[more] Добрый день уважаемые пользователи.
Хочу попросить у Вас совета и помощи.
Вкратце опишу свою ситуацию. Устроился на работу сис. админом, сеть была потроена так. Имеется два компьютера, как объяснял предыдущий админ они зеркальные, но один из них основной SERVER, а второй запасной HOST. Все изменения происходят на сервер и потом копируются на хост, но как это все происходит не пояснил. Все работало бесперебойно, НО случилось! В один день я пришел и обе машины (сервер и хост) были выключены, пользователи кричали что не могут войти на своих машинах в сеть. Включил основной, Windows 2003 server загрузился, попытался войти под админом, но он постоянно писал, что моя учетная запись отключена. На обоих компах стояло по два винчестера 500 ГБ и они настроены были в RAID зеркало. Я снял один из винчестеров и подсоединил к компу обычному и НО! там был только один логический диск, хотя их должно быть 4! В итоге я восстановил все логические диски на винчестре с помощью Partition Table Doctor и восстановил важную информацию сети с помощью R-Studio. Вспомнил что производилось резервное копирование windows средствами, восстановил system state архив на винчестере. Подсоединил его обратно к серверу и запустил безопасный режим в режиме восстановления каталогов, там запустил system state он извлекся, я перезагрузил машину и уже вошел в домен нормально под администратором. Расшарил папки и вроде бы все хорошо и пользователи работают, НО применение личных параметров висит очень долго когда пользователь заходит в сеть. Много форумов читал, везде пишут проблемы с DNS. Сразу приведу здесь результаты dcdiag.
Вроде все описал. По логу видно что что то с ДНС, я так понимаю ДНС был настроен на HOST, но т.к. его восстановить как сервер мне не удалось из за этого может быть проблемы.
Если я что то не дописал, спросите.
Microsoft Windows [Версия 5.2.3790]
(С) Корпорация Майкрософт, 1985-2003.
C:\Documents and Settings\Администратор.OFFICE>netdom query fsmo
Schema owner Srv.office.local
Domain role owner Srv.office.local
PDC role Server.office.local
RID pool manager Server.office.local
Infrastructure owner Server.office.local
The command completed successfully.
C:\Documents and Settings\Администратор.OFFICE>dcdiag
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site\SERVER
Starting test: Connectivity
......................... SERVER passed test Connectivity
Doing primary tests
Testing server: Default-First-Site\SERVER
Starting test: Replications
[Replications Check,SERVER] A recent replication attempt failed:
From ZEON to SERVER
Naming Context: CN=Schema,CN=Configuration,DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:46:10.
The last success occurred at 2009-09-21 12:59:29.
24432 failures have occurred since the last success.
The guid-based DNS name 9e70919c-2dff-4f67-b118-e0b3ffc6f7c4._msdcs.
office.local
is not registered on one or more DNS servers.
[ZEON] DsBindWithSpnEx() failed with error 1722,
Сервер RPC недоступен..
[Replications Check,SERVER] A recent replication attempt failed:
From SRV to SERVER
Naming Context: CN=Schema,CN=Configuration,DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:46:12.
The last success occurred at 2010-10-04 08:50:40.
15620 failures have occurred since the last success.
The guid-based DNS name 30a19d40-ac8d-48e7-a568-9e413db24e68._msdcs.
office.local
is not registered on one or more DNS servers.
[SRV] DsBindWithSpnEx() failed with error 1722,
Сервер RPC недоступен..
[Replications Check,SERVER] A recent replication attempt failed:
From HOST to SERVER
Naming Context: CN=Schema,CN=Configuration,DC=office,DC=local
The replication generated an error (1722):
Сервер RPC недоступен.
The failure occurred at 2012-07-24 13:46:33.
The last success occurred at 2012-07-23 15:05:05.
24 failures have occurred since the last success.
[HOST] DsBindWithSpnEx() failed with error 1722,
Сервер RPC недоступен..
The source remains down. Please check the machine.
[Replications Check,SERVER] A recent replication attempt failed:
From ZEON to SERVER
Naming Context: CN=Configuration,DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:45:43.
The last success occurred at 2009-09-21 12:59:29.
24435 failures have occurred since the last success.
The guid-based DNS name 9e70919c-2dff-4f67-b118-e0b3ffc6f7c4._msdcs.
office.local
is not registered on one or more DNS servers.
[Replications Check,SERVER] A recent replication attempt failed:
From SRV to SERVER
Naming Context: CN=Configuration,DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:45:46.
The last success occurred at 2010-10-04 08:56:08.
15620 failures have occurred since the last success.
The guid-based DNS name 30a19d40-ac8d-48e7-a568-9e413db24e68._msdcs.
office.local
is not registered on one or more DNS servers.
[Replications Check,SERVER] A recent replication attempt failed:
From HOST to SERVER
Naming Context: CN=Configuration,DC=office,DC=local
The replication generated an error (1722):
Сервер RPC недоступен.
The failure occurred at 2012-07-24 13:46:07.
The last success occurred at 2012-07-23 15:06:07.
24 failures have occurred since the last success.
The source remains down. Please check the machine.
[Replications Check,SERVER] A recent replication attempt failed:
From ZEON to SERVER
Naming Context: DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:45:40.
The last success occurred at 2009-09-21 13:28:27.
24448 failures have occurred since the last success.
The guid-based DNS name 9e70919c-2dff-4f67-b118-e0b3ffc6f7c4._msdcs.
office.local
is not registered on one or more DNS servers.
[Replications Check,SERVER] A recent replication attempt failed:
From SRV to SERVER
Naming Context: DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:46:36.
The last success occurred at 2010-10-04 09:17:38.
15620 failures have occurred since the last success.
The guid-based DNS name 30a19d40-ac8d-48e7-a568-9e413db24e68._msdcs.
office.local
is not registered on one or more DNS servers.
[Replications Check,SERVER] A recent replication attempt failed:
From HOST to SERVER
Naming Context: DC=office,DC=local
The replication generated an error (1722):
Сервер RPC недоступен.
The failure occurred at 2012-07-24 13:46:57.
The last success occurred at 2012-07-23 15:06:08.
24 failures have occurred since the last success.
The source remains down. Please check the machine.
REPLICATION-RECEIVED LATENCY WARNING
SERVER: Current time is 2012-07-24 14:20:49.
CN=Schema,CN=Configuration,DC=office,DC=local
Last replication recieved from HOST at 2012-07-23 15:05:05.
Last replication recieved from SRV at 2010-10-04 08:50:39.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
Last replication recieved from ZEON at 2009-09-21 12:59:29.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
CN=Configuration,DC=office,DC=local
Last replication recieved from HOST at 2012-07-23 15:06:07.
Last replication recieved from SRV at 2010-10-04 08:56:08.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
Last replication recieved from ZEON at 2009-09-21 12:59:29.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
DC=office,DC=local
Last replication recieved from HOST at 2012-07-23 15:06:07.
Last replication recieved from SRV at 2010-10-04 09:17:38.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
Last replication recieved from ZEON at 2009-09-21 13:28:09.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
......................... SERVER passed test Replications
Starting test: NCSecDesc
......................... SERVER passed test NCSecDesc
Starting test: NetLogons
......................... SERVER passed test NetLogons
Starting test: Advertising
......................... SERVER passed test Advertising
Starting test: KnowsOfRoleHolders
Warning: CN=NTDS Settings\0ADEL:8e3fad23-a53f-44b3-9f18-418dc030297e,CN
=SRV,CN=Servers,CN=Default-First-Site,CN=Sites,CN=Configuration,DC=office,DC=loc
al is the Schema Owner, but is deleted.
Warning: CN=NTDS Settings\0ADEL:8e3fad23-a53f-44b3-9f18-418dc030297e,CN
=SRV,CN=Servers,CN=Default-First-Site,CN=Sites,CN=Configuration,DC=office,DC=loc
al is the Domain Owner, but is deleted.
......................... SERVER failed test KnowsOfRoleHolders
Starting test: RidManager
......................... SERVER passed test RidManager
Starting test: MachineAccount
......................... SERVER passed test MachineAccount
Starting test: Services
......................... SERVER passed test Services
Starting test: ObjectsReplicated
......................... SERVER passed test ObjectsReplicated
Starting test: frssysvol
......................... SERVER passed test frssysvol
Starting test: frsevent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... SERVER failed test frsevent
Starting test: kccevent
......................... SERVER passed test kccevent
Starting test: systemlog
......................... SERVER passed test systemlog
Starting test: VerifyReferences
......................... SERVER passed test VerifyReferences
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : office
Starting test: CrossRefValidation
......................... office passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... office passed test CheckSDRefDom
Running enterprise tests on : office.local
Starting test: Intersite
......................... office.local passed test Intersite
Starting test: FsmoCheck
Warning: DcGetDcName(GC_SERVER_REQUIRED) call failed, error 1355
A Global Catalog Server could not be located - All GC's are down.
......................... office.local failed test FsmoCheck
[/more]
Добавлено:
Никто не может мне что нибудь посоветовать?
Заранее благодарен.
Хочу попросить у Вас совета и помощи.
Вкратце опишу свою ситуацию. Устроился на работу сис. админом, сеть была потроена так. Имеется два компьютера, как объяснял предыдущий админ они зеркальные, но один из них основной SERVER, а второй запасной HOST. Все изменения происходят на сервер и потом копируются на хост, но как это все происходит не пояснил. Все работало бесперебойно, НО случилось! В один день я пришел и обе машины (сервер и хост) были выключены, пользователи кричали что не могут войти на своих машинах в сеть. Включил основной, Windows 2003 server загрузился, попытался войти под админом, но он постоянно писал, что моя учетная запись отключена. На обоих компах стояло по два винчестера 500 ГБ и они настроены были в RAID зеркало. Я снял один из винчестеров и подсоединил к компу обычному и НО! там был только один логический диск, хотя их должно быть 4! В итоге я восстановил все логические диски на винчестре с помощью Partition Table Doctor и восстановил важную информацию сети с помощью R-Studio. Вспомнил что производилось резервное копирование windows средствами, восстановил system state архив на винчестере. Подсоединил его обратно к серверу и запустил безопасный режим в режиме восстановления каталогов, там запустил system state он извлекся, я перезагрузил машину и уже вошел в домен нормально под администратором. Расшарил папки и вроде бы все хорошо и пользователи работают, НО применение личных параметров висит очень долго когда пользователь заходит в сеть. Много форумов читал, везде пишут проблемы с DNS. Сразу приведу здесь результаты dcdiag.
Вроде все описал. По логу видно что что то с ДНС, я так понимаю ДНС был настроен на HOST, но т.к. его восстановить как сервер мне не удалось из за этого может быть проблемы.
Если я что то не дописал, спросите.
Microsoft Windows [Версия 5.2.3790]
(С) Корпорация Майкрософт, 1985-2003.
C:\Documents and Settings\Администратор.OFFICE>netdom query fsmo
Schema owner Srv.office.local
Domain role owner Srv.office.local
PDC role Server.office.local
RID pool manager Server.office.local
Infrastructure owner Server.office.local
The command completed successfully.
C:\Documents and Settings\Администратор.OFFICE>dcdiag
Domain Controller Diagnosis
Performing initial setup:
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site\SERVER
Starting test: Connectivity
......................... SERVER passed test Connectivity
Doing primary tests
Testing server: Default-First-Site\SERVER
Starting test: Replications
[Replications Check,SERVER] A recent replication attempt failed:
From ZEON to SERVER
Naming Context: CN=Schema,CN=Configuration,DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:46:10.
The last success occurred at 2009-09-21 12:59:29.
24432 failures have occurred since the last success.
The guid-based DNS name 9e70919c-2dff-4f67-b118-e0b3ffc6f7c4._msdcs.
office.local
is not registered on one or more DNS servers.
[ZEON] DsBindWithSpnEx() failed with error 1722,
Сервер RPC недоступен..
[Replications Check,SERVER] A recent replication attempt failed:
From SRV to SERVER
Naming Context: CN=Schema,CN=Configuration,DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:46:12.
The last success occurred at 2010-10-04 08:50:40.
15620 failures have occurred since the last success.
The guid-based DNS name 30a19d40-ac8d-48e7-a568-9e413db24e68._msdcs.
office.local
is not registered on one or more DNS servers.
[SRV] DsBindWithSpnEx() failed with error 1722,
Сервер RPC недоступен..
[Replications Check,SERVER] A recent replication attempt failed:
From HOST to SERVER
Naming Context: CN=Schema,CN=Configuration,DC=office,DC=local
The replication generated an error (1722):
Сервер RPC недоступен.
The failure occurred at 2012-07-24 13:46:33.
The last success occurred at 2012-07-23 15:05:05.
24 failures have occurred since the last success.
[HOST] DsBindWithSpnEx() failed with error 1722,
Сервер RPC недоступен..
The source remains down. Please check the machine.
[Replications Check,SERVER] A recent replication attempt failed:
From ZEON to SERVER
Naming Context: CN=Configuration,DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:45:43.
The last success occurred at 2009-09-21 12:59:29.
24435 failures have occurred since the last success.
The guid-based DNS name 9e70919c-2dff-4f67-b118-e0b3ffc6f7c4._msdcs.
office.local
is not registered on one or more DNS servers.
[Replications Check,SERVER] A recent replication attempt failed:
From SRV to SERVER
Naming Context: CN=Configuration,DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:45:46.
The last success occurred at 2010-10-04 08:56:08.
15620 failures have occurred since the last success.
The guid-based DNS name 30a19d40-ac8d-48e7-a568-9e413db24e68._msdcs.
office.local
is not registered on one or more DNS servers.
[Replications Check,SERVER] A recent replication attempt failed:
From HOST to SERVER
Naming Context: CN=Configuration,DC=office,DC=local
The replication generated an error (1722):
Сервер RPC недоступен.
The failure occurred at 2012-07-24 13:46:07.
The last success occurred at 2012-07-23 15:06:07.
24 failures have occurred since the last success.
The source remains down. Please check the machine.
[Replications Check,SERVER] A recent replication attempt failed:
From ZEON to SERVER
Naming Context: DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:45:40.
The last success occurred at 2009-09-21 13:28:27.
24448 failures have occurred since the last success.
The guid-based DNS name 9e70919c-2dff-4f67-b118-e0b3ffc6f7c4._msdcs.
office.local
is not registered on one or more DNS servers.
[Replications Check,SERVER] A recent replication attempt failed:
From SRV to SERVER
Naming Context: DC=office,DC=local
The replication generated an error (8524):
Операция DSA не смогла быть выполнена, т.к. произошла ошибка поиска
в DNS.
The failure occurred at 2012-07-24 13:46:36.
The last success occurred at 2010-10-04 09:17:38.
15620 failures have occurred since the last success.
The guid-based DNS name 30a19d40-ac8d-48e7-a568-9e413db24e68._msdcs.
office.local
is not registered on one or more DNS servers.
[Replications Check,SERVER] A recent replication attempt failed:
From HOST to SERVER
Naming Context: DC=office,DC=local
The replication generated an error (1722):
Сервер RPC недоступен.
The failure occurred at 2012-07-24 13:46:57.
The last success occurred at 2012-07-23 15:06:08.
24 failures have occurred since the last success.
The source remains down. Please check the machine.
REPLICATION-RECEIVED LATENCY WARNING
SERVER: Current time is 2012-07-24 14:20:49.
CN=Schema,CN=Configuration,DC=office,DC=local
Last replication recieved from HOST at 2012-07-23 15:05:05.
Last replication recieved from SRV at 2010-10-04 08:50:39.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
Last replication recieved from ZEON at 2009-09-21 12:59:29.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
CN=Configuration,DC=office,DC=local
Last replication recieved from HOST at 2012-07-23 15:06:07.
Last replication recieved from SRV at 2010-10-04 08:56:08.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
Last replication recieved from ZEON at 2009-09-21 12:59:29.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
DC=office,DC=local
Last replication recieved from HOST at 2012-07-23 15:06:07.
Last replication recieved from SRV at 2010-10-04 09:17:38.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
Last replication recieved from ZEON at 2009-09-21 13:28:09.
WARNING: This latency is over the Tombstone Lifetime of 60 days!
......................... SERVER passed test Replications
Starting test: NCSecDesc
......................... SERVER passed test NCSecDesc
Starting test: NetLogons
......................... SERVER passed test NetLogons
Starting test: Advertising
......................... SERVER passed test Advertising
Starting test: KnowsOfRoleHolders
Warning: CN=NTDS Settings\0ADEL:8e3fad23-a53f-44b3-9f18-418dc030297e,CN
=SRV,CN=Servers,CN=Default-First-Site,CN=Sites,CN=Configuration,DC=office,DC=loc
al is the Schema Owner, but is deleted.
Warning: CN=NTDS Settings\0ADEL:8e3fad23-a53f-44b3-9f18-418dc030297e,CN
=SRV,CN=Servers,CN=Default-First-Site,CN=Sites,CN=Configuration,DC=office,DC=loc
al is the Domain Owner, but is deleted.
......................... SERVER failed test KnowsOfRoleHolders
Starting test: RidManager
......................... SERVER passed test RidManager
Starting test: MachineAccount
......................... SERVER passed test MachineAccount
Starting test: Services
......................... SERVER passed test Services
Starting test: ObjectsReplicated
......................... SERVER passed test ObjectsReplicated
Starting test: frssysvol
......................... SERVER passed test frssysvol
Starting test: frsevent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... SERVER failed test frsevent
Starting test: kccevent
......................... SERVER passed test kccevent
Starting test: systemlog
......................... SERVER passed test systemlog
Starting test: VerifyReferences
......................... SERVER passed test VerifyReferences
Running partition tests on : Schema
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Running partition tests on : Configuration
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Running partition tests on : office
Starting test: CrossRefValidation
......................... office passed test CrossRefValidation
Starting test: CheckSDRefDom
......................... office passed test CheckSDRefDom
Running enterprise tests on : office.local
Starting test: Intersite
......................... office.local passed test Intersite
Starting test: FsmoCheck
Warning: DcGetDcName(GC_SERVER_REQUIRED) call failed, error 1355
A Global Catalog Server could not be located - All GC's are down.
......................... office.local failed test FsmoCheck
[/more]
Добавлено:
Никто не может мне что нибудь посоветовать?
Заранее благодарен.