مشکل در نصب RODC
با سلام
من یه forest دارم با شاید 13 14 تا دامین دارم و forect functional lev 2003 , و domain functional lev دامینی که میخوام توش RODC اضافه کنم رو به 2008 R2 raize کردم
علاوه بر اجرای دستورات adprep //forestprep , adprep //domainprep . adprep //rodcprep کماکان در زمان نصب rodc بهم پیغام عدم اجرای دستور adprep //rodc رو میده
لازمه این رو هم بگم که دستورات بالا رو با previlage کاربر عضو enterprize admin انجام دادم
فقط چیزی که خودم حدس میزنم مشکل در انتهای پیغام adprep //rodcprep
Adprep completed with errors. Not all partitions are updated. See the ADPrep.log
in the C:\Windows\debug\adprep\logs\20140413092629 directory for more informati
on.
infrastructure master role در دامین مربوطه وجود داره
ممنون میشم اگه راهنماییم کنید
6 پاسخ
در کا مشکلات باور نکردنی در این جا از لحاظ replication وجود داشت که بسیاریشونو برطرف کردم ولی گویا کماکان وجود داره مشکل
C:\Users\orviss\Desktop\adprep>dcdiag /test:replications Directory Server Diagnosis Performing initial setup: Trying to find home server... Home Server = SRV01 * Identified AD Forest. Done gathering initial info. Doing initial required tests Testing server: Anformatic\SRV01 Starting test: Connectivity ......................... SRV01 passed test Connectivity Doing primary tests Testing server: Anformatic\SRV01 Starting test: Replications [Replications Check,SRV01] No replication recently attempted: From SRV001EDR to SRV01 Naming Context: DC=ForestDnsZones,DC=Anformatic,DC=*****,DC=com The last attempt occurred at 2014-04-13 07:22:41 (about 6 hours ago). [Replications Check,SRV01] No replication recently attempted: From SRV001EDR to SRV01 Naming Context: CN=Schema,CN=Configuration,DC=Anformatic,DC=*****,DC=com The last attempt occurred at 2014-04-13 07:22:38 (about 6 hours ago). [Replications Check,SRV01] No replication recently attempted: From SRV001EDR to SRV01 Naming Context: CN=Configuration,DC=Anformatic,DC=*****,DC=com The last attempt occurred at 2014-04-13 07:22:37 (about 6 hours ago). REPLICATION-RECEIVED LATENCY WARNING SRV01: Current time is 2014-04-13 13:26:52. DC=ForestDnsZones,DC=Anformatic,DC=*****,DC=com Last replication received from SRV002HGH at 2011-04-26 12:23:58 WARNING: This latency is over the Tombstone Lifetime of 180 days! CN=Schema,CN=Configuration,DC=Anformatic,DC=*****,DC=com Last replication received from SRV002HGH at 2011-04-26 12:23:58 WARNING: This latency is over the Tombstone Lifetime of 180 days! CN=Configuration,DC=Anformatic,DC=*****,DC=com Last replication received from SRV001BZR at 2010-10-05 07:23:28 WARNING: This latency is over the Tombstone Lifetime of 180 days! Last replication received from SRV002HGH at 2011-04-26 11:23:39 WARNING: This latency is over the Tombstone Lifetime of 180 days! Last replication received from SRV001HGH at 2011-04-26 11:20:37 WARNING: This latency is over the Tombstone Lifetime of 180 days! ......................... SRV01 passed test Replications Running partition tests on : ForestDnsZones Running partition tests on : DomainDnsZones Running partition tests on : Schema Running partition tests on : Configuration Running partition tests on : Anformatic Running enterprise tests on : Anformatic.*****.com
من با اجازتون dcdiag /test:replications رو اجرا کردم
قک میکنم از اونجایی که اکثر سیستم ها 2003 هستن بهترین کار ارقای اونها به 2008 باشه که بعد از اون قک میکنم مشکلات بر طرف شه
اگه شما هم موافق هستید بهم اولویت این upgrade رو بگین
تنها مطلبی که از technet پیدا کردم ولی مطمئن نبودم استفاده از script fixfsmo.vbs بود
[2014/04/13:12:44:23.017] Adprep created the log file ADPrep.log under C:\Windows\debug\adprep\logs\20140413124423 directory. [2014/04/13:12:44:23.174] Adprep connected to the domain FSMO: SRV01.Anformatic.*******.com. [2014/04/13:12:44:23.174] Adprep was about to call the following LDAP API. ldap_search_s(). The base entry to start the search is (null). [2014/04/13:12:44:23.174] LDAP API ldap_search_s() finished, return code is 0x0 [2014/04/13:12:44:23.174] Adprep successfully retrieved information from the local Active Directory Domain Services. [2014/04/13:12:44:23.277] Adprep successfully initialized global variables. [Status/Consequence] Adprep is continuing. [2014/04/13:12:44:23.277] Adprep was about to call the following LDAP API. ldap_search_s(). The base entry to start the search is CN=Partitions,CN=Configuration,DC=Anformatic,DC=*******,DC=com. [2014/04/13:12:44:23.280] LDAP API ldap_search_s finished, return code is 0x0 [2014/04/13:12:44:23.300] ============================================================================== Adprep found partition DC=DomainDnsZones,DC=etebari,DC=*******,DC=com, and is about to update the permissions. [2014/04/13:12:44:27.577] Adprep was about to call the following LDAP API. ldap_search_s(). The base entry to start the search is CN=Infrastructure,DC=DomainDnsZones,DC=etebari,DC=*******,DC=com. [2014/04/13:12:44:27.580] LDAP API ldap_search_s finished, return code is 0x0 [2014/04/13:12:44:27.591] Adprep could not contact a replica for partition DC=DomainDnsZones,DC=etebari,DC=*******,DC=com. [2014/04/13:12:44:27.601] Adprep encountered an LDAP error. Error code: 0x0. Server extended error code: 0x0, Server error message: (null). [2014/04/13:12:44:27.619] Adprep failed the operation on partition DC=DomainDnsZones,DC=etebari,DC=*******,DC=com. Skipping to next partition. ============================================================================== [2014/04/13:12:44:27.638] Adprep detected the operation on partition DC=DomainDnsZones,DC=bazresi,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:27.657] ============================================================================== Adprep found partition DC=DomainDnsZones,DC=Hoghooghi,DC=*******,DC=com, and is about to update the permissions. [2014/04/13:12:44:27.797] Adprep was about to call the following LDAP API. ldap_search_s(). The base entry to start the search is CN=Infrastructure,DC=DomainDnsZones,DC=Hoghooghi,DC=*******,DC=com. [2014/04/13:12:44:27.798] LDAP API ldap_search_s finished, return code is 0xa [2014/04/13:12:44:27.807] Adprep could not contact a replica for partition DC=DomainDnsZones,DC=Hoghooghi,DC=*******,DC=com. [2014/04/13:12:44:27.817] Adprep encountered an LDAP error. Error code: 0x0. Server extended error code: 0x0, Server error message: (null). [2014/04/13:12:44:27.835] Adprep failed the operation on partition DC=DomainDnsZones,DC=Hoghooghi,DC=*******,DC=com. Skipping to next partition. ============================================================================== [2014/04/13:12:44:27.852] ============================================================================== Adprep found partition DC=ForestDnsZones,DC=Anformatic,DC=*******,DC=com, and is about to update the permissions. [2014/04/13:12:44:27.874] Adprep was about to call the following LDAP API. ldap_search_s(). The base entry to start the search is CN=Infrastructure,DC=ForestDnsZones,DC=Anformatic,DC=*******,DC=com. [2014/04/13:12:44:27.876] LDAP API ldap_search_s finished, return code is 0x0 [2014/04/13:12:44:27.885] Adprep could not contact a replica for partition DC=ForestDnsZones,DC=Anformatic,DC=*******,DC=com. [2014/04/13:12:44:27.895] Adprep encountered an LDAP error. Error code: 0x0. Server extended error code: 0x0, Server error message: (null). [2014/04/13:12:44:27.912] Adprep failed the operation on partition DC=ForestDnsZones,DC=Anformatic,DC=*******,DC=com. Skipping to next partition. ============================================================================== [2014/04/13:12:44:27.932] Adprep detected the operation on partition DC=DomainDnsZones,DC=markazi,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:27.951] Adprep detected the operation on partition DC=DomainDnsZones,DC=mali,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:27.970] Adprep detected the operation on partition DC=DomainDnsZones,DC=Amoozesh,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:27.989] Adprep detected the operation on partition DC=Amoozesh,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.007] Adprep detected the operation on partition DC=Anformatic,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.022] ============================================================================== Adprep found partition DC=bazresi,DC=*******,DC=com, and is about to update the permissions. [2014/04/13:12:44:28.165] Adprep was about to call the following LDAP API. ldap_search_s(). The base entry to start the search is CN=Infrastructure,DC=bazresi,DC=*******,DC=com. [2014/04/13:12:44:28.173] LDAP API ldap_search_s finished, return code is 0x0 [2014/04/13:12:44:28.230] Adprep could not contact the Infrastructure FSMO for domain DC=bazresi,DC=*******,DC=com. The Infrastructure FSMO must be reachable for this operation to proceed. [Status/Consequence] The Active Directory Domain Services DNS partitions are not prepared for Read Only DCs. [User Action] Check the log file ADPrep.log in the C:\Windows\debug\adprep\logs\20140413124423 directory for possible cause of failure. [2014/04/13:12:44:28.241] Adprep encountered an LDAP error. Error code: 0x0. Server extended error code: 0x0, Server error message: (null). [2014/04/13:12:44:28.257] Adprep failed the operation on partition DC=bazresi,DC=*******,DC=com. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.274] ============================================================================== Adprep found partition DC=DomainDnsZones,DC=Anformatic,DC=*******,DC=com, and is about to update the permissions. [2014/04/13:12:44:28.281] Adprep was about to call the following LDAP API. ldap_search_s(). The base entry to start the search is CN=Infrastructure,DC=DomainDnsZones,DC=Anformatic,DC=*******,DC=com. [2014/04/13:12:44:28.281] LDAP API ldap_search_s finished, return code is 0x0 [2014/04/13:12:44:28.291] Adprep could not contact a replica for partition DC=DomainDnsZones,DC=Anformatic,DC=*******,DC=com. [2014/04/13:12:44:28.300] Adprep encountered an LDAP error. Error code: 0x0. Server extended error code: 0x0, Server error message: (null). [2014/04/13:12:44:28.318] Adprep failed the operation on partition DC=DomainDnsZones,DC=Anformatic,DC=*******,DC=com. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.336] Adprep detected the operation on partition DC=DomainDnsZones,DC=tadarokat,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.353] Adprep detected the operation on partition DC=edari,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.369] Adprep detected the operation on partition DC=etebari,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.388] Adprep detected the operation on partition DC=DomainDnsZones,DC=edari,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.406] Adprep detected the operation on partition DC=Hoghooghi,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.422] Adprep detected the operation on partition DC=mali,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.439] Adprep detected the operation on partition DC=markazi,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:28.453] ============================================================================== Adprep found partition DC=omorsazman,DC=*******,DC=com, and is about to update the permissions. [2014/04/13:12:44:42.604] Adprep failed the operation on partition DC=omorsazman,DC=*******,DC=com. Skipping to next partition. ============================================================================== [2014/04/13:12:44:42.613] Adprep detected the operation on partition DC=tadarokat,DC=*******,DC=com has been performed. Skipping to next partition. ============================================================================== [2014/04/13:12:44:42.641] Adprep completed with errors. Not all partitions are updated. See the ADPrep.log in the C:\Windows\debug\adprep\logs\20140413124423 directory for more information. To successfully update all partititions, the current logged on user needs to be a member of Enterprise Admins group. If that is not the case, please correct the problem, and then restart Adprep
دامین تدارکات مورد نظر من هست
ممنون از پاسختون
این سرور به نام SRV001BZR چی هست دقیقا ؟ این سرور رسما از مجموعه اکتیودایرکتوی شما خارج شده اما تو یه جایی هست هنوز و چون باهاش Replication انجام نشده همچنان در مجموعه هست و مشکل ایجاد کرده کاری که باید بکنید این هست :
- در کنسول Active Directory Users and Computers اگر Domain Controller ای به نام SRV001BZR می بینید حذف کنید.
- در کنسول Active Directory Sites and Services هر connection ای که به اسم SRV001BZR وجود داره حذف کنید.
- در رکوردهای همه DNS سرورهای خودتون هر چی رکورد اعم از A ، MX ، SRV می بینید که به SRV001BZR اشاره میکنه حذف کنید.
- در آخر دستور Repadmin //syncall رو روی DC اصلی اجرا کنید تا مطمئن بشید Replication درست انجام میشه و نتیجه رو اعلام کنید.
لطفا محتویات فایل Adprep.log رو در قالب ارسال کد در ادامه عنوان کنید قاعدتا دلیل مشکل داخل این فایل نوشته شده .
دوست عزیز خطایی که Adprep داره نشون میده بحث برقراری ارتباط با Replica هایی مثل etebari و Anformatic هست و به دلیل اینکه نمیتونه این دو domain رو به درستی پیدا کنه و Replicate کنه خطای LDAP میده ، قبل از اینکه شما به سراغ اجرای Adprep برید باید مشکلات دامین رو حل کنید در اینجا اولین کار این هست که مطمئن بشید کل Domain ها مشکلی در حال حاضر نداشته باشند ، دستور زیر رو بر روی دامین ریشه انجام بدید و نتیجه رو در ادامه ارسال کنید :
dcdiag