DNS restart errors


windows server 2008 r2

when restart of dns services on of integrated secure dns servers on dc's error 4010 errors:

the dns server unable create resource record for  efd33727-15d9-428d-b8f1-acc1b70910bf._msdcs.xyz.local. in zone xyz.local. active directory definition of resource record corrupt or contains invalid dns name. event data contains error.

i trace down domain controller not running dns, because running domain master roles.

should ignore or should there there?

there number of reasons dcguid record won't register. can simple dns address condfigured in nic, multihomed dc (problematic anyway on numerous levels), duplicate zones, misonfigured dns infrastructure design in parent/child or tree infrastructure, permissions altered on dns zone, netlogon register alterations, , more.

without config or other info, we're kind of guessing.

if can post following, diagnose it:

  • an unedited ipconfig /all each dc
  • single domain forest, or parent , child/tree forest?
  • number of dcs
  • number of ad sites
  • does zone allow secure or unsecured , secured updates?
  • other event log errors on dcs. please check event log errors. check event log errors including windows logs - app & system logs, , under application , services logs, if applicable - ad web services, dfs replication, directory services, dns server & file replication server logs.

.

just eliminate dupe zone possibility, check out (must run on each dc see each dc "thinks" sees what's in ad database):

using adsi edit resolve conflicting or duplicate ad integrated dns zones
http://msmvps.com/blogs/acefekay/archive/2009/09/02/using-adsi-edit-to-resolve-conflicting-or-duplicate-ad-integrated-dns-zones.aspx

.


ace fekay
mvp, mct, mcitp/ea, mcts windows 2008/r2 & exchange 2007, exchange 2010 ea, mcse & mcsa 2003/2000, mcsa messaging 2003
microsoft certified trainer
microsoft mvp - directory services
technical blogs & videos: http://www.delawarecountycomputerconsulting.com/

this post provided as-is no warranties or guarantees , confers no rights.

facebook twitter linkedin



Windows Server  >  Directory Services



Comments

Popular posts from this blog

2008 Windows Deployment Server Properties Error

Can no longer user MS Update - Files required to use Microsoft Update are no longer registered

How do a find data in one file, search for it in another file and if not found, write a custom message to another file