Directory Server Diagnosis
Performing initial setup: Trying to find home server... * Verifying that the local machine PDC02, is a Directory Server.
Home Server = PDC02 * Connecting to directory service on server PDC02. * Identified AD Forest.
Collecting AD specific global data
* Collecting site info. Calling ldap_search_init_page(hld,CN=Sites,CN=Configuration,DC=****,DC=local,LDAP_SCOPE_SUBTREE,(objectCategory=ntDSSiteSettings),.......
The previous call succeeded
Iterating through the sites
Looking at base site object: CN=NTDS Site Settings,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local
Getting ISTG and options for the site
* Identifying all servers. Calling ldap_search_init_page(hld,CN=Sites,CN=Configuration,DC=****,DC=local,LDAP_SCOPE_SUBTREE,(objectClass=ntDSDsa),.......
The previous call succeeded....
The previous call succeeded
Iterating through the list of servers
Getting information for the server CN=NTDS Settings,CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local
objectGuid obtained
InvocationID obtained
dnsHostname obtained
site info obtained
All the info for the server collected
Getting information for the server CN=NTDS Settings,CN=PDC01,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local
objectGuid obtained
InvocationID obtained
dnsHostname obtained
site info obtained
All the info for the server collected
* Identifying all NC cross-refs. * Found 2 DC(s). Testing 1 of them. Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\PDC02 Starting test: Connectivity * Active Directory LDAP Services Check
Determining IP4 connectivity
* Active Directory RPC Services Check
......................... PDC02 passed test Connectivity Doing primary tests
Testing server: Default-First-Site-Name\PDC02 Starting test: Advertising The DC PDC02 is advertising itself as a DC and having a DS.
The DC PDC02 is advertising as an LDAP server
The DC PDC02 is advertising as having a writeable directory
The DC PDC02 is advertising as a Key Distribution Center
The DC PDC02 is advertising as a time server
The DS PDC02 is advertising as a GC.
......................... PDC02 passed test Advertising Test omitted by user request: CheckSecurityError Test omitted by user request: CutoffServers Starting test: FrsEvent * The File Replication Service Event log test
Skip the test because the server is running DFSR. ......................... PDC02 passed test FrsEvent Starting test: DFSREvent The DFS Replication Event Log.
There are warning or error events within the last 24 hours after the SYSVOL has been shared. Failing SYSVOL replication problems may cause Group Policy problems.
A warning event occurred. EventID: 0x80001396 Time Generated: 01/09/2015 02:30:28 Event String: The DFS Replication service is stopping communication with partner PDC01 for replication group Domain System Volume due to an error. The service will retry the connection periodically. Additional Information: Error: 9036 (Paused for backup or restore) Connection ID: 4DBD5806-0F75-4FEB-9E4F-04F7565351D5 Replication Group ID: 956DC852-676D-4B9E-B182-859C8EC70696 ......................... PDC02 passed test DFSREvent Starting test: SysVolCheck * The File Replication Service SYSVOL ready test
File Replication Service's SYSVOL is ready
......................... PDC02 passed test SysVolCheck Starting test: KccEvent * The KCC Event log test
Found no KCC errors in "Directory Service" Event log in the last 15 minutes.
......................... PDC02 passed test KccEvent Starting test: KnowsOfRoleHolders Role Schema Owner = CN=NTDS Settings,CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local
Role Domain Owner = CN=NTDS Settings,CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local
Role PDC Owner = CN=NTDS Settings,CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local
Role Rid Owner = CN=NTDS Settings,CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local
Role Infrastructure Update Owner = CN=NTDS Settings,CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local
......................... PDC02 passed test KnowsOfRoleHolders Starting test: MachineAccount Checking machine account for DC PDC02 on DC PDC02.
* SPN found :LDAP/PDC02.****.local/****.local
* SPN found :LDAP/PDC02.****.local
* SPN found :LDAP/PDC02
* SPN found :LDAP/PDC02.****.local/****
* SPN found :LDAP/001cc040-db2e-4ede-9345-acdf85302b67._msdcs.****.local
* SPN found :E3514235-4B06-11D1-AB04-00C04FC2DCD2/001cc040-db2e-4ede-9345-acdf85302b67/****.local
* SPN found :HOST/PDC02.****.local/****.local
* SPN found :HOST/PDC02.****.local
* SPN found :HOST/PDC02
* SPN found :HOST/PDC02.****.local/****
* SPN found :GC/PDC02.****.local/****.local
......................... PDC02 passed test MachineAccount Starting test: NCSecDesc * Security Permissions check for all NC's on DC PDC02.
* Security Permissions Check for DC=ForestDnsZones,DC=****,DC=local
(NDNC,Version 3)
* Security Permissions Check for DC=DomainDnsZones,DC=****,DC=local
(NDNC,Version 3)
* Security Permissions Check for CN=Schema,CN=Configuration,DC=****,DC=local
(Schema,Version 3)
* Security Permissions Check for CN=Configuration,DC=****,DC=local
(Configuration,Version 3)
* Security Permissions Check for DC=****,DC=local
(Domain,Version 3)
......................... PDC02 passed test NCSecDesc Starting test: NetLogons * Network Logons Privileges Check
Verified share \\PDC02\netlogon
Verified share \\PDC02\sysvol
......................... PDC02 passed test NetLogons Starting test: ObjectsReplicated PDC02 is in domain DC=****,DC=local
Checking for CN=PDC02,OU=Domain Controllers,DC=****,DC=local in domain DC=****,DC=local on 1 servers
Object is up-to-date on all servers.
Checking for CN=NTDS Settings,CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local in domain CN=Configuration,DC=****,DC=local on 1 servers
Object is up-to-date on all servers.
......................... PDC02 passed test ObjectsReplicated Test omitted by user request: OutboundSecureChannels Starting test: Replications * Replications Check
* Replication Latency Check
DC=ForestDnsZones,DC=****,DC=local
Latency information for 1 entries in the vector were ignored.
1 were retired Invocations. 0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc. 0 had no latency information (Win2K DC).
DC=DomainDnsZones,DC=****,DC=local
Latency information for 1 entries in the vector were ignored.
1 were retired Invocations. 0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc. 0 had no latency information (Win2K DC).
CN=Schema,CN=Configuration,DC=****,DC=local
Latency information for 1 entries in the vector were ignored.
1 were retired Invocations. 0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc. 0 had no latency information (Win2K DC).
CN=Configuration,DC=****,DC=local
Latency information for 1 entries in the vector were ignored.
1 were retired Invocations. 0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc. 0 had no latency information (Win2K DC).
DC=****,DC=local
Latency information for 1 entries in the vector were ignored.
1 were retired Invocations. 0 were either: read-only replicas and are not verifiably latent, or dc's no longer replicating this nc. 0 had no latency information (Win2K DC).
......................... PDC02 passed test Replications Starting test: RidManager * Available RID Pool for the Domain is 2600 to 1073741823
* PDC02.****.local is the RID Master
* DsBind with RID Master was successful
* rIDAllocationPool is 1600 to 2099
* rIDPreviousAllocationPool is 1600 to 2099
* rIDNextRID: 1616
......................... PDC02 passed test RidManager Starting test: Services * Checking Service: EventSystem
* Checking Service: RpcSs
* Checking Service: NTDS
* Checking Service: DnsCache
* Checking Service: DFSR
* Checking Service: IsmServ
* Checking Service: kdc
* Checking Service: SamSs
* Checking Service: LanmanServer
* Checking Service: LanmanWorkstation
* Checking Service: w32time
* Checking Service: NETLOGON
......................... PDC02 passed test Services Starting test: SystemLog * The System Event log test
Found no errors in "System" Event log in the last 60 minutes.
......................... PDC02 passed test SystemLog Test omitted by user request: Topology Test omitted by user request: VerifyEnterpriseReferences Starting test: VerifyReferences The system object reference (serverReference) CN=PDC02,OU=Domain Controllers,DC=****,DC=local and backlink on CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local are correct.
The system object reference (serverReferenceBL) CN=PDC02,CN=Topology,CN=Domain System Volume,CN=DFSR-GlobalSettings,CN=System,DC=****,DC=local and backlink on CN=NTDS Settings,CN=PDC02,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=****,DC=local are correct.
The system object reference (msDFSR-ComputerReferenceBL) CN=PDC02,CN=Topology,CN=Domain System Volume,CN=DFSR-GlobalSettings,CN=System,DC=****,DC=local and backlink on CN=PDC02,OU=Domain Controllers,DC=****,DC=local are correct.
......................... PDC02 passed test VerifyReferences Test omitted by user request: VerifyReplicas
Test omitted by user request: DNS Test omitted by user request: DNS
Running partition tests on : ForestDnsZones Starting test: CheckSDRefDom ......................... ForestDnsZones passed test CheckSDRefDom Starting test: CrossRefValidation ......................... ForestDnsZones passed test CrossRefValidation
Running partition tests on : DomainDnsZones Starting test: CheckSDRefDom ......................... DomainDnsZones passed test CheckSDRefDom Starting test: CrossRefValidation ......................... DomainDnsZones passed test CrossRefValidation
Running partition tests on : Schema Starting test: CheckSDRefDom ......................... Schema passed test CheckSDRefDom Starting test: CrossRefValidation ......................... Schema passed test CrossRefValidation
Running partition tests on : Configuration Starting test: CheckSDRefDom ......................... Configuration passed test CheckSDRefDom Starting test: CrossRefValidation ......................... Configuration passed test CrossRefValidation
Running partition tests on : **** Starting test: CheckSDRefDom ......................... **** passed test CheckSDRefDom Starting test: CrossRefValidation ......................... **** passed test CrossRefValidation
Running enterprise tests on : ****.local Test omitted by user request: DNS Test omitted by user request: DNS Starting test: LocatorCheck GC Name: \\PDC02.****.local Locator Flags: 0xe00031fd
PDC Name: \\PDC02.****.local
Locator Flags: 0xe00031fd
Time Server Name: \\PDC02.****.local
Locator Flags: 0xe00031fd
Preferred Time Server Name: \\PDC02.****.local
Locator Flags: 0xe00031fd
KDC Name: \\PDC02.****.local
Locator Flags: 0xe00031fd
......................... ****.local passed test LocatorCheck Starting test: Intersite Skipping site Default-First-Site-Name, this site is outside the scope provided by the command line arguments provided.
......................... ****.local passed test Intersite |