PDA

Показать полную графическую версию : Помогите восстановить домен Win Server 2012 Standard


Страниц : [1] 2

Shutter
31-05-2015, 11:03
Доброго времени суток!
Проблема в следующем: умер физически контроллер домена FSMO (Win 2008 R2), с ролями Хозяин схемы, Хозяин именования домена, Эмулятор PDC, Хозяин инфраструктуры, Хозяин RID. На нём так же был DNS, WINS и возможно что-то еще.. На него смотрели 1с, Exchange и т.д.... Единственным адекватным считаю поднять на другой железке контроллер домена с аналогичным именем, но попытки ввести компьютер в домен, используя оставшийся контроллер, безуспешны.
Остался второй контроллер (Win Server 2012 Standard), на нём был DNS, DHCP, добавил WINS, удалось сделать захват ролей. В ручную почистил записи DNS о мертвом контроллере. В оснастки AD не удаётся зайти ни с сервера, ни с рабочего компа.

С компа пишет:
При открытии AD - пользователи и компьютеры: не удается подключиться к следующему контроллеру домена сервер rpc не доступен
При попытке подключиться к другому кд:
Не удалось подключиться к следующему контроллеру домена 192.168.3.1
Указанный домен не существует или к нему невозможно подключиться

С сервер пишет:
При открытии AD - пользователи и компьютеры:
Naming information cannot be located because:
The specified domain either does not exist or could not be contacted.
При попытке вписать адрес в окне подключения к другому контроллеру домена:
The following Domain Controller could not be contacted: 192.168.3.1
The specified domain either does not exist or could not be contacted.



C:\Windows\System32>ipconfig /all

Настройка протокола IP для Windows

Имя компьютера . . . . . . . . . : FSIT04
Основной DNS-суффикс . . . . . . : fs.local
Тип узла. . . . . . . . . . . . . : Гибридный
IP-маршрутизация включена . . . . : Нет
WINS-прокси включен . . . . . . . : Нет
Порядок просмотра суффиксов DNS . : fs.local

Ethernet adapter Подключение по локальной сети 4:

Состояние среды. . . . . . . . : Среда передачи недоступна.
DNS-суффикс подключения . . . . . :
Описание. . . . . . . . . . . . . : TeamViewer VPN Adapter
Физический адрес. . . . . . . . . : 00-FF-B0-63-CF-8D
DHCP включен. . . . . . . . . . . : Да
Автонастройка включена. . . . . . : Да

Ethernet adapter Подключение по локальной сети:

DNS-суффикс подключения . . . . . :
Описание. . . . . . . . . . . . . : Atheros AR8152/8158 PCI-E Fast Ethernet C
ontroller (NDIS 6.20)
Физический адрес. . . . . . . . . : DC-0E-A1-84-37-E4
DHCP включен. . . . . . . . . . . : Нет
Автонастройка включена. . . . . . : Да
IPv4-адрес. . . . . . . . . . . . : 192.168.3.87(Основной)
Маска подсети . . . . . . . . . . : 255.255.255.0
Основной шлюз. . . . . . . . . : 192.168.3.200
DNS-серверы. . . . . . . . . . . : 192.168.3.1
192.168.3.200
Основной WINS-сервер. . . . . . . : 192.168.3.1
NetBios через TCP/IP. . . . . . . . : Включен

Туннельный адаптер isatap.{85014664-F8E3-4E35-8154-06708204C4A5}:

Состояние среды. . . . . . . . : Среда передачи недоступна.
DNS-суффикс подключения . . . . . :
Описание. . . . . . . . . . . . . : Адаптер Microsoft ISATAP
Физический адрес. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP включен. . . . . . . . . . . : Нет
Автонастройка включена. . . . . . : Да

Туннельный адаптер Подключение по локальной сети* 3:

Состояние среды. . . . . . . . : Среда передачи недоступна.
DNS-суффикс подключения . . . . . :
Описание. . . . . . . . . . . . . : Адаптер Microsoft 6to4
Физический адрес. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP включен. . . . . . . . . . . : Нет
Автонастройка включена. . . . . . : Да

Туннельный адаптер isatap.{B063CF8D-4EA7-402B-8587-394278CE47D9}:

Состояние среды. . . . . . . . : Среда передачи недоступна.
DNS-суффикс подключения . . . . . :
Описание. . . . . . . . . . . . . : Адаптер Microsoft ISATAP #4
Физический адрес. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP включен. . . . . . . . . . . : Нет
Автонастройка включена. . . . . . : Да



C:\Windows\system32>ipconfig /all

Windows IP Configuration

Host Name . . . . . . . . . . . . : FSDC03
Primary Dns Suffix . . . . . . . : fs.local
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : Yes
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : fs.local
System Quarantine State . . . . . : Not Restricted


Ethernet adapter Ethernet:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Broadcom NetXtreme Gigabit Ethernet
Physical Address. . . . . . . . . : 84-34-97-11-65-84
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv4 Address. . . . . . . . . . . : 192.168.3.1(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.3.200
DNS Servers . . . . . . . . . . . : 192.168.3.1
127.0.0.1
Primary WINS Server . . . . . . . : 192.168.3.1
NetBIOS over Tcpip. . . . . . . . : Enabled

Tunnel adapter isatap.{96CC5B76-6F1A-47FB-8E40-39AE4AC27AC8}:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes

Tunnel adapter Teredo Tunneling Pseudo-Interface:

Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes



C:\Windows\system32>dcdiag

Directory Server Diagnosis

Performing initial setup:
Trying to find home server...
Home Server = FSDC03
* Identified AD Forest.
Done gathering initial info.

Doing initial required tests

Testing server: Default-First-Site-Name\FSDC03
Starting test: Connectivity
......................... FSDC03 passed test Connectivity

Doing primary tests

Testing server: Default-First-Site-Name\FSDC03
Starting test: Advertising
Fatal Error:DsGetDcName (FSDC03) call failed, error 1355
The Locator could not find the server.
......................... FSDC03 failed test Advertising
Starting test: FrsEvent
......................... FSDC03 passed test FrsEvent
Starting test: DFSREvent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... FSDC03 failed test DFSREvent
Starting test: SysVolCheck
......................... FSDC03 passed test SysVolCheck
Starting test: KccEvent
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 10:29:19
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 10:29:19
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 10:29:19
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 10:29:19
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 10:29:19
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
......................... FSDC03 passed test KccEvent
Starting test: KnowsOfRoleHolders
......................... FSDC03 passed test KnowsOfRoleHolders
Starting test: MachineAccount
......................... FSDC03 passed test MachineAccount
Starting test: NCSecDesc
......................... FSDC03 passed test NCSecDesc
Starting test: NetLogons
Unable to connect to the NETLOGON share! (\\FSDC03\netlogon)
[FSDC03] An net use or LsaPolicy operation failed with error 67,
The network name cannot be found..
......................... FSDC03 failed test NetLogons
Starting test: ObjectsReplicated
......................... FSDC03 passed test ObjectsReplicated
Starting test: Replications
......................... FSDC03 passed test Replications
Starting test: RidManager
......................... FSDC03 passed test RidManager
Starting test: Services
......................... FSDC03 passed test Services
Starting test: SystemLog
An error event occurred. EventID: 0x00000469
Time Generated: 05/31/2015 09:34:36
Event String:
The processing of Group Policy failed because of lack of network con
nectivity to a domain controller. This may be a transient condition. A success m
essage would be generated once the machine gets connected to the domain controll
er and Group Policy has successfully processed. If you do not see a success mess
age for several hours, then contact your administrator.
A warning event occurred. EventID: 0x00001796
Time Generated: 05/31/2015 10:05:51
Event String:
Microsoft Windows Server has detected that NTLM authentication is pr
esently being used between clients and this server. This event occurs once per b
oot of the server on the first time a client uses NTLM with this server.
An error event occurred. EventID: 0x00000469
Time Generated: 05/31/2015 10:05:57
Event String:
The processing of Group Policy failed because of lack of network con
nectivity to a domain controller. This may be a transient condition. A success m
essage would be generated once the machine gets connected to the domain controll
er and Group Policy has successfully processed. If you do not see a success mess
age for several hours, then contact your administrator.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:05:59
Event String:
Driver HP LaserJet 400 MFP M425 PCL 6 required for printer NN HP Las
erJet 400 MFP M425 PCL 6 is unknown. Contact the administrator to install the dr
iver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:05:59
Event String:
Driver doPDF 7 Printer Driver required for printer doPDF v7 is unkno
wn. Contact the administrator to install the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:05:59
Event String:
Driver Adobe PDF Converter required for printer Adobe PDF is unknown
. Contact the administrator to install the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:00
Event String:
Driver HP Universal Printing PCL 6 required for printer !!fsper01!HP
Color LaserJet CM1312 MFP UPD PCL 6 is unknown. Contact the administrator to in
stall the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:00
Event String:
Driver HP LaserJet P2035 required for printer !!fsprz01!HP LaserJet
P2035 is unknown. Contact the administrator to install the driver before you log
in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:11
Event String:
Driver EPSON L800 Series required for printer EPSON L800 Series is u
nknown. Contact the administrator to install the driver before you log in again.

An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:12
Event String:
Driver HP Designjet T790 44in HPGL2 required for printer HP Designje
t T790 44in HPGL2 is unknown. Contact the administrator to install the driver be
fore you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:14
Event String:
Driver Samsung CLX-3300 Series required for printer FS_SAMSUNG_WIFI_
AZLK is unknown. Contact the administrator to install the driver before you log
in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:14
Event String:
Driver HP LaserJet M1530 MFP Series PCL 6 required for printer HP La
serJet M1530 MFP Series PCL 6 is unknown. Contact the administrator to install t
he driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:15
Event String:
Driver HP LaserJet M1530 MFP Series PCL 6 required for printer HP La
serJet M1530 MFP Series PCL 6 ЖЕНЯ is unknown. Contact the administrator to inst
all the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:16
Event String:
Driver HP LaserJet 200 color MFP M276 PCL 6 required for printer NN
HP LaserJet 200 color MFP M276 PCL 6 is unknown. Contact the administrator to in
stall the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:16
Event String:
Driver HP LaserJet M5025 mfp PCL6 required for printer HP LaserJet M
5025 mfp PCL6 FERON is unknown. Contact the administrator to install the driver
before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:17
Event String:
Driver HP Officejet Pro 8500 A909a Series required for printer HP Of
ficejet Pro 8500 A909a is unknown. Contact the administrator to install the driv
er before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:17
Event String:
Driver Microsoft XPS Document Writer required for printer Microsoft
XPS Document Writer is unknown. Contact the administrator to install the driver
before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:18
Event String:
Driver Samsung CLP-360 Series required for printer Samsung CLP-360 S
eries is unknown. Contact the administrator to install the driver before you log
in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:29
Event String:
Driver Samsung CLX-3300 Series required for printer Samsung CLX-3305
AZLK is unknown. Contact the administrator to install the driver before you log
in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:29
Event String:
Driver Samsung CLP-360 Series XPS required for printer Samsung CLP-3
60 Series XPS is unknown. Contact the administrator to install the driver before
you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:30
Event String:
Driver Samsung CLX-3300 Series required for printer Samsung CLX-3300
Series is unknown. Contact the administrator to install the driver before you l
og in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:30
Event String:
Driver HP LaserJet 100 color MFP M175 PCL6 required for printer Komm
erch 3.163 HP LaserJet 100 color MFP M175 PCL6 is unknown. Contact the administr
ator to install the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 10:06:31
Event String:
Driver HP LaserJet 100 color MFP M175 PCL6 required for printer СДО
3.180 HP LaserJet 100 color MFP M175 PCL6 is unknown. Contact the administrator
to install the driver before you log in again.
......................... FSDC03 failed test SystemLog
Starting test: VerifyReferences
......................... FSDC03 passed test VerifyReferences


Running partition tests on : DomainDnsZones
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... DomainDnsZones passed test
CrossRefValidation

Running partition tests on : ForestDnsZones
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... ForestDnsZones passed test
CrossRefValidation

Running partition tests on : Schema
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation

Running partition tests on : Configuration
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation

Running partition tests on : fs
Starting test: CheckSDRefDom
......................... fs passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... fs passed test CrossRefValidation

Running enterprise tests on : fs.local
Starting test: LocatorCheck
Warning: DcGetDcName(GC_SERVER_REQUIRED) call failed, error 1355
A Global Catalog Server could not be located - All GC's are down.
Warning: DcGetDcName(TIME_SERVER) call failed, error 1355
A Time Server could not be located.
The server holding the PDC role is down.
Warning: DcGetDcName(GOOD_TIME_SERVER_PREFERRED) call failed, error
1355
A Good Time Server could not be located.
Warning: DcGetDcName(KDC_REQUIRED) call failed, error 1355
A KDC could not be located - All the KDCs are down.
......................... fs.local failed test LocatorCheck
Starting test: Intersite
......................... fs.local passed test Intersite



C:\Windows\system32>nslookup
Default Server: fsdc03.fs.local
Address: 192.168.3.1



C:\Windows\System32>nslookup
╤хЁтхЁ яю єьюыўрэш■: fsdc03.fs.local
Address: 192.168.3.1



select operation target: list roles for connected server
Серверу "fsdc03" известно о 5 ролях
Схема - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Site
s,CN=Configuration,DC=fs,DC=local
Хозяин именования - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-
Name,CN=Sites,CN=Configuration,DC=fs,DC=local
PDC - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,
CN=Configuration,DC=fs,DC=local
RID - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,
CN=Configuration,DC=fs,DC=local
Инфраструктура - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-Nam
e,CN=Sites,CN=Configuration,DC=fs,DC=local


Одну ночь уже заночевал.
Помогите, люди добрые, восстановить работаспособность домена.

Telepuzik
31-05-2015, 11:46
A Global Catalog Server could not be located - All GC's are down. »
Роль глобального каталога данному КД настроили?

Shutter
31-05-2015, 11:49
Telepuzik, видимо нет, алгоритм действий не вспомните?

Оснастка Сайты и службы не работоспособна, аналогично пользователи и компьютеры и т.д...

Shutter
31-05-2015, 14:37
C:\Windows\System32>dcdiag /test:dns /a

Directory Server Diagnosis

Performing initial setup:
Trying to find home server...
Home Server = FSDC03
* Identified AD Forest.
Done gathering initial info.

Doing initial required tests

Testing server: Default-First-Site-Name\FSDC03
Starting test: Connectivity
......................... FSDC03 passed test Connectivity

Doing primary tests

Testing server: Default-First-Site-Name\FSDC03

Starting test: DNS

DNS Tests are running and not hung. Please wait a few minutes...
......................... FSDC03 passed test DNS

Running partition tests on : DomainDnsZones

Running partition tests on : ForestDnsZones

Running partition tests on : Schema

Running partition tests on : Configuration

Running partition tests on : fs

Running enterprise tests on : fs.local
Starting test: DNS
......................... fs.local passed test DNS

winbond
31-05-2015, 18:27
Надо на резервном DC для начала:
1) проверить настройки DNS службы, заодно если есть DHCP сервер, сменить DNS в нем также
2) настроить службу времени на синхронизацию с внешним источником(ами) и объявить её валидной, ниже пример (имена внешних тайм-серверов можно заменить на свои)
w32tm /config /syncfromflags:manual /manualpeerlist:"ntp.mobatime.ru ru.pool.ntp.org" /reliable:yes /update
net stop w32time
net start w32time
3) захватить роли вылетевшего DC, но только если уверены что старый DC более не вернется в эту сеть (иначе огребете некислых глюков от двух PDC)

seize domain naming master
seize infrastructure master
seize rid master
seize schema master
seize pdc

4) Смотреть диагностику дальше

Shutter
31-05-2015, 18:56
winbond,
1) http://forum.oszone.net/attachment.php?attachmentid=125701&stc=1&d=1433087135
3.200 это шлюз в интернет

2)
C:\Windows\System32>w32tm /config /syncfromflags:manual /manualpeerlist:"ntp.mob
atime.ru ru.pool.ntp.org" /reliable:yes /update
The command completed successfully.

C:\Windows\System32>net stop w32time
The Windows Time service is stopping.
The Windows Time service was stopped successfully.

C:\Windows\System32>net start w32time
The Windows Time service is starting.
The Windows Time service was started successfully.

3) старый дц не вернётся в сеть, роли захвачены:


Microsoft Windows [Version 6.1.7601]
(c) Корпорация Майкрософт (Microsoft Corp.), 2009. Все права защищены.

C:\Windows\System32>fsmo maintenance
"fsmo" не является внутренней или внешней
командой, исполняемой программой или пакетным файлом.

C:\Windows\System32>ntdsutil
ntdsutil: roles
fsmo maintenance: connections
server connections: connect to server fsdc03
Привязка к fsdc03 ...
Подключен к fsdc03 с помощью учетных данных локального пользователя.
server connections: q
fsmo maintenance: select operation target
select operation target: list roles for connected server
Серверу "fsdc03" известно о 5 ролях
Схема - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Site
s,CN=Configuration,DC=fs,DC=local
Хозяин именования - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-
Name,CN=Sites,CN=Configuration,DC=fs,DC=local
PDC - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,
CN=Configuration,DC=fs,DC=local
RID - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,
CN=Configuration,DC=fs,DC=local
Инфраструктура - CN=NTDS Settings,CN=FSDC03,CN=Servers,CN=Default-First-Site-Nam
e,CN=Sites,CN=Configuration,DC=fs,DC=local
select operation target:

winbond
31-05-2015, 20:25
Shutter, dcdiag что выдает теперь?

Shutter
31-05-2015, 20:36
winbond,

C:\Windows\system32>dcdiag

Directory Server Diagnosis

Performing initial setup:
Trying to find home server...
Home Server = FSDC03
* Identified AD Forest.
Done gathering initial info.

Doing initial required tests

Testing server: Default-First-Site-Name\FSDC03
Starting test: Connectivity
......................... FSDC03 passed test Connectivity

Doing primary tests

Testing server: Default-First-Site-Name\FSDC03
Starting test: Advertising
Fatal Error:DsGetDcName (FSDC03) call failed, error 1355
The Locator could not find the server.
......................... FSDC03 failed test Advertising
Starting test: FrsEvent
......................... FSDC03 passed test FrsEvent
Starting test: DFSREvent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... FSDC03 passed test DFSREvent
Starting test: SysVolCheck
......................... FSDC03 passed test SysVolCheck
Starting test: KccEvent
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 20:27:35
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 20:27:35
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 20:27:35
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 20:27:35
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
A warning event occurred. EventID: 0x80000829
Time Generated: 05/31/2015 20:27:35
Event String:
This directory partition has not been backed up since at least the f
ollowing number of days.
......................... FSDC03 passed test KccEvent
Starting test: KnowsOfRoleHolders
......................... FSDC03 passed test KnowsOfRoleHolders
Starting test: MachineAccount
......................... FSDC03 passed test MachineAccount
Starting test: NCSecDesc
......................... FSDC03 passed test NCSecDesc
Starting test: NetLogons
Unable to connect to the NETLOGON share! (\\FSDC03\netlogon)
[FSDC03] An net use or LsaPolicy operation failed with error 67,
The network name cannot be found..
......................... FSDC03 failed test NetLogons
Starting test: ObjectsReplicated
......................... FSDC03 passed test ObjectsReplicated
Starting test: Replications
......................... FSDC03 passed test Replications
Starting test: RidManager
......................... FSDC03 passed test RidManager
Starting test: Services
......................... FSDC03 passed test Services
Starting test: SystemLog
A warning event occurred. EventID: 0x00001796
Time Generated: 05/31/2015 19:41:27
Event String:
Microsoft Windows Server has detected that NTLM authentication is pr
esently being used between clients and this server. This event occurs once per b
oot of the server on the first time a client uses NTLM with this server.
An error event occurred. EventID: 0x00000469
Time Generated: 05/31/2015 19:42:49
Event String:
The processing of Group Policy failed because of lack of network con
nectivity to a domain controller. This may be a transient condition. A success m
essage would be generated once the machine gets connected to the domain controll
er and Group Policy has successfully processed. If you do not see a success mess
age for several hours, then contact your administrator.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:42:51
Event String:
Driver HP LaserJet 400 MFP M425 PCL 6 required for printer NN HP Las
erJet 400 MFP M425 PCL 6 is unknown. Contact the administrator to install the dr
iver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:42:51
Event String:
Driver Adobe PDF Converter required for printer Adobe PDF is unknown
. Contact the administrator to install the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:03
Event String:
Driver HP LaserJet P2035 required for printer !!fsprz01!HP LaserJet
P2035 is unknown. Contact the administrator to install the driver before you log
in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:04
Event String:
Driver HP Universal Printing PCL 6 required for printer !!fsper01!HP
Color LaserJet CM1312 MFP UPD PCL 6 is unknown. Contact the administrator to in
stall the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:04
Event String:
Driver doPDF 7 Printer Driver required for printer doPDF v7 is unkno
wn. Contact the administrator to install the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:06
Event String:
Driver Samsung CLX-3300 Series required for printer FS_SAMSUNG_WIFI_
AZLK is unknown. Contact the administrator to install the driver before you log
in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:07
Event String:
Driver EPSON L800 Series required for printer EPSON L800 Series is u
nknown. Contact the administrator to install the driver before you log in again.

An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:07
Event String:
Driver HP Designjet T790 44in HPGL2 required for printer HP Designje
t T790 44in HPGL2 is unknown. Contact the administrator to install the driver be
fore you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:08
Event String:
Driver HP LaserJet M1530 MFP Series PCL 6 required for printer HP La
serJet M1530 MFP Series PCL 6 is unknown. Contact the administrator to install t
he driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:08
Event String:
Driver HP LaserJet M5025 mfp PCL6 required for printer HP LaserJet M
5025 mfp PCL6 FERON is unknown. Contact the administrator to install the driver
before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:09
Event String:
Driver HP LaserJet M1530 MFP Series PCL 6 required for printer HP La
serJet M1530 MFP Series PCL 6 ЖЕНЯ is unknown. Contact the administrator to inst
all the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:09
Event String:
Driver HP Officejet Pro 8500 A909a Series required for printer HP Of
ficejet Pro 8500 A909a is unknown. Contact the administrator to install the driv
er before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:10
Event String:
Driver Microsoft XPS Document Writer required for printer Microsoft
XPS Document Writer is unknown. Contact the administrator to install the driver
before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:10
Event String:
Driver HP LaserJet 200 color MFP M276 PCL 6 required for printer NN
HP LaserJet 200 color MFP M276 PCL 6 is unknown. Contact the administrator to in
stall the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:11
Event String:
Driver Samsung CLP-360 Series required for printer Samsung CLP-360 S
eries is unknown. Contact the administrator to install the driver before you log
in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:11
Event String:
Driver Samsung CLP-360 Series XPS required for printer Samsung CLP-3
60 Series XPS is unknown. Contact the administrator to install the driver before
you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:12
Event String:
Driver Samsung CLX-3300 Series required for printer Samsung CLX-3300
Series is unknown. Contact the administrator to install the driver before you l
og in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:22
Event String:
Driver Samsung CLX-3300 Series required for printer Samsung CLX-3305
AZLK is unknown. Contact the administrator to install the driver before you log
in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:22
Event String:
Driver HP LaserJet 100 color MFP M175 PCL6 required for printer СДО
3.180 HP LaserJet 100 color MFP M175 PCL6 is unknown. Contact the administrator
to install the driver before you log in again.
An error event occurred. EventID: 0x00000457
Time Generated: 05/31/2015 19:43:23
Event String:
Driver HP LaserJet 100 color MFP M175 PCL6 required for printer Komm
erch 3.163 HP LaserJet 100 color MFP M175 PCL6 is unknown. Contact the administr
ator to install the driver before you log in again.
An error event occurred. EventID: 0xC0001B6F
Time Generated: 05/31/2015 19:43:38
Event String:
The Interactive Services Detection service terminated with the follo
wing error:
An error event occurred. EventID: 0xC0001B6F
Time Generated: 05/31/2015 19:43:53
Event String:
The KDC Proxy Server service (KPS) service terminated with the follo
wing error:
An error event occurred. EventID: 0x0000272C
Time Generated: 05/31/2015 19:58:09
Event String:
DCOM was unable to communicate with the computer 192.168.3.200 using
any of the configured protocols; requested by PID 58 (C:\Windows\system32
\dcdiag.exe).
An error event occurred. EventID: 0xC00038D6
Time Generated: 05/31/2015 20:30:52
Event String:
The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
......................... FSDC03 failed test SystemLog
Starting test: VerifyReferences
......................... FSDC03 passed test VerifyReferences


Running partition tests on : DomainDnsZones
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... DomainDnsZones passed test
CrossRefValidation

Running partition tests on : ForestDnsZones
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... ForestDnsZones passed test
CrossRefValidation

Running partition tests on : Schema
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation

Running partition tests on : Configuration
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation

Running partition tests on : fs
Starting test: CheckSDRefDom
......................... fs passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... fs passed test CrossRefValidation

Running enterprise tests on : fs.local
Starting test: LocatorCheck
Warning: DcGetDcName(GC_SERVER_REQUIRED) call failed, error 1355
A Global Catalog Server could not be located - All GC's are down.
Warning: DcGetDcName(TIME_SERVER) call failed, error 1355
A Time Server could not be located.
The server holding the PDC role is down.
Warning: DcGetDcName(GOOD_TIME_SERVER_PREFERRED) call failed, error
1355
A Good Time Server could not be located.
Warning: DcGetDcName(KDC_REQUIRED) call failed, error 1355
A KDC could not be located - All the KDCs are down.
......................... fs.local failed test LocatorCheck
Starting test: Intersite
......................... fs.local passed test Intersite

winbond
31-05-2015, 20:51
Добавление GC (https://technet.microsoft.com/ru-ru/library/cc755257.aspx)

Shutter
31-05-2015, 20:52
C:\Windows\system32>dcdiag

Directory Server Diagnosis

Performing initial setup:
Trying to find home server...
Home Server = FSDC03
* Identified AD Forest.
Done gathering initial info.

Doing initial required tests

Testing server: Default-First-Site-Name\FSDC03
Starting test: Connectivity
......................... FSDC03 passed test Connectivity

Doing primary tests

Testing server: Default-First-Site-Name\FSDC03
Starting test: Advertising
Fatal Error:DsGetDcName (FSDC03) call failed, error 1355
The Locator could not find the server.
......................... FSDC03 failed test Advertising
Starting test: FrsEvent
......................... FSDC03 passed test FrsEvent
Starting test: DFSREvent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... FSDC03 passed test DFSREvent
Starting test: SysVolCheck
......................... FSDC03 passed test SysVolCheck
Starting test: KccEvent
An error event occurred. EventID: 0xC0000466
Time Generated: 05/31/2015 20:42:35
Event String:
Active Directory Domain Services was unable to establish a connectio
n with the global catalog.
......................... FSDC03 failed test KccEvent
Starting test: KnowsOfRoleHolders
......................... FSDC03 passed test KnowsOfRoleHolders
Starting test: MachineAccount
......................... FSDC03 passed test MachineAccount
Starting test: NCSecDesc
......................... FSDC03 passed test NCSecDesc
Starting test: NetLogons
Unable to connect to the NETLOGON share! (\\FSDC03\netlogon)
[FSDC03] An net use or LsaPolicy operation failed with error 67,
The network name cannot be found..
......................... FSDC03 failed test NetLogons
Starting test: ObjectsReplicated
......................... FSDC03 passed test ObjectsReplicated
Starting test: Replications
......................... FSDC03 passed test Replications
Starting test: RidManager
......................... FSDC03 passed test RidManager
Starting test: Services
......................... FSDC03 passed test Services
Starting test: SystemLog
An error event occurred. EventID: 0x0000272C
Time Generated: 05/31/2015 19:58:09
Event String:
DCOM was unable to communicate with the computer 192.168.3.200 using
any of the configured protocols; requested by PID 58 (C:\Windows\system32
\dcdiag.exe).
An error event occurred. EventID: 0xC00038D6
Time Generated: 05/31/2015 20:30:52
Event String:
The DFS Namespace service could not initialize cross forest trust in
formation on this domain controller, but it will periodically retry the operatio
n. The return code is in the record data.
......................... FSDC03 failed test SystemLog
Starting test: VerifyReferences
......................... FSDC03 passed test VerifyReferences


Running partition tests on : DomainDnsZones
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... DomainDnsZones passed test
CrossRefValidation

Running partition tests on : ForestDnsZones
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... ForestDnsZones passed test
CrossRefValidation

Running partition tests on : Schema
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation

Running partition tests on : Configuration
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation

Running partition tests on : fs
Starting test: CheckSDRefDom
......................... fs passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... fs passed test CrossRefValidation

Running enterprise tests on : fs.local
Starting test: LocatorCheck
Warning: DcGetDcName(GC_SERVER_REQUIRED) call failed, error 1355
A Global Catalog Server could not be located - All GC's are down.
Warning: DcGetDcName(TIME_SERVER) call failed, error 1355
A Time Server could not be located.
The server holding the PDC role is down.
Warning: DcGetDcName(GOOD_TIME_SERVER_PREFERRED) call failed, error
1355
A Good Time Server could not be located.
Warning: DcGetDcName(KDC_REQUIRED) call failed, error 1355
A KDC could not be located - All the KDCs are down.
......................... fs.local failed test LocatorCheck
Starting test: Intersite
......................... fs.local passed test Intersite

C:\Windows\system32>

winbond
31-05-2015, 21:39
Warning: DcGetDcName(GC_SERVER_REQUIRED) call failed, error 1355
A Global Catalog Server could not be located - All GC's are down.
Не найден глобальный каталог. Проверить включен ли GC на FSDC03. Если включен - возможно ошибка регистрации srv в DNS. Можно глянуть наличие ошибок в логах системы, рестартанув службу netlogon. Еще проверить, что у DC на сетевой карте в свойствах IPv4 не отключена динамическая регистрация в DNS.

Warning: DcGetDcName(TIME_SERVER) call failed, error 1355
A Time Server could not be located.
The server holding the PDC role is down.
Warning: DcGetDcName(GOOD_TIME_SERVER_PREFERRED) call failed, error
1355
A Good Time Server could not be located.
Warning: DcGetDcName(KDC_REQUIRED) call failed, error 1355
A KDC could not be located - All the KDCs are down.
......................... fs.local failed test LocatorCheck
Эти три относятся к службе времени. KDC зависит от первых двух.Тут достаточно исчерпывающе (https://support.microsoft.com/ru-ru/kb/816042)

Остальные ошибки как мне кажется побочные от этих выше.

Shutter
31-05-2015, 21:58
winbond, так вот дело как раз в том, что FSDC03 вряд ли был GC, так как нет возможности открыть оснастки AD, пытался заставить его взять GC разными способами, например
dsmod server "CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=fs,DC=local" -isgc yes
на что приходит ответ
dsmod failed:The specified domain either does not exist or could not be contacted.
такой же ответ возвращается при dsquery server

При чем, если выполнять в командной строке с другого компьютера получается вот так:

Microsoft Windows [Version 6.1.7601]
(c) Корпорация Майкрософт (Microsoft Corp.), 2009. Все права защищены.

C:\Windows\System32>dsquery server
"CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=fs
,DC=local"

C:\Windows\System32>dsmod server "CN=FSDC03,CN=Servers,CN=Default-First-Site-Nam
e,CN=Sites,CN=Configuration,DC=fs,DC=local" -isgc yes
dsmod Успешно:CN=FSDC03,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Config
uration,DC=fs,DC=local

C:\Windows\System32>

winbond
31-05-2015, 22:36
nslookup fs.local на DC пишет Non-existent domain?

Shutter
31-05-2015, 23:15
winbond, нет, пишет

Microsoft Windows [Version 6.2.9200]
(c) 2012 Microsoft Corporation. All rights reserved.

C:\Windows\system32>nslookup fs.local
Server: fsdc03.fs.local
Address: 192.168.3.1

Name: fs.local
Address: 192.168.3.1

Telepuzik
01-06-2015, 13:04
Shutter,
Вывод команды net share с КД покажите.

Shutter
01-06-2015, 13:24
Telepuzik, да-да, шар нет

C:\Windows\system32>net share

Share name Resource Remark

-------------------------------------------------------------------------------
C$ C:\ Default share
IPC$ Remote IPC
ADMIN$ C:\Windows Remote Admin
The command completed successfully.

Telepuzik
01-06-2015, 14:14
Shutter,
1. Покажите вывод команд nslookup fsdc03.fs.local и nslookup fsdc03 с КД.
2. Перезапустите на КД службу Netlogons и посмотрите в момент старта службы в журнале какие ошибке регистрируются.

Shutter
01-06-2015, 15:45
Telepuzik,

C:\Windows\system32>nslookup fsdc03.fs.local
Server: fsdc03.fs.local
Address: 192.168.3.1

Name: fsdc03.fs.local
Address: 192.168.3.1


C:\Windows\system32>nslookup fsdc03
Server: fsdc03.fs.local
Address: 192.168.3.1

Name: fsdc03.fs.local
Address: 192.168.3.1



При перезапуске ничего не говорит, в журнале системы появляется "The Netlogon service entered the running state."
в Events в менеджере сервера ничего нового

Telepuzik
01-06-2015, 15:55
да-да, шар нет »
Покажите вывод команды dir c:\Windows\Sysvol\Sysvol\fs.local с КД.

Shutter
01-06-2015, 15:58
Telepuzik,
dir c:\Windows\Sysvol\Sysvol\fs.local

C:\Windows\system32>dir c:\Windows\Sysvol\Sysvol\fs.local
Volume in drive C has no label.
Volume Serial Number is E8CB-A89E

Directory of c:\Windows\Sysvol\Sysvol\fs.local

01.06.2015 12:51 <DIR> .
01.06.2015 12:51 <DIR> ..
0 File(s) 0 bytes
2 Dir(s) 487*821*848*576 bytes free




© OSzone.net 2001-2012