Go Back   TechArena Community > Software > Operating Systems
Become a Member!
Forgot your username/password?
Tags Active Topics RSS Search Mark Forums Read

Thread Tools Search this Thread
Old 22-07-2011
Join Date: Jul 2011
Posts: 1
The DNS server was unable to open Active Directory windows 2008r2

Hi, I have a windows 2008r2 enviornment that has 4 domain controllers. Two are onsite here and 2 are about 4 miles away. This has worked with no issue for the past year. Last week I started noticing some oddities with the 2 that are offsite. If i try to open dns on either of them I get 'access is denied.' If I open active directory domains and trusts i get 'you cannot modify domain or trust information because a primary domain controller emulator cannot be contacted.' I ran nslookup on all 4 dc's forward and reverse and they all resolve each other. If i open active directory sites and services the ntds settings arent not equivalent across the 4 dc's. Each DC is a global catalog. This domain is used by a very heavily used web app for user authentication.

I have verified that traffic is in fact passing from the two dc's that are on site to the other 2 dc's that are offsite using our firewall software...all ports are open that need to be, no drops, and nothing has changed AT ALL on the server end..

Here are some events from one of the two servers that arent working:

Log Name: DNS Server
Source: Microsoft-Windows-DNS-Server-Service
Date: 7/21/2011 10:55:24 AM
Event ID: 4000
Task Category: None
Level: Error
Keywords: Classic
User: N/A
Computer: CHHCPPRDADS003.cphprtlprd.com
The DNS server was unable to open Active Directory. This DNS server is configured to obtain and use information from the directory for this zone and is unable to load the zone without it. Check that the Active Directory is functioning properly and reload the zone. The event data is the error code.
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
<Provider Name="Microsoft-Windows-DNS-Server-Service" Guid="{71A551F5-C893-4849-886B-B5EC8502641E}" EventSourceName="DNS" />
<EventID Qualifiers="49152">4000</EventID>
<TimeCreated SystemTime="2011-07-21T14:55:24.000000000Z" />
<Correlation />
Reply With Quote
Old 22-07-2011
Join Date: Dec 2007
Posts: 2,273
Re: The DNS server was unable to open Active Directory windows 2008r2

You can configure the DNS Server service to use Active Directory Domain Services (AD DS) to store zone data. This makes it possible for the DNS server to rely on directory replication, which enhances security, reliability, and ease of administration. You can try what is mentioned in this link here.
Reply With Quote

  TechArena Community > Software > Operating Systems
Tags: , , , ,

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Similar Threads for: "The DNS server was unable to open Active Directory windows 2008r2"
Thread Thread Starter Forum Replies Last Post
How active directory works in Windows Server DakshaMira Small Business Server 7 18-04-2012 09:09 AM
Windows Server 2003 Active Directory Audit Steve BB Active Directory 2 09-01-2012 10:52 PM
DNS server unable to open Active Directory W2K3 servers LostCause Active Directory 1 05-09-2011 12:26 PM
Unable to open active directory in windows server 2008 Siddhi_vidhi Operating Systems 7 30-05-2010 06:22 AM
Installation of Active directory on Windows Server 2003 server? austin26 Networking & Security 2 06-10-2009 09:10 AM

All times are GMT +5.5. The time now is 12:48 PM.