OS X Server on AD Domain
I recently set up a Mac mini Server, and successfully bound it to our Active Directory Windows 2003 Server, and have been using it without issue for a week or so. Then yesterday afternoon it refused to allow clients to log in. I ended up unbinding it from the AD server then rebinding it, and everything looked ok, but then this morning it won't allow SMB clients to connect. Looking through the samba log, there were no entries from the time the server went live until yesterday. Then it shows the following:
2011/03/07 15:36:49, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 15:36:51, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 15:36:51, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 16:24:25, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbd.c:terminate(52)
Got SIGTERM: going down...
2011/03/07 16:25:43, 0 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbd.c:main(709)
Netbios nameserver version 3.0.28a-apple started.
Copyright Andrew Tridgell and the Samba Team 1992-2008
2011/03/07 16:25:43, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = UNKNOWN
MACSERVER 40819b03 (Mac OS X Server)
2011/03/07 16:25:59, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = UNKNOWN
MACSERVER 40819b03 (Mac OS X Server)
2011/03/07 16:31:09, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = UNKNOWN
MACSERVER 40819b03 (Mac OS X Server)
2011/03/07 16:36:37, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 16:37:00, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 16:37:00, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdserverlistdb.c:write_browselist(350)
writebrowselist: Fatal error - cannot find my workgroup WORKGROUP
2011/03/07 16:37:00, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 16:37:00, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdserverlistdb.c:write_browselist(350)
writebrowselist: Fatal error - cannot find my workgroup WORKGROUP
2011/03/07 16:37:01, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 16:37:01, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdserverlistdb.c:write_browselist(350)
writebrowselist: Fatal error - cannot find my workgroup WORKGROUP
2011/03/07 16:37:27, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 16:37:27, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdserverlistdb.c:write_browselist(350)
writebrowselist: Fatal error - cannot find my workgroup WORKGROUP
2011/03/07 16:37:29, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 16:37:29, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdserverlistdb.c:write_browselist(350)
writebrowselist: Fatal error - cannot find my workgroup WORKGROUP
2011/03/07 16:37:32, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
2011/03/07 16:37:32, 0, pid=59 /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdserverlistdb.c:write_browselist(350)
writebrowselist: Fatal error - cannot find my workgroup WORKGROUP
Prior to the "Got SIGTERM: going down..." line, it showed the current master browser as MAIN-SERVER as it should, but after that it became "UNKNOWN" until I unbound it from the domain then re-bound it. But then at 16:37:32 we got the "Fatal error - cannot find my workgroup WORKGROUP", which repeats over and over in the log since that time. And since that time, Mac users have been able to log in with no issues, but Windows users are not. The Mac server isn't even visible to any Windows machines when browsing through the network.
Has anybody dealt with this before and/or know how I can resolve the problem?
Thanks!
Subject was edited by: David Thornton
Just an update on this issue: After posting yesterday I un-bound (un-binded?) the OS X server from the AD server, then reestablished the binding, and it has been working ok since then. When that happened, I got the following entry in the Samba log on the server:
(2011/03/08 12:15:25, 0, pid=59) /SourceCache/samba/samba-235.5/samba/source/nmbd/nmbdworkgroupdb.c:dumpworkgroups(282)
dump_workgroups()
dump workgroup on subnet 10.2.41.22: netmask= 255.255.255.0:
CIMARRONLABEL(1) current master browser = MAIN-SERVER
MACSERVER 40819b03 (Mac OS X Server)
MAIN-SERVER 4084126b ()
... and since then eight more just like it have come up at seemingly random intervals; a second one at 2011/03/08 12:15:25
2011/03/08 14:56:28
2011/03/08 14:56:28
2011/03/08 14:59:14
2011/03/08 21:23:28
2011/03/08 21:23:28
2011/03/09 07:24:29
2011/03/09 07:24:29
I guess that worries me a bit because the problems started when an entry similar to that popped up on Monday. I'm still looking for clues as to what that "dump_workgroups" business is about; if anyone has any ideas, I'm all ears.
Thanks!
Similar Messages
-
Hi,
Windows 7 or Windows Server 2008 R2 domain join displays error "Changing the Primary Domain DNS name of this computer to "" failed...."
DC:windows Server 2008 R2
Domain functional level:Windows Server 2003
When Winxp join domain, have no this error message.
I checked http://support.microsoft.com/kb/2018583?wa=wsignin1.0 does't work.
There have 3 suggestion in this article:
1.The "Disable NetBIOS over TCP/IP" checkbox has been disabled in the IPv4 properties of the computer being joined.
Doesnt's work.
2.Connectivity over UDP port 137 is blocked between client and the helper DC servicing the join operation in the target domain.
On my DC, I run netstat -an, reslut as below:
UDP 192.168.20.3:137 *:*
3.The TCP/IPv4 protocol has been disabled so that the client being joined or the DC in the destination domain targeted by the LDAP BIND is running TCP/IPv6 only.
We are not using IPV6.
This server recently updated from Windows Server 2003 to Windows Server 2008 R2. Before upgrade, when Win7 and Win2008 join this domain, also have the same error message.
Please help to check this issue.
Thank you very much.
BR
Guo YingHuiHi Guo Ying,
I have faced this critical error which makes over-writes the host names in the domain when you join.
For example: Already you had a host name called as PC.domain.com in the domain.com Domain.
When you try to add the another host name called as PC in the domain.com Domain, it doesn't give you the duplicate name error on the network it does over-write the existing host name called as PC.domain.com & it will add the new host name into the domain.
Host name which got over-written will get removed from the domain. I faced this issue in my project. My DPM host name got removed from the Domain & new host name got joined into the domain which halted my backups for one day.
Final Resolution is as follows:
You need to start the dns console on the DC & drop down the domain name.
Select the _msdcs when you click on _msdcs it will show the Name Server's list on the right hand side.
You need to add the Domain Naming Master under the _msdcs or add all the domain controllers which you had.
After you add the Name server's try joining the PC OR Laptop to the domain which is successfully joins it.
Regards
Anand S
Thanks & Regards Anand Sunka MCSA+CCNA+MCTS -
Need help in using [RUN PROGRAM] Activity against a server in another domain
Hi Experts,
We have two domains with two way trust enabled. Orch server exists in DomainA and target server exists in DomainB.
We are trying to execute some scripts(g:IPCONFIG) from orch server to target server using RUN PROGRAM activity. This is running fine and give expected results, if I give Built-in Administrator credentials in Security Tab. But I'm getting some
strange values like chinese/japanese language strings, If I use a DomainB/DomainA user (Part of local admin of the target server) in security tab as well as Advanced tab-->Runas.
Things I tried:
- DomainA/DomainB user in Security Tab as well as RunAs tab ---> Strange Strings
- DomainA/DomainB user in Security Tab and BuiltIn Administrator in RunAs tab ---> Strange Strings
- BuiltIn Administrator in Security Tab ---> Expected result
- BuiltIn Administrator in Security Tab and DomainA/DomainB user in RunAs tab --> ProgramExitCode = -10xxxxxx
But our requirement is to run the script on the target server as Domain User(Part of local admin).
Thanks in Advance
Thanks and Regards, Narayana BabuHi Experts,
We have two domains with two way trust enabled. Orch server exists in DomainA and target server exists in DomainB.
We are trying to execute some scripts(g:IPCONFIG) from orch server to target server using RUN PROGRAM activity. This is running fine and give expected results, if I give Built-in Administrator credentials in Security Tab. But I'm getting some
strange values like chinese/japanese language strings, If I use a DomainB/DomainA user (Part of local admin of the target server) in security tab as well as Advanced tab-->Runas.
Things I tried:
- DomainA/DomainB user in Security Tab as well as RunAs tab ---> Strange Strings
- DomainA/DomainB user in Security Tab and BuiltIn Administrator in RunAs tab ---> Strange Strings
- BuiltIn Administrator in Security Tab ---> Expected result
- BuiltIn Administrator in Security Tab and DomainA/DomainB user in RunAs tab --> ProgramExitCode = -10xxxxxx
But our requirement is to run the script on the target server as Domain User(Part of local admin).
Thanks in Advance
Thanks and Regards, Narayana Babu -
Configuring group policy for user profiles in Windows Server 2012 R2 Domain
Requesting some experts advise on configuring group policy for user profiles.
We will be building new Windows Server 2012 R2 Domain Controllers (Domain of 400 users).
The settings which I am concerned:
1. Folder Redirection: Desktop, Documents, Favorites.
2. Quota for Folder Redirection - 1 GB per user.
3. Map a networked drive - 1 GB per user.
4. Roaming profile - (Will ignore if it does not suit our requirement).
The question is how outlook profile will be retained / automatically moved if the users move from once computer to other?
FYI, E-mails hosted on MS Office365 and OST file size of few users more than 25GB. So, in case the user moves from one computer to other, the entire mailbox will be downloaded via internet. This consumes high bandwidth if more than 3-4 users shift per day.
Thanks a lot for your valuable time and efforts.Hi,
>>The question is how outlook profile will be retained / automatically moved if the users move from once computer to other?
This depends on where our outlook data files are stored. If these data files are stored under
drive:\Users\<username>\AppData\Local, then these files can’t be redirected, for folder redirection can’t redirect appdata local or locallow.
However, regarding your question, we can refer to the following thread to find the solution.
Roam outlook profiles without roaming profiles
http://social.technet.microsoft.com/Forums/office/en-US/3908b8e0-8f44-4a34-8eb5-5a024df3463e/roam-outlook-profiles-without-roaming-profiles
In addition, regarding how to configure folder redirection, the following article can be referred to for more information.
Configuring Folder Redirection
http://technet.microsoft.com/library/cc786749.aspx
Hope it helps.
Best regards,
Frank Shen -
Upgrade to Server 2012 R2 domain controllers from 2003
I am at a loss as to what I did wrong here. Everything seems to be working fine except for one subnet (which is behind a hardware firewall).
We had two Server 2003 domain controllers and one of them was failing. I raised the forest functional level of our old primary domain controllers to 2003. I built the first replacement Server 2012 R2 domain controller. Added the AD DS roles
and promoted it as a domain controller. I let it sit for a couple days. The FSMO roles were currently being handled by our other 2003 domain controller. Once this had been sitting for a while (don't recall how long) I ran dcpromo on the failing
server and demoted it. Once demoted I shut it down and pulled it out of the rack. I then built our second 2012 R2 server and gave it the same IP as the failing one. Installed the AD DS roles and integrated DNS as prompted by the wizard.
I then made it the operations master for Schema master, Domain naming master, PDC, RID pool manager, and Infrastructure master. Then I ran dcpromo on the second 2003 domain controller to demote it and removed it from the network. I then demoted
the first new controller (DC03) changed the hostname and IP to the name and IP of the second 2003 controller and promoted it again. I'm not sure at what point things broke, but everything works from the same subnet that the domain controllers are in,
just not a second subnet that is through a hardware firewall. I don't see anything getting blocked while watching firewall logs so I don't think the firewall is the issue.
Here is the dcdiag and ipconfig from the first controller (which has all 5 FSMO roles).
Microsoft Windows [Version 6.3.9600]
(c) 2013 Microsoft Corporation. All rights reserved.
C:\Users\username>dcdiag /v /test:dns
Directory Server Diagnosis
Performing initial setup:
Trying to find home server...
* Verifying that the local machine WGDDC01, is a Directory Server.
Home Server = WGDDC01
* Connecting to directory service on server WGDDC01.
* Identified AD Forest.
Collecting AD specific global data
* Collecting site info.
Calling ldap_search_init_page(hld,CN=Sites,CN=Configuration,DC=wgd,DC=inet,LD
AP_SCOPE_SUBTREE,(objectCategory=ntDSSiteSettings),.......
The previous call succeeded
Iterating through the sites
Looking at base site object: CN=NTDS Site Settings,CN=Default-First-Site-Name
,CN=Sites,CN=Configuration,DC=wgd,DC=inet
Getting ISTG and options for the site
* Identifying all servers.
Calling ldap_search_init_page(hld,CN=Sites,CN=Configuration,DC=wgd,DC=inet,LD
AP_SCOPE_SUBTREE,(objectClass=ntDSDsa),.......
The previous call succeeded....
The previous call succeeded
Iterating through the list of servers
Getting information for the server CN=NTDS Settings,CN=WGDDC01,CN=Servers,CN=
Default-First-Site-Name,CN=Sites,CN=Configuration,DC=wgd,DC=inet
objectGuid obtained
InvocationID obtained
dnsHostname obtained
site info obtained
All the info for the server collected
Getting information for the server CN=NTDS Settings,CN=WGDDC02,CN=Servers,CN=
Default-First-Site-Name,CN=Sites,CN=Configuration,DC=wgd,DC=inet
objectGuid obtained
InvocationID obtained
dnsHostname obtained
site info obtained
All the info for the server collected
* Identifying all NC cross-refs.
* Found 2 DC(s). Testing 1 of them.
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\WGDDC01
Starting test: Connectivity
* Active Directory LDAP Services Check
Determining IP4 connectivity
* Active Directory RPC Services Check
......................... WGDDC01 passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\WGDDC01
Test omitted by user request: Advertising
Test omitted by user request: CheckSecurityError
Test omitted by user request: CutoffServers
Test omitted by user request: FrsEvent
Test omitted by user request: DFSREvent
Test omitted by user request: SysVolCheck
Test omitted by user request: KccEvent
Test omitted by user request: KnowsOfRoleHolders
Test omitted by user request: MachineAccount
Test omitted by user request: NCSecDesc
Test omitted by user request: NetLogons
Test omitted by user request: ObjectsReplicated
Test omitted by user request: OutboundSecureChannels
Test omitted by user request: Replications
Test omitted by user request: RidManager
Test omitted by user request: Services
Test omitted by user request: SystemLog
Test omitted by user request: Topology
Test omitted by user request: VerifyEnterpriseReferences
Test omitted by user request: VerifyReferences
Test omitted by user request: VerifyReplicas
Starting test: DNS
DNS Tests are running and not hung. Please wait a few minutes...
See DNS test in enterprise tests section for results
......................... WGDDC01 failed test DNS
Running partition tests on : DomainDnsZones
Test omitted by user request: CheckSDRefDom
Test omitted by user request: CrossRefValidation
Running partition tests on : ForestDnsZones
Test omitted by user request: CheckSDRefDom
Test omitted by user request: CrossRefValidation
Running partition tests on : Schema
Test omitted by user request: CheckSDRefDom
Test omitted by user request: CrossRefValidation
Running partition tests on : Configuration
Test omitted by user request: CheckSDRefDom
Test omitted by user request: CrossRefValidation
Running partition tests on : wgd
Test omitted by user request: CheckSDRefDom
Test omitted by user request: CrossRefValidation
Running enterprise tests on : wgd.inet
Starting test: DNS
Test results for domain controllers:
DC: WGDDC01.wgd.inet
Domain: wgd.inet
TEST: Authentication (Auth)
Authentication test: Successfully completed
TEST: Basic (Basc)
The OS
Microsoft Windows Server 2012 R2 Standard (Service Pack level:
0.0)
is supported.
NETLOGON service is running
kdc service is running
DNSCACHE service is running
DNS service is running
DC is a DNS server
Network adapters information:
Adapter [00000010] Broadcom NetXtreme Gigabit Ethernet:
MAC address is B0:83:FE:C1:98:07
IP Address is static
IP address: 10.240.1.23
DNS servers:
10.240.1.23 (WGDDC01) [Valid]
10.240.1.24 (WGDDC02) [Valid]
127.0.0.1 (WGDDC01) [Valid]
The A host record(s) for this DC was found
The SOA record for the Active Directory zone was found
Warning: no DNS RPC connectivity (error or non Microsoft DNS s
erver is running)
[Error details: 5 (Type: Win32 - Description: Access is denied
Summary of test results for DNS servers used by the above domain
controllers:
DNS server: 10.240.1.23 (WGDDC01)
All tests passed on this DNS server
Name resolution is functional._ldap._tcp SRV record for the fores
t root domain is registered
DNS server: 10.240.1.24 (WGDDC02)
All tests passed on this DNS server
Name resolution is functional._ldap._tcp SRV record for the fores
t root domain is registered
Summary of DNS test results:
Auth Basc Forw Del Dyn RReg Ext
Domain: wgd.inet
WGDDC01 PASS WARN n/a n/a n/a
n/a n/a
......................... wgd.inet passed test DNS
Test omitted by user request: LocatorCheck
Test omitted by user request: Intersite
C:\Users\dsmythe>ipconfig /all
Windows IP Configuration
Host Name . . . . . . . . . . . . : WGDDC01
Primary Dns Suffix . . . . . . . : wgd.inet
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : wgd.inet
Ethernet adapter WGD_INET:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Broadcom NetXtreme Gigabit Ethernet
Physical Address. . . . . . . . . : B0-83-FE-C1-98-07
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv4 Address. . . . . . . . . . . : 10.240.1.23(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 10.240.1.1
DNS Servers . . . . . . . . . . . : 10.240.1.23
10.240.1.24
127.0.0.1
NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter isatap.{2C28B0FA-6BF8-4201-A6DA-081AED63B496}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
When I try to bind a machine to the domain I get an error message that says "
The following error occurred when DNS was queried for the service location (SRV) resource record used to locate an Active Directory Domain Controller (AD DC) for domain "wgd.inet":
The error was: "This operation returned because the timeout period expired."
(error code 0x000005B4 ERROR_TIMEOUT)
The query was for the SRV record for _ldap._tcp.dc._msdcs.wgd.inet
The DNS servers used by this computer for name resolution are not responding. This computer is configured to use DNS servers with the following IP addresses:
10.240.1.24
10.240.1.23
Verify that this computer is connected to the network, that these are the correct DNS server IP addresses, and that at least one of the DNS servers is running.
Please let me know if I'm missing something or if there are other things I can check.
Thanks!
I forgot to mention that after the 2003 domain controllers were out of the environment, I raised the domain and forest functional level to 2012 R2. All clients in the environment are Windows XP Pro or above. The XP Pro boxes will be going away as
soon as our vendor supports their software to run on Windows 7.We now have 2 2012 R2 DCs. The 2003 DCs are gone. Metadata from the old DCs is all cleaned up. DNS seems to be working fine in 3 out of 4 subnets. The 4th is behind a hardware firewall and I can see the IP address of the machine I am trying to bind to the
domain connecting to the two new domain controllers but the client machine that is trying to bind gives an error. An Active Directory Domain Controller for the domain wgd.inet could not be contacted. It seems that this is just a DNS issue for one
particular subnet (10.240.2.0/24). This subnet is setup in AD Sites and Services\Sites\Subnets\10.240.2.0/24 (Site: Default-First-Site-Name).
When trying to do anything with nslookup from the 10.240.2.0/24 subnet it times out. The route is there and I can watch it connect through our hardware firewall over port 53.
DC01
Microsoft Windows [Version 6.3.9600]
(c) 2013 Microsoft Corporation. All rights reserved.
C:\Users\dsmythe>netdom query fsmo
Schema master WGDDC01.wgd.inet
Domain naming master WGDDC01.wgd.inet
PDC WGDDC01.wgd.inet
RID pool manager WGDDC01.wgd.inet
Infrastructure master WGDDC01.wgd.inet
The command completed successfully.
C:\Users\dsmythe>ipconfig /all
Windows IP Configuration
Host Name . . . . . . . . . . . . : WGDDC01
Primary Dns Suffix . . . . . . . : wgd.inet
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : wgd.inet
Ethernet adapter WGD_INET:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Broadcom NetXtreme Gigabit Ethernet
Physical Address. . . . . . . . . : B0-83-FE-C1-98-07
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv4 Address. . . . . . . . . . . : 10.240.1.23(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 10.240.1.1
DNS Servers . . . . . . . . . . . : 10.240.1.23
10.240.1.24
NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter isatap.{2C28B0FA-6BF8-4201-A6DA-081AED63B496}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
C:\Users\dsmythe>
DC02
Microsoft Windows [Version 6.3.9600]
(c) 2013 Microsoft Corporation. All rights reserved.
C:\Users\dsmythe>netdom query fsmo
Schema master WGDDC01.wgd.inet
Domain naming master WGDDC01.wgd.inet
PDC WGDDC01.wgd.inet
RID pool manager WGDDC01.wgd.inet
Infrastructure master WGDDC01.wgd.inet
The command completed successfully.
C:\Users\dsmythe>ipconfig /all
Windows IP Configuration
Host Name . . . . . . . . . . . . : WGDDC02
Primary Dns Suffix . . . . . . . : wgd.inet
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : wgd.inet
Ethernet adapter NIC1:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Broadcom NetXtreme Gigabit Ethernet
Physical Address. . . . . . . . . : B0-83-FE-C1-9F-74
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv4 Address. . . . . . . . . . . : 10.240.1.24(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 10.240.1.1
DNS Servers . . . . . . . . . . . : 10.240.1.24
10.240.1.23
NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter isatap.{4F45E51E-FC2F-49ED-85CF-0750A9EEECF5}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
C:\Users\dsmythe> -
Windows CAL server 2003 and Domain Server with a 2008 server as domain member
We have a Windows Server 2003 as domain controller with 70 user CALs, and we have added a Windows 2008 R2 OEM with 5 users licences.
I have no plans to migrate my domain controller 2003 to 2008 but the 2008 is a member of the domain and I need to know if we are fine with the licences.
Thanks for your help,
Alejandro SueldoHi
You need CAL for anything that would access the 2008. If a server that is accessed by only 5 user you are ok, but if like a Exchange for your 70 users, then you have to buy more CAL. (that link explain it good;
http://blogs.msdn.com/b/mssmallbiz/archive/2007/11/06/5942350.aspx)
Contact the VLSC to be sure at 100% before buying; (866) 230-0560
Regards, Philippe
Don't forget to mark as answer or vote as helpful to help identify good information. ( linkedin endorsement never hurt too :o) )
Answer an interesting question ? Create a
wiki article about it! -
Can i set a node manager serve for 2 domain on one machin??
My question is simple.
I installed webcenter suite and soa suite in a machine using difference linux user and difference middleware home.
and I want to set a node manager server for two domains (soa_domain and webcenter_domain).
Is is possible?
When I tried to register domain list in node manager domain list using nmEnroll() of wlst, it failed.
please check following logs in 7101 is admin server port of soa domain and I ran node manager on webcenter domain.
Thanks in advance.
BmW.
~~~~~~~~~~~~~~~~~~
wls:/offline> connect()
Please enter your username :weblogic
Please enter your password :
Please enter your server URL [t3://localhost:7001] :t3://localhost:7101
Connecting to t3://localhost:7101 with userid weblogic ...
Successfully connected to Admin Server 'AdminServer' that belongs to domain 'soa_domain'.
Warning: An insecure protocol was used to connect to the
server. To ensure on-the-wire security, the SSL port or
Admin port should be used instead.
wls:/soa_domain/serverConfig> wls:/soa_domain/serverConfig> wls:/soa_domain/serverConfig> wls:/soa_domain/serverConfig> nmEnroll('/u02/app/soa11g/middleware/user_projects/domains/soa_domain', '/u02/app/wc11g/middleware/wlserver_10.3/common/nodemanager');
Enrolling this machine with the domain directory at /u02/app/soa11g/middleware/user_projects/domains/soa_domain ...
Traceback (innermost last):
File "<console>", line 1, in ?
File "<iostream>", line 1447, in nmEnroll
File "<iostream>", line 1848, in raiseWLSTException
WLSTException: Error occured while performing nmEnroll : Problem enrolling the machine. : /u02/app/soa11g/middleware/user_projects/domains/soa_domain/config/nodemanager/nm_password.properties (Permission denied)
Use dumpStack() to view the full stacktrace
wls:/soa_domain/serverConfig> exit();you might be victim of the "node manager starts WL Server with same Unix user id that was used to start Node Manager itself" problem
see here http://forums.oracle.com/forums/thread.jspa?threadID=2184607&tstart=89
I have been looking everywhere for a simple way to tell Node Manager to use a different Unix UID,
anybody any clue?
here http://download.oracle.com/docs/cd/E12840_01/wls/docs103/nodemgr/overview.html the Node Manager doc page -
Linked Server across the Domain
Hi
I have one problem encountering with Linked server connectivity.
Have one of the server in Domain A and another server into other Domain B. Am able to connect and execute the sql query from Domain A to B. (Creating a linked server in Domain A and trying to access the database which is in Domain B). The problem is that vice
versa am not able to achieve. Could you just help me in debugging this scenario?
Also if you could throw me some light how to verify the IP is not blocked in firewall settings will be helpful to debug further.
Some of the things which I have played around was to verify the remote connectivity was enabled, TCP/IP protocol was enabled, SQL service is up running etc
Regards
Srinivasan Baskaran
Srinivasan, Sr. Software Engineer, IndiaTo verify firewall settings:
Please refer -
http://blogs.msdn.com/b/walzenbach/archive/2010/04/14/how-to-enable-remote-connections-in-sql-server-2008.aspx
Try one more trick given in below similar thread:
SQL2008r2 Linked Server fails across domains
Cheers,
Vaibhav Chaudhari
[MCTS],
[MCP] -
Hello to all, there are two confliting articles about this topic:
1-
http://technet.microsoft.com/en-us/library/upgrade-domain-controllers-to-windows-server-2008-r2(v=ws.10).aspx#BKMK_Whatsnew : this one says that it does not work "The Group Chat feature in Office Communications Server 2007 R2 does not work in Windows
Server 2008 R2 domains". This article was updated in 2013.
2-
http://technet.microsoft.com/en-us/library/ee692314(office.13).aspx: this other article says that it will function "Office Communications Server 2007 R2 Group Chat will function in a Windows Server 2008 R2 forest". This article was updated in
2010 and was refered by the first one.
What is the correct support position for Group Chat feature in Office Communications Server 2007 R2 and Windows Server 2008 R2 domains?
Regards, EEOC.Hi,
I notice the following sentence in the link below “Office Communications Server 2007 R2, Group Chat will not function in a Windows Server 2008 R2 forest or when Group Chat member servers are joined to a Windows Server 2008 R2 domain.
We know of an issue with changes in Windows 2008 R2 that requires a Group Chat Client and Group Chat Admin Tools hotfix. The Group Chat Client and Group Chat Admin Tools hotfixes are currently scheduled for mid-April 2010.”
http://blogs.technet.com/b/nexthop/archive/2010/11/06/supportability-for-office-communications-server-2007-r2-and-windows-server-2008-r2.aspx
So in my opinion, if you update to the latest version of Windows Server 2008 R2, OCS Server 2007 R2 and Group Chat Client, Group Chat Admin Tools to the latest version, it should work.
However, the best method for you is make a lab to test the problem firstly.
Best Regards,
Eason Huang
Eason Huang
TechNet Community Support -
I have configured the Default Domain Controller's policy to log SUCCESS for Account Logon Events in the Server 2008 R2 Domain Controller, but these events are not logging in the Security Event log.
Default Domain Controllers Policy
Computer Configuration/Windows Settings/Security Settings/Local Policies/Audit Policies/Audit Account Logon Events = Success.
What tools can I use to troubleshoot this further? The results of "Auditpol.exe /get /category:*" are below.
System audit policy
Category/Subcategory Setting
System
Security System Extension No Auditing
System Integrity No Auditing
IPsec Driver No Auditing
Other System Events No Auditing
Security State Change No Auditing
Logon/Logoff
Logon No Auditing
Logoff No Auditing
Account Lockout No Auditing
IPsec Main Mode No Auditing
IPsec Quick Mode No Auditing
IPsec Extended Mode No Auditing
Special Logon No Auditing
Other Logon/Logoff Events No Auditing
Network Policy Server No Auditing
Object Access
File System No Auditing
Registry No Auditing
Kernel Object No Auditing
SAM No Auditing
Certification Services No Auditing
Application Generated No Auditing
Handle Manipulation No Auditing
File Share No Auditing
Filtering Platform Packet Drop No Auditing
Filtering Platform Connection No Auditing
Other Object Access Events No Auditing
Detailed File Share No Auditing
Privilege Use
Sensitive Privilege Use No Auditing
Non Sensitive Privilege Use No Auditing
Other Privilege Use Events No Auditing
Detailed Tracking
Process Termination No Auditing
DPAPI Activity No Auditing
RPC Events No Auditing
Process Creation No Auditing
Policy Change
Audit Policy Change No Auditing
Authentication Policy Change No Auditing
Authorization Policy Change No Auditing
MPSSVC Rule-Level Policy Change No Auditing
Filtering Platform Policy Change No Auditing
Other Policy Change Events No Auditing
Account Management
User Account Management No Auditing
Computer Account Management No Auditing
Security Group Management No Auditing
Distribution Group Management No Auditing
Application Group Management No Auditing
Other Account Management Events No Auditing
DS Access
Directory Service Changes No Auditing
Directory Service Replication No Auditing
Detailed Directory Service Replication No Auditing
Directory Service Access No Auditing
Account Logon
Kerberos Service Ticket Operations No Auditing
Other Account Logon Events No Auditing
Kerberos Authentication Service No Auditing
Credential Validation SuccessHi Lawrence,
After configuring the GPO, did we run command gpupdate/force to update the policy immediately on domain controller? Besides, please run command gpresult/h c:\gpreport.html to check if the audit policy
setting was applied successfully.
TechNet Subscriber Support
If you are TechNet Subscription user and have any feedback on our support quality, please send your feedback here.
Best regards,
Frank Shen -
Unable to Connect to the Server and WLI Domain problem
Hi All
this is the details
I have installed installed WIntegration Server and using
quickstart click the Take to Platform tour I started all the servers
Note-- I have not installed separate weblogic server 7.0 and not started.
whenever I click started WebLogic Integration Studio and it shows
user --admin
password- security
url--t3://localhost:7001
once submit it shows always Unable to connect to the server
please help me ???????????????????????????????????????????/
Server is running fine I used quickstart--- Take the live platform tour to run
the below servers.
C:\bea\weblogic700\samples\platform\e2eDomain>"C:\bea\jdk131_08\bin\java" -hotsp
ot -Xms256m -Xmx256m -XX:MaxPermSize=256m -Xverify:none -Dcommerce.properties="
C:\bea\weblogic700\portal\weblogiccommerce.properties" -Dweblogic.jws.Production
Mode="false" -Dweblogic.servlet.ClasspathServlet.disableStrictCheck="true" -De2e
Sample.b2b.path.data=".\beaApps\e2eApp\data" -Dweblogic.Name=e2eServer -Dbea.hom
e="C:\bea" -Dweblogic.management.username= -Dweblogic.management.password= -Dweb
logic.ProductionModeEnabled=true -Dweblogic.management.discover=false -Djava.sec
urity.policy=="C:\bea\weblogic700\server\lib\weblogic.policy" weblogic.Server
Starting WebLogic Server...
<Aug 5, 2003 1:22:23 PM EDT> <Notice> <Management> <140005> <Loading configurati
on C:\bea\weblogic700\samples\platform\e2eDomain\.\config.xml>
<Aug 5, 2003 1:22:37 PM EDT> <Notice> <Security> <090093> <No configuration data
was found on server e2eServer for realm CompatibilityRealm.>
<Aug 5, 2003 1:22:37 PM EDT> <Notice> <Security> <090082> <Security initializing
using realm CompatibilityRealm.>
<Aug 5, 2003 1:22:38 PM EDT> <Notice> <WebLogicServer> <000327> <Starting WebLog
ic Admin Server "e2eServer" for domain "e2eDomain">
<Aug 5, 2003 1:24:23 PM EDT> <Notice> <B2BIntegration> <000000> <INFO: WebLogic
Integration - B2Bi Server started successfully.>
INFO: WebLogic Integration - B2Bi Server started successfully.
<Aug 5, 2003 1:24:31 PM EDT> <Notice> <AI> <000000> <Started WebLogic Integratio
n - AI Server version 7.0.4.0>
<Aug 5, 2003 1:24:35 PM EDT> <Notice> <BPM> <000000> <Started WebLogic Integrati
on - BPM Server version 7.0.4.0>
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
After the server has booted, your browser should
automatically launch and point to the WebLogic Server
Index running on this server. If your browser
fails to launch, point your browser to the URL
"http://Inforicadb:7501/index.jsp
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
=============== Initializing Logger ======================
<Aug 5, 2003 1:24:36 PM EDT> <Notice> <Management> <141053> <Application Poller
not started for production server.>
<Aug 5, 2003 1:24:46 PM EDT> <Notice> <WebLogicServer> <000354> <Thread "SSLList
enThread.Default" listening on port 7502>
<Aug 5, 2003 1:24:46 PM EDT> <Notice> <WebLogicServer> <000354> <Thread "ListenT
hread.Default" listening on port 7501>
<Aug 5, 2003 1:24:47 PM EDT> <Notice> <WebLogicServer> <000329> <Started WebLogi
c Admin Server "e2eServer" for domain "e2eDomain" running in Production Mode>
<Aug 5, 2003 1:24:48 PM EDT> <Notice> <WebLogicServer> <000365> <Server state
ch
anged to RUNNING>
<Aug 5, 2003 1:24:48 PM EDT> <Notice> <WebLogicServer> <000360> <Server started
in RUNNING mode>
please help me, urgent
Thanks in advance
Domain problem---------------------------------------------
I created WLI domain like this is it correct ?
Next I used Quick start's --Configure New Server
then single server option radio selected
then
single server name--myserver
server listner address---????????? please tell me
server listening port 7001
ssl listnening port 7002
username bala
password subramaniam
verify password subramaniam
c:\bea\user_projects\CIBC
configure database mail--
email address- [email protected]
email host: what need to give ??????? please tell me----
after I created domain called CBC it is in the
c:\bea\user_projects\CBC
then I saw it consists
1)wlai folder
2)dbinfo
3)application
4)keys
5)scripts
setdatabase.cmd
startweblogic.cmd
startmanagedweblogic.cmd
setwlidomaindata.cmd
wliconfig.cmd
checkdomain.cmd
Wliconfig.jar
startweblogic.cmd
stopweblogic.cmd
I try to startweblogic.cmd it open and closed no action
please tell me what is the problem????????????
with regards
balaOh boy! Let me see what's going on. Are you using the VZW Cloud or the BUA app? Please try downloading the VZW Cloud app if you dont already have it. And once downloaded. Tap the 3 bars in the upper corner and go down to "TOOLS", then tap "RESTORE CONTENT". That should do it!
VanetrisC_VZW
Follow us on Twitter @VZWSupport -
Adding a Server 2008 R2 Domain Controller at a remote site
Hello. I have been trying to set up a hot site at a remote location. The story is long and involved but a few weeks ago it seemed to be finally working. Our setup is two mirrored 2008 R2 servers at main site, mirrored with Double Take.
The hot site is the same except that so far I only had one server working. The two sites connected via site to site VPN.
About a week later our primary server basically crashed. At first it worked but very slowly. I was on vacation at the time and so I am not sure of the sequence of events, or exactly what errors were presented, but my associate first tried rebooting.
It took over 20 minutes to boot and then it said something to the effect that no domain controllers were available (not sure about this message). He then discovered that the server at the remote site had some fsmo roles assigned to it. He transferred
the roles to the primary at the main site and then demoted the remote server to a workstation (but still a domain member).
After that, rebooting the primary was much faster and everything at the primary site is working again. Now I want to set the remote site up again, but avoid the problem. The way I originally set up the remote server was to use an IFM file, generated
from our primary. This should have made the remote server a catalog server, with DNS (which it did), but as far as I know should not have transferred any fsmo roles.
The remote server(s) are wanted to be in the same domain as the primary. They will also be mirrored from the primary (with Double Take). If we had total failure at the main site, we wish to be able to immediately begin operations at the hot site
(after a fail over). I freely admit that I am swimming out of my depth here. I am not sure that I have selected the correct architecture or used the correct options in setting up the remote servers. I am looking for information about what
went wrong, and whether some other setup is more desirable.
Thanks for any help, Russ
RussPhilippe, thank you for you answers. I do not understand everything you said but I will address each point as best I can:
1. "In the remote site do you simply do a dcpromo / add the ADDS's role to make the server a active Domain Controller ?" Yes, but I use the method described at
http://technet.microsoft.com/en-us/library/cc753720(v=ws.10).aspx, The GUI method. At step #8 I specified to use advanced mode so I could use the IFM file.
2. "In your AD' Site and Service MMC, do you configured the remote site ?" R do not know what you mean by this. How does one configure the site as 'remote'?
3. "Do you added that remote server as a Global catalogue ?". Yes, when I built the IFM file I specified to add the global catalog.
4. "Do you added the PC in site 1, the IP of those DNS server in them ? (last of course) So the computer in the main site will talk to the remote server in case of a crash." I am not sure I understand this item. After the remote server
was added, all of the members of both domain servers automatically appeared in the DNS of all servers in the domain. I do not recall if the new items were last, but I expect that they would be.
I have since reviewed the happenings with my associate and have a little more information. The order of the problems and the actions taken are:
1. Our primary (production) system was still working but extremely slow, and he observed that the slowness was caused by a lot of traffic with the remote site. Rebooting the production server took over 25 minutes and the server to came up saying
that domain information was not available. After another 30 minutes or so he discovered that the domain data was now available and the server worked, but still slow.
2. He did not check to verify that roles were held by the remote server, but he transferred all roles from the remote to the production server using ntdsutil. I would expect that if the role was not held by the remote, the transfer command would have
shown that fact.
3. He then tried to demote the remote server but had an error that it could not be demoted because "the active directory service is missing mandatory configuration information".
4. He forcefully demoted the remote server.
5. After rebooting the production server again performance was slightly better but still slow (and the rebood was still very slow).
6. After some research he removed the remote domain controller's meta data from the production server and then rebooted the production server again.
At that point reboot was fast (under 5 minutes) and the production system was working at normal speed again.
All of the above leads me to believe that somehow the FSMO roles got added to, or moved to the remote site when I used the IFM file to create the new domain controller. However nothing I have read says that this should happen. I hope someone
here can give me a better answer as to what caused the problem, as I do not wish to interrupt our production system like this again.
Thank you, Russ
PS: Sorry for the delay in getting back to this but some other priorities took me away from it for a week.
Russ -
10.5.7 server as primary domain controller
Setting up a 10.5.7 server -
Server is setup as a open directory master, I want it also to be a primary domain controller (smb).
But when I try to change it from Standalone Server to primary domain controller, using my directory admin user id and password, it just reverts back to standalone server. tried it with smb running and not running.
Any ideas ?Having the same issue with Leopard Server 10.5.8.
SMB was previously set up as a "Domain Member" and now I want to make it a "Primary Domain Controller".
After reboot, the Role always reverts back to "Domain Member".
Any ideas? -
Exchange Server 2010 Accepted Domain
Dear,
I have the following environment:
The company bought the company dominioA.com dominioB.com.
Both companies have mail system.
Company A wants to standardize the environment and wants only the mail platform remains in Exchange 2010 mail servers Company A.
to have many users, and also change the MX ip address, the company does not want to do all of one.
As I raise the following:
One Accepted Domain was created with the dominioB.com
An email policy which I think I will do that by creating the accounts you create them in an organizational unit and change them to dominioB.com SMTP.
Send mail testing was made from those accounts to accounts dominioA.com and there were no problems.
Send mail testing was done from the dominioB.com account to an external account and it worked.
Send test mail dominioA.com to DominioB.com and began to bounce post is made. because the mail server is in the domainB, and server Only the domain was created. for this to work one must change the MX, but the company wants to do it gradually.
As I can do ????
Waiting for your comments
Thank You,
Edwin Duran OspinaHi,
According to your description, I notice that you have two company, Company A and Company B. Then want to deploy only one Exchange server for mail flow.
If I misunderstand your concern, please do not hesitate to let me know.
If you want to deploy Only one Exchange server SMTP name for two company, I suggest we can deploy forest trust and linked mailbox for Company B’s user.
More details about Deploy Exchange 2010 in an Exchange Resource Forest Topology, for your reference:
https://technet.microsoft.com/en-us/library/aa998031(v=exchg.141).aspx
Best Regards,
Allen Wang -
Standalone OC4J server move to domain
We have one server with ias home installed with oc4j configured. This is a standalone server outside the domain what happens if it is added to the domain? Do I need to change something else? Please advice as it is very urgent. Thanks.
AFAIK, OC4J standalone cannot be added to the AS infrastructure.
But you can create a new OC4J instance with the infrastructure and deploy your applications in it.
--olaf -
I manually installed the agent on a member server in a domain (domainB) that has an external trust with the domain the DPM 2010 server, mydpmserver.domainA.int, is in.
I pointed the agent on myprotectedserver with setdpmserver -dpmservername mydpmserver.domainA.int
I successfully ran attach-productionserver.ps1 in DPM Management Shell.
When I click refresh in DPM 2010 Administrator Console/Management/Agents I get error id: 270
The agent operation failed on myprotectedserver.domainB.int because DPM could not communicate with the DPM protection agent. The computer may be protected by another DPM server, or the protection agent may have been uninstalled on the protected computer.
If myprotectedserver.domainB.int is a workgroup server, the password for the DPM user account could have been changed or may have expired.
I can ping myprotectedserver.domainB.int from mydpmserver.domainA.int
DPM 2010 backup of the domain_controller.domainB.int works fine.
The application log on myprotectedserver.domainB.int does not show any DPMRA related event logged.
The firewall on myprotectedserver is off.
Computers in domainA and domainB use their own networks connected through a router.
from mydpmserver
net view \\myprotectedserver.domainB.int /all - successfull
sc \\myprotectedserver.domainB.int query OpenSCManager FAILED 5, Access is denied
wmic /node:myprotectedserver.domainB.int OS list brief Error 0x80070005, Access is denied
from domaincontroller.domainB.int:
sc \\myprotectedserver.domainB.int query successfull
wmic /node:myprotectedserver.domainB.int OS list successfull
Any suggestions on how can I fix this?Hi
I know this is old but are you still having a problem?
Maybe you are looking for
-
Itunes update 11.0.2.26 running slow
I updated to 11.0.2.26 and now itunes is running very very slow. I went to apps to updates apps and its sits there for what seems to be an hour trying to access iTunes Store with no luck. When I hook my iPhone 5 up my computer recognizes the phone
-
Where can I find information about internals?
Can any one recommend a book or somthing, short of learning C, where I can learn Solaris Memory structures and really understand what they mean. For example, I have never really heard a good explanation of LWP.
-
Acrobat 7 open file locations issue
Using Adobe Acrobat 7. When trying to open the file from a drive the message, "There was an error opening this document. Path does not exist." appears. I can open it fine from the C:. None of the other drives show under File/Open. Using Windows 7
-
Buffer size for SQL statement using JDBC calls
I need to find out the buffer size for SQL statements in jave/JDBC because I need to insert or update a field that could be up to 4KB in size.
-
Hi experts Purchasing infosources 2lis_02_HDR and ITM are supplying data into a data target cube. We did init upload for both the sources. Firstly we did the 2LIS_02_ITM and then did 2LIS_02_ITM. Do we face any problems by doing this way..usually fir