1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
| Hieronder de output...
Microsoft Windows 2000 [Version 5.00.2195]
(C) Copyright 1985-2000 Microsoft Corp.
C:\Documents and Settings\Administrator.NAAM>dcdiag /v
DC Diagnosis
Performing initial setup:
* Verifing that the local machine a2, is a DC.
* Connecting to directory service on server a2.
* Collecting site info.
* Identifying all servers.
* Found 2 DC(s). Testing 1 of them.
Done gathering initial info.
Doing initial non skippeable tests
Testing server: Default-First-Site\A2
Starting test: Connectivity
* Active Directory LDAP Services Check
* Active Directory RPC Services Check
......................... A2 passed test Connectivity
Doing primary tests
Testing server: Default-First-Site\A2
Starting test: Replications
* Replications Check
......................... A2 passed test Replications
Test omitted by user request: Topology
Test omitted by user request: CutoffServers
Starting test: NCSecDesc
* Security Permissions Check for
CN=Schema,CN=Configuration,DC=NAAM,DC=local
* Security Permissions Check for
CN=Configuration,DC=NAAM,DC=local
* Security Permissions Check for
DC=NAAM,DC=local
......................... A2 passed test NCSecDesc
Starting test: NetLogons
* Network Logons Privileges Check
[A2] An net use or LsaPolicy operation failed with error 67, The networ
k name cannot be found..
......................... A2 failed test NetLogons
Starting test: Advertising
The DC A2 is advertising itself as a DC and having a DS.
The DC A2 is advertising as an LDAP server
The DC A2 is advertising as having a writeable directory
The DC A2 is advertising as a Key Distribution Center
The DC A2 is advertising as a time server
The DS A2 is advertising as a GC.
......................... A2 passed test Advertising
Starting test: KnowsOfRoleHolders
Role Schema Owner = CN=NTDS Settings,CN=A2,CN=Servers,CN=Default-First-
Site,CN=Sites,CN=Configuration,DC=NAAM,DC=local
Role Domain Owner = CN=NTDS Settings,CN=A2,CN=Servers,CN=Default-First-
Site,CN=Sites,CN=Configuration,DC=NAAM,DC=local
Role PDC Owner = CN=NTDS Settings,CN=A2,CN=Servers,CN=Default-First-Sit
e,CN=Sites,CN=Configuration,DC=NAAM,DC=local
Role Rid Owner = CN=NTDS Settings,CN=A2,CN=Servers,CN=Default-First-Sit
e,CN=Sites,CN=Configuration,DC=NAAM,DC=local
Role Infrastructure Update Owner = CN=NTDS Settings,CN=A2,CN=Servers,CN
=Default-First-Site,CN=Sites,CN=Configuration,DC=NAAM,DC=local
......................... A2 passed test KnowsOfRoleHolders
Starting test: RidManager
* Available RID Pool for the Domain is 3106 to 1073741823
* a2.NAAM.local is the RID Master
* DsBind with RID Master was successful
* rIDAllocationPool is 2606 to 3105
* rIDNextRID: 2630
* rIDPreviousAllocationPool is 2606 to 3105
......................... A2 passed test RidManager
Starting test: MachineAccount
Could not open pipe with [A2]:failed with 67: The network name cannot b
e found.
Could not get NetBIOSDomainName
Failed can not test for HOST SPN
Failed can not test for HOST SPN
* SPN found :LDAP/a2.NAAM.local/NAAM.local
* SPN found :LDAP/a2.NAAM.local
* SPN found :LDAP/A2
* Missing SPN :(null)
* SPN found :LDAP/1cda4961-3955-4e12-97b0-f281d0abe64f._msdcs.NAAM.l
ocal
* SPN found :E3514235-4B06-11D1-AB04-00C04FC2DCD2/1cda4961-3955-4e12-97
b0-f281d0abe64f/NAAM.local
* SPN found :HOST/a2.NAAM.local/NAAM.local
* SPN found :HOST/a2.NAAM.local
* SPN found :HOST/A2
* Missing SPN :(null)
* SPN found :GC/a2.NAAM.local/NAAM.local
......................... A2 failed test MachineAccount
Starting test: Services
Could not open Remote ipc to [A2]:failed with 67: The network name cann
ot be found.
......................... A2 failed test Services
Test omitted by user request: OutboundSecureChannels
Starting test: ObjectsReplicated
A2 is in domain DC=NAAM,DC=local
Checking for CN=A2,OU=Domain Controllers,DC=NAAM,DC=local in domain
DC=NAAM,DC=local on 1 servers
Object is up-to-date on all servers.
Checking for CN=NTDS Settings,CN=A2,CN=Servers,CN=Default-First-Site,CN
=Sites,CN=Configuration,DC=NAAM,DC=local in domain CN=Configuration,DC=STUDIO
A,DC=local on 1 servers
Object is up-to-date on all servers.
......................... A2 passed test ObjectsReplicated
Starting test: frssysvol
* The File Replication Service Event log test
[A2] An net use or LsaPolicy operation failed with error 67, The networ
k name cannot be found..
File Replication Service's SYSVOL is ready
......................... A2 passed test frssysvol
Starting test: kccevent
* The KCC Event log test
Failed to enumerate event log records, error The network name cannot be
found.
......................... A2 failed test kccevent
Starting test: systemlog
* The System Event log test
Failed to enumerate event log records, error The network name cannot be
found.
......................... A2 failed test systemlog
Running enterprise tests on : NAAM.local
Starting test: Intersite
Skipping site Default-First-Site, this site is outside the scope
provided by the command line arguments provided.
......................... NAAM.local passed test Intersite
Starting test: FsmoCheck
GC Name: \\a2.NAAM.local
Locator Flags: 0xe00001fd
PDC Name: \\a2.NAAM.local
Locator Flags: 0xe00001fd
Time Server Name: \\a2.NAAM.local
Locator Flags: 0xe00001fd
Preferred Time Server Name: \\a2.NAAM.local
Locator Flags: 0xe00001fd
KDC Name: \\a2.NAAM.local
Locator Flags: 0xe00001fd
......................... NAAM.local passed test FsmoCheck
C:\Documents and Settings\Administrator.NAAM> |