none
creating NTDS Settings Object for this active directory domain Controller

    Question

  • I currently have a domain running and am in the middle of creating another DC at another site and adding it to the domain. I go through the process but the "active directory domain services configuration wizard" stalls at the point where it says creating the ntds settings object for this active directory domain controller on the remote ad dc. screen shot attached. I have googled this and read about password issue where the local admin account has same password as domain admin account however I have made sure they are different, also in the wizard for the user account to use I make sure I put it as follows domain\user account.

    any help will be appreciated as I am stuck her

    Friday, May 31, 2013 1:18 PM

Answers

All replies

  • Can you upload/post the  %SystemRoot%\Debug\dcpromoui.log and %SystemRoot%\Debug\dcpromo.log?

    Enfo Zipper
    Christoffer Andersson – Principal Advisor
    http://blogs.chrisse.se - Directory Services Blog

    Friday, May 31, 2013 1:35 PM
  • how do I attach the log files to a reply, I tried pasting in but there is too much and wont save
    Friday, May 31, 2013 4:10 PM
  • Actually I will do them in sererate replies, heres dcpromo.log

    05/31/2013 16:07:28 [INFO] Promotion request for replica domain controller
    05/31/2013 16:07:28 [INFO] DnsDomainName  Celerity.local
    05/31/2013 16:07:28 [INFO]  ReplicaPartner  Doxford-DC1.Celerity.local
    05/31/2013 16:07:28 [INFO]  SiteName  Preston
    05/31/2013 16:07:28 [INFO]  DsDatabasePath  C:\Windows\NTDS, DsLogPath  C:\Windows\NTDS
    05/31/2013 16:07:28 [INFO]  SystemVolumeRootPath  C:\Windows\SYSVOL
    05/31/2013 16:07:28 [INFO]  Account (NULL)
    05/31/2013 16:07:28 [INFO]  Options  1179840
    05/31/2013 16:07:28 [INFO] Validate supplied paths
    05/31/2013 16:07:28 [INFO] Validating path C:\Windows\NTDS.
    05/31/2013 16:07:28 [INFO]  Path is a directory
    05/31/2013 16:07:28 [INFO]  Path is on a fixed disk drive.
    05/31/2013 16:07:28 [INFO] Validating path C:\Windows\NTDS.
    05/31/2013 16:07:28 [INFO]  Path is a directory
    05/31/2013 16:07:28 [INFO]  Path is on a fixed disk drive.
    05/31/2013 16:07:28 [INFO] Validating path C:\Windows\SYSVOL.
    05/31/2013 16:07:28 [INFO]  Path is on a fixed disk drive.
    05/31/2013 16:07:28 [INFO]  Path is on an NTFS volume
    05/31/2013 16:07:28 [INFO] Start the worker task
    05/31/2013 16:07:28 [INFO] Request for promotion returning 0
    05/31/2013 16:07:28 [INFO] Forcing time sync
    05/31/2013 16:07:28 [INFO] Forcing a time sync with Doxford-DC1.Celerity.local
    05/31/2013 16:07:28 [INFO] Searching for a domain controller for the domain Celerity.local that contains the account PRESTON-DC2$
    05/31/2013 16:07:44 [ERROR] Failed to find a DC for domain Celerity.local: 1787
    05/31/2013 16:07:44 [ERROR] Failed to get domain controller for account PRESTON-DC2$ (1787)
    05/31/2013 16:07:44 [INFO] Error - A domain controller could not be contacted for the domain Celerity.local that contained an account for this computer. Make the computer a member of a workgroup then rejoin the domain before retrying the promotion.
     (1787)
    05/31/2013 16:07:44 [INFO] The attempted domain controller operation has completed
    05/31/2013 16:07:44 [INFO] Updating service status to 4
    05/31/2013 16:07:44 [INFO] DsRolepSetOperationDone returned 0
    05/31/2013 16:57:21 [INFO] Promotion request for replica domain controller
    05/31/2013 16:57:21 [INFO] DnsDomainName  Celerity.local
    05/31/2013 16:57:21 [INFO]  ReplicaPartner  Doxford-DC2.Celerity.local
    05/31/2013 16:57:21 [INFO]  SiteName  Preston
    05/31/2013 16:57:21 [INFO]  DsDatabasePath  C:\Windows\NTDS, DsLogPath  C:\Windows\NTDS
    05/31/2013 16:57:21 [INFO]  SystemVolumeRootPath  C:\Windows\SYSVOL
    05/31/2013 16:57:21 [INFO]  Account (NULL)
    05/31/2013 16:57:21 [INFO]  Options  1179840
    05/31/2013 16:57:21 [INFO] Validate supplied paths
    05/31/2013 16:57:21 [INFO] Validating path C:\Windows\NTDS.
    05/31/2013 16:57:21 [INFO]  Path is a directory
    05/31/2013 16:57:21 [INFO]  Path is on a fixed disk drive.
    05/31/2013 16:57:21 [INFO] Validating path C:\Windows\NTDS.
    05/31/2013 16:57:21 [INFO]  Path is a directory
    05/31/2013 16:57:21 [INFO]  Path is on a fixed disk drive.
    05/31/2013 16:57:21 [INFO] Validating path C:\Windows\SYSVOL.
    05/31/2013 16:57:21 [INFO]  Path is on a fixed disk drive.
    05/31/2013 16:57:21 [INFO]  Path is on an NTFS volume
    05/31/2013 16:57:21 [INFO] Start the worker task
    05/31/2013 16:57:21 [INFO] Request for promotion returning 0
    05/31/2013 16:57:22 [INFO] Forcing time sync
    05/31/2013 16:57:22 [INFO] Forcing a time sync with Doxford-DC2.Celerity.local
    05/31/2013 16:57:22 [INFO] Searching for a domain controller for the domain Celerity.local that contains the account PRESTON-DC2$
    05/31/2013 16:57:22 [INFO] Located domain controller Doxford-DC2.Celerity.local for domain Celerity.local
    05/31/2013 16:57:22 [INFO] Directing kerberos authentication to Doxford-DC2.Celerity.local returns 0
    05/31/2013 16:57:22 [INFO] DsRolepFlushKerberosTicketCache() successfully flushed the Kerberos ticket cache
    05/31/2013 16:57:22 [INFO] Using site Preston for server Doxford-DC2.Celerity.local
    05/31/2013 16:57:22 [INFO] Stopping service NETLOGON
    05/31/2013 16:57:22 [INFO] Stopping service NETLOGON
    05/31/2013 16:57:22 [INFO] ControlService(STOP) on NETLOGON returned 1(gle=0)
    05/31/2013 16:57:22 [INFO] DsRolepWaitForService: waiting for NETLOGON to enter one of 7 states
    05/31/2013 16:57:22 [INFO] DsRolepWaitForService: QueryServiceStatus on NETLOGON returned 1 (gle=0), SvcStatus.dwCS=3
    05/31/2013 16:57:23 [INFO] DsRolepWaitForService: QueryServiceStatus on NETLOGON returned 1 (gle=0), SvcStatus.dwCS=1
    05/31/2013 16:57:23 [INFO] DsRolepWaitForService: exiting because NETLOGON entered STOPPED state
    05/31/2013 16:57:23 [INFO] DsRolepWaitForService(for any end state) on NETLOGON service returned 0
    05/31/2013 16:57:23 [INFO] ControlService(STOP) on NETLOGON returned 0(gle=1062)
    05/31/2013 16:57:23 [INFO] Exiting service-stop loop after service NETLOGON entered STOPPED state
    05/31/2013 16:57:23 [INFO] StopService on NETLOGON returned 0
    05/31/2013 16:57:23 [INFO] Configuring service NETLOGON to 1 returned 0
    05/31/2013 16:57:23 [INFO] Stopped NETLOGON
    05/31/2013 16:57:23 [INFO] Deleting current sysvol path C:\Windows\SYSVOL
    05/31/2013 16:57:26 [INFO] Created system volume path
    05/31/2013 16:57:26 [INFO] Copying initial Directory Service database file C:\Windows\system32\ntds.dit to C:\Windows\NTDS\ntds.dit
    05/31/2013 16:57:26 [INFO] Installing the Directory Service
    05/31/2013 16:57:26 [INFO] Calling NtdsInstall for Celerity.local
    05/31/2013 16:57:26 [INFO] Starting Active Directory Domain Services installation
    05/31/2013 16:57:26 [INFO] Validating user supplied options
    05/31/2013 16:57:26 [INFO] Determining a site in which to install
    05/31/2013 16:57:26 [INFO] Examining an existing forest...
    05/31/2013 16:57:28 [INFO] Starting a replication cycle between Doxford-DC2.Celerity.local and the RID operations master (Doxford-DC1.Celerity.local), so that the new replica will be able to create users, groups, and computer objects...
    05/31/2013 16:57:29 [INFO] Configuring the local computer to host Active Directory Domain Services
    05/31/2013 16:57:36 [INFO] EVENTLOG (Informational): NTDS Database / Internal Processing : 2013
    Active Directory Domain Services is rebuilding the following number of indices as part of the initialization process.

     

    Indices:
    1

    05/31/2013 16:57:38 [INFO] EVENTLOG (Informational): NTDS Database / Internal Processing : 2014
    Active Directory Domain Services successfully completed rebuilding the following number of indices.

     

    Indices:
    1

    05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1464
    While searching for an index, Active Directory Domain Services detected that a new index is needed for the following attribute.

     

    Attribute:
    msFVE-VolumeGuid

    New index name:
    INDEX_LP_000907CE_0809

     

    A new index will be automatically created.

     

    Additional Data

    Error value:
    -1404 JET_errIndexNotFound, No such index

    05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1137
    Active Directory Domain Services successfully created an index for the following attribute.

     

    Attribute identifier:
    591822

    Attribute name:
    msFVE-VolumeGuid

    05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1464
    While searching for an index, Active Directory Domain Services detected that a new index is needed for the following attribute.

     

    Attribute:
    msFVE-RecoveryGuid

    New index name:
    INDEX_LP_000907AD_0809

     

    A new index will be automatically created.

     

    Additional Data

    Error value:
    -1404 JET_errIndexNotFound, No such index

    05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1137
    Active Directory Domain Services successfully created an index for the following attribute.

     

    Attribute identifier:
    591789

    Attribute name:
    msFVE-RecoveryGuid

    05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1464
    While searching for an index, Active Directory Domain Services detected that a new index is needed for the following attribute.

     

    Attribute:
    msTPM-SrkPubThumbprint

    New index name:
    INDEX_LP_0009083B_0809

     

    A new index will be automatically created.

     

    Additional Data

    Error value:
    -1404 JET_errIndexNotFound, No such index

    05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / DS Schema : 1137
    Active Directory Domain Services successfully created an index for the following attribute.

     

    Attribute identifier:
    591931

    Attribute name:
    msTPM-SrkPubThumbprint

    05/31/2013 16:57:39 [INFO] EVENTLOG (Informational): NTDS General / Internal Configuration : 2120
    This Active Directory Domain Services server does not support the Recycle Bin. Deleted objects may be undeleted, however, when an object is undeleted, some attributes of that object may be lost.  Additionally, attributes of other objects that refer to the object being undeleted may also be lost.

    05/31/2013 16:57:39 [INFO] Creating the NTDS Settings object for this Active Directory Domain Controller on the remote AD DC Doxford-DC2.Celerity.local...
    05/31/2013 16:58:01 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
    Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.

     

    directory service:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    The RPC server is unavailable. (1722)

    05/31/2013 16:58:22 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
    Duplicate event log entries were suppressed.

     

    See the previous event log entry for details. An entry is considered a duplicate if
    the event code and all of its insertion parameters are identical. The time period for
    this run of duplicates is from the time of the previous event to the time of this event.

     

    Event Code:
    c00007aa

    Number of duplicate entries:
    1

    05/31/2013 16:58:22 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
    The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.

     

    Domain controller:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    1722 The RPC server is unavailable.

    05/31/2013 16:58:51 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
    Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.

     

    directory service:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    The RPC server is unavailable. (1722)

    05/31/2013 16:59:12 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
    Duplicate event log entries were suppressed.

     

    See the previous event log entry for details. An entry is considered a duplicate if
    the event code and all of its insertion parameters are identical. The time period for
    this run of duplicates is from the time of the previous event to the time of this event.

     

    Event Code:
    c00007aa

    Number of duplicate entries:
    1

    05/31/2013 16:59:12 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
    The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.

     

    Domain controller:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    1722 The RPC server is unavailable.

    05/31/2013 16:59:49 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
    Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.

     

    directory service:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    The RPC server is unavailable. (1722)

    05/31/2013 17:00:10 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
    Duplicate event log entries were suppressed.

     

    See the previous event log entry for details. An entry is considered a duplicate if
    the event code and all of its insertion parameters are identical. The time period for
    this run of duplicates is from the time of the previous event to the time of this event.

     

    Event Code:
    c00007aa

    Number of duplicate entries:
    1

    05/31/2013 17:00:10 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
    The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.

     

    Domain controller:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    1722 The RPC server is unavailable.

    05/31/2013 17:01:03 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
    Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.

     

    directory service:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    The RPC server is unavailable. (1722)

    05/31/2013 17:01:24 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
    Duplicate event log entries were suppressed.

     

    See the previous event log entry for details. An entry is considered a duplicate if
    the event code and all of its insertion parameters are identical. The time period for
    this run of duplicates is from the time of the previous event to the time of this event.

     

    Event Code:
    c00007aa

    Number of duplicate entries:
    1

    05/31/2013 17:01:24 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
    The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.

     

    Domain controller:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    1722 The RPC server is unavailable.

    05/31/2013 17:02:49 [INFO] EVENTLOG (Error): NTDS Replication / DS RPC Client : 1962
    Internal event: The local directory service received an exception from a remote procedure call (RPC) connection. Extended error information is not available.

     

    directory service:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    The RPC server is unavailable. (1722)

    05/31/2013 17:03:10 [INFO] EVENTLOG (Informational): NTDS General / Internal Processing : 2041
    Duplicate event log entries were suppressed.

     

    See the previous event log entry for details. An entry is considered a duplicate if
    the event code and all of its insertion parameters are identical. The time period for
    this run of duplicates is from the time of the previous event to the time of this event.

     

    Event Code:
    c00007aa

    Number of duplicate entries:
    1

    05/31/2013 17:03:10 [INFO] EVENTLOG (Error): NTDS Replication / Setup : 1125
    The Active Directory Domain Services Installation Wizard (Dcpromo) was unable to establish connection with the following domain controller.

     

    Domain controller:
    Doxford-DC2.Celerity.local

     

    Additional Data

    Error value:
    1722 The RPC server is unavailable.

     


    Friday, May 31, 2013 4:12 PM
  • ok dcpromoui.log is huge so cant paste it in, any ideas
    also forgot to mention I did make sure domain firewall was switched off
    Friday, May 31, 2013 4:15 PM
  • 1787:
    # The security database on the server does not have a
    # computer account for this workstation trust relationship.

    if the server you try to promote is a member server, join it to a workgroup, delete it's computer account from AD and re-try the promotion from a workgroup instead.


    Enfo Zipper
    Christoffer Andersson – Principal Advisor
    http://blogs.chrisse.se - Directory Services Blog

    Friday, May 31, 2013 4:37 PM
  • Hi,

    In addition, i noticed the error: 1722 The RPC server is unavailable.

    Please have a look at this MS article below:

    http://technet.microsoft.com/en-us/library/replication-error-1722-the-rpc-server-is-unavailable(v=ws.10).aspx

    A domain controller could not be contacted for the domain that contains an account for this computer

    http://blogs.msdn.com/b/boduff/archive/2008/11/24/a-domain-controller-could-not-be-contacted-for-the-domain-that-contains-an-account-for-this-computer.aspx

    If you have any feedback on our support, please click here

    Regards.


    Vivian Wang
    TechNet Community Support

    Monday, June 03, 2013 5:44 AM
    Moderator
  • Hi,

    Just checking in to see if there is any update about the issue. Please let us know if you would like further assistance.

    Regards.

    If you have any feedback on our support, please click here


    Vivian Wang
    TechNet Community Support

    Friday, June 07, 2013 1:44 AM
    Moderator