Автор: ymsssg
Дата сообщения: 21.07.2005 06:48
Как и просили - описываю все по порядку
Есть PDC (cs6) и вторичный (cs3) контроллеры домена работающие под win2003 EE, являющиеся по совместительству dns серверами. Они перестали реплицироваться. При попытке запустить репликацию руками на cs3 получаю сообщение:
"The following error occurred during the attempt to synchronize naming context test.omsktele.com from domain controller CS6 to domain controller CS3:
The Active Directory connot replicate with this server because the time since last replication with this server has exceeded the tombstone lifetime.
This operation will not continue."
[more]
В логах на cs3 в расделе File Replication Service постоянно пишется: "The File Replication Service is no longer preventing the computer CS3 from becoming a domain controller. The system volume has been successfully initialized and the Netlogon service has been notified that the system volume is now ready to be shared as SYSVOL.
Type "net share" to check for the SYSVOL share."
после запуска netdiag на cs3 получаем:
"D:\>netdiag
.....................................
Computer Name: CS3
DNS Host Name: cs3.test.omsktele.com
System info : Windows 2000 Server (Build 3790)
Processor : x86 Family 15 Model 1 Stepping 3, GenuineIntel
List of installed hotfixes :
Q147222
Netcard queries test . . . . . . . : Passed
Per interface results:
Adapter : Local Area Connection
Netcard queries test . . . : Passed
Host Name. . . . . . . . . : cs3
IP Address . . . . . . . . : 192.168.0.3
Subnet Mask. . . . . . . . : 255.255.255.0
Default Gateway. . . . . . : 192.168.0.5
Dns Servers. . . . . . . . : 192.168.0.3
192.168.0.6
AutoConfiguration results. . . . . . : Passed
Default gateway test . . . : Passed
NetBT name test. . . . . . : Passed
WINS service test. . . . . : Skipped
There are no WINS servers configured for this interface.
Global results:
Domain membership test . . . . . . : Passed
NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{95211492-08EE-418F-AC5C-C29035ECEEA0}
1 NetBt transport currently configured.
Autonet address test . . . . . . . : Passed
IP loopback ping test. . . . . . . : Passed
Default gateway test . . . . . . . : Passed
NetBT name test. . . . . . . . . . : Passed
Winsock test . . . . . . . . . . . : Passed
DNS test . . . . . . . . . . . . . : Passed
PASS - All the DNS entries for DC are registered on DNS server '192.168.0.3'
and other DCs also have some of the names registered.
[WARNING] The DNS entries for this DC are not registered correctly on DNS server '192.168.0.6'. Please wait for 30 minutes for DNS server replication.
Redir and Browser test . . . . . . : Passed
List of NetBt transports currently bound to the Redir
NetBT_Tcpip_{95211492-08EE-418F-AC5C-C29035ECEEA0}
The redir is bound to 1 NetBt transport.
List of NetBt transports currently bound to the browser
NetBT_Tcpip_{95211492-08EE-418F-AC5C-C29035ECEEA0}
The browser is bound to 1 NetBt transport.
DC discovery test. . . . . . . . . : Passed
DC list test . . . . . . . . . . . : Passed
Trust relationship test. . . . . . : Passed
Secure channel for domain 'test' is to '\\cs6.test.omsktele.com'.
Kerberos test. . . . . . . . . . . : Passed
LDAP test. . . . . . . . . . . . . : Passed
Bindings test. . . . . . . . . . . : Passed
WAN configuration test . . . . . . : Skipped
No active remote access connections.
Modem diagnostics test . . . . . . : Passed
IP Security test . . . . . . . . . : Skipped
Note: run "netsh ipsec dynamic show /?" for more detailed information
The command completed successfully "
после запуска dcdiag на cs3 получаем:
"D:\>dcdiag
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\CS3
Starting test: Connectivity
......................... CS3 passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\CS3
Starting test: Replications
[Replications Check,CS3] A recent replication attempt failed:
From CS6 to CS3
Naming Context: DC=DomainDnsZones,DC=test,DC=omsktele,DC=com
The replication generated an error (8614):
Win32 Error 8614
The failure occurred at 2005-07-21 10:06:45.
The last success occurred at 2005-04-29 01:51:38.
2487 failures have occurred since the last success.
[Replications Check,CS3] A recent replication attempt failed:
From CS6 to CS3
Naming Context: DC=test,DC=omsktele,DC=com
The replication generated an error (8614):
Win32 Error 8614
The failure occurred at 2005-07-21 10:13:13.
The last success occurred at 2005-04-29 01:51:38.
11678 failures have occurred since the last success.
REPLICATION-RECEIVED LATENCY WARNING
CS3: Current time is 2005-07-21 10:14:42.
DC=DomainDnsZones,DC=test,DC=omsktele,DC=com
Last replication recieved from CS6 at 2005-04-29 01:51:38.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
DC=test,DC=omsktele,DC=com
Last replication recieved from CS6 at 2005-04-29 01:51:38.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
......................... CS3 passed test Replications
Starting test: NCSecDesc
......................... CS3 passed test NCSecDesc
Starting test: NetLogons
......................... CS3 passed test NetLogons
Starting test: Advertising
......................... CS3 passed test Advertising
Starting test: KnowsOfRoleHolders
......................... CS3 passed test KnowsOfRoleHolders
Starting test: RidManager
......................... CS3 passed test RidManager
Starting test: MachineAccount
......................... CS3 passed test MachineAccount
Starting test: Services
......................... CS3 passed test Services
Starting test: ObjectsReplicated
......................... CS3 passed test ObjectsReplicated
Starting test: frssysvol
......................... CS3 passed test frssysvol
Starting test: frsevent
......................... CS3 passed test frsevent
Starting test: kccevent
An Error Event occured. EventID: 0xC00007FA
Time Generated: 07/21/2005 10:03:46
Event String: It has been too long since this machine last
An Error Event occured. EventID: 0xC00007FA
Time Generated: 07/21/2005 10:03:47
Event String: It has been too long since this machine last
An Error Event occured. EventID: 0xC00007FA
Time Generated: 07/21/2005 10:04:41
Event String: It has been too long since this machine last
An Error Event occured. EventID: 0xC00007FA
Time Generated: 07/21/2005 10:04:56
Event String: It has been too long since this machine last
An Error Event occured. EventID: 0xC00007FA
Time Generated: 07/21/2005 10:05:30
Event String: It has been too long since this machine last
An Error Event occured. EventID: 0xC00007FA
Time Generated: 07/21/2005 10:06:45
Event String: It has been too long since this machine last
An Error Event occured. EventID: 0xC00007FA
Time Generated: 07/21/2005 10:07:14
Event String: It has been too long since this machine last
An Error Event occured. EventID: 0xC00007FA
Time Generated: 07/21/2005 10:12:52
Event String: It has been too long since this machine last
......................... CS3 failed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 09:15:32
Event String: Driver EPSON Stylus CX3500 Series required for
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 09:15:33
Event String: Driver HP LaserJet 2300 Series PCL 6 required for
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 09:15:34
Event String: Driver Samsung ML-1200 Series required for
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 09:15:36
Event String: Driver Canon LASER SHOT LBP-1120 required for
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 09:15:37
Event String: Driver Samsung ML-1200 Series required for
......................... CS3 failed test systemlog
Starting test: VerifyReferences
......................... CS3 passed test VerifyReferences
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : test
Starting test: CrossRefValidation
......................... test passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... test passed test CheckSDRefDom
Running enterprise tests on : test.omsktele.com
Starting test: Intersite
......................... test.omsktele.com passed test Intersite
Starting test: FsmoCheck
......................... test.omsktele.com passed test FsmoCheck"
При попытке запустить репликацию руками на cs6 тоже получаю сообщение:
"The following error occurred during the attempt to synchronize naming context test.omsktele.com from domain controller CS6 to domain controller CS3:
The Active Directory connot replicate with this server because the time since last replication with this server has exceeded the tombstone lifetime.
далее netdiag и dcdiag:
"D:\>netdiag
.....................................
Computer Name: CS6
DNS Host Name: cs6.test.omsktele.com
System info : Windows 2000 Server (Build 3790)
Processor : x86 Family 15 Model 1 Stepping 3, GenuineIntel
List of installed hotfixes :
KB823980
Q147222
Netcard queries test . . . . . . . : Passed
Per interface results:
Adapter : Local Area Connection
Netcard queries test . . . : Passed
Host Name. . . . . . . . . : cs6
IP Address . . . . . . . . : 192.168.0.6
Subnet Mask. . . . . . . . : 255.255.255.0
Default Gateway. . . . . . : 192.168.0.5
Dns Servers. . . . . . . . : 192.168.0.6
192.168.0.3
AutoConfiguration results. . . . . . : Passed
Default gateway test . . . : Passed
NetBT name test. . . . . . : Passed
[WARNING] At least one of the <00> 'WorkStation Service', <03> 'Messenge
r Service', <20> 'WINS' names is missing.
WINS service test. . . . . : Skipped
There are no WINS servers configured for this interface.
Global results:
Domain membership test . . . . . . : Passed
NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{E463D740-66AB-4D01-90B9-B78AC610459D}
1 NetBt transport currently configured.
Autonet address test . . . . . . . : Passed
IP loopback ping test. . . . . . . : Passed
Default gateway test . . . . . . . : Passed
NetBT name test. . . . . . . . . . : Passed
[WARNING] You don't have a single interface with the <00> 'WorkStation Servi
ce', <03> 'Messenger Service', <20> 'WINS' names defined.
Winsock test . . . . . . . . . . . : Passed
DNS test . . . . . . . . . . . . . : Passed
PASS - All the DNS entries for DC are registered on DNS server '192.168.0.6'
and other DCs also have some of the names registered.
[WARNING] The DNS entries for this DC are not registered correctly on DNS se
rver '192.168.0.3'. Please wait for 30 minutes for DNS server replication.
Redir and Browser test . . . . . . : Passed
List of NetBt transports currently bound to the Redir
NetBT_Tcpip_{E463D740-66AB-4D01-90B9-B78AC610459D}
The redir is bound to 1 NetBt transport.
List of NetBt transports currently bound to the browser
NetBT_Tcpip_{E463D740-66AB-4D01-90B9-B78AC610459D}
The browser is bound to 1 NetBt transport.
DC discovery test. . . . . . . . . : Passed
DC list test . . . . . . . . . . . : Passed
Trust relationship test. . . . . . : Skipped
Kerberos test. . . . . . . . . . . : Passed
LDAP test. . . . . . . . . . . . . : Passed
Bindings test. . . . . . . . . . . : Passed
WAN configuration test . . . . . . : Skipped
No active remote access connections.
Modem diagnostics test . . . . . . : Passed
IP Security test . . . . . . . . . : Skipped
Note: run "netsh ipsec dynamic show /?" for more detailed information
The command completed successfully"
"D:\>dcdiag
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\CS6
Starting test: Connectivity
......................... CS6 passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\CS6
Starting test: Replications
......................... CS6 passed test Replications
Starting test: NCSecDesc
......................... CS6 passed test NCSecDesc
Starting test: NetLogons
......................... CS6 passed test NetLogons
Starting test: Advertising
......................... CS6 passed test Advertising
Starting test: KnowsOfRoleHolders
......................... CS6 passed test KnowsOfRoleHolders
Starting test: RidManager
......................... CS6 passed test RidManager
Starting test: MachineAccount
......................... CS6 passed test MachineAccount
Starting test: Services
......................... CS6 passed test Services
Starting test: ObjectsReplicated
......................... CS6 passed test ObjectsReplicated
Starting test: frssysvol
......................... CS6 passed test frssysvol
Starting test: frsevent
......................... CS6 passed test frsevent
Starting test: kccevent
......................... CS6 passed test kccevent
Starting test: systemlog
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 10:25:19
Event String: Driver EPSON Stylus CX3500 Series required for
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 10:25:41
Event String: Driver Samsung ML-1200 Series required for
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 10:25:42
Event String: Driver Canon LASER SHOT LBP-1120 required for
An Error Event occured. EventID: 0x00000457
Time Generated: 07/21/2005 10:25:43
Event String: Driver Samsung ML-1200 Series required for
......................... CS6 failed test systemlog
Starting test: VerifyReferences
......................... CS6 passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : test
Starting test: CrossRefValidation
......................... test passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... test passed test CheckSDRefDom
Running enterprise tests on : test.omsktele.com
Starting test: Intersite
......................... test.omsktele.com passed test Intersite
Starting test: FsmoCheck
......................... test.omsktele.com passed test FsmoCheck"
[/more]