> Hi all,
>
[quoted text clipped - 25 lines]
>
> thank you!
Did you upgrade the forest root DCs first? IIRC, you need to upgrade the
first DC in a forest, you need to upgrade the DC that holds the Domain Name
Master role first (which is usually the first DC that was created in the
domain).
If you upgraded a child DC first, it will create the _msdcs.domain.com zone
and set the replication scope to forest wide by placing it in the
ForestDnsZones app partition. This partition can replicate to a 2000 DC
(once forest and domain prep are done), but a Win2000 DC/DNS doesn't know
what to do with it. Also, if your current AD Integrated zone went into the
DomainDnsZones app partition (another one that Win2000 DC/DNS doesn't know
what to do wtih), and the zone on your 2000 DC/DNS stil thinks it's AD
Integrated, then we have a conflict and the zone may not load.
You will need to check using ADSI Edit to find out if there is a conflict
(or duplicate zones) in AD, specifically the DomainNC and in either of the
default app partitions.
Here;s more info on the partitions:
Application directory partitions and domain controller demotion:
http://www.microsoft.com/technet/prodtechnol/windowsserver2003/library/ServerHel
p/1572d8a2-622c-4879-bb0b-76e26c400129.mspx
kbAlertz (867464) - Explains how to use ADSI Edit to resolve a problem where
the DNS service logs event ID 4515 in the DNS Server log.:
http://www.kbalertz.com/kb_867464.aspx

Signature
Regards,
Ace
Please direct all replies ONLY to the Microsoft public newsgroups
so all can benefit.
This posting is provided "AS-IS" with no warranties or guarantees
and confers no rights.
Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft Windows MVP - Windows Server - Directory Services
Infinite Diversities in Infinite Combinations.
=================================