      test omitted user request: outboundsecurechannels
      starting test: replications
         * replications check
         * replication latency check
            dc=domaindnszones,dc=domainname,dc=local
          

hi

 alternate can rename dc netdom command,check article follow dns settings;

https://technet.microsoft.com/en-us/library/cc816601%28v=ws.10%29.aspx?f=255&mspperror=-2147217396

also after run "ipconfig /flushdns","ipconfig /registerdns"..

otherwise if issue persist share "dcdiag" result here.


this posting provided no warranties or guarantees,and confers no rights. best regards burak uğur



Windows Server  >  Directory Services



Comments

Popular posts from this blog

some help on Event 540

WMI Repository 4GB limit - Win 2003 Ent Question

Event ID 1302 (error 1307) DFS replication service encountered an error while writing to the debug log file