Questions tagged [domain-controller]

A domain controller is a server in a Microsoft Active Directory or NT4 domain that is responsible for central authentication.

In Microsoft Active Directory and NT4 domains, a domain controller is the central repository for all of the user account authorization information. It allows a person to sign on once and be allowed access to many different resources.

1589 questions
4
votes
1 answer

Newly Promoted Domain Controller does not create and replicate SYSVOL and NETLOGON folders

There seems to be something wrong with my primary domain controller. No matter what I do, I cannot get other domain controllers to create sysvol and netlogon folders when they've been promoted. my dcdiag shows these errors on my new domain…
4
votes
2 answers

Can't join machines to domain

I've installed Windows Server 2016 Datacenter on a physical machine called LOKI. It is allocated the static IP 192.168.1.77 by the router. It is also set manually in TCP/IPv4 on the NIC. The gateway is set to 192.168.1.1 (the router). The Primary…
4
votes
1 answer

Giving permissions to Virtual Service Accounts on domain controllers

The service I'm implementing will run on a domain controller, so I'd like it to have minimal privileges. Ideally, it would simply run as Local Service. However, it needs to be able to: monitor performance counters (be a member of Performance…
4
votes
1 answer

Setting Up multiple domain in LDAP server

I am trying to setup an LDAP server from scratch on a CENTOS 7 server. I was able to install it properly, but when it came to configuring it I am a bit stuck on the initial part. The thing is the company I am setting this up for has 3 domains…
Atish Goswami
  • 143
  • 1
  • 1
  • 4
4
votes
1 answer

How does Windows decide which IP address to use with AD DC communication?

I have a weird problem. I am working on setting up "Sites and Subnets" properly, so that my AD clients connect to proper DC (instead of one on opposite side of the globe). To do this, I started filtering logs on DC for "NO_CLIENT_SITE" error - and,…
StanTastic
  • 860
  • 1
  • 8
  • 25
4
votes
4 answers

Putting a backup AD domain controller as a VM on a workstation

As a small shop (~10 PCs), we have only one physical server machine. This physical server machine runs the following two virtual machines: one AD domain controller and one "production server" (file server, database server, etc.). Now, all best…
Heinzi
  • 2,217
  • 5
  • 32
  • 52
4
votes
3 answers

Virtualization, DC,Exchange and RDS Advise

We currently have two servers which we are looking to upgrade, one is Small business server, runs exchange and hosts all our files, and the second server is a remote desktop services machine which runs our sales and accounts package. Small business…
4
votes
2 answers

Windows DC replacement options 2000 to 2016

I didn't create this environment/mess - just trying to "fix" it. Currently only DC in network is a 2000 server. Just purchased two 2016 servers, getting ready to install/config. I know I can't join the 2016 servers to domain at this time as they…
SnarfBlat
  • 51
  • 3
4
votes
2 answers

Moving computer to new domain with same users

We currently have an Active Directory setup which was synced to our Azure AD. We are trying to migrate that to use Azure AD Directory Services which provide the domain controllers in the cloud. I did not want to take the old domain controllers down…
4
votes
1 answer

Windows Server 2008 R2 functional level - DSQUERY

After executing some queries (dsquery computer domainroot -stalepwd), using dsquery, I was told this command connects to the available DC and for this reason the results might be untruthful because the DC's do not replicate computer accounts…
jffalmeida
  • 53
  • 2
4
votes
1 answer

DC locator service (Server 2008R2/2012) - what triggers switching to alternative DC

I'm wondering how frequently DC locator checks availability of domain controller it is connected to. I assume it picks domain controller upon startup, but I'm not sure about the following: - How often it checks if selected DC is still up and…
4
votes
1 answer

Netlogon - Domain Trust Secure Channel issues - Only on some DCs

We have a 2 domain environment. We were having issues with slow connections, authentication failures, and hung resources only during OFF-PEAK hours when there were very few users logged on. The issue occurred when a user from DOMAIN A is accessing…
j-Geek
  • 141
  • 1
  • 3
4
votes
1 answer

DCOM Communication Error on Domain Controller

DCOM was unable to communicate with the computer 8.8.8.8 using any of the configured protocols; requested by PID 1830 (C:\Windows\system32\dcdiag.exe). This error and a couple of others to different IP addresses but referencing the same PID come up…
Wayne In Yak
  • 233
  • 2
  • 3
  • 12
4
votes
0 answers

Samba4 internal DNS and isc-dhcp zone update

Could anybody explain, how to solve this problem with internal samba4 DNS and dynamic zone updates from isc-dhcp? In the logs I have: dhcpd: Unable to add reverse map from 170.5.168.192.in-addr.arpa. to dus-ws-21a.nmedia.local: tsig verify…
kbu
  • 255
  • 4
  • 14
4
votes
1 answer

What happens to non-domain controller workstations/servers when user rights assignment policies are removed/no longer apply?

I'm trying to do a good ol' fashioned Group Policy Object clean-up job on our domain controller that was upgraded from Windows 2000 (Small Business I think) to Windows Server 2008R2. In my company's domain we have a Default Domain Controllers Policy…