Event Xml: 2092 0 3 5 0 0x8080000000000000 28719 Directory Service PGSRV02.pgnco.local DC=pgnco,DC=local

This process is explained in KB article 305476.

netdom

Resolve DNS query failed errors for RID: You will not be able to allocation new security identifiers for new user accounts computer accounts or security groups. Next, I took DC1 offline and used DC3 to seize the RID Master role.

Domain Naming: You will no longer be able to add or remove domains from this forest. I moved DC1 (the owner of all FSMO roles and the only GC) and DC2 into Site-A and moved DC3 into Site-B.

See, I was reading the Microsoft Forest Recovery white paper, and they specifically state that when restoring a Windows 2008 DC that holds a FSMO role, initial synchronization should be disabled. This server has one or more replication partners and replication is failing for all of these partners.

Use the command repadmin /showrepl to display the replication errors.

It appears the client is not registering a HOST A record in DNS or finding the SRV record within DNS to register within AD because the server it's going to for This may have come about some time ago when I had a DC crash and had to sieze the roles. I tested this by booting only one normal DC in an environment with a total of 3 DCs. I would also like to emphasize again, that when a DC holding a FSMO role starts, the initial synchronization will be performed with that DC's known replication partners.

TECHNOLOGY IN THIS DISCUSSION USERS Read these next... © Copyright 2006-2017 Spiceworks Inc. In my case, the event was caused by a FRS problem (EventID 13562 from source NtFrs). Last success @ 2015-11-18 18:47:19. If ten years ago it was still common to see an entire company using just one server, these days that's no longer the case.

Ran dsquery server -hasfmso for all 5 roles, shows new server has all

Because of this, when DC1 started up, it performed its inital synchronization tasks by replicating with its replication partner DC2.

I would also like to note that despite this, dcdiag /test:ridManager reported that it passed successfully. I had used the KB article to clean up the metadata previously, but not re-seized the role. The old DC will never return, so can anyone tell me howI can get this DC to consider the schema to be valid or how else to recover the situation please

See "How to use the Repadmin.exe tool to troubleshoot initial synchronization issues" in http://support.microsoft.com/kb/305476. Log Name: Directory Service Source: Microsoft-Windows-ActiveDirectory_DomainService Date: 12/5/2015 1:14:51 PM Event ID: 2092 Task Category: Replication Level: Warning Keywords: Classic User: ANONYMOUS LOGON Computer: PGSRV02.pgnco.local Description: This server is