Jump to content

Recommended Posts

Posted (edited)

Hi,

 

Was running DirSync to sync my AD with Microsoft cloud.

 

The process has wrecked my primary DC. (I do have a secondary DC operating OK although is not FSMO)

 

I have no NETLOGON or SYSVOL shares on the primary DC. I can't browse the network - only using IP addresses although DNS looks fine.

Whenever I try to open any AD console e.g. 'AD Users and Computers' I get the error

 

'Naming information cannot be located because: The directory or file cannot be created. Contact your system admin to verify that your domain is properly configured and online'

 

 

DcDiag gives me ...(file attached) dcdiag output.txt

 

 

Properly stumped.... any help out there please !!!!

 

Thinking of promoting the second DC to FSMO, reinstalling the primary then promote primary back to FSMO.

 

Machine is a VM and I don't have a recent enough snapshot to avoid re-doing a lot of work

 

 

Properly stumped.... any help out there please !!!!

 

 

Cheers in advance

Edited by mikkydoos
Posted (edited)

Do you have a recent backup of the failed DC? Recovery from a backup would be would be my first option.

 

You could promote your second DC but you will probably need to force demote the primary DC.

 

Windows 2003

https://support.microsoft.com/kb/332199

 

Windows 2008

Forcing the Removal of a Domain Controller

 

Using Ntdsutil.exe to transfer or seize FSMO roles to a domain controller

Using Ntdsutil.exe to transfer or seize FSMO roles to a domain controller

Edited by djm968
  • Thanks 1
Posted
Agreed. If it's broken, don't fix it - transfer the FSMO roles if you can (otherwise you will have to 'sieze' them) and build a new dc on the old hardware (with a different NetBIOS name).
  • Thanks 1
Posted

Thats what I'm thinking.

 

I do have a backup snapshot. When I restore that it works for 2 mins then I start getting the same errors.

 

BTW OS is Server 2012

Posted

Another quickie guys.....

 

If I move the Global Catalog/FSMO roles to DC-02 will it then be the schema master for the forest/domain?

Will DC-01 then effectively be the secondary controller that I can then demote, clean the metadata and rebuild?

 

Do I do move the roles before or after demoting my current primary DC ?? I'm presuming before but just checking.

 

 

Cheers guys ; )

Posted
If you move all the FSMO roles then your dc-02 will become the schema master (its 1 of the FSMO roles). Move the roles then demote the old server.
  • Thanks 1
Posted
Agreed. If it's broken, don't fix it - transfer the FSMO roles if you can (otherwise you will have to 'sieze' them) and build a new dc on the old hardware (with a different NetBIOS name).

 

Mr. Ben. Cheers for your post.

 

If I DO use the same NETBIOS name, whats the implication ?

Posted

There isn't a direct implication if you have removed all of the references to the DC in AD, but I always think its better to be safe and go with an new name and IP address.

 

Then if I miss anything, I won't spend time scratching my head wondering if a reference is to the old of new server.

  • Thanks 1

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...