Go Back   TechArena Community > Technical Support > Computer Help > Windows Server > Windows Server Help
Become a Member!
Forgot your username/password?
Register Tags Active Topics RSS Search Mark Forums Read SiteMap

Tags: , , , ,

Sponsored Links



PLEASE HELP: Autoenrollment Failure (0x80070005) for Additional Domain Controller W2K3

Windows Server Help


Reply
 
Thread Tools Search this Thread
  #1  
Old 21-11-2005
Neil Hobbs
 
Posts: n/a
PLEASE HELP: Autoenrollment Failure (0x80070005) for Additional Domain Controller W2K3

Hi,

I'm in the process of performing my final test deployment of a Windows
Server 2003 Active Directory network.

I have an Enterprise Root CA, which resides on the first domain controller
SERVER01 (this is also a Global Catalog server) and this Domain Controller
has successfully obtained a 'Domain Controller' certificate. But the second
domain controller SERVER02 has not been able to obtain a 'Domain Controller'
certificate. When this second domain controller starts up, it logs the
following entry in the 'Application' event log:

Source: Autoenrollment
Event ID: 13

Autoenrollment certificate for the local system failed to enroll for one
Domain Controller certificate (0x80070005). Access is denied

I have checked the TCP/IP configiration of the two domain controllers, both
servers are on the same IP network; a 10.1.0.0/24 network;

SERVER01 - has the IP address - 10.1.0.1/24
SERVER02 - has the IP address - 10.1.0.2/24

I have seen that both of the domain controllers are located in the
'DOMAIN\Domain Controllers' security group and this group has the default
permissions to the 'Domain Controller Authentication' certificare template
(Enroll and Autoenroll set to Allow).

The rest of the configuration is the default configuration. The domain
controllers and all servers are running Windows Server 2003 SP1. I have
other servers, which all pickup their certificates without any issues, but
no matter how many times I reboot this second domain controller it fails to
get a certificate.

I have performed a load of searches on the Knowledgebase and TechNet, but I
can't find any article.

Many thanks in advance for any solutions/advice will be most apprecaited.



Reply With Quote
  #2  
Old 21-11-2005
Neil Hobbs
 
Posts: n/a
Re: PLEASE HELP: Autoenrollment Failure (0x80070005) for Additional Domain Controller W2K3

I've just found this support article...

http://support.microsoft.com/default...b;en-us;903220

Its been fixed in SP1...



"Neil Hobbs" <neil.hobbs@tigertelematics.com> wrote in message
news:ejVSS2r7FHA.3876@TK2MSFTNGP09.phx.gbl...
> Hi,
>
> I'm in the process of performing my final test deployment of a Windows
> Server 2003 Active Directory network.
>
> I have an Enterprise Root CA, which resides on the first domain controller
> SERVER01 (this is also a Global Catalog server) and this Domain Controller
> has successfully obtained a 'Domain Controller' certificate. But the
> second
> domain controller SERVER02 has not been able to obtain a 'Domain
> Controller'
> certificate. When this second domain controller starts up, it logs the
> following entry in the 'Application' event log:
>
> Source: Autoenrollment
> Event ID: 13
>
> Autoenrollment certificate for the local system failed to enroll for one
> Domain Controller certificate (0x80070005). Access is denied
>
> I have checked the TCP/IP configiration of the two domain controllers,
> both
> servers are on the same IP network; a 10.1.0.0/24 network;
>
> SERVER01 - has the IP address - 10.1.0.1/24
> SERVER02 - has the IP address - 10.1.0.2/24
>
> I have seen that both of the domain controllers are located in the
> 'DOMAIN\Domain Controllers' security group and this group has the default
> permissions to the 'Domain Controller Authentication' certificare template
> (Enroll and Autoenroll set to Allow).
>
> The rest of the configuration is the default configuration. The domain
> controllers and all servers are running Windows Server 2003 SP1. I have
> other servers, which all pickup their certificates without any issues, but
> no matter how many times I reboot this second domain controller it fails
> to
> get a certificate.
>
> I have performed a load of searches on the Knowledgebase and TechNet, but
> I
> can't find any article.
>
> Many thanks in advance for any solutions/advice will be most apprecaited.
>
>
>



Reply With Quote
Reply

  TechArena Community > Technical Support > Computer Help > Windows Server > Windows Server Help


Thread Tools Search this Thread
Search this Thread:

Advanced Search


Similar Threads for: "PLEASE HELP: Autoenrollment Failure (0x80070005) for Additional Domain Controller W2K3"
Thread Thread Starter Forum Replies Last Post
what is the use of additional domain controller sendhilll Technology & Internet 7 21-11-2008 11:45 AM
Additional domain controller sakkanan thirumal Windows Server Help 1 17-09-2008 04:51 PM
Upgrading Domain Controller from W2k to W2k3 Scott Windows Server Help 5 24-05-2008 02:33 AM
howto promote additional domain controller to domain controller anisetti.sureshbabu@gmail.com Window 2000 Help 4 11-04-2007 09:19 PM
Domain Controller Autoenrollment Fails big moose Windows Server Help 3 24-08-2005 11:27 PM


All times are GMT +5.5. The time now is 05:37 PM.