none
FSMO check failed after transferring PDC role to new Domain Controller

    Question

  • Hi,

    I had a requirement where I had to transfer FSMO role from old DC ( server1) to new DC (server2) . Everything went normal without any error.

    But now when I check health from all Domain Controller I am getting a message that FSMO check failed.

    PS C:\> dcdiag /test:fsmocheck

    Directory Server Diagnosis

    Performing initial setup:
       Trying to find home server...
       Home Server = SC132
       * Identified AD Forest.
       Done gathering initial info.

    Doing initial required tests

       Testing server: WestJordan\SC132
          Starting test: Connectivity
             ......................... SC132 passed test Connectivity

    Doing primary tests

       Testing server: WestJordan\SC132


       Running partition tests on : DomainDnsZones

       Running partition tests on : ForestDnsZones

       Running partition tests on : Schema

       Running partition tests on : Configuration

       Running partition tests on : oim

       Running enterprise tests on : oim.oimcorp.com
          Starting test: FsmoCheck
             Warning: DcGetDcName(PDC_REQUIRED) call failed, error 1355
             A Primary Domain Controller could not be located.
             The server holding the PDC role is down.
             ......................... oim.oimcorp.com failed test FsmoCheck
    PS C:\>

    Wednesday, February 15, 2017 9:04 AM

All replies

  • Hi

     Seems you need to use ntdsutil to seize FSMO roles; https://support.microsoft.com/en-us/help/255504/using-ntdsutil.exe-to-transfer-or-seize-fsmo-roles-to-a-domain-controller


    This posting is provided AS IS with no warranties or guarantees,and confers no rights. Best regards Burak Uğur

    Wednesday, February 15, 2017 9:13 AM
  • The FSMo roles were transfered successfully to new DC and when I run netdom query FSMO I am able to see the new DC where all roles been transfered. We have planned to decom Old DC next week.

    One curios thing is except fsmo check all below checks are getting passed on all region domain controllers.

    Netlogons Passed
    Replications Passed
    Advertising Passed
    KccEvent Passed
    FrsEvent Passed

    in same region where the new pdc exist there are two more DC available. In those DC's fsmo checks are passed. All other region it is getting failed.

    Wednesday, February 15, 2017 9:42 AM
  • Hi,
    Have you checked if the replication is fine on each DC? You could run repadmin /showrepl command on each DC for more clues.
    You could have a try repadmin /replicate command to force replication, please see: https://technet.microsoft.com/en-us/library/cc742152(v=ws.11).aspx
    Best regards,
    Wendy

    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com

    Friday, February 17, 2017 6:16 AM
    Moderator
  • Do the metadata cleanup to remove all trace of old DC as this is due to traces of old DC in your domain.
    Friday, February 17, 2017 7:24 AM
  • Hi,

    Just checking in to see if the information provided was helpful. And if the replies as above are helpful, we would appreciate you to mark them as answers, please let us know if you would like further assistance.

    Best Regards,

    Wendy


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com

    Monday, February 20, 2017 9:49 AM
    Moderator