[more] [more] Господа, здравствуйте.
Сделал как написано здесь
http://forum.ru-board.com/topic.cgi?forum=8&topic=25131&start=0 в ADSI запись реплицировалась и на другой сервер, флаги D4 и D2 после изменения на серверах выставились в 0, но вывод ntfsr ds всё равно пишет FRS DomainControllerName: (null)
NTFRS CONFIGURATION IN THE DS
SUBSTITUTE DCINFO FOR DC
FRS DomainControllerName: (null)
Computer Name : MSK-SRV17DC
Computer DNS Name : MSK-SRV17DC.MY_FIRM.com
BINDING TO THE DS:
ldap_connect : MSK-SRV17DC.MY_FIRM.com
DsBind : MSK-SRV17DC.MY_FIRM.com
NAMING CONTEXTS:
SitesDn : CN=Sites,cn=configuration,dc=MY_FIRM,dc=com
ServicesDn : CN=Services,cn=configuration,dc=MY_FIRM,dc=com
DefaultNcDn: DC=MY_FIRM,DC=com
ComputersDn: CN=Computers,DC=MY_FIRM,DC=com
DomainCtlDn: OU=Domain Controllers,DC=MY_FIRM,DC=com
Fqdn : CN=MSK-SRV17DC,OU=Domain Controllers,DC=MY_FIRM,DC=com
Searching : Fqdn
COMPUTER: MSK-SRV17DC
DN : cn=msk-srv17dc,ou=domain controllers,dc=MY_FIRM,dc=com
Guid : 1934be18-749d-427d-b81a4c410499c22c
UAC : 0x00082000
Server BL : CN=MSK-SRV17DC,CN=Servers,CN=Default-First-Site,CN=Sites,CN=Configuration,DC=MY_FIRM,DC=com
Settings : cn=ntds settings,cn=msk-srv17dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
DNS Name : MSK-SRV17DC.MY_FIRM.com
WhenCreated : 12/6/2013 10:58:0 RTZ 2 (
WhenChanged : 3/20/2016 19:56:18 RTZ 2 (
SUBSCRIPTION: NTFRS SUBSCRIPTIONS
DN : cn=ntfrs subscriptions,cn=msk-srv17dc,ou=domain controllers,dc=MY_FIRM,dc=com
Guid : 2bb37985-8b8a-40ad-8d35a75fd22eb05b
Working : c:\windows\ntfrs
Actual Working: c:\windows\ntfrs
WhenCreated : 12/8/2013 19:18:14 RTZ 2 (
WhenChanged : 12/8/2013 19:18:14 RTZ 2 (
SUBSCRIBER: DOMAIN SYSTEM VOLUME (SYSVOL SHARE)
DN : cn=domain system volume (sysvol share),cn=ntfrs subscriptions,cn=msk-srv17dc,ou=domain controllers,dc=MY_FIRM,dc=com
Guid : 527a8ade-cf54-4707-98c09e7776f40776
Member Ref: CN=MSK-SRV17DC,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=MY_FIRM,DC=com
Root : c:\windows\sysvol\domain
Stage : c:\windows\sysvol\staging\domain
WhenCreated : 12/8/2013 19:18:14 RTZ 2 (
WhenChanged : 12/8/2013 19:18:14 RTZ 2 (
Subscriber Member Back Links:
cn=msk-srv17dc,cn=domain system volume (sysvol share),cn=file replication service,cn=system,dc=MY_FIRM,dc=com
SETTINGS: FILE REPLICATION SERVICE
DN : cn=file replication service,cn=system,dc=MY_FIRM,dc=com
Guid : 456995e2-cc92-4791-9f725c6a23992617
WhenCreated : 6/21/2007 16:0:7 RTZ 2 (
WhenChanged : 12/8/2013 19:14:1 RTZ 2 (
SET: DOMAIN SYSTEM VOLUME (SYSVOL SHARE)
DN : cn=domain system volume (sysvol share),cn=file replication service,cn=system,dc=MY_FIRM,dc=com
Guid : dc5fa9e5-352f-469b-b7c7dfc470bea746
Type : 2
Primary Member: CN=MSK-SRV17DC,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=MY_FIRM,DC=com
File Filter : *.tmp, *.bak, ~*
Dir Filter : (null)
FRS Flags : (null)
WhenCreated : 6/21/2007 16:7:56 RTZ 2 (
WhenChanged : 3/22/2016 10:23:44 RTZ 2 (
MEMBER: DC
DN : cn=dc,cn=domain system volume (sysvol share),cn=file replication service,cn=system,dc=MY_FIRM,dc=com
Guid : 8c70bb59-4162-4a69-85ee9c28a78229cb
Server Ref : CN=NTDS Settings,CN=DC,CN=Servers,CN=Default-First-Site,CN=Sites,CN=Configuration,DC=MY_FIRM,DC=com
Computer Ref : cn=dc,ou=domain controllers,dc=MY_FIRM,dc=com
Cracked Domain : MY_FIRM.com
Cracked Name : 00000002 MY_FIRM\DC$
Cracked Domain : MY_FIRM.com
Cracked Name : fffffff4 S-1-5-21-12947018-2755733833-2693536531-1005
Computer's DNS : dc.MY_FIRM.com
WhenCreated : 6/19/2015 19:11:55 RTZ 2 (
WhenChanged : 6/19/2015 19:27:0 RTZ 2 (
CXTION: 49EE8CA1-51A7-4E8F-99F9-9372831D3CBD
DN : cn=49ee8ca1-51a7-4e8f-99f9-9372831d3cbd,cn=ntds settings,cn=dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Guid : 7ef15d9d-d974-4291-812c6b11bcb789a9
Partner Dn : cn=ntds settings,cn=msk-srv17dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Partner Rdn : NTDS SETTINGS
Enabled : TRUE
WhenCreated : 6/19/2015 19:16:45 RTZ 2 (
WhenChanged : 7/3/2015 14:13:40 RTZ 2 (
Options : 0x00000001 [AutoGenCxtion ]
Schedule
Day 1: 111111111111111111111111
Day 2: 111111111111111111111111
Day 3: 111111111111111111111111
Day 4: 111111111111111111111111
Day 5: 111111111111111111111111
Day 6: 111111111111111111111111
Day 7: 111111111111111111111111
CXTION: 5B057248-3F3F-4153-95A3-C79CA9826D69
DN : cn=5b057248-3f3f-4153-95a3-c79ca9826d69,cn=ntds settings,cn=dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Guid : 167706e2-a321-4037-b4fb4ac69cb1a248
Partner Dn : cn=ntds settings,cn=dc1,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Partner Rdn : NTDS SETTINGS
Enabled : TRUE
WhenCreated : 7/22/2015 5:13:52 RTZ 2 (
WhenChanged : 7/22/2015 5:14:10 RTZ 2 (
Options : 0x00000001 [AutoGenCxtion ]
Schedule
Day 1: 111111111111111111111111
Day 2: 111111111111111111111111
Day 3: 111111111111111111111111
Day 4: 111111111111111111111111
Day 5: 111111111111111111111111
Day 6: 111111111111111111111111
Day 7: 111111111111111111111111
CXTION: 7BCDC1B0-8FC0-45B6-9AA4-361A172359A3
DN : cn=7bcdc1b0-8fc0-45b6-9aa4-361a172359a3,cn=ntds settings,cn=dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Guid : fedf985e-260d-4f0d-92c20816623e04b7
Partner Dn : cn=ntds settings\0adel:9cd3eff5-9154-4113-b66e-5782121e51fb,cn=tmg-spb,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Partner Rdn : NTDS SETTINGS\0ADEL:9CD3EFF5-9154-4113-B66E-5782121E51FB
Enabled : TRUE
WhenCreated : 6/19/2015 19:16:45 RTZ 2 (
WhenChanged : 7/22/2015 5:14:10 RTZ 2 (
Options : 0x00000001 [AutoGenCxtion ]
Schedule
Day 1: 111111111111111111111111
Day 2: 111111111111111111111111
Day 3: 111111111111111111111111
Day 4: 111111111111111111111111
Day 5: 111111111111111111111111
Day 6: 111111111111111111111111
Day 7: 111111111111111111111111
MEMBER: DC1
DN : cn=dc1,cn=domain system volume (sysvol share),cn=file replication service,cn=system,dc=MY_FIRM,dc=com
Guid : a69cb481-6d09-48ec-ac01311e83211504
Server Ref : CN=NTDS Settings,CN=DC1,CN=Servers,CN=Default-First-Site,CN=Sites,CN=Configuration,DC=MY_FIRM,DC=com
Computer Ref : cn=dc1,ou=domain controllers,dc=MY_FIRM,dc=com
Cracked Domain : MY_FIRM.com
Cracked Name : 00000002 MY_FIRM\DC1$
Cracked Domain : MY_FIRM.com
Cracked Name : fffffff4 S-1-5-21-12947018-2755733833-2693536531-12655
Computer's DNS : DC1.MY_FIRM.com
WhenCreated : 2/16/2014 16:56:58 RTZ 2 (
WhenChanged : 2/17/2014 18:13:13 RTZ 2 (
CXTION: 35EF0574-4920-4DEC-A1E7-090A4E6D8B48
DN : cn=35ef0574-4920-4dec-a1e7-090a4e6d8b48,cn=ntds settings,cn=dc1,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Guid : 33766c55-ad35-46fe-b85a35e31cda9b2d
Partner Dn : cn=ntds settings,cn=msk-srv17dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Partner Rdn : NTDS SETTINGS
Enabled : TRUE
WhenCreated : 2/16/2014 17:1:46 RTZ 2 (
WhenChanged : 12/4/2015 11:20:52 RTZ 2 (
Options : 0x00000001 [AutoGenCxtion ]
Schedule
Day 1: 111111111111111111111111
Day 2: 111111111111111111111111
Day 3: 111111111111111111111111
Day 4: 111111111111111111111111
Day 5: 111111111111111111111111
Day 6: 111111111111111111111111
Day 7: 111111111111111111111111
CXTION: 86ACD6AA-6D4C-4EE1-B52A-46E07F64CB42
DN : cn=86acd6aa-6d4c-4ee1-b52a-46e07f64cb42,cn=ntds settings,cn=dc1,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Guid : 82923249-a0f3-431c-8eedd00081e7d61c
Partner Dn : cn=ntds settings,cn=dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Partner Rdn : NTDS SETTINGS
Enabled : TRUE
WhenCreated : 6/19/2015 19:12:40 RTZ 2 (
WhenChanged : 7/29/2015 9:54:44 RTZ 2 (
Options : 0x00000001 [AutoGenCxtion ]
Schedule
Day 1: 111111111111111111111111
Day 2: 111111111111111111111111
Day 3: 111111111111111111111111
Day 4: 111111111111111111111111
Day 5: 111111111111111111111111
Day 6: 111111111111111111111111
Day 7: 111111111111111111111111
MEMBER: EKB-SRV01DC
DN : cn=ekb-srv01dc,cn=domain system volume (sysvol share),cn=file replication service,cn=system,dc=MY_FIRM,dc=com
Guid : 3b0f635c-4b57-42e2-8dd48d0d46c284b2
Server Ref : (null)
Computer Ref : (null)
WhenCreated : 4/1/2010 12:51:16 RTZ 2 (
WhenChanged : 12/8/2013 19:14:17 RTZ 2 (
WARN - EKB-SRV01DC lacks a settings reference
MEMBER: ML-SRV02DC
DN : cn=ml-srv02dc,cn=domain system volume (sysvol share),cn=file replication service,cn=system,dc=MY_FIRM,dc=com
Guid : 432494ee-95ee-4334-987e4608f102690f
Server Ref : (null)
Computer Ref : (null)
WhenCreated : 4/4/2011 10:17:0 RTZ 2 (
WhenChanged : 12/8/2013 19:14:17 RTZ 2 (
WARN - ML-SRV02DC lacks a settings reference
MEMBER: MSK-SRV17DC
DN : cn=msk-srv17dc,cn=domain system volume (sysvol share),cn=file replication service,cn=system,dc=MY_FIRM,dc=com
Guid : 331939c7-d645-42de-bef2c77b883b51e3
Server Ref : CN=NTDS Settings,CN=MSK-SRV17DC,CN=Servers,CN=Default-First-Site,CN=Sites,CN=Configuration,DC=MY_FIRM,DC=com
Computer Ref : cn=msk-srv17dc,ou=domain controllers,dc=MY_FIRM,dc=com
Cracked Domain : MY_FIRM.com
Cracked Name : 00000002 MY_FIRM\MSK-SRV17DC$
Cracked Domain : MY_FIRM.com
Cracked Name : fffffff4 S-1-5-21-12947018-2755733833-2693536531-12625
Computer's DNS : MSK-SRV17DC.MY_FIRM.com
WhenCreated : 12/8/2013 19:18:14 RTZ 2 (
WhenChanged : 12/8/2013 19:18:14 RTZ 2 (
CXTION: 058849D9-519A-40C6-B8BD-1F6B61BC2EC0
DN : cn=058849d9-519a-40c6-b8bd-1f6b61bc2ec0,cn=ntds settings,cn=msk-srv17dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Guid : 7c11dcbd-f913-49de-81287ff3c1cb6187
Partner Dn : cn=ntds settings,cn=dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Partner Rdn : NTDS SETTINGS
Enabled : TRUE
WhenCreated : 6/19/2015 19:11:57 RTZ 2 (
WhenChanged : 7/29/2015 9:57:52 RTZ 2 (
Options : 0x00000001 [AutoGenCxtion ]
Schedule
Day 1: 111111111111111111111111
Day 2: 111111111111111111111111
Day 3: 111111111111111111111111
Day 4: 111111111111111111111111
Day 5: 111111111111111111111111
Day 6: 111111111111111111111111
Day 7: 111111111111111111111111
CXTION: B01ACF1E-7BFA-43BF-87FB-4B0FC84699CF
DN : cn=b01acf1e-7bfa-43bf-87fb-4b0fc84699cf,cn=ntds settings,cn=msk-srv17dc,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Guid : eb6b6206-9085-402f-9f17cdbc669e9b79
Partner Dn : cn=ntds settings,cn=dc1,cn=servers,cn=default-first-site,cn=sites,cn=configuration,dc=MY_FIRM,dc=com
Partner Rdn : NTDS SETTINGS
Enabled : TRUE
WhenCreated : 2/16/2014 16:57:41 RTZ 2 (
WhenChanged : 10/15/2015 9:1:33 RTZ 2 (
Options : 0x00000001 [AutoGenCxtion ]
Schedule
Day 1: 111111111111111111111111
Day 2: 111111111111111111111111
Day 3: 111111111111111111111111
Day 4: 111111111111111111111111
Day 5: 111111111111111111111111
Day 6: 111111111111111111111111
Day 7: 111111111111111111111111
MEMBER: SPB-SRV12TS
DN : cn=spb-srv12ts,cn=domain system volume (sysvol share),cn=file replication service,cn=system,dc=MY_FIRM,dc=com
Guid : deb6e64b-f3b9-4e4e-b34d83ca420b7d76
Server Ref : (null)
Computer Ref : (null)
WhenCreated : 1/13/2013 19:27:28 RTZ 2 (
WhenChanged : 12/8/2013 19:14:17 RTZ 2 (
WARN - SPB-SRV12TS lacks a settings reference
[/more]
Добавлено: [more] В общем, получил следующее:
хотя сейчас ntfrsutl ds выдаёт FRS DomainControllerName: (null) , а в ADSI параметр fRSPrimaryMember установлен как надо, а не null. На 2й DC данная настройка реплицировалась и в реестре HKLM/SYSTEM/Current Control Set/Services/Ntfrs/Parameters/
"Backup/Restore"/Process at startup/Burflags флаги сбросились на 0. Возможно, это связано с тем, что я не перезагружал сервак.
+ Из ДНС я вычистил все лишние записи DC в моих зонах и зонах обратного просмотра.
По сути, на данный момент, мне эти советы помогли - политики применяются и реплицируются между КД.
Единственная проблема осталась с оснастка домены и службы
https://yadi.sk/i/-wp4MKBFqMTqd . Может знает кто почему так?
Накидаю сюда ссылок, мало ли кому поможет.
http://forum.oszone.net/thread-312712-2.html http://sysadmins.ru/post13315112.html#13315112 http://winitpro.ru/index.php/2011/04/08/udalyaem-neispravnyj-kontroller-domena-pri-pomoshhi-utility-ntdsutil/ https://social.technet.microsoft.com/Forums/ru-RU/cbd7580a-0198-48e3-b81f-cfa7d35ec3f3/-sysvol-share?forum=ws2008r2ru https://social.technet.microsoft.com/Forums/ru-RU/dce976e7-3a49-4e70-bf0a-3f50222eec8f/-ad?forum=WS8ru https://support.microsoft.com/en-us/kb/312862 [/more]