Jump to content

Disabled Domain Controller


Recommended Posts

Guest athos_01
Posted

I have a DC that I thought was dead for good, so I removed it through

asdiedit. Later I find out that because of other network issues that

I have, I needed to have that server back up, so was able to resurect

it. It re-registered itself in DNS and is serving login requests.

But, it shows in Active Directory as disabled as well as there are no

NTDS settings. Can this be fixed? If I log into that particular DC,

it's Sites and Settings have the the NTDS settings, as it has never

received replication from the other servers that it is gone.

 

So, two questions, can I enable the DC machine account somehow? and

Is there somehow of repairing the NTDS settings? Thanks.

  • Replies 9
  • Created
  • Last Reply
Guest Meinolf Weber
Posted

Re: Disabled Domain Controller

 

Hello athos_01,

 

Just to get you right, the DC was removed from the domain with adsiedit and

all infos about the DC where deleted and the DC was just shutdown and placed

in the "corner". Then you reconnected the DC to the domain? Will not work

because you have removed every information form the object in AD.

 

So you have to disconnect from the network FIRST, then demote it to member

server, reconnect to the network and promote it in the domain again as additional

dc in an existing domain.

 

If i misunderstand the way you did it please correct me.

 

Best regards

 

Meinolf Weber

Disclaimer: This posting is provided "AS IS" with no warranties, and confers

no rights.

** Please do NOT email, only reply to Newsgroups

** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

> I have a DC that I thought was dead for good, so I removed it through

> asdiedit. Later I find out that because of other network issues that

> I have, I needed to have that server back up, so was able to resurect

> it. It re-registered itself in DNS and is serving login requests.

> But, it shows in Active Directory as disabled as well as there are no

> NTDS settings. Can this be fixed? If I log into that particular DC,

> it's Sites and Settings have the the NTDS settings, as it has never

> received replication from the other servers that it is gone.

>

> So, two questions, can I enable the DC machine account somehow? and

> Is there somehow of repairing the NTDS settings? Thanks.

>

Guest athos_01
Posted

Re: Disabled Domain Controller

 

 

 

You have it correct, unfortunately, my other network issues are the

fact that it is the only server that will act as a global catalog

server. I have enabled GC on two other servers, they show no errors,

show up in DNS just fine, but no machine uses them. My Exchange

server will not load without this junk DC turned on as it is the only

one that will work as a GC. Therefore, I can't dcpromo down, then

dcpromo back up.

 

Thanks for any help, I'm really in a pickle.

Guest Meinolf Weber
Posted

Re: Disabled Domain Controller

 

Hello athos_01,

 

Check that the clients are pointing to the correct DNS servers.

 

For Exchange you can export all mailboxes to .pst files and rebuild the exchange

and then import the .pst files to the new created Exchange server. I know

a lot of work but possible to keep all mails from the users and rebuild everything

with same names during a fresh install.

 

Exmerge is the tool you can use for this:

http://www.microsoft.com/downloads/details.aspx?FamilyID=429163ec-dcdf-47dc-96da-1c12d67327d5&displaylang=en

 

BTW, if possible install Exchange only on a member server, recommended from

MS.

 

Best regards

 

Meinolf Weber

Disclaimer: This posting is provided "AS IS" with no warranties, and confers

no rights.

** Please do NOT email, only reply to Newsgroups

** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

> You have it correct, unfortunately, my other network issues are the

> fact that it is the only server that will act as a global catalog

> server. I have enabled GC on two other servers, they show no errors,

> show up in DNS just fine, but no machine uses them. My Exchange

> server will not load without this junk DC turned on as it is the only

> one that will work as a GC. Therefore, I can't dcpromo down, then

> dcpromo back up.

>

> Thanks for any help, I'm really in a pickle.

>

Guest Meinolf Weber
Posted

Re: Disabled Domain Controller

 

Hello athos_01,

 

Also run dcdiag /v netdiag /v and replmon on the existing DC's to check for

errors.

 

Best regards

 

Meinolf Weber

Disclaimer: This posting is provided "AS IS" with no warranties, and confers

no rights.

** Please do NOT email, only reply to Newsgroups

** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

> You have it correct, unfortunately, my other network issues are the

> fact that it is the only server that will act as a global catalog

> server. I have enabled GC on two other servers, they show no errors,

> show up in DNS just fine, but no machine uses them. My Exchange

> server will not load without this junk DC turned on as it is the only

> one that will work as a GC. Therefore, I can't dcpromo down, then

> dcpromo back up.

>

> Thanks for any help, I'm really in a pickle.

>

Guest Hank Arnold (MVP)
Posted

Re: Disabled Domain Controller

 

athos_01 wrote:

>

> You have it correct, unfortunately, my other network issues are the

> fact that it is the only server that will act as a global catalog

> server. I have enabled GC on two other servers, they show no errors,

> show up in DNS just fine, but no machine uses them. My Exchange

> server will not load without this junk DC turned on as it is the only

> one that will work as a GC. Therefore, I can't dcpromo down, then

> dcpromo back up.

>

> Thanks for any help, I'm really in a pickle.

 

Did you reboot the servers that you assigned as global catalogs? It's

necessary....

 

--

 

Regards,

Hank Arnold

Microsoft MVP

Windows Server - Directory Services

Guest Meinolf Weber
Posted

Re: Disabled Domain Controller

 

Hello Hank,

 

Why rebooting when adding the GC? Never did it and works fine, also the event

viewer states GC succesfull added (or something similar) Or is the reboot

because the first existing GC was removed without adding a new one?

 

Best regards

 

Meinolf Weber

Disclaimer: This posting is provided "AS IS" with no warranties, and confers

no rights.

** Please do NOT email, only reply to Newsgroups

** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

> athos_01 wrote:

>

>> You have it correct, unfortunately, my other network issues are the

>> fact that it is the only server that will act as a global catalog

>> server. I have enabled GC on two other servers, they show no errors,

>> show up in DNS just fine, but no machine uses them. My Exchange

>> server will not load without this junk DC turned on as it is the only

>> one that will work as a GC. Therefore, I can't dcpromo down, then

>> dcpromo back up.

>>

>> Thanks for any help, I'm really in a pickle.

>>

> Did you reboot the servers that you assigned as global catalogs? It's

> necessary....

>

Guest athos_01
Posted

Re: Disabled Domain Controller

 

Rebooted, followed the maxim, if at first you don't suceed, reboot,

and try again. That didn't work.

 

I believe my GC problem lies within my DNS. Wondered if you would be

able to tell me if I have it set up correct.

 

My root DNS is x.k12.mo.us, I then created a domain under that called

msd. My domain name correctly is msd.x.k12.mo.us.

 

When I run dcdiag /fix and netdiag /fix, both DC's say that they are

announcing themselves correctly, no major errors come up. This leads

me to a DNS issue. Everybody is correctly pointing to them. I have

altered my firewall to allow everything so that I am not having

problems with it getting in the way.

 

Anyone that could provide a little DNS support would be great. Thanks.

Guest Hank Arnold (MVP)
Posted

Re: Disabled Domain Controller

 

Meinolf Weber wrote:

> Hello Hank,

>

> Why rebooting when adding the GC? Never did it and works fine, also the

> event viewer states GC succesfull added (or something similar) Or is the

> reboot because the first existing GC was removed without adding a new one?

>

> Best regards

>

> Meinolf Weber

> Disclaimer: This posting is provided "AS IS" with no warranties, and

> confers no rights.

> ** Please do NOT email, only reply to Newsgroups

> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

>

>> athos_01 wrote:

>>

>>> You have it correct, unfortunately, my other network issues are the

>>> fact that it is the only server that will act as a global catalog

>>> server. I have enabled GC on two other servers, they show no errors,

>>> show up in DNS just fine, but no machine uses them. My Exchange

>>> server will not load without this junk DC turned on as it is the only

>>> one that will work as a GC. Therefore, I can't dcpromo down, then

>>> dcpromo back up.

>>>

>>> Thanks for any help, I'm really in a pickle.

>>>

>> Did you reboot the servers that you assigned as global catalogs? It's

>> necessary....

>>

>

>

 

Perhaps it's a W2K server requirement?...

 

--

 

Regards,

Hank Arnold

Microsoft MVP

Windows Server - Directory Services

Guest Meinolf Weber
Posted

Re: Disabled Domain Controller

 

Hello Hank,

 

Is this a question or an answer? :-)

 

Best regards

 

Meinolf Weber

Disclaimer: This posting is provided "AS IS" with no warranties, and confers

no rights.

** Please do NOT email, only reply to Newsgroups

** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

> Meinolf Weber wrote:

>

>> Hello Hank,

>>

>> Why rebooting when adding the GC? Never did it and works fine, also

>> the event viewer states GC succesfull added (or something similar) Or

>> is the reboot because the first existing GC was removed without

>> adding a new one?

>>

>> Best regards

>>

>> Meinolf Weber

>> Disclaimer: This posting is provided "AS IS" with no warranties, and

>> confers no rights.

>> ** Please do NOT email, only reply to Newsgroups

>> ** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

>>> athos_01 wrote:

>>>

>>>> You have it correct, unfortunately, my other network issues are the

>>>> fact that it is the only server that will act as a global catalog

>>>> server. I have enabled GC on two other servers, they show no

>>>> errors, show up in DNS just fine, but no machine uses them. My

>>>> Exchange server will not load without this junk DC turned on as it

>>>> is the only one that will work as a GC. Therefore, I can't dcpromo

>>>> down, then dcpromo back up.

>>>>

>>>> Thanks for any help, I'm really in a pickle.

>>>>

>>> Did you reboot the servers that you assigned as global catalogs?

>>> It's necessary....

>>>

> Perhaps it's a W2K server requirement?...

>


×
×
  • Create New...