Здравствуйте, прошу не пинать ногами, если пишу не туда
В общем пришел в фирму - достался по наследству сервак (server2003 SP1). В конторе примерно 15 машин, объеденины в домен. Есть машина через которую осуществляется доступ в инет (типа прокси сервера) с установленной usergate.
Не очень разбираюсь в настройках AD, но скорее всего там что-то неправильно настроено с DNS.
На клиентских машинах проявляется следующий косяк: периодически отваливаются из сетки (выходит окно с авторизацией)
в логах присутствуют ошибки DnsApi 11165, Netlogon 5719, при каждой загрузке Userenv 1054... в общем все eventсы читал, но толку никакого. Выкладываю dcdiag c сервера:
[more]
Microsoft Windows [Версия 5.2.3790]
(С) Корпорация Майкрософт, 1985-2003.
C:\Documents and Settings\Администратор>dcdiag
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\SERVER2
Starting test: Connectivity
The host ea1df51c-45f0-4ee6-94e9-ece1bf64917c._msdcs.petroprom2.ru coul
d not be resolved to an
IP address. Check the DNS server, DHCP, server name, etc
Although the Guid DNS name
(ea1df51c-45f0-4ee6-94e9-ece1bf64917c._msdcs.petroprom2.ru) couldn't
be resolved, the server name (server2.petroprom2.ru) resolved to the
IP address (192.168.0.60) and was pingable. Check that the IP address
is registered correctly with the DNS server.
......................... SERVER2 failed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\SERVER2
Skipping all tests, because server SERVER2 is
not responding to directory service requests
Running partition tests on : ForestDnsZones
Starting test: CrossRefValidation
......................... ForestDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Running partition tests on : DomainDnsZones
Starting test: CrossRefValidation
......................... DomainDnsZones passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : petroprom2
Starting test: CrossRefValidation
......................... petroprom2 passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... petroprom2 passed test CheckSDRefDom
Running enterprise tests on : petroprom2.ru
Starting test: Intersite
......................... petroprom2.ru passed test Intersite
Starting test: FsmoCheck
......................... petroprom2.ru passed test FsmoCheck
C:\Documents and Settings\Администратор>dcdiag /test:dns
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\SERVER2
Starting test: Connectivity
The host ea1df51c-45f0-4ee6-94e9-ece1bf64917c._msdcs.petroprom2.ru coul
d not be resolved to an
IP address. Check the DNS server, DHCP, server name, etc
Although the Guid DNS name
(ea1df51c-45f0-4ee6-94e9-ece1bf64917c._msdcs.petroprom2.ru) couldn't
be resolved, the server name (server2.petroprom2.ru) resolved to the
IP address (192.168.0.60) and was pingable. Check that the IP address
is registered correctly with the DNS server.
......................... SERVER2 failed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\SERVER2
DNS Tests are running and not hung. Please wait a few minutes...
Running partition tests on : ForestDnsZones
Running partition tests on : DomainDnsZones
Running partition tests on : Schema
Running partition tests on : Configuration
Running partition tests on : petroprom2
Running enterprise tests on : petroprom2.ru
Starting test: DNS
Test results for domain controllers:
DC: server2.petroprom2.ru
Domain: petroprom2.ru
TEST: Basic (Basc)
Error: No LDAP connectivity
Warning: adapter [00000001] Realtek RTL8139/810x Family Fast E
thernet NIC has invalid DNS server: 192.168.0.1 (<name unavailable>)
Error: all DNS servers are invalid
Error: The A record for this DC was not found
TEST: Forwarders/Root hints (Forw)
Error: Root hints list has invalid root hint server: a.root-se
rvers.net. (198.41.0.4)
Error: Root hints list has invalid root hint server: b.root-se
rvers.net. (128.9.0.107)
Error: Root hints list has invalid root hint server: b.root-se
rvers.net. (192.228.79.201)
Error: Root hints list has invalid root hint server: c.root-se
rvers.net. (192.33.4.12)
Error: Root hints list has invalid root hint server: d.root-se
rvers.net. (128.8.10.90)
Error: Root hints list has invalid root hint server: e.root-se
rvers.net. (192.203.230.10)
Error: Root hints list has invalid root hint server: f.root-se
rvers.net. (192.5.5.241)
Error: Root hints list has invalid root hint server: g.root-se
rvers.net. (192.112.36.4)
Error: Root hints list has invalid root hint server: h.root-se
rvers.net. (128.63.2.53)
Error: Root hints list has invalid root hint server: i.root-se
rvers.net. (192.36.148.17)
Error: Root hints list has invalid root hint server: j.root-se
rvers.net. (192.58.128.30)
Error: Root hints list has invalid root hint server: j.root-se
rvers.net. (198.41.0.10)
Error: Root hints list has invalid root hint server: k.root-se
rvers.net. (193.0.14.129)
Error: Root hints list has invalid root hint server: l.root-se
rvers.net. (198.32.64.12)
Error: Root hints list has invalid root hint server: m.root-se
rvers.net. (202.12.27.33)
TEST: Records registration (RReg)
Error: Record registrations cannot be found for all the network a
dapters
Summary of test results for DNS servers used by the above domain contro
llers:
DNS server: 202.12.27.33 (m.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 202.12.27.33
DNS server: 198.41.0.4 (a.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 198.41.0.4
DNS server: 198.41.0.10 (j.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 198.41.0.10
DNS server: 198.32.64.12 (l.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 198.32.64.12
DNS server: 193.0.14.129 (k.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 193.0.14.129
DNS server: 192.58.128.30 (j.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 192.58.128.30
DNS server: 192.5.5.241 (f.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 192.5.5.241
DNS server: 192.36.148.17 (i.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 192.36.148.17
DNS server: 192.33.4.12 (c.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 192.33.4.12
DNS server: 192.228.79.201 (b.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 192.228.79.201
DNS server: 192.203.230.10 (e.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 192.203.230.10
DNS server: 192.168.0.1 (<name unavailable>)
1 test failure on this DNS server
Name resolution is not functional. _ldap._tcp.petroprom2.ru. fail
ed on the DNS server 192.168.0.1
DNS server: 192.112.36.4 (g.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 192.112.36.4
DNS server: 128.9.0.107 (b.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 128.9.0.107
DNS server: 128.8.10.90 (d.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 128.8.10.90
DNS server: 128.63.2.53 (h.root-servers.net.)
1 test failure on this DNS server
This is not a valid DNS server. PTR record query for the 1.0.0.12
7.in-addr.arpa. failed on the DNS server 128.63.2.53
Summary of DNS test results:
Auth Basc Forw Del Dyn RReg Ext
________________________________________________________________
Domain: petroprom2.ru
server2 PASS FAIL FAIL PASS PASS FAIL n/a
......................... petroprom2.ru failed test DNS
[/more]
Прошу помочь в настройке сервера, чтобы не возникало проблем с сетевыми ресурсами...