G
Guest
Guest
Archived from groups: microsoft.public.win2000.active_directory (More info?)
I am having trouble with one of my site domain controllers replicating with
other DCs. I have the two sites connected via High Speed DSL line with a
VPN tunnel through my firewall. This setup has worked in the past but has
just recently stopped replicating. The only change I can think of that we
have made lately is we replaced a T1 with a DSL at one of the endpoints. I
am sort of thinking that it may be a DNS problem but I am not really sure.
I will list some problems below that may or may not be related. Please
help.
**1. It will not let me create a Active Directory Integrated Reverse-Looked
up zone for one of my domains. It told me that the zone type was invalid.
It would let me create ADI Reverse Lookup Zones for other domains. Also, it
just let me change the lookup zone from a primary to AD integrated. ? ? ?
**2. I am having several problems to show up in my event viewer. Here is
one.
Event Type: Error
Event Source: NETLOGON
Event Category: None
Event ID: 5774
Date: 3/30/2005
Time: 6:01:58 AM
User: N/A
Computer: BC1
Description:
Registration of the DNS record
'dd62078e-2991-4c4b-a2bd-cb62d30d5235._msdcs.bouldincorp.com. 600 IN CNAME
bc1.bouldincorp.com.' failed with the following error:
DNS RR set that ought to exist, does not exist.
Data:
0000: 30 23 00 00 0#..
**3. Here is another error in event viewer. This is happening every 15
minutes when the AD tries to replicate.
Event Type: Error
Event Source: NTDS KCC
Event Category: (1)
Event ID: 1311
Date: 3/30/2005
Time: 8:25:41 AM
User: N/A
Computer: BC1
Description:
The Directory Service consistency checker has determined that either (a)
there is not enough physical connectivity published via the Active Directory
Sites and Services Manager to create a spanning tree connecting all the
sites containing the Partition CN=Configuration,DC=bouldincorp,DC=com, or
(b) replication cannot be performed with one or more critical servers in
order for changes to propagate across all sites (most often due to the
servers being unreachable).
For (a), please use the Active Directory Sites and Services Manager to do
one of the following:
1. Publish sufficient site connectivity information such that the system can
infer a route by which this Partition can reach this site. This option is
preferred.
2. Add an ntdsConnection object to a Domain Controller that contains the
Partition CN=Configuration,DC=bouldincorp,DC=com in this site from a Domain
Controller that contains the same Partition in another site.
For (b), please see previous events logged by the NTDS KCC source that
identify the servers that could not be contacted.
**4. A warning message always appears with the previous message. Here it
is.
Event Type: Warning
Event Source: NTDS KCC
Event Category: (1)
Event ID: 1566
Date: 3/30/2005
Time: 8:25:41 AM
User: N/A
Computer: BC1
Description:
All servers in site CN=RedRd,CN=Sites,CN=Configuration,DC=bouldincorp,DC=com
that can replicate partition CN=Configuration,DC=bouldincorp,DC=com over
transport CN=IP,CN=Inter-Site
Transports,CN=Sites,CN=Configuration,DC=bouldincorp,DC=com are currently
unavailable.
**5. And finally when I try to manually replicate through Sites and
Services it pops up with an error box. This error is intermittent and
sometimes it says that the AD will be replicated whenever it can. I will
type it in below.
REPLICATE NOW
The following error occurred during the attempt to contact the comain
controllers:
The RPC server is unavailable.
This condition may be caused by a DNS lookup problem.
Sorry for the long description but please help if anyone knows what is going
on.
Thanks,
Scotty
I am having trouble with one of my site domain controllers replicating with
other DCs. I have the two sites connected via High Speed DSL line with a
VPN tunnel through my firewall. This setup has worked in the past but has
just recently stopped replicating. The only change I can think of that we
have made lately is we replaced a T1 with a DSL at one of the endpoints. I
am sort of thinking that it may be a DNS problem but I am not really sure.
I will list some problems below that may or may not be related. Please
help.
**1. It will not let me create a Active Directory Integrated Reverse-Looked
up zone for one of my domains. It told me that the zone type was invalid.
It would let me create ADI Reverse Lookup Zones for other domains. Also, it
just let me change the lookup zone from a primary to AD integrated. ? ? ?
**2. I am having several problems to show up in my event viewer. Here is
one.
Event Type: Error
Event Source: NETLOGON
Event Category: None
Event ID: 5774
Date: 3/30/2005
Time: 6:01:58 AM
User: N/A
Computer: BC1
Description:
Registration of the DNS record
'dd62078e-2991-4c4b-a2bd-cb62d30d5235._msdcs.bouldincorp.com. 600 IN CNAME
bc1.bouldincorp.com.' failed with the following error:
DNS RR set that ought to exist, does not exist.
Data:
0000: 30 23 00 00 0#..
**3. Here is another error in event viewer. This is happening every 15
minutes when the AD tries to replicate.
Event Type: Error
Event Source: NTDS KCC
Event Category: (1)
Event ID: 1311
Date: 3/30/2005
Time: 8:25:41 AM
User: N/A
Computer: BC1
Description:
The Directory Service consistency checker has determined that either (a)
there is not enough physical connectivity published via the Active Directory
Sites and Services Manager to create a spanning tree connecting all the
sites containing the Partition CN=Configuration,DC=bouldincorp,DC=com, or
(b) replication cannot be performed with one or more critical servers in
order for changes to propagate across all sites (most often due to the
servers being unreachable).
For (a), please use the Active Directory Sites and Services Manager to do
one of the following:
1. Publish sufficient site connectivity information such that the system can
infer a route by which this Partition can reach this site. This option is
preferred.
2. Add an ntdsConnection object to a Domain Controller that contains the
Partition CN=Configuration,DC=bouldincorp,DC=com in this site from a Domain
Controller that contains the same Partition in another site.
For (b), please see previous events logged by the NTDS KCC source that
identify the servers that could not be contacted.
**4. A warning message always appears with the previous message. Here it
is.
Event Type: Warning
Event Source: NTDS KCC
Event Category: (1)
Event ID: 1566
Date: 3/30/2005
Time: 8:25:41 AM
User: N/A
Computer: BC1
Description:
All servers in site CN=RedRd,CN=Sites,CN=Configuration,DC=bouldincorp,DC=com
that can replicate partition CN=Configuration,DC=bouldincorp,DC=com over
transport CN=IP,CN=Inter-Site
Transports,CN=Sites,CN=Configuration,DC=bouldincorp,DC=com are currently
unavailable.
**5. And finally when I try to manually replicate through Sites and
Services it pops up with an error box. This error is intermittent and
sometimes it says that the AD will be replicated whenever it can. I will
type it in below.
REPLICATE NOW
The following error occurred during the attempt to contact the comain
controllers:
The RPC server is unavailable.
This condition may be caused by a DNS lookup problem.
Sorry for the long description but please help if anyone knows what is going
on.
Thanks,
Scotty