Home | Contact Us | FAQ | Search & Site Map | Link to Us
Sign In | Join | Other 45 Sites in Network
Home
Discussion GroupsWindows Server 2003Windows 2000Windows NTSmall Business ServerVirtual ServerExchange ServerIISHost Integration ServerISA ServerSMSWSUSMOMWindows Media ServerSecurityCertification
Related Topics
SQL ServerMS WindowsMS OfficePC HardwareMore Topics ...

Windows Server Forum / Windows Server 2003 / DNS / July 2005

Tip: Looking for answers? Try searching our database.

DomainDnsZone and ForestDnsZone not in DNS after deleting old DC

Thread view: 
Enable EMail Alerts  Start New Thread
Thread rating: 
Bill - 28 Jul 2005 18:58 GMT
I have had 3 Windows 2003 domain controllers on my network:
Server_1 <-Upgraded from NT 4
Server_2
Server_3
domain: test.com

Even though there were 2 other 2003 DC's on the network Server_1 was doing
all the authentication. Whenever you pinged test.com Server_1 would always
respond.  I want to remove this server from my network but when I reboot the
other DC's I get a

Userenv, Event ID: 1097, Windows cannot find the machine account, The Local
Security Authority cannot be contacted.

This is because the DomainDnsZone and ForestDnsZone are missing because I
deleted them out of DNS in hopes that Server_2 or Server_3 would recreate
them.  If I turn Server_1 on or do a net stop netlogon net start netlogon on
Server_1 it will recreate these records on the DNS servers.

Please help
Ace Fekay [MVP] - 29 Jul 2005 15:39 GMT
> I have had 3 Windows 2003 domain controllers on my network:
> Server_1 <-Upgraded from NT 4
[quoted text clipped - 17 lines]
>
> Please help

Try running a netdiag /v /fix. If that doesn't work, we'll need more
specific config info to help out.

As far as just server_1 responding, did you check to insure the SRV records
were created and server_2 and server_3 show up in the SRVs?

Signature

Regards,
Ace

Please direct all replies ONLY to the Microsoft public newsgroups
so all can benefit.

This posting is provided "AS-IS" with no warranties or guarantees
and confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft Windows MVP - Windows Server - Directory Services
Infinite Diversities in Infinite Combinations.
=================================

Bill - 29 Jul 2005 19:19 GMT
Ok I ran netdiag /v /fix and everything passed.  Although Server_2 doesn't
have ForestDnsZone or DomainDnsZone in the Nameing Context Section and
Server_1  does.

Under ForestDnsZone it has no records for Server_2 and Server_3 BUT the SRV
records ARE in _msdcs.domain.com and _sites.domain.com, _tcp.domain.com

Tell me what information is needed and I will supply.  Thank you for the help.
Ace Fekay [MVP] - 30 Jul 2005 05:53 GMT
> Ok I ran netdiag /v /fix and everything passed.  Although Server_2
> doesn't have ForestDnsZone or DomainDnsZone in the Nameing Context
[quoted text clipped - 6 lines]
> Tell me what information is needed and I will supply.  Thank you for
> the help.

If registration is not occuring properly, it could be a DNS misconfig. If
you can please post:

1. ipconfig /all from a client and from your DC(s)
2. The DNS domain name of AD (found in ADUC)
3. The zonename in your Forward Lookup Zones in DNS
4. If updates are set to allow under zone properties
5. If this machine has more than one NIC
6. Do you have a firewall? If so, what brand?
7. Is/are forwarder(s) configured?

Also, if you want to remove a server, you need to demote it properly and not
just unplug it. You previously said you tried to remove it but something
complained. Can you elaborate on that please? Did you just unplug it and
then later plugged it back in?

Ace
 
Sign In
Join
My Latest Posts
My Monitored Threads
My Blog
My Photo Gallery
My Profile
My Homepage

Start New Thread
Enable EMail Alerts
Rate this Thread



©2010 Advenet LLC   Privacy Policy - Terms of Use
This website includes both content owned or controlled by Advenet as well as content owned or controlled by third parties.