Answered by:
creating NTDS Settings Object for this active directory domain Controller

-
I currently have a domain running and am in the middle of creating another DC at another site and adding it to the domain. I go through the process but the "active directory domain services configuration wizard" stalls at the point where it says creating the ntds settings object for this active directory domain controller on the remote ad dc. screen shot attached. I have googled this and read about password issue where the local admin account has same password as domain admin account however I have made sure they are different, also in the wizard for the user account to use I make sure I put it as follows domain\user account.
any help will be appreciated as I am stuck her
Question
Answers
-
Can you upload/post the %SystemRoot%\Debug\dcpromoui.log and %SystemRoot%\Debug\dcpromo.log?
Enfo Zipper
Christoffer Andersson – Principal Advisor
http://blogs.chrisse.se - Directory Services Blog- Marked as answer by markfidler976 Friday, May 31, 2013 4:10 PM
- Unmarked as answer by markfidler976 Friday, May 31, 2013 4:10 PM
- Marked as answer by markfidler976 Tuesday, July 08, 2014 2:18 PM
All replies
-
Can you upload/post the %SystemRoot%\Debug\dcpromoui.log and %SystemRoot%\Debug\dcpromo.log?
Enfo Zipper
Christoffer Andersson – Principal Advisor
http://blogs.chrisse.se - Directory Services Blog- Marked as answer by markfidler976 Friday, May 31, 2013 4:10 PM
- Unmarked as answer by markfidler976 Friday, May 31, 2013 4:10 PM
- Marked as answer by markfidler976 Tuesday, July 08, 2014 2:18 PM
-
-
Actually I will do them in sererate replies, heres dcpromo.log
05/31/2013 16:07:28 [INFO] Promotion request for replica domain controller
05/31/2013 16:07:28 [INFO] DnsDomainName Celerity.local
05/31/2013 16:07:28 [INFO] ReplicaPartner Doxford-DC1.Celerity.local
05/31/2013 16:07:28 [INFO] SiteName Preston
05/31/2013 16:07:28 [INFO] DsDatabasePath C:\Windows\NTDS, DsLogPath C:\Windows\NTDS
05/31/2013 16:07:28 [INFO] SystemVolumeRootPath C:\Windows\SYSVOL
05/31/2013 16:07:28 [INFO] Account (NULL)
05/31/2013 16:07:28 [INFO] Options 1179840
05/31/2013 16:07:28 [INFO] Validate supplied paths
05/31/2013 16:07:28 [INFO] Validating path C:\Windows\NTDS.
05/31/2013 16:07:28 [INFO] Path is a directory
05/31/2013 16:07:28 [INFO] Path is on a fixed disk drive.
05/31/2013 16:07:28 [INFO] Validating path C:\Windows\NTDS.
05/31/2013 16:07:28 [INFO] Path is a directory
05/31/2013 16:07:28 [INFO] Path is on a fixed disk drive.
05/31/2013 16:07:28 [INFO] Validating path C:\Windows\SYSVOL.
05/31/2013 16:07:28 [INFO] Path is on a fixed disk drive.
05/31/2013 16:07:28 [INFO] Path is on an NTFS volume
05/31/2013 16:07:28 [INFO] Start the worker task
05/31/2013 16:07:28 [INFO] Request for promotion returning 0
05/31/2013 16:07:28 [INFO] Forcing time sync
05/31/2013 16:07:28 [INFO] Forcing a time sync with Doxford-DC1.Celerity.local
05/31/2013 16:07:28 [INFO] Searching for a domain controller for the domain Celerity.local that contains the account PRESTON-DC2$
05/31/2013 16:07:44 [ERROR] Failed to find a DC for domain Celerity.local: 1787
05/31/2013 16:07:44 [ERROR] Failed to get domain controller for account PRESTON-DC2$ (1787)
05/31/2013 16:07:44 [INFO] Error - A domain controller could not be contacted for the domain Celerity.local that contained an account for this computer. Make the computer a member of a workgroup then rejoin the domain before retrying the promotion.
(1787)
05/31/2013 16:07:44 [INFO] The attempted domain controller operation has completed
05/31/2013 16:07:44 [INFO] Updating service status to 4
05/31/2013 16:07:44 [INFO] DsRolepSetOperationDone returned 0
05/31/2013 16:57:21 [INFO] Promotion request for replica domain controller
05/31/2013 16:57:21 [INFO] DnsDomainName Celerity.local
05/31/2013 16:57:21 [INFO] ReplicaPartner Doxford-DC2.Celerity.local
05/31/2013 16:57:21 [INFO] SiteName Preston
05/31/2013 16:57:21 [INFO] DsDatabasePath C:\Windows\NTDS, DsLogPath C:\Windows\NTDS
05/31/2013 16:57:21 [INFO] SystemVolumeRootPath C:\Windows\SYSVOL
05/31/2013 16:57:21 [INFO] Account (NULL)
05/31/2013 16:57:21 [INFO] Options 1179840
05/31/2013 16:57:21 [INFO] Validate supplied paths
05/31/2013 16:57:21 [INFO] Validating path C:\Windows\NTDS.
05/31/2013 16:57:21 [INFO] Path is a directory
05/31/2013 16:57:21 [INFO] Path is on a fixed disk drive.
05/31/2013 16:57:21 [INFO] Validating path C:\Windows\NTDS.
05/31/2013 16:57:21 [INFO] Path is a directory
05/31/2013 16:57:21 [INFO] Path is on a fixed disk drive.
05/31/2013 16:57:21 [INFO] Validating path C:\Windows\SYSVOL.
05/31/2013 16:57:21 [INFO] Path is on a fixed disk drive.
05/31/2013 16:57:21 [INFO] Path is on an NTFS volume
05/31/2013 16:57:21 [INFO] Start the worker task
05/31/2013 16:57:21 [INFO] Request for promotion returning 0
05/31/2013 16:57:22 [INFO] Forcing time sync
05/31/2013 16:57:22 [INFO] Forcing a time sync with Doxford-DC2.Celerity.local
05/31/2013 16:57:22 [INFO] Searching for a domain controller for the domain Celerity.local that contains the account PRESTON-DC2$
05/31/2013 16:57:22 [INFO] Located domain controller Doxford-DC2.Celerity.local for domain Celerity.local
05/31/2013 16:57:22 [INFO] Directing kerberos authentication to Doxford-DC2.Celerity.local returns 0
05/31/2013 16:57:22 [INFO] DsRolepFlushKerberosTicketCache() successfully flushed the Kerberos ticket cache
05/31/2013 16:57:22 [INFO] Using site Preston for server Doxford-DC2.Celerity.local
05/31/2013 16:57:22 [INFO] Stopping service NETLOGON
05/31/2013 16:57:22 [INFO] Stopping service NETLOGON
05/31/2013 16:57:22 [INFO] ControlService(STOP) on NETLOGON returned 1(gle=0)
05/31/2013 16:57:22 [INFO] DsRolepWaitForService: waiting for NETLOGON to enter one of 7 states
05/31/2013 16:57:22 [INFO] DsRolepWaitForService: QueryServiceStatus on NETLOGON returned 1 (gle=0), SvcStatus.dwCS=3
05/31/2013 16:57:23 [INFO] DsRolepWaitForService: QueryServiceStatus on NETLOGON returned 1 (gle=0), SvcStatus.dwCS=1
05/31/2013 16:57:23 [INFO] DsRolepWaitForService: exiting because NETLOGON entered STOPPED state
05/31/2013 16:57:23 [INFO] DsRolepWaitForService(for any end state) on NETLOGON service returned 0
05/31/2013 16:57:23 [INFO] ControlService(STOP) on NETLOGON returned 0(gle=1062)
05/31/2013 16:57:23 [INFO] Exiting service-stop loop after service NETLOGON entered STOPPED state
05/31/2013 16:57:23 [INFO] StopService on NETLOGON returned 0
05/31/2013 16:57:23 [INFO] Configuring service NETLOGON to 1 returned 0
05/31/2013 16:57:23 [INFO] Stopped NETLOGON
05/31/2013 16:57:23 [INFO] Deleting current sysvol path C:\Windows\SYSVOL
05/31/2013 16:57:26 [INFO] Created system volume path
05/31/2013 16:57:26 [INFO] Copying initial Directory Service database file C:\Windows\system32\ntds.dit to C:\Windows\NTDS\ntds.dit
05/31/2013 16:57:26 [INFO] Installing the Directory Service
05/31/2013 16:57:26 [INFO] Calling NtdsInstall for Celerity.local
05/31/2013 16:57:26 [INFO] Starting Active Directory Domain Services installation
05/31/2013 16:57:26 [INFO] Validating user supplied options
05/31/2013 16:57:26 [INFO] Determining a site in which to install
05/31/2013 16:57:26 [INFO] Examining an existing forest...
05/31/2013 16:57:28 [INFO] Starting a replication cycle between Doxford-DC2.Celerity.local and the RID operations master (Doxford-DC1.Celerity.local), so that the new replica will be able to create users, groups, and computer objects...
05/31/2013 16:57:29 [INFO] Configuring the local computer to host Active Directory Domain Services
05/31/2013 16:57:36 [INFO] EVENTLOG (Informational): NTDS Database / Internal Processing : 2013
Active Directory Domain Services is rebuilding the following number of indices as part of the initialization process.Indices:
105/31/2013 16:57:38 [INFO] EVENTLOG (Informational): NTDS Database / Internal Processing : 2014
Active Directory Domain Services successfully completed rebuilding the following number of indices.Indices:
105/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1464
While searching for an index, Active Directory Domain Services detected that a new index is needed for the following attribute.Attribute:
msFVE-VolumeGuidNew index name:
INDEX_LP_000907CE_0809A new index will be automatically created.
Additional Data
Error value:
-1404 JET_errIndexNotFound, No such index05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1137
Active Directory Domain Services successfully created an index for the following attribute.Attribute identifier:
591822Attribute name:
msFVE-VolumeGuid05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1464
While searching for an index, Active Directory Domain Services detected that a new index is needed for the following attribute.Attribute:
msFVE-RecoveryGuidNew index name:
INDEX_LP_000907AD_0809A new index will be automatically created.
Additional Data
Error value:
-1404 JET_errIndexNotFound, No such index05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1137
Active Directory Domain Services successfully created an index for the following attribute.Attribute identifier:
591789Attribute name:
msFVE-RecoveryGuid05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1464
While searching for an index, Active Directory Domain Services detected that a new index is needed for the following attribute.Attribute:
msTPM-SrkPubThumbprintNew index name:
INDEX_LP_0009083B_0809A new index will be automatically created.
Additional Data
Error value:
-1404 JET_errIndexNotFound, No such index05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1137
Active Directory Domain Services successfully created an index for the following attribute.Attribute identifier:
591931Attribute name:
msTPM-SrkPubThumbprint05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / Internal Configuration : 2120
This Active Directory Domain Services server does not support the Recycle Bin. Deleted objects may be undeleted, however, when an object is undeleted, some attributes of that object may be lost. Additionally, attributes of other objects that refer to the object being undeleted may also be lost.05/31/2013 16:57:39 [INFO] Creating the NTDS Settings object for this Active Directory Domain Controller on the remote AD DC Doxford-DC2.Celerity.local...
05/31/2013 16:58:01 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.directory service:
Doxford-DC2.Celerity.localAdditional Data
Error value:
The RPC server is unavailable. (1722)05/31/2013 16:58:22 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
Duplicate event log entries were suppressed.See the previous event log entry for details. An entry is considered a duplicate if
the event code and all of its insertion parameters are identical. The time period for
this run of duplicates is from the time of the previous event to the time of this event.Event Code:
c00007aaNumber of duplicate entries:
105/31/2013 16:58:22 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.Domain controller:
Doxford-DC2.Celerity.localAdditional Data
Error value:
1722 The RPC server is unavailable.05/31/2013 16:58:51 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.directory service:
Doxford-DC2.Celerity.localAdditional Data
Error value:
The RPC server is unavailable. (1722)05/31/2013 16:59:12 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
Duplicate event log entries were suppressed.See the previous event log entry for details. An entry is considered a duplicate if
the event code and all of its insertion parameters are identical. The time period for
this run of duplicates is from the time of the previous event to the time of this event.Event Code:
c00007aaNumber of duplicate entries:
105/31/2013 16:59:12 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.Domain controller:
Doxford-DC2.Celerity.localAdditional Data
Error value:
1722 The RPC server is unavailable.05/31/2013 16:59:49 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.directory service:
Doxford-DC2.Celerity.localAdditional Data
Error value:
The RPC server is unavailable. (1722)05/31/2013 17:00:10 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
Duplicate event log entries were suppressed.See the previous event log entry for details. An entry is considered a duplicate if
the event code and all of its insertion parameters are identical. The time period for
this run of duplicates is from the time of the previous event to the time of this event.Event Code:
c00007aaNumber of duplicate entries:
105/31/2013 17:00:10 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.Domain controller:
Doxford-DC2.Celerity.localAdditional Data
Error value:
1722 The RPC server is unavailable.05/31/2013 17:01:03 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.directory service:
Doxford-DC2.Celerity.localAdditional Data
Error value:
The RPC server is unavailable. (1722)05/31/2013 17:01:24 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
Duplicate event log entries were suppressed.See the previous event log entry for details. An entry is considered a duplicate if
the event code and all of its insertion parameters are identical. The time period for
this run of duplicates is from the time of the previous event to the time of this event.Event Code:
c00007aaNumber of duplicate entries:
105/31/2013 17:01:24 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.Domain controller:
Doxford-DC2.Celerity.localAdditional Data
Error value:
1722 The RPC server is unavailable.05/31/2013 17:02:49 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.directory service:
Doxford-DC2.Celerity.localAdditional Data
Error value:
The RPC server is unavailable. (1722)05/31/2013 17:03:10 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
Duplicate event log entries were suppressed.See the previous event log entry for details. An entry is considered a duplicate if
the event code and all of its insertion parameters are identical. The time period for
this run of duplicates is from the time of the previous event to the time of this event.Event Code:
c00007aaNumber of duplicate entries:
105/31/2013 17:03:10 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.Domain controller:
Doxford-DC2.Celerity.localAdditional Data
Error value:
1722 The RPC server is unavailable.- Edited by markfidler976 Friday, May 31, 2013 4:13 PM
-
ok dcpromoui.log is huge so cant paste it in, any ideas
also forgot to mention I did make sure domain firewall was switched off- Edited by markfidler976 Friday, May 31, 2013 4:16 PM
-
1787:
# The security database on the server does not have a
# computer account for this workstation trust relationship.if the server you try to promote is a member server, join it to a workgroup, delete it's computer account from AD and re-try the promotion from a workgroup instead.
Enfo Zipper
Christoffer Andersson – Principal Advisor
http://blogs.chrisse.se - Directory Services Blog -
Hi,
In addition, i noticed the error: 1722 The RPC server is unavailable.
Please have a look at this MS article below:
A domain controller could not be contacted for the domain that contains an account for this computer
If you have any feedback on our support, please click here
Regards.
Vivian Wang
TechNet Community Support -