Logon failure after upgrade Windows 2003 domain functional level and schema

Before upgrade:
Windows 2003 Std server: Domain functional level 2000, Schema verion 30
Crystal Report XI R2: Authentication: Windows AD
Logon OK.
After Upgrade:
Windows 2003 Std + Windows 2008: Domain functional level 2003, Schema verion 44
Crystal Report XI R2: Authentication: Windows AD
Logon Error: An error has occurred: java.lan.NullPointerException
Is it a Tomcat problem?  OR Java runtime problem?  OR XI R2 problem?
Anyone can help to fix it!?  Thanks!!

OK, I try again in the testing lab and simplify the combination.  We only consider Windows 2003 ONLY.
Before AD upgrade:
AD/Domain Controller: Windows 2003 Std server: Domain functional level 2000, Schema verion 30
Crystal Report XI R2: run on Windows 2003 memeber server
Operating OS: Windows XP/Vista/7: Authentication: Windows AD
Logon OK.
Upgrade cmbination 1
Step 1:
Upgrade Domain controller: Windows 2003 to Windows 2003 R2 (Domain functional level 2000, Schema verion 31 )
Crystal Report XI R2: run on Windows 2003 memeber server
Operating OS: Windows XP/Vista/7: Authentication: Windows AD
Logon OK.
Step 2:
Upgrade Domain Functional Level: Windows 2003 R2 (Domain functional level 2003, Schema verion 31)
Crystal Report XI R2: run on Windows 2003 memeber server
Operating OS: Windows XP/Vista/7: Authentication: Windows AD
Logon Fail
Logon Error: An error has occurred: java.lan.NullPointerException
Upgrade combination 2
Direct upgrade Domain Functional Level: Windows 2003 (Domain functional level 2003, Schema verion 30)
Crystal Report XI R2: run on Windows 2003 memeber server
Operating OS: Windows XP/Vista/7: Authentication: Windows AD
Logon Fail
Logon Error: An error has occurred: java.lan.NullPointerException
In this testing, we can conclude that the Domain Functional Level upgrade from 2000 to 2003. The MI logon will fail.
Q1. Crystal Report XI R2 cannot run on Windows 2003 server (Domain Functional Level: 2003)?
Q2. If Crystal Report XI R2 can run on Domain Functional Leve: 2003, how to fix our problem?
Do you have any idea to help us?  Thanks!
Edited by: Initiator on Jul 20, 2010 6:22 AM

Similar Messages

  • Windows 2008 R2 domain controllers with Windows 2003 forest functional level Supported after Windows 2003 support ends in July 2015

    Hi
    Anyone knows whether Windows 2008 R2 domain controllers with Windows 2003 forest functional level will still be Supported after Windows 2003 support ends in July 2015 ?
    Thanks

    When Windows Server 2003 support ends, you should not have a Windows Server 2003 Domain Controller running if you would like to be supported by Microsoft. This means that there will be no reason to have a DFL or FFL that is lower than Windows Server 2008.
    So, if you are keeping Windows Server 2003 FFL to keep DCs running Windows Server 2003 then this is not supported.
    This posting is provided AS IS with no warranties or guarantees , and confers no rights.
    Ahmed MALEK
    My Website Link
    My Linkedin Profile
    My MVP Profile

  • Hyper-v 2012 R2 Live migration issue in 2003 Domain function Level

    hi Team ,
    i recently build 2012 R2 Hyper-v Cluster with three node. Everrything working fine with out any issue . Cluster working also fine. Later i came across one issue when tried to Live migration virtual machine from one host to another . it failed all the time
    while quick migration is working . i gone through few articles and find it is known issue with hyper-v 2012 R2 where domain functional level is set to 2003 . although they have provided Hotfix but no solution.
    http://support.microsoft.com/kb/2838043
    Please let me know if any one face similar issue and able to resolve by any hotfix. My host are updated .
    Thanks
    Ravindra
    Ravi

    Hi Ravi1987,
    The KB2838043 is applied for Server 2012 node, Could you offer us the related cluster error event id, or you can refer the following article to check your cluster
    network binding order is correct or not.
    Configuring Windows Failover Cluster Networks
    http://blogs.technet.com/b/askcore/archive/2014/02/20/configuring-windows-failover-cluster-networks.aspx
    You can try to install recommended hotfixes and updates for Windows Server 2012 R2-based failover clusters first, then monitor this issue again.
    The KB download:
    Recommended hotfixes and updates for Windows Server 2012 R2-based failover clusters
    http://support.microsoft.com/kb/2920151
    More information:
    Windows Server 2008 R2 Live Migration – “The devil may be in the networking details.”
    http://blogs.technet.com/b/askcore/archive/2009/12/10/windows-server-2008-r2-live-migration-the-devil-may-be-in-the-networking-details.aspx
    I’m glad to be of help to you!

  • SCSM 2012 with 2003 domain functional level supported?

    All,
    I am running SCCM 2007. Now I need to install Service Manager 2012SP1. Domain functional level is 2003 with 2008 DC.
    will this allow me to install SCSM 2012SP1 with full features? or will it be reduced functionality?
    will there be any schema extension when I install SCSM 2012? pleas note we already have SCCM 2007 running.
    can I upgrade SCCM 2007 to SCCM 2012?  
    it would be helpful if you could share some link about whether its possible or not.
    Thanks.
    KailashC

    Thomas,
    Thanks for your response. Can I do a direct upgrade SCCM 2007 SP3 to SCCM 2012 or do I need to plan a migration? I mean fresh install SCCM 2012 and then migrate the data over ?
    Thanks.
    KailashC

  • Exchange Server 2003 SP2 - Forest and Domain Functional Level Limitations

    Hi All
    Bit of a legacy question and theres not much clarity out there..
    I need to confirm the highest DFL and FFL Supported by Microsoft for Exchange 2003 SP2?
    We currently have a mix of 2003 R2 and 2008 R2 domain controllers with the FFL and DFL currently set at 2003 R2.
    The plan is to move to Exchange 2010 in the very near future, so the question is do we need to wait until we upgrade to Exchange 2010 Before upgrading the DFL and FFL to 2008 R2?
    From what Ive read we will need to complete the Exchange upgrade first before moving forward with the functional level upgrades..
    Thanks in advance
    Bull

    Hi Bull,
    As Ed mentioned, Exchange server 2003 and Exchange 2010 support Windows Server 2003 domain functional level and Windows Server 2003 forest functional level, also supported in higher environment.
    More details about it, please refer to “Supported Active Directory environment” section:
    http://technet.microsoft.com/en-us/library/ff728623(v=exchg.150).aspx
    Note that we cannot add new DCs which are the less version of Windows Server
    cannot be added to the domain or forest. More details about
    the Impact of Upgrading the Domain or Forest Functional Level, for your reference:
    http://blogs.technet.com/b/askds/archive/2011/06/14/what-is-the-impact-of-upgrading-the-domain-or-forest-functional-level.aspx
    Best Regards,
    Allen Wang

  • Transferring the Business Objects Server to a another Windows 2003 Domain

    Greeting Everyone
    I am in the process of moving the BOX1 Server (Windows Member) from one Windows 2003 Domain to another and want to make the movement as smooth as possible.
    I am in the process of making a checklist on what needs to be done before and after the movement of the BOX1 Server. With your expertise can you please advise me on the points to be considered on this movement.
    Thanks in advance
    Regards
    Venkat

    Hi Tim
    As usual thanks for your prompt response.
    I am using BOX1 R1 which is working in an unique way (defy all rules) in my environment. The server is located in Domain ABC and the users are located in domain XYZ. That means user is in one domain and server in another domain. Now we going to place the server in the same domain where the users are.
    The answers to your questions are
    Is this just the server that is moving?  Yes. The server is moving from ABC to XYZ
    Is the domain in the same forest as the original? No, They are independent Forests with 1 way trust relationship
    Are all the users that login going to keep using the same domain? Yes.
    What I am worried is that if I move my server between independent forests then all the SIDs (not sure) of the server will also change to my understanding. Worrying part is that will it hamper the the functionality of the server.
    Please also note that FQDN and the IP address will also change.
    Please advise and Thanks once again
    Venkat VS

  • Cannot Replicate after upgrading domain functional level

    Hello, 
    Parent and child domain. Parent domain (forest) still in domain functional level 2003. However, child domain i just updated to domain functional level 2008 R2. Now replication is not working. I believe the issue is dns, but i do not know what could be different
    the names have not changed? This is a two way transitive trust between domains.
    Frequent messages from dcdiag dns, are 
    no DNS RPC connectivity (although i have tried restarting dcom, netbios and frs)
    Also in event viewer many 13508 errors
    Any help is greatly appreciated thank you.

    Have you restarted the DCs after that you raised the functional level? The password of the krbtgt account is reset when the DFL is raised from 2003 -> and sometimes the DCs need to be restarted for the authentication to succeed up to the root.
    If you from a Windows Server 2008 R2 DC run dcdiag /test:dns /E dose it report any errors?
    Enfo Zipper
    Christoffer Andersson – Principal Advisor
    http://blogs.chrisse.se - Directory Services Blog

  • Missing nodes in new GPO objects after adding ADMX to DC (Server 2008 Domain Functional Level 2003)

    Hello,
    we discovered an issue in GPO console.
    DCs: multiple 2008 there is one 2003DC somewhere over the rainbow (don't ask why) :)
    Domain Functional Level is 2003.
    In June I added Policydefinitions folder into Policy folder in sysvol\domain_name.
    I did this for adding ADMX.
    Today we found missing nodes when adding new GPO objects and trying to modify them.
    Under Computers\Administrative Templates there is only ADMX node. No Administrative Templates with sub nodes: Systeme, Network, Printes, Windows Components.
    When edit old GPOs There is Administrative Templates in Administrative Templates with ADMX folder. SEE Screenshot.
    My colleague insists that it happened after I made changes by adding ADMX things. Looks that he is right.
    Please any help on this issue... How to get back nodes for managing new GPOs as it was before adding ADMX.
    Is this something known? I didn't find any prerequisites before adding PolicyDefinistions folder.
    Thanks.
    "When you hit a wrong note it's the next note that makes it good or bad". Miles Davis

    Meinolf,
    1. I would like to know if it is normal behaviour that after creating a Central Store (adding PolicyDefinitions folder into Policies) Classical Administrative Templates will not appear for any new GPO (they do exist to all previously created) see
    picture
    2. I followed the links. And eventually will use the script for cleaning up duplicate adms  in all GPOs. It is great feature of ADMX. But first I would like to bring back the option of Admin Templates.
    So I downloaded latest 2012 ADMXs. Run setup on my computer. Now I have Policydefinitions folder containing new ADMXs with languages (culture) folders.
    Am I right? I have to copy all *.admx files to my Central Store Policydefinitions folder and all En admls drop to En-Us language folders. What will happen if I will add Fr-Fr? Would it be correct to have 2 languages for the same admxs. And how they will
    appear. Or it will depend on OS language were GP console will be opened?
    No conflict to expect?
    I will do this "surgery" after your answer.
    Thanks for pointing out..
    "When you hit a wrong note it's the next note that makes it good or bad". Miles Davis

  • Lingering 2003 DC causing Domain Functional Level Upgrade fail

    Got that one too :(
    I can't find hide nor hair of this darn beast anywhere

    Have a DEAD 2003 DC - check
    Have removed it from AD via GUI (ADUC) deletion - Check
    Cleaned up DNS - Check and double check
    Review LostandFound container in ADSI edit - Check - No objects present
    Right click Domain Name in ADUC, select Raise Domain Functional level - F A I L
    Run through NTDSUTIL Metadata cleanup steps (MS technet article) - The server object isn't there
    What am I missing here? I've gone back over DNS, searched for the computer object, rechecked ADSI LostandFound, rechecked NTDSUTIL .. I'm at a hard loss to figure out what's stopped the Functional Level upgrade.
    Any ideas?
    This topic first appeared in the Spiceworks Community

  • Domain functional level upgraded to 2008 r2 native mode but query states 2003

    Nothing :(

    I raised the domain functional level last night to 2008 r2 native mode and after allowing everything to sync i ran the command get-addomain .domainmode and it came back ast windows2003forest. 
    I dont understand why it is showing up this way, we removed all of the 2003 domain controllers and server from our network before doing this...Any suggestions?
    This topic first appeared in the Spiceworks Community

  • Windows 8.1 cannot change password in Windows 2003 domain level domain

    On several installations of windows 8.1 enterprise, users cannot change passwords by using <ctrl> + <al> + <del> keys and choosing change password. 
    The error is: "The security database on the server does not have a computer account for this workstation trust relationship"
    Fresh Windows 8.1 enterprise installs with no patches to fully patched windows 8.1 enterprise workstations have the problem.  Backed out patches one by one and tested password change without success.  Tried various dell laptops, tablets, and workstations
    but same issue.  Tried VMware guest workstation with windows 8.1 enterprise.  The domain functional level is 2003 with a mixture of Windows 2008 R2 DC's and Windows 2003 DC's.
    The add/remove from domain did not help.  What troubleshooting steps should I take from this point?  Is this related to secure channel failures?  Note: did not find event log entries for the failures in the DC's nor on the workstation. 
    Perhaps I did not search  for the proper entry on the DC's.

    Hi,
    Please find below several possible cause of error “The security database on the server does
    not have a computer account for this workstation trust relationship”
    Secure channel is broken (Can fix by rejoin problematic client to domain)
    AD replication issue. The computer account exists on one domain controller but not others.
    Duplicated SPN (seems not possible)
    So, to narrow down the issue, you need to make sure the AD replication is working fine. Please run command
    repadmin /showrepl * on a DC, then post the result here.
    After that, please run
    set l on a problematic client, then post the result here.
    Moreover, please check on system event log and check if there have any related error of the issue.
    Thanks.

  • Windows 2012 root certification authority in a 2003 Domain/ Forest level

    Hello,
    We are currently on Windows 2003 Domain & Forest Functional Level. Our Root CA is also currently on Windows 2003 DC.
    If  we have to setup a new Root/Issuing CA ( not exporting the current 2003 CA cert) on Windows 2012 R2 servers,   is it then mandatory to first upgrade Domain & Forest levels to 2012 R2 ?  Can we have  a PKI infrastructure with
    Enterprise CA's on a Windows 2012 Platform but the Domain/Forest levels  still on 2003 level ?   i understand it will be good to have everything on 2012 R2 , but can a mix of 2003 domain level  and 2012 CA  work ?

    Hi,
    Look at below tread it might help:
    https://social.technet.microsoft.com/Forums/windowsserver/en-US/fa8cac92-0f71-426c-ac95-e89e90e1c8d1/certificate-authority-and-forestdomain-functional-level?forum=winserversecurity
    Basically the answer is yes you can have  CA on 2012 R2 and DFL/FFL still on 2003.
    Regards,
    Calin

  • What is the effect if I Raise my domain functional level to Windows Server 2012 R2 ?

    Hi,
    my current servers:
    Domain Controllers= Windows Server 2012 R2 (current domain functional level is windows 2008 R2)
    Mail servers= Exchange 2010 SP3 on Windows 2008 R2
    Lync= Lync 2010 on Windows server 2008 R2
    What is the effect if I Raise my domain functional level to Windows Server 2012 R2 ?
    I am very worried about Exchange & Lync if we do this action
    please advice

    Do not raise the forest functional level higher if you have or will have any domain controllers running
    an earlier version of Windows Server , which is (windows Nt4.0,  Window 2000 or windows 2003)
    but as a matter of fact I dont see any of those in your network so you can easily upgrade the funtional level without any issues
    Listed below link has the table which shows the effects of upgrading the domain functional levels to Windows 2012
    http://technet.microsoft.com/en-us/library/understanding-active-directory-functional-levels
    http://www.arabitpro.com

  • Windows 8.1 Professional users from a Windows 2003 domain to Microsoft IDs

    We've had a Windows 2003 domain for about 10 years. The original reason we created the Windows 2003 domain is no longer valid. (SQL Server integrated security)
    We would like to convert the domain user profiles on the Windows 8.1 boxes to user profiles associated with Microsoft ID's.
    I tested http://www.forensit.com/domain-migration.html but did not have good results. The challenge was the functionality provided by doing Windows Key + W and entering commands such as user, etc did not work. (ie: the store was messed
    up)
    So I am thinking the best way to do this is to convert the domain users to local users and then convert the local users to Microsoft ID users. I believe the conversion from local users to Microsoft ID users is native to Windows 8.1.
    Questions:
    1) Is the Windows 8.1 conversion from local users to Microsoft ID users reliable?
    2) What is the best method to convert a domain user provide to a local user profile on Windows 8.1?
    Thank you in advance for any assistance you may provide.
    Thank you, Bill

    Karen & Milos,
    Thank you for your assistance on this matter.
    Unfortunately, Windows 8.1 Store Apps represent such a massive change in architecture that I don't believe anyone can be 100% positive that copying user profiles will work properly.
    In summary, I've tried the following:
    1) User Profile Wizard v3.7 from Forensit.com - this was the closest but the Windows Store Apps did not work properly
    2) USMT v5.0 - missed many folders and settings
    3)
    http://www.shofkom.com/2009/03/14/how-to-convert-your-domain-profile-to-a-local-profile/ - had to reconfigure many applications and the Start screen and Task bars were not set properly
    4) Variations of
    http://www.nextofwindows.com/how-to-change-user-profile-location-in-windows-8-without-registry-hack/ - same as #3
    5)
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/fac17d6a-3c1b-4188-913e-ac2ec45b3ad6/transferring-from-workgroup-to-domain-keeping-user-profile?forum=winservergen - same as #3
    In summary, I've decided to create the Local User as a Microsoft ID and then manually copy the Documents, Pictures, Downloads, Music, Pictures and Videos. The other settings such as Outlook, Startup, Task Bar, Desktop, and other app settings will be manually
    configured. :-(
    Thank you, Bill

  • Does Oracle 10G R2 support installation on Windows 2003 Domain Controller?

    Does Oracle 10g R2 support installation on Windows 2003 Domain Controller? I remember that 10g R1 had issues with the DC? Is it still the case. Does it work now?
    Any help is appreciated.
    Regards,
    Raghav

    We have Oracle 10g R2 running on a Windows 2003 domain controller. It was not a domain controller when Oracle was installed. The domain was created after installation. (I don't recommend that procedure. I spent a long day fixing the installation after they configured the domain.) If Oracle is unhappy with being on a domain controller, it has not shown it yet.

Maybe you are looking for

  • Error while doing Std.cost estimation.

    Hallo gurus, I am facing one problem while doing Std.Cost estimation. Let me explain in detailed.. I am doing costing estimation for a Product. This product contains both Bought out Material and Customer Supplied Products.But both are coming as Mater

  • Display PDF in Region

    I am trying to grab a pdf from a blob column in a table and display it in a pl/sql dynamic region, with mixed results.. On the Oracle hosted instance of APEX, under the following credentials: Workspace: Homeworld User: Demo Password: demo I have an a

  • Add few lines in jserv.properties file automatically

    Hi All, Generally we will be doing 11.5.10.2 "refresh" automatically..... How can i automate the script to add this 3 lines in jserv,properties? Basically add the following lines to the jserv.properties before any other classpath entry wrapper.classp

  • Creation of Supre BOM

    Hi Experts,    How to Create Super for this Specification COMPUTER is a main material and has the  components 80GB HARDDISK 40GB HARDDISK 128 RAM 256 RAM Please explain me how to create Super BOM & how to do the Coonfigure the material. Thanks In Adv

  • Menu Select Issues, Cant Select Anything.

    With 10.5 on windows 7, I cant click and select anything on the left menu (music, movies, genius, store, playlists, ect). I have to double RIGHT click to select anything. I have re-installed itunes and resarted my laptop countless times, checked for