Старый контроллер домена win2003, нужно перенести на новую машину (win2003 тоже).
делал всё по порядку, передал роли fsmo, DNS, глобальный каталог...
Старый сервер "server" новый - "server1"
На след. день вырубил старый контроллер домена, залогинелся в систему со своей машины - всё ок, однако достучаться до других машин не возможно.... пинги идут,
а ресурсы не доступны.
включил старый DC - всё заработало,
как разобраться?
пока что выяснилось следующее. Если есть соображения подскажите пожалуйста...
1) Sysvol на новом сервере не расшарено.
2) Есть подозрения на то, что часы расходятся (на 20-30 мин) , на старом и новом
серверах, заметил только после переноса fsmo. Может это проблема?
3) dcdiag и ntdiag выдают следующее
Самое главное наверно это:
--------------
Domain membership test . . . . . . : Failed
[WARNING] Ths system volume has not been completely replicated to the local
machine. This machine is not working properly as a DC.
--------------
и
--------------
Starting test: Advertising
Warning: DsGetDcName returned information for \\server.mydomen.ru, when
we were trying to reach SERVER1.
Server is not responding or is not considered suitable.
----------------
Всё остальное тут.
[more]
Computer Name: SERVER1
DNS Host Name: server1.mydomen.ru
System info : Windows 2000 Server (Build 3790)
Processor : x86 Family 15 Model 4 Stepping 1, GenuineIntel
List of installed hotfixes :
Q147222
Netcard queries test . . . . . . . : Passed
Per interface results:
Adapter : mydomennet
Netcard queries test . . . : Passed
Host Name. . . . . . . . . : server1
IP Address . . . . . . . . : 192.168.1.5
Subnet Mask. . . . . . . . : 255.255.255.0
Default Gateway. . . . . . : 192.168.1.1
Dns Servers. . . . . . . . : 192.168.1.5
AutoConfiguration results. . . . . . : Passed
Default gateway test . . . : Passed
NetBT name test. . . . . . : Passed
[WARNING] At least one of the <00> 'WorkStation Service', <03> 'Messenge
r Service', <20> 'WINS' names is missing.
No remote names have been found.
WINS service test. . . . . : Skipped
There are no WINS servers configured for this interface.
Global results:
Domain membership test . . . . . . : Failed
[WARNING] Ths system volume has not been completely replicated to the local
machine. This machine is not working properly as a DC.
NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{D566904A-A7C2-4E64-ADF3-3DC2F9D89948}
1 NetBt transport currently configured.
Autonet address test . . . . . . . : Passed
IP loopback ping test. . . . . . . : Passed
Default gateway test . . . . . . . : Passed
NetBT name test. . . . . . . . . . : Passed
[WARNING] You don't have a single interface with the <00> 'WorkStation Servi
ce', <03> 'Messenger Service', <20> 'WINS' names defined.
Winsock test . . . . . . . . . . . : Passed
DNS test . . . . . . . . . . . . . : Passed
PASS - All the DNS entries for DC are registered on DNS server '192.168.1.5'
and other DCs also have some of the names registered.
Redir and Browser test . . . . . . : Passed
List of NetBt transports currently bound to the Redir
NetBT_Tcpip_{D566904A-A7C2-4E64-ADF3-3DC2F9D89948}
The redir is bound to 1 NetBt transport.
List of NetBt transports currently bound to the browser
NetBT_Tcpip_{D566904A-A7C2-4E64-ADF3-3DC2F9D89948}
The browser is bound to 1 NetBt transport.
DC discovery test. . . . . . . . . : Passed
DC list test . . . . . . . . . . . : Passed
Trust relationship test. . . . . . : Skipped
Kerberos test. . . . . . . . . . . : Passed
LDAP test. . . . . . . . . . . . . : Passed
Bindings test. . . . . . . . . . . : Passed
WAN configuration test . . . . . . : Skipped
No active remote access connections.
Modem diagnostics test . . . . . . : Passed
IP Security test . . . . . . . . . : Skipped
Note: run "netsh ipsec dynamic show /?" for more detailed information
The command completed successfully
C:\Documents and Settings\admin01>dcdiag
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\SERVER1
Starting test: Connectivity
......................... SERVER1 passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\SERVER1
Starting test: Replications
REPLICATION-RECEIVED LATENCY WARNING
SERVER1: Current time is 2006-10-17 17:03:45.
CN=Schema,CN=Configuration,DC=mydomen,DC=by
Last replication recieved from SERVER2 at 2005-03-21 17:51:45.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
......................... SERVER1 passed test Replications
Starting test: NCSecDesc
......................... SERVER1 passed test NCSecDesc
Starting test: NetLogons
......................... SERVER1 passed test NetLogons
Starting test: Advertising
Warning: DsGetDcName returned information for \\server.mydomen.ru, when
we were trying to reach SERVER1.
Server is not responding or is not considered suitable.
......................... SERVER1 failed test Advertising
Starting test: KnowsOfRoleHolders
......................... SERVER1 passed test KnowsOfRoleHolders
Starting test: RidManager
......................... SERVER1 passed test RidManager
Starting test: MachineAccount
......................... SERVER1 passed test MachineAccount
Starting test: Services
......................... SERVER1 passed test Services
Starting test: ObjectsReplicated
......................... SERVER1 passed test ObjectsReplicated
Starting test: frssysvol
......................... SERVER1 passed test frssysvol
Starting test: frsevent
......................... SERVER1 passed test frsevent
Starting test: kccevent
An Error Event occured. EventID: 0xC00007FA
Time Generated: 10/17/2006 16:51:38
Event String: It has been too long since this machine last
An Warning Event occured. EventID: 0x80000785
Time Generated: 10/17/2006 16:51:38
Event String: The attempt to establish a replication link for
An Error Event occured. EventID: 0xC00007FA
Time Generated: 10/17/2006 16:51:38
Event String: It has been too long since this machine last
An Warning Event occured. EventID: 0x80000785
Time Generated: 10/17/2006 16:51:38
Event String: The attempt to establish a replication link for
An Error Event occured. EventID: 0xC00007FA
Time Generated: 10/17/2006 16:51:38
Event String: It has been too long since this machine last
An Warning Event occured. EventID: 0x80000785
Time Generated: 10/17/2006 16:51:38
Event String: The attempt to establish a replication link for
......................... SERVER1 failed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0x00000457
Time Generated: 10/17/2006 17:03:11
Event String: Driver Lexmark Z600 Color Jetprinter required for
......................... SERVER1 failed test systemlog
Starting test: VerifyReferences
......................... SERVER1 passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : mydomen
Starting test: CrossRefValidation
......................... mydomen passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... mydomen passed test CheckSDRefDom
Running enterprise tests on : mydomen.ru
Starting test: Intersite
......................... mydomen.ru passed test Intersite
Starting test: FsmoCheck
......................... mydomen.ru passed test FsmoCheck
[/more]
делал всё по порядку, передал роли fsmo, DNS, глобальный каталог...
Старый сервер "server" новый - "server1"
На след. день вырубил старый контроллер домена, залогинелся в систему со своей машины - всё ок, однако достучаться до других машин не возможно.... пинги идут,
а ресурсы не доступны.
включил старый DC - всё заработало,
как разобраться?
пока что выяснилось следующее. Если есть соображения подскажите пожалуйста...
1) Sysvol на новом сервере не расшарено.
2) Есть подозрения на то, что часы расходятся (на 20-30 мин) , на старом и новом
серверах, заметил только после переноса fsmo. Может это проблема?
3) dcdiag и ntdiag выдают следующее
Самое главное наверно это:
--------------
Domain membership test . . . . . . : Failed
[WARNING] Ths system volume has not been completely replicated to the local
machine. This machine is not working properly as a DC.
--------------
и
--------------
Starting test: Advertising
Warning: DsGetDcName returned information for \\server.mydomen.ru, when
we were trying to reach SERVER1.
Server is not responding or is not considered suitable.
----------------
Всё остальное тут.
[more]
Computer Name: SERVER1
DNS Host Name: server1.mydomen.ru
System info : Windows 2000 Server (Build 3790)
Processor : x86 Family 15 Model 4 Stepping 1, GenuineIntel
List of installed hotfixes :
Q147222
Netcard queries test . . . . . . . : Passed
Per interface results:
Adapter : mydomennet
Netcard queries test . . . : Passed
Host Name. . . . . . . . . : server1
IP Address . . . . . . . . : 192.168.1.5
Subnet Mask. . . . . . . . : 255.255.255.0
Default Gateway. . . . . . : 192.168.1.1
Dns Servers. . . . . . . . : 192.168.1.5
AutoConfiguration results. . . . . . : Passed
Default gateway test . . . : Passed
NetBT name test. . . . . . : Passed
[WARNING] At least one of the <00> 'WorkStation Service', <03> 'Messenge
r Service', <20> 'WINS' names is missing.
No remote names have been found.
WINS service test. . . . . : Skipped
There are no WINS servers configured for this interface.
Global results:
Domain membership test . . . . . . : Failed
[WARNING] Ths system volume has not been completely replicated to the local
machine. This machine is not working properly as a DC.
NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{D566904A-A7C2-4E64-ADF3-3DC2F9D89948}
1 NetBt transport currently configured.
Autonet address test . . . . . . . : Passed
IP loopback ping test. . . . . . . : Passed
Default gateway test . . . . . . . : Passed
NetBT name test. . . . . . . . . . : Passed
[WARNING] You don't have a single interface with the <00> 'WorkStation Servi
ce', <03> 'Messenger Service', <20> 'WINS' names defined.
Winsock test . . . . . . . . . . . : Passed
DNS test . . . . . . . . . . . . . : Passed
PASS - All the DNS entries for DC are registered on DNS server '192.168.1.5'
and other DCs also have some of the names registered.
Redir and Browser test . . . . . . : Passed
List of NetBt transports currently bound to the Redir
NetBT_Tcpip_{D566904A-A7C2-4E64-ADF3-3DC2F9D89948}
The redir is bound to 1 NetBt transport.
List of NetBt transports currently bound to the browser
NetBT_Tcpip_{D566904A-A7C2-4E64-ADF3-3DC2F9D89948}
The browser is bound to 1 NetBt transport.
DC discovery test. . . . . . . . . : Passed
DC list test . . . . . . . . . . . : Passed
Trust relationship test. . . . . . : Skipped
Kerberos test. . . . . . . . . . . : Passed
LDAP test. . . . . . . . . . . . . : Passed
Bindings test. . . . . . . . . . . : Passed
WAN configuration test . . . . . . : Skipped
No active remote access connections.
Modem diagnostics test . . . . . . : Passed
IP Security test . . . . . . . . . : Skipped
Note: run "netsh ipsec dynamic show /?" for more detailed information
The command completed successfully
C:\Documents and Settings\admin01>dcdiag
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\SERVER1
Starting test: Connectivity
......................... SERVER1 passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\SERVER1
Starting test: Replications
REPLICATION-RECEIVED LATENCY WARNING
SERVER1: Current time is 2006-10-17 17:03:45.
CN=Schema,CN=Configuration,DC=mydomen,DC=by
Last replication recieved from SERVER2 at 2005-03-21 17:51:45.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
......................... SERVER1 passed test Replications
Starting test: NCSecDesc
......................... SERVER1 passed test NCSecDesc
Starting test: NetLogons
......................... SERVER1 passed test NetLogons
Starting test: Advertising
Warning: DsGetDcName returned information for \\server.mydomen.ru, when
we were trying to reach SERVER1.
Server is not responding or is not considered suitable.
......................... SERVER1 failed test Advertising
Starting test: KnowsOfRoleHolders
......................... SERVER1 passed test KnowsOfRoleHolders
Starting test: RidManager
......................... SERVER1 passed test RidManager
Starting test: MachineAccount
......................... SERVER1 passed test MachineAccount
Starting test: Services
......................... SERVER1 passed test Services
Starting test: ObjectsReplicated
......................... SERVER1 passed test ObjectsReplicated
Starting test: frssysvol
......................... SERVER1 passed test frssysvol
Starting test: frsevent
......................... SERVER1 passed test frsevent
Starting test: kccevent
An Error Event occured. EventID: 0xC00007FA
Time Generated: 10/17/2006 16:51:38
Event String: It has been too long since this machine last
An Warning Event occured. EventID: 0x80000785
Time Generated: 10/17/2006 16:51:38
Event String: The attempt to establish a replication link for
An Error Event occured. EventID: 0xC00007FA
Time Generated: 10/17/2006 16:51:38
Event String: It has been too long since this machine last
An Warning Event occured. EventID: 0x80000785
Time Generated: 10/17/2006 16:51:38
Event String: The attempt to establish a replication link for
An Error Event occured. EventID: 0xC00007FA
Time Generated: 10/17/2006 16:51:38
Event String: It has been too long since this machine last
An Warning Event occured. EventID: 0x80000785
Time Generated: 10/17/2006 16:51:38
Event String: The attempt to establish a replication link for
......................... SERVER1 failed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0x00000457
Time Generated: 10/17/2006 17:03:11
Event String: Driver Lexmark Z600 Color Jetprinter required for
......................... SERVER1 failed test systemlog
Starting test: VerifyReferences
......................... SERVER1 passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : mydomen
Starting test: CrossRefValidation
......................... mydomen passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... mydomen passed test CheckSDRefDom
Running enterprise tests on : mydomen.ru
Starting test: Intersite
......................... mydomen.ru passed test Intersite
Starting test: FsmoCheck
......................... mydomen.ru passed test FsmoCheck
[/more]