DNS restart errors
windows server 2008 r2
when restart of dns services on of integrated secure dns servers on dc's error 4010 errors:
the dns server unable create resource record for efd33727-15d9-428d-b8f1-acc1b70910bf._msdcs.xyz.local. in zone xyz.local. active directory definition of resource record corrupt or contains invalid dns name. event data contains error.
i trace down domain controller not running dns, because running domain master roles.
should ignore or should there there?
there number of reasons dcguid record won't register. can simple dns address condfigured in nic, multihomed dc (problematic anyway on numerous levels), duplicate zones, misonfigured dns infrastructure design in parent/child or tree infrastructure, permissions altered on dns zone, netlogon register alterations, , more.
without config or other info, we're kind of guessing.
if can post following, diagnose it:
- an unedited ipconfig /all each dc
- single domain forest, or parent , child/tree forest?
- number of dcs
- number of ad sites
- does zone allow secure or unsecured , secured updates?
- other event log errors on dcs. please check event log errors. check event log errors including windows logs - app & system logs, , under application , services logs, if applicable - ad web services, dfs replication, directory services, dns server & file replication server logs.
.
just eliminate dupe zone possibility, check out (must run on each dc see each dc "thinks" sees what's in ad database):
using adsi edit resolve conflicting or duplicate ad integrated dns zones
http://msmvps.com/blogs/acefekay/archive/2009/09/02/using-adsi-edit-to-resolve-conflicting-or-duplicate-ad-integrated-dns-zones.aspx
ace fekay
mvp, mct, mcitp/ea, mcts windows 2008/r2 & exchange 2007, exchange 2010 ea, mcse & mcsa 2003/2000, mcsa messaging 2003
microsoft certified trainer
microsoft mvp - directory services
technical blogs & videos: http://www.delawarecountycomputerconsulting.com/
this post provided as-is no warranties or guarantees , confers no rights.
Windows Server > Directory Services
Comments
Post a Comment