DNS on Server 2008 R2: DNS A records strangely disappear

Hello,
I am experiencing very strange problems with my DNS (Server 2008 R2, AD integrated). Several A records for Windows clients are missing, and even if I register them as static they somehow disappear again. However, the AAAA records are still around (IPv6 is
running in default configuration, I haven't touched that at all), but another strange thing here is, most of them are listed as STATIC records.
At present, the DHCP server is set to NOT register the clients with DNS. DNS accepts only secure updates, scavenging is disabled. (I am somewhat reluctant to disable dynamic updates on the DNS server completely because I think the DCs register and update
lots of records dynamically). When I register all missing A records, most affected clients loose it again within an hour or so but some seem be fine. It seems to me that about 20 % of the clients are affected.
I have enabled Directory Service Changes auditing, and its in fact the machine account which appears to be responsible. Clients with A records generate 10 entries (ID 5136) in the DC's security log while the problematic clients generate only the
first 5 events. So it appears to me that they can delete the record but not create a new one. All clients are set to register themselves with DNS.
As far as I remember I had Windows clients with missing A records in the past once in a while but the problem became really serious only about one and half weeks ago.
Does anyone have an idea of what might be going on here? Can I safely disable DNS dynamic updates without adversely affecting AD/DC functionality? Generally, we don't actually need dynamic updates.
Cheers, Georg.

What operating system are the clients?
I would like to first point out how registration works with static and DHCP, and the differences depending on how DHCP is configured.
=====================================================
1. By default, Windows 2000 and newer statically configured machines will
register their own A record (hostname) and PTR (reverse entry) into DNS.
2. If set to DHCP, a Windows 2000, 2003 or XP machine, will request DHCP to allow
the machine itself to register its own A (forward entry) record, but DHCP will register its PTR
(reverse entry) record.
3. If Windows 2008/Vista, or newer, the DHCP server always registers and updates client information in DNS.
   Note: "This is a modified configuration supported for DHCP servers
         running Windows Server 2008 and DHCP clients. In this mode,
         the DHCP server always performs updates of the client's FQDN,
         leased IP address information, and both its host (A) and
         pointer (PTR) resource records, regardless of whether the
         client has requested to perform its own updates."
         Quoted from, and more info on this, see:
http://technet.microsoft.com/en-us/library/dd145315(v=WS.10).aspx
4. The entity that registers the record in DNS, owns the record.
   Note "With secure dynamic update, only the computers and users you specify
        in an ACL can create or modify dnsNode objects within the zone.
        By default, the ACL gives Create permission to all members of the
        Authenticated User group, the group of all authenticated computers
        and users in an Active Directory forest. This means that any
        authenticated user or computer can create a new object in the zone.
        Also by default, the creator owns the new object and is given full control of it."
        Quoted from, and more info on this:
http://technet.microsoft.com/en-us/library/cc961412.aspx
=====================================================
Therefore, based on that, even if you have DHCP set to not register, and the clients are 2008/Vista and newer, then DHCP is doing it. That explains why you see the system account doing it.
Now, I think it will actually help you if you configure DHCP to register everything, configure credentials, and add the DHCP server computer object to the DnsUpdateProxy group. Don't add anything else to this group.
This way DHCP controls everything and it's easier to track AND more importantly, DHCP can update already registered records.
====================================================
In summary:
DHCP DNS Update summary:
- Configure DHCP Credentials.
  The credentials only need to be a plain-Jane, non-administrator, user account.
  But give it a really strong password.
- Set DHCP to update everything, whether the clients can or cannot.
- Set the zone for Secure & Unsecure Updates. Do not leave it Unsecure Only.
- Add the DHCP server(s) computer account to the Active Directory,  Built-In DnsUpdateProxy security group.
  Make sure ALL other non-DHCP servers are NOT in the DnsUpdateProxy group.
  For example, some folks believe that the DNS servers or other DCs not be
  running DHCP should be in it.
  They must be removed or it won't work.
  Make sure that NO user accounts are in that group, either.
  (I hope that's crystal clear - you would be surprised how many
  will respond asking if the DHCP credentials should be in this group.)
- On Windows 2008 R2 or newer, DISABLE Name Protection.
- If DHCP is co-located on a Windows 2008 R2, Windows 2012, Windows 2012 R2,
 or NEWER DC, you can and must secure the DnsUpdateProxy group by running
 the following command:
  dnscmd /config /OpenAclOnProxyUpdates 0
- Configure Scavenging on ONLY one DNS server. What it scavenges will replicate to others anyway.
- Set the scavenging NOREFRESH and REFRESH values combined to be equal or greater than the DHCP Lease length.
References:
This blog covers the following:
DHCP Service Configuration, Dynamic DNS Updates, Scavenging, Static Entries, Timestamps, DnsUpdateProxy Group, DHCP Credentials, prevent duplicate DNS records, DHCP has a "pen" icon, and more...
Published by Ace Fekay, MCT, MVP DS on Aug 20, 2009 at 10:36 AM  3758  2 
http://msmvps.com/blogs/acefekay/archive/2009/08/20/dhcp-dynamic-dns-updates-scavenging-static-entries-amp-timestamps-and-the-dnsproxyupdate-group.aspx  
Good summary
How Dynamic DNS behaves with multiple DHCP servers on the same Domain?
http://social.technet.microsoft.com/Forums/en-US/winserverNIS/thread/e9d13327-ee75-4622-a3c7-459554319a27
Another good Summary:
Thread: "DNS problem" December 18, 2013
http://social.technet.microsoft.com/Forums/windowsserver/en-US/37b8b6b3-6cb1-496c-8492-09ded13bab18/dns-problem?forum=winserverNIS
Another good discussion that Microsoft support concurred with my settings for a poster that called in to Support, which verified my configuration suggestions in my blog are correct:
DHCP Server Not Registering A Records for Windows Clients
http://social.technet.microsoft.com/Forums/en-US/winserverNIS/thread/e4b285d6-5795-4045-83ff-3a3c793b2cfc/
Ace Fekay
MVP, MCT, MCSE 2012, MCITP EA & MCTS Windows 2008/R2, Exchange 2013, 2010 EA & 2007, MCSE & MCSA 2003/2000, MCSA Messaging 2003
Microsoft Certified Trainer
Microsoft MVP - Directory Services
Complete List of Technical Blogs: http://www.delawarecountycomputerconsulting.com/technicalblogs.php
This posting is provided AS-IS with no warranties or guarantees and confers no rights.

Similar Messages

  • Windows Server 2008 AD & DNS issue

    Hi Guys,
    I have an Server 2008 ADDS enviroment with this DC-s:
    "List of domain controllers with accounts in the domain:
    WTEHU001 (powered off)
    WTEHU003 (powered off)
    ZEUS
    MINERVA
    GYAL-DC1
    The command completed successfully."
    When I change from google dns (8.8.8.8) to local DNS address (127.0.0.1) on DNS entries of NIC of Server, I get error messages:
    "The DNS server is waiting for Active Directory Domain Services (AD DS) to signal that the initial synchronization of the directory has been completed. The DNS server service cannot start until the initial synchronization is complete because critical
    DNS data might not yet be replicated onto this domain controller"
    DNS service is unavailable on this situation.
    With google DNS on server's NIC, local DNS service is available and nslookup is working on local machines:
    "nslookup zeus
    Kiszolgáló:  zeus.wtehu.local
    Address:  10.31.7.6
    Név:     zeus.wtehu.local"
    But, I get this error message with "dcdiag /test:dns"
    Directory Server Diagnosis
    Performing initial setup:
       Trying to find home server...
       Home Server = ZEUS
       * Identified AD Forest.
       Done gathering initial info.
    Doing initial required tests
       Testing server: Default-First-Site-Name\ZEUS
          Starting test: Connectivity
             The host 57650e4a-f396-4929-92f0-cf1adb2bba95._msdcs.wtehu.local could
             not be resolved to an IP address. Check the DNS server, DHCP, server
             name, etc.
             Got error while checking LDAP and RPC connectivity. Please check your
             firewall settings.
             ......................... ZEUS failed test Connectivity
    Doing primary tests
       Testing server: Default-First-Site-Name\ZEUS
          Starting test: DNS
             DNS Tests are running and not hung. Please wait a few minutes...
             ......................... ZEUS passed test DNS
       Running partition tests on : ForestDnsZones
       Running partition tests on : DomainDnsZones
       Running partition tests on : Schema
       Running partition tests on : Configuration
       Running partition tests on : wtehu
       Running enterprise tests on : wtehu.local
          Starting test: DNS
             Test results for domain controllers:
                DC: ZEUS.wtehu.local
                Domain: wtehu.local
                   TEST: Basic (Basc)
                      Error: No LDAP connectivity
                      Warning: adapter
                      [00000008] Broadcom BCM5716C NetXtreme II GigE (NDIS VBD Client)
                      has invalid DNS server: 8.8.8.8 (<name unavailable>)
                      Error: all DNS servers are invalid
                      No host records (A or AAAA) were found for this DC
                   TEST: Delegations (Del)
                      Error: DNS server: wtehu001.wtehu.local. IP:10.31.7.200
                      [Broken delegated domain _msdcs.wtehu.local.]
                   TEST: Dynamic update (Dyn)
                      Warning: Failed to add the test record dcdiag-test-record in zone wtehu.local
                TEST: Records registration (RReg)
                   Error: Record registrations cannot be found for all the network
                   adapters
             Summary of test results for DNS servers used by the above domain
             controllers:
                DNS server: 8.8.8.8 (<name unavailable>)
                   2 test failure on this DNS server
                   Name resolution is not functional. _ldap._tcp.wtehu.local. failed on the DNS server 8.8.8.8
                DNS server: 10.31.7.200 (wtehu001.wtehu.local.)
                   1 test failure on this DNS server
                   PTR record query for the 1.0.0.127.in-addr.arpa. failed on the DNS server 10.31.7.200              
             Summary of DNS test results:
                                                Auth Basc Forw Del  Dyn  RReg Ext
                Domain: wtehu.local
                   ZEUS                         PASS FAIL PASS FAIL WARN FAIL n/a  
             ......................... wtehu.local failed test DNSs
    Replication test output:
    Repadmin: running command /showrepl against full DC localhost
    Default-First-Site-Name\ZEUS
    DSA Options: IS_GC
    Site Options: (none)
    DSA object GUID: 57650e4a-f396-4929-92f0-cf1adb2bba95
    DSA invocationID: 20c20b47-dcb3-437b-a316-b0639f90b753
    ==== INBOUND NEIGHBORS ======================================
    DC=wtehu,DC=local
        Default-First-Site-Name\WTEHU001 via RPC
            DSA object GUID: 5a8cc029-a880-44c1-b3e3-92961fd4d74d
            Last attempt @ 2014-01-05 09:46:29 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            23 consecutive failure(s).
            Last success @ 2014-01-04 10:07:35.
        Default-First-Site-Name\WTEHU003 via RPC
            DSA object GUID: 7559995a-cd48-4d43-972e-1492f4c56fd4
            Last attempt @ 2014-01-05 09:47:11 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            345 consecutive failure(s).
            Last success @ 2014-01-04 10:15:23.
        Default-First-Site-Name\GYAL-DC1 via RPC
            DSA object GUID: c006625c-244b-4710-a55e-812a764a019b
            Last attempt @ 2014-01-05 09:47:17 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            302 consecutive failure(s).
            Last success @ 2014-01-04 10:33:17.
        Default-First-Site-Name\MINERVA via RPC
            DSA object GUID: ad0ee6cf-2f73-4b98-80c3-2cd4693d749d
            Last attempt @ 2014-01-05 09:52:05 was successful.
    CN=Configuration,DC=wtehu,DC=local
        Default-First-Site-Name\WTEHU001 via RPC
            DSA object GUID: 5a8cc029-a880-44c1-b3e3-92961fd4d74d
            Last attempt @ 2014-01-05 09:46:35 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            23 consecutive failure(s).
            Last success @ 2014-01-04 09:53:07.
        Default-First-Site-Name\GYAL-DC1 via RPC
            DSA object GUID: c006625c-244b-4710-a55e-812a764a019b
            Last attempt @ 2014-01-05 09:46:41 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            29 consecutive failure(s).
            Last success @ 2014-01-04 09:53:08.
        Default-First-Site-Name\WTEHU003 via RPC
            DSA object GUID: 7559995a-cd48-4d43-972e-1492f4c56fd4
            Last attempt @ 2014-01-05 09:46:47 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            30 consecutive failure(s).
            Last success @ 2014-01-04 09:53:07.
        Default-First-Site-Name\MINERVA via RPC
            DSA object GUID: ad0ee6cf-2f73-4b98-80c3-2cd4693d749d
            Last attempt @ 2014-01-05 09:46:47 was successful.
    CN=Schema,CN=Configuration,DC=wtehu,DC=local
        Default-First-Site-Name\WTEHU001 via RPC
            DSA object GUID: 5a8cc029-a880-44c1-b3e3-92961fd4d74d
            Last attempt @ 2014-01-05 09:46:53 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            23 consecutive failure(s).
            Last success @ 2014-01-04 09:53:08.
        Default-First-Site-Name\MINERVA via RPC
            DSA object GUID: ad0ee6cf-2f73-4b98-80c3-2cd4693d749d
            Last attempt @ 2014-01-05 09:46:53 was successful.
        Default-First-Site-Name\GYAL-DC1 via RPC
            DSA object GUID: c006625c-244b-4710-a55e-812a764a019b
            Last attempt @ 2014-01-05 09:46:59 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            24 consecutive failure(s).
            Last success @ 2014-01-04 09:53:08.
        Default-First-Site-Name\WTEHU003 via RPC
            DSA object GUID: 7559995a-cd48-4d43-972e-1492f4c56fd4
            Last attempt @ 2014-01-05 09:47:05 failed, result 8524 (0x214c):
                The DSA operation is unable to proceed because of a DNS lookup failure.
            24 consecutive failure(s).
            Last success @ 2014-01-04 09:53:08.
    DC=DomainDnsZones,DC=wtehu,DC=local
        Default-First-Site-Name\WTEHU001 via RPC
            DSA object GUID: 5a8cc029-a880-44c1-b3e3-92961fd4d74d
            Last attempt @ 2014-01-05 09:46:29 failed, result 1256 (0x4e8):
                The remote system is not available. For information about network troubleshooting, see Windows Help.
            23 consecutive failure(s).
            Last success @ 2014-01-04 09:58:05.
        Default-First-Site-Name\GYAL-DC1 via RPC
            DSA object GUID: c006625c-244b-4710-a55e-812a764a019b
            Last attempt @ 2014-01-05 09:46:41 failed, result 1256 (0x4e8):
                The remote system is not available. For information about network troubleshooting, see Windows Help.
            42 consecutive failure(s).
            Last success @ 2014-01-04 09:57:52.
        Default-First-Site-Name\WTEHU003 via RPC
            DSA object GUID: 7559995a-cd48-4d43-972e-1492f4c56fd4
            Last attempt @ 2014-01-05 09:46:47 failed, result 1256 (0x4e8):
                The remote system is not available. For information about network troubleshooting, see Windows Help.
            43 consecutive failure(s).
            Last success @ 2014-01-04 09:58:07.
        Default-First-Site-Name\MINERVA via RPC
            DSA object GUID: ad0ee6cf-2f73-4b98-80c3-2cd4693d749d
            Last attempt @ 2014-01-05 09:47:17 was successful.
    DC=ForestDnsZones,DC=wtehu,DC=local
        Default-First-Site-Name\WTEHU001 via RPC
            DSA object GUID: 5a8cc029-a880-44c1-b3e3-92961fd4d74d
            Last attempt @ 2014-01-05 09:46:29 failed, result 1256 (0x4e8):
                The remote system is not available. For information about network troubleshooting, see Windows Help.
            23 consecutive failure(s).
            Last success @ 2014-01-04 09:53:08.
        Default-First-Site-Name\GYAL-DC1 via RPC
            DSA object GUID: c006625c-244b-4710-a55e-812a764a019b
            Last attempt @ 2014-01-05 09:46:41 failed, result 1256 (0x4e8):
                The remote system is not available. For information about network troubleshooting, see Windows Help.
            25 consecutive failure(s).
            Last success @ 2014-01-04 09:53:08.
        Default-First-Site-Name\WTEHU003 via RPC
            DSA object GUID: 7559995a-cd48-4d43-972e-1492f4c56fd4
            Last attempt @ 2014-01-05 09:46:47 failed, result 1256 (0x4e8):
                The remote system is not available. For information about network troubleshooting, see Windows Help.
            25 consecutive failure(s).
            Last success @ 2014-01-04 09:53:08.
        Default-First-Site-Name\MINERVA via RPC
            DSA object GUID: ad0ee6cf-2f73-4b98-80c3-2cd4693d749d
            Last attempt @ 2014-01-05 09:47:17 was successful.
    DsReplicaGetInfo() failed with status 8453 (0x2105):
        Replication access was denied.
    DsReplicaGetInfo() failed with status 8453 (0x2105):
        Replication access was denied.
    Regards,
    Gabor

    Public DNS servers should not be used in IP settings of DCs. You need to configure them as forwarders instead. Also, I would recommend using your ISP DNS servers instead of Google ones.
    For the recommendation of IP settings to be used on DCs, please refer to what is written in this Wiki article: http://social.technet.microsoft.com/wiki/contents/articles/18513.active-directory-replication-issues-basic-troubleshooting-steps-single-ad-domain-in-a-single-ad-forest.aspx
    This posting is provided "AS IS" with no warranties or guarantees , and confers no rights.
    Get Active Directory User Last Logon
    Create an Active Directory test domain similar to the production one
    Management of test accounts in an Active Directory production domain - Part I
    Management of test accounts in an Active Directory production domain - Part II
    Management of test accounts in an Active Directory production domain - Part III
    Reset Active Directory user password

  • Windows Server 2008 R2 DNS service issue with BitLocker

    I recently installed BitLocker on a Windows Server 2008 Platform. I did not encrypt the boot partition because the server hardware BIOS did not have the necessary requirements to encrypt the system drive.
    The Server roles are ADSM, DC and File Server. For DC operation I am also running the DNS service.
    When I installed the DNS role I was prompted to install the Log files on a different volume than the OS. I did this, but unfortunately, it was the same volume that was encrypted.
    Since I could not encrypt the system disk, the encrypted volume must be unlocked via password in order to mount. Here in lise my problem.
    When I do a full reboot of the server, I get to the point in the boot process where my mouse is visible and operational (this would be just before the Windows OS logo displays, I believe), then the server reboots. On the next boot up I am given the diagonstics
    and recovery dialog because the OS failed to boot.
    I believe the failure is the DNS service trying to launch, but because the log files are on the encrypted drive and it has not been unlocked, the system sees this as a security problem and reboots
    Does this make sense? If it does, is there a way to boot 2008 R2 with the DNS service disabled, say with the original install disk in recovery mode?
    Any help would be greatly appreciated as this system cannot be booted in its current state.
    Peter C. Hesse Network/Systems Administrator

    Hi,
    I believe you mean the Active Directory Logs not the DNS logs, because these are necessary to startup a domain controller, because the AD database depends on these logs.
    So if you have AD logs on a different partition and that is encrypted with Bitlocker you could probably automatically unlock it.
    So you did not encrypt OS partition because the server does not have a TPM fully compliant chip ?
    manage-bde /?
    manage-bde -autounlock -enable Driveletter:
    But you have to be able to boot server normal mode I am not sure if the command can be used in DSRM mode.
    Below are some links that might help:
    http://social.technet.microsoft.com/Forums/windowsserver/en-US/c52ffc7d-f822-4b61-b633-46f8e04eac80/bitlocker-for-domain-controller
    Hope this helps.
    Regards,
    Calin

  • Macs will not show up on DNS Windows Server 2008 R2

    In our office, we have a Windows Server Infrastructure with several Macs (Imacs, mac pros, macbook airs etc).
    Active Directory and DNS is running off a Windows Server 2008 R2 Server, with DHCP on a Cisco Router.
    DHCP is configured to direct all DNS entries to the Windows DNS Server.
    The problem that I'm having is that, while all windows machines show up on the Windows DNS Server, None of the Macs are registered. Macs are able to utilize the DNS Server correctly, but will not register on the DNS Listings.
    Because I cannot access or ping Macs via their hostname, I cannot tell our third party backup software to point to a particular machine. Our workstations are all DHCP enabled, and since assigning a static ip to all the Macs here is not an option, I need to get this working, so that I can get our macs backing up.
    I've followed a few similar articles, but they appear to be for older 2003 servers, which the 2008 R2 servers do not have those options. I do not want to join the Macs onto the windows domain, I merely want to get them registered on our DNS server.
    The mac operating systems vary between Snow Leopard to Mountain Lion
    https://discussions.apple.com/thread/1421684?start=0&tstart=0 <--- Article I was following
    Thanks,
    Rboelens

    I'm pretty sure that the DNS registration stuff is part of the Active Directory plug-in on OS X.  I'd recommend you give it a try.
    GPOs are not enforced on the Macs if they're bound to Active Directory, _unless_ you've extended the Active Directory schema (which is a lot of work).  The main benefits to joining Macs to AD ar:
    * Centralized password management and policies (as you've defined in AD).
    * Single sign-on to various kerberized resources (i.e. Windows share points and internal web pages if you're using IIS and you use Kerberos to secure them, rather than NTLM).
    Here's an Apple white paper which may help.  I would recommend you read this carefully and then decide whether or not you want to bind the Macs to AD.  I'd also recommend you test with a bound Mac to see if resolves this "host name in DNS" issue... I suspect it will.
    http://training.apple.com/pdf/wp_integrating_active_directory_ml.pdf

  • Windows Server 2008 R2 DNS Entry Auto remove not working

    Dear All,
    I have configured DNS Ageing for 30 days removal of unwanted host entry.but it will not work.
    Active directory DNS having all unwanted host in forward lookup zone and as well as reverse lookup zone.
    how to solve this ?
    pls help
    Sunil
    SUNIL PATEL SYSTEM ADMINISTRATOR

    Hi,
    This is a rather common problem when configuring Scavenging and Aging of stale DNS entries.  This has to be set in two spots, not just one as so many admins have difficulties with.  It isn't very obvious. 
    Aging and Scavenging must be set on both the DNS Server and on the Zone
    that you want to clean.  In addition, DNS needs to be Active Directory integrated and resource records need to be dynamically registered.  Static entries are ignorned.
    First step: 
    To set aging and scavenging properties for the DNS Zones using the Windows interface           
    Open DNS Manager.
    In the console tree, right-click the applicable DNS server, and then click
    Set Aging/Scavenging for all zones.
    Select the Scavenge stale resource records check box.
    Modify other aging and scavenging properties as needed.
    Second Step:
    To set aging and scavenging properties for the DNS Server using the Windows interface           
    Open DNS Manager.
    In the console tree, right-click the applicable DNS server, and then click
    Properties.
    Select the Advanced tab,and then enable Enable automatic scavenging of stale records
    check box. Once done, specify the Scavenging period (That is recurring
    interval for Scavenging on a DNS server)  and click on OK
    That will do it.  Your DNS entries will then start auto scavenging based on the times you have determined. Word of caution - do not set your aging too aggressively - I have seen where an admin had set aging down to 1 day and when it finally kicked
    off, nearly brought the company to a halt. 

  • Server 2008 R2 DNS Server can not open active directory erro 4000

    The DNS server was unable to open Active Directory.  This DNS server is configured to obtain and use information from the directory for this zone and is unable to load the zone without it.  Check that the Active Directory is functioning properly
    and reload the zone. The event data is the error code. Error 4000
    This just started happening yesterday. Also File service and print server is unable to contact because of this error. I have no lookup zones. When I try and go to the DNS server I get a message The server VETSALDC could be contacted The error was Access
    Denied. Would you like to add it anyway?
    PLEASE HELP

    Hi,
    According to your description, my understanding is that DNS unable to open Active Directory with error 4000.
    This happens when that particular DC/DNS server has lost its Secure channel with itself or PDC. This can also happen in a single DC environment where that DC/DNS server holds all the FSMO roles and is pointing to itself as Primary DNS server.
    You may check AD DS using command line “DCdiag” (run as administrator). besides, you may try to stop and restart AD DS service(detailed steps reference the link:
    http://technet.microsoft.com/en-us/library/cc732714(WS.10).aspx ), make sure that the AD DS is running correctly.
    Then restart the DNS service, detailed steps reference the link:
    http://technet.microsoft.com/en-us/library/cc735673(v=ws.10).aspx .
    If the problem still exits, is there any other DC or DNS on your network? Post the TCP/IP parameters (ipconfig /all) of DC and DNS here.
    Best Regards,           
    Eve Wang     
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Insert missing records dynamically in SQL Server 2008 R2

    Hi, I am working on a requirement where I will have to work on some % calculations for 2 different states where we do business. The task that I am trying to accomplish is technically we need to have any Product sales in both the states if not for instance
    in the following example ProductC does not have sales in OR so I need to insert a record for ProductC - OR with 0. This is an intermediary resultset of all the calculations that I am working with.
    Example Dataset:
    CREATE TABLE [dbo].[Product](
    [Product] [varchar](18) NOT NULL,
    [State] [varchar](5) NOT NULL,
    [Area1] [int] NOT NULL,
    [Area2] [int] NOT NULL,
    [Area3] [int] NOT NULL,
    [Area4] [int] NOT NULL,
    [Area5] [int] NOT NULL,
    [Area6] [int] NOT NULL,
    [Area7] [int] NOT NULL,
    [Area8] [int] NOT NULL,
    [Area9] [int] NOT NULL,
    [Area10] [int] NOT NULL,
    [Total] [int] NULL
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductA','OR',0,0,2,0,2,0,0,0,0,0,4)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductA','WA',0,0,1,0,0,0,0,0,0,0,1)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductA','Total',0,0,3,0,2,0,0,0,0,0,5)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductB','OR',0,0,5,0,0,0,0,0,0,0,5)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductB','WA',0,0,2,0,0,1,0,0,0,0,3)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductB','Total',0,0,7,0,0,1,0,0,0,0,8)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductC','WA',0,0,0,0,0,0,0,0,0,1,1)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductC','Total',0,0,0,0,0,0,0,0,0,1,1)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductD','OR',5,2,451,154,43,1,0,0,0,0,656)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductD','WA',0,20,102,182,58,36,0,1,0,0,399)
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductD','Total',5,22,553,336,101,37,0,1,0,0,1055)
    How to accomplish this in SQL Server 2008 R2.
    Insert missing record:
    INSERT INTO [Product] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductC','OR',0,0,0,0,0,0,0,0,0,0,0)
    Thanks in advance......
    Ione

    CREATE TABLE [dbo].[Products](
    [Product] [varchar](18) NOT NULL,
    [State] [varchar](5) NOT NULL,
    [Area1] [int] NOT NULL,
    [Area2] [int] NOT NULL,
    [Area3] [int] NOT NULL,
    [Area4] [int] NOT NULL,
    [Area5] [int] NOT NULL,
    [Area6] [int] NOT NULL,
    [Area7] [int] NOT NULL,
    [Area8] [int] NOT NULL,
    [Area9] [int] NOT NULL,
    [Area10] [int] NOT NULL,
    [Total] [int] NULL
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductA','OR',0,0,2,0,2,0,0,0,0,0,4)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductA','WA',0,0,1,0,0,0,0,0,0,0,1)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductA','Total',0,0,3,0,2,0,0,0,0,0,5)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductB','OR',0,0,5,0,0,0,0,0,0,0,5)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductB','WA',0,0,2,0,0,1,0,0,0,0,3)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductB','Total',0,0,7,0,0,1,0,0,0,0,8)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductC','WA',0,0,0,0,0,0,0,0,0,1,1)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductC','Total',0,0,0,0,0,0,0,0,0,1,1)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductD','OR',5,2,451,154,43,1,0,0,0,0,656)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductD','WA',0,20,102,182,58,36,0,1,0,0,399)
    INSERT INTO [Products] ([Product],[State],[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])VALUES('ProductD','Total',5,22,553,336,101,37,0,1,0,0,1055)
    ;WIth mycte as (
    Select Product,State From (Select distinct Product from Products) p, (
    Select distinct State from Products) s
    Insert into [Products](Product,State,[Area1],[Area2],[Area3],[Area4],[Area5],[Area6],[Area7],[Area8],[Area9],[Area10],[Total])
    Select m.Product,m.State
    ,0,0,0,0,0,0,0,0,0,0,0
    from mycte m Left Join Products p on m.[Product]=p.Product and m.State=p.State
    WHERE p.Product is null and p.State is null
    select * from Products
    Order by Product
    ,Case when State='Total' Then 2 else 1 End
    Drop table Products

  • Server 2008 R2 parent & server 2012 R2 Additional

    Hi Dears
    Following is the infrastructure of my network
     DC+DNS + DHCP - Server 2008 R2
    WSUS - Server 2008 R2
    WDS - Server 2008 R2
    SCCM 2012 - Server 2008 R2
    VPN - Server 2008 R2
    Domain Functional Level  2008 R2
    Recently I install server 2012 R2 as additional DC and then transfer FSMO and DNS and DHCP to it and disconnect 2008 Server from my network but I notice after that the WDS & VPN & SCCM not working good,
    Any help would be much appreciated, thank you.

    Hello,
    to exclude DC-domain problems please UPLOAD:
    ipconfig /all >c:\ipconfig.log [from each DC/DNS Server]
    dcdiag /v /c /d /e /s:dcname >c:\dcdiag.log
    repadmin /showrepl dc* /verbose /all /intersite >c:\repl.log  ["dc* is a place holder for the starting name of the DCs if they all begin the same (if more then one DC exists)]
    dnslint /ad /s "DCipaddress" (http://support.microsoft.com/kb/321045)
    ADREPLSTATUS
    http://www.microsoft.com/en-us/download/details.aspx?id=30005 can also be exported to file.
    As the output will become large, DON'T post them into the thread, please use Windows OneDrive (https://onedrive.live.com) [with open access!]
    and add the link from it here. Also the /e in dcdiag scans the complete forest, so better run it on COB.
    Have you assured that all domain machines use the new DNS server as preferred on the NIC settings?
    Are there any other DNS servers configured on the machines NICs, ISPs one or your router?
    What does "not working good" in detail mean? Please post error messages or event viewer errors related to this description.
    Best regards
    Meinolf Weber
    MVP, MCP, MCTS
    Microsoft MVP - Directory Services
    My Blog: http://blogs.msmvps.com/MWeber
    Disclaimer: This posting is provided AS IS with no warranties or guarantees and confers no rights.
    Twitter:  

  • DNS entry for DC not dynamically updating (Server 2008 R2)

    Windows Server 2008 R2. I've got a single DC (I'm preparing to install the 2nd in the next few days). The host (A) record for the DC shows to be static for some reason. I changed the name of the DC recently, then brought down the Exchange server and rebooted
    and it successfully connected again. I might have entered in a static DNS entry for the new server name before renaming the server, but I'm not sure.
    I've tried to delete the static DNS record for the DC and then reload, but it continues to appear as a static entry. The mail server's DNS record still appears as a dynamic entry.
    What am I doing wrong?
    Noel Stanford Oveson
    jeremyNLSO
    MCTS, MCITP, CCENT, CNE, MCSE, CLSE
    Berlin, Germany

    Hello,
    Like Mike suggested, it is normal that it is a static record.
    However, if your DC with its new name is not updating its DNS record, check that "Register this connection' addresses in DNS" is checked on the DC's adapter and then run
    ipconfig /registerdns using an elevated prompt.
    This
    posting is provided "AS IS" with no warranties or guarantees , and confers no rights.   
    Microsoft
    Student Partner 2010 / 2011
    Microsoft
    Certified Professional
    Microsoft
    Certified Systems Administrator: Security
    Microsoft
    Certified Systems Engineer: Security
    Microsoft
    Certified Technology Specialist: Windows Server 2008 Active Directory, Configuration
    Microsoft
    Certified Technology Specialist: Windows Server 2008 Network Infrastructure, Configuration
    Microsoft
    Certified Technology Specialist: Windows Server 2008 Applications Infrastructure, Configuration
    Microsoft
    Certified Technology Specialist: Windows 7, Configuring
    Microsoft
    Certified Technology Specialist: Designing and Providing Volume Licensing Solutions to Large Organizations
    Microsoft Certified IT Professional: Enterprise Administrator
    Microsoft Certified IT Professional: Server Administrator
    Microsoft Certified Trainer

  • Windows 8.1 Clients cant register record in DNS in forest functional level 2008 environment (DNS Client Events 8018)

    Hello,
    I have two DC,:
    first Windows Server 2008, second Windows Server 2012 R2,
    AD works in forest functional level 2008
    Workstations working in Windows 8.1 OS cant register to DNS with warning:
    The system failed to register host (A or AAAA) resource records (RRs) for network adapter
    with settings:
               Adapter Name : ...................................................
               Host Name : ...................................
               Primary Domain Suffix : ....................................
               DNS server list :
               Sent update to server : <?>
               IP Address(es) :
    The reason the system could not register these RRs was because the DNS server contacted refused the update request. The reasons for this might be (a) you are not allowed to update the specified DNS domain name, or (b) because the DNS server authoritative for
    this name does not support the DNS dynamic update protocol.
    To register the DNS host (A or AAAA) resource records using the specific DNS domain name and IP addresses for this adapter, contact your DNS server or network systems administrator.

    Hi,
    Functional levels determine the available Active Directory Domain Services (AD DS) domain or forest capabilities. They also determine which Windows Server operating systems you can run on domain controllers in the domain or forest. However, functional levels
    do not affect which operating systems you can run on workstations and member servers that are joined to the domain or forest. Set the domain and forest functional levels to the highest value that the environment can support, in order to use as many AD DS features
    as possible.
    You may reference SenneVL’s suggestion, and use ipconfig /registerdns
    on the workstation to confirm that if the DNS record can be registered.
    Best Regards,
    Eve Wang
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • DNS problem on WIndows Server 2008 R2

    Dear All
    I have windows 2008 R2 Server which is a DOmain Controller for a Domain. It is also DNS server.
    We are using Class A ip addresses for the private LAN behind a firewall.
    The DC & DNS Server has IP address of 80.5.0.1.  The CLient machines in the network has WinXP & WIN7. They have gateway address of Firewall LAN port. And the above DC/DNS Server address as primary DNS. The secondary DNS is the ISP provided DNS
    Server IP Address.
    The issue is sometimes the clients are not able to resolve the DC/DNS IP address. If you do nslookup on the client the DC IP is resolved to another server on the internet. It should actually return the Local DC name & address. 
    ANy suggestions?
    From : shekhar-nsk

    Gateway : 192.168.1.1 ( or it should be 192.168.1.100-Firewall IP ?)--Pls clarify this point.
    It definately should not be server IP, If firewall is also doing routing then yes gateway should be address of firewall.
    Primary DNS : 192.168.1.1( My DC& DNS Server)
    Correct
    Alternate DNS :  ( None)
    127.0.0.1
    FOrwarders : as given above ( Google's Open DNS Addresses)
    Correct
    In short all DNS queries from Windows Clients should go to local DC & DNS server. & from there is should go out .
    Correct again.
    Regards, Dave Patrick ....
    Microsoft Certified Professional
    Microsoft MVP [Windows]
    Disclaimer: This posting is provided "AS IS" with no warranties or guarantees , and confers no rights.

  • Windows 7 or Windows Server 2008 R2 domain join displays error "Changing the Primary Domain DNS name of this computer to "" failed...."

    Hi,
    Windows 7 or Windows Server 2008 R2 domain join displays error "Changing the Primary Domain DNS name of this computer to "" failed...."
    DC:windows Server 2008 R2
    Domain functional level:Windows Server 2003
    When Winxp join domain, have no this error message.
    I checked http://support.microsoft.com/kb/2018583?wa=wsignin1.0 does't work.
    There have 3 suggestion in this article:
    1.The "Disable NetBIOS over TCP/IP" checkbox has been disabled in the IPv4 properties of the computer being joined.
    Doesnt's work.
    2.Connectivity over UDP port 137 is blocked between client and the helper DC servicing the join operation in the target domain.
    On my DC, I run netstat -an, reslut as below:
     UDP    192.168.20.3:137       *:*
    3.The TCP/IPv4 protocol has been disabled so that the client being joined or the DC in the destination domain targeted by the LDAP BIND is running TCP/IPv6 only.
    We are not using IPV6.
    This server recently updated from Windows Server 2003 to Windows Server 2008 R2. Before upgrade, when Win7 and Win2008 join this domain, also have the same error message.
    Please help to check this issue.
    Thank you very much.
    BR
    Guo YingHui 

    Hi Guo Ying,
    I have faced this critical error which makes over-writes the host names in the domain when you join.
    For example: Already you had a host name called as PC.domain.com in the domain.com Domain.
    When you try to add the another host name called as PC in the domain.com Domain, it doesn't give you the duplicate name error on the network it does over-write the existing host name called as PC.domain.com & it will add the new host name into the domain.
    Host name which got over-written will get removed from the domain. I faced this issue in my project. My DPM host name got removed from the Domain & new host name got joined into the domain which halted my backups for one day.
    Final Resolution is as follows:
    You need to start the dns console on the DC & drop down the domain name.
    Select the _msdcs when you click on _msdcs it will show the Name Server's list on the right hand side.
    You need to add the Domain Naming Master under the _msdcs or add all the domain controllers which you had.
    After you add the Name server's try joining the PC OR Laptop to the domain which is successfully joins it.
    Regards
    Anand S
    Thanks & Regards Anand Sunka MCSA+CCNA+MCTS

  • DNS and Active Directory error 4000 server 2008

    Hello all,
    My network skills aren't very good and I'm facing a dilemma. First off we have two Windows servers on the network. The newest is 2008 Standard (named Vader) and the other is 2000 (dells3). Obviously I'd like to get rid of the 2000, but the people in charge
    of my budget haven't given me the option to do so and it's the only back up we have.
    Earlier in the week we had lots of problems. One of our nas boxes locked everyone out who was mapped to it and it would only let me log in through the web portal. Two of our Macs our marketing department uses suddenly locked up and wouldn't let them back
    in (both were part of the Active Directory). A second nas box won't let certain people map to it and for awhile I had issues logging into Vader itself.
    I believe all of these problems are connected to some issues on Vader and possibly in conduction with dells3. In Server Manager under DNS I get error 4000 "The DNS server was unable to open Active Directory. 
    This DNS server is configured to obtain and use information from the directory for this zone and is unable to load the zone without it.  Check that the Active Directory is functioning properly and reload the zone. The event data is the error code."
    Then under Active Directory Domain Services I get error 2042 "It has been too long since this machine last replicated with the named source machine. The time between replications with this source has exceeded
    the tombstone lifetime. Replication has been stopped with this source."
    Followed by more text I can post if needed.
    Under File Services error 1202 "The DFS Replication service failed to contact domain controller  to access configuration information. Replication is stopped. The service will try again during the
    next configuration polling cycle, which will occur in 60 minutes. This event can be caused by TCP/IP connectivity, firewall, Active Directory Domain Services, or DNS issues."
    And finally if I try to open Active Directory Domains and Trusts "The configuration information describing this enterprise is not available. The server is not operational."
    I'm not sure where to start or what to post that might help. Any and all help is appreciated.
    Edit: Also I can only add dells3 as the DNS on Vader in the DNS Manager if I try to add Vader to itself I get an error.

    It's the other way around.  Overall, I'm advising ripping the 2008 server out of AD and adding it back . Let's look at this as a series of steps:
    1.) You do a force demote of the 2008 server because it's tombstoned.  This means the 2008 server is no longer a DC. You are doing a force because it doesn't have the ability to replicate.  If it could replicate, we'd just do a graceful demotion
    and be done with it.
    2.) Once the 2008 server is demoted, we go to the 2000 server which holds the only good copy of AD.  From that server we run a metadata cleanup using the ntdsutil utility.  We use that utility to clean out references to the 2008 server which is
    no longer a DC.
    3.) Once you have a clean AD, you can then promote the 2008 server back into Active Directory.  Make sure Vader is pointing to Dells3 as its primary DNS server before promoting or you'll run into issues.
    Hopefully that clarifies things. 

  • Windows Server 2008 R2 and Windows 7 DNS Problem

    Hi,
    I have a DNS Server hosted in Windows Server 2008 R2 and our clients are using Windows 7. All are working fine then suddenly there are times that our client cannot access our internal site and cannot connect with our IM which is also hosted in the server.
    Tried to ping the server's IP but got this result: 
    Ping request could not find host .com. Please check the name and
     try again.
    NSLookup works fine. Tried to use the ip address instead of the domain name and it works. Resetting network connection seems to resolve the issue but we cannot do it all the time especially when we have hundreds of computers in our office. Anyone have ideas
    regarding this?

    Hi,
    “Resetting network connection seems to resolve the issue but we cannot do it all the time especially when we have hundreds of computers in our office. Anyone have ideas regarding
    this?”
    It seems is the client IP address conflict, it may cause by your DHCP Conflict Detection Attempts value setup is not appropriate. You can try to set Conflict Detection Attempts
    to a value other than 0.
    More information:
    Detect and Avoid IP Address Conflicts
    http://technet.microsoft.com/en-us/magazine/ff606371.aspx
    Hope this helps
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • How to install external DNS Server on Windows server 2008?

    After 2 days hard working I'm confused about DNS servers.
    i registered a domain name and want to host my own DNS for my website.
    i install DNS Role and IIS on a windows server 2008 R2 and config them all and set 127.0.0.1 and 8.8.8.8 on my network interface on my serve .
    on my server i have 2 website
        dns1.mysite.com //to set it on my domain panel as name server
        mysite.com      //hosting
    now everything work on my server , when i type mysite.com at my web browser i can see my site.and when i ping mysite.com it reply my server static ip.
    but on internet it does not work. i mean if you type dns1.mysite.com or mysite.com not works and i got request time out when i ping theme.
    at this state if you set my server IP as DNS server at your network adapter(interface) everything work great.
    how can i have a DNS Server like that hosting using on our domains like dns1.godaddy.com ?
    i should register my DNS on any where like a organization or website or...?

    For the local nic you should _always_ configure dns servers that have the same scope. I think 8.8.8.8 and 127.0.0.1 will never have the same scope. Note that the configuration of multiple dns servers is only there for failover purposes. If the first one
    is working, the second one is never used.
    You should create a zone on your dns server matching your domain, and you should request your registrar to make your server authorative over your zone. Some providers let you configure this yourself (on a weninterface), so please consult the documentation
    provided by the service provider/registrar. If in doubt, they will be the primary contact point as the required configuration depends on theirs.
    Note that when you want to host a public dns server, the server should be reachable from the internet on port 53 tcp/udp and you should follow guidelines for serrver security very strictly. 
    Also be aware updates on dns servers need some time to be applied worldwide due to caching that has to expire and zone transfers that might be needed. be patient.
    MCP/MCSA/MCTS/MCITP
    Thanks SenneVL for your nice answer .
    my server IP is static and reachable from Internet,then why when you add my server ip on your network adapter as a DNS it works and you can type mysite.com on your browser and see my site?
    you said "Also be aware updates on dns servers need some time to be applied worldwide due to caching that has to expire and zone transfers that might be needed. be patient."
    how long it takes?

Maybe you are looking for

  • Hp c7280 all in one printer fax option stopped working

    My fax option worked until yesterday afternoon.  Now I have a fax text report and it tells me that I  am not using the correct type of phone cord.  It has always worked with the phone cord I have plugged in before.  Is there a certain phone cord I sh

  • Changing JTree node text results in "..."

    I'm working with a JTree, and I have a problem if I change the text displayed on a node. After changing the node, I call nodeChanged( node ) on the tree model. What happens is that if the new text on the node is longer than the previous one, the text

  • Screen resolution acts weird

    Hello, For a year now I am using a MBP 15" with hires screen (1680x1050) na drunning on OS 10.7.3 When doing stuff in Excel, suddenly my screen kinda zoomed in and I never ever could get it back. It is like everything is around 20% larger and I have

  • Error message in BUPA_DEL transaction

    Hi, I have a problem with the transaction BUPA DEL. I would like to delete a BP but i have a error msg => "Business partner 1500357 still used in business transactions" It's strange because all the relationship are deleted. Who can help me ? Thanks D

  • Deferred Message Timeout

    The Default is 4 days for a Deferred Message Timeout in GroupWise. My questions are: Is this an RFC standard? I have been asked to shorten, Have other GroupWise shops shortened the Deferred Message Timeout? Thanks