Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

mismatch running dcpromo on 2. DC

Status
Not open for further replies.

Niksen

IS-IT--Management
Apr 25, 2002
211
EU
Ok, here goes:

Start setup:

Single win2k native domain with Exhange 2k, everything is patched/SP'ed up.

2 DC’s: DC1 And DC2

I want to upgrade to win2k3 domain.

I move All FSMO roles to DC2, all machines PR. DNS in house points to DC2

I demote DC1.

I do the /forestprep and /domainprep

All works well for a month

I then do an in-place upgrade on DC2

All services and all AD related stuff seems to works well.

I then do an clean install of DC1 ( with a new name )

Then I do a dcpromo.

Dcpromo runs for a while and starts replicating, the schema partition ( 2000 objects ) it goes well, but when replicating the configuration directory partition, It fails ( the same place every time ) halfway through. Reporting:

The local domain controller could not replicate the following object from the source domain controller at the following network address because of an Active Directory schema mismatch.

Object:
CN=exchangeservername,CN=Servers,CN=domainname,CN=Administrative Groups,CN=Dansk InterNet Selskab,CN=Microsoft Exchange,CN=Services,CN=Configuration
Network address:
"FQDN of DC2"

Active Directory will attempt to synchronize the schema before attempting to synchronize the following directory partition.
Directory partition:
CN=Configuration,DC=domainame,DC=countrycode


On DC1 I can see approximately 45 yellow events in directory service eventlog ( that dcpromo have created ), that all seems to relate to exchange, like this one:

Internal event: The following schema class has a superclass that is not valid.

Class identifier:
1004613352
Class name:
msExchRoutingSMTPConnector
Superclass identifier:
196659

Inheritance was ignored.



I have a bad understanding of classes and class identifiers. But I can see all these entries and their proporties in Schema snap-in.

if i try to browse th AD DB with LDP tool, i could get the impression that the errors is all under the same group, namely:

CN=exchangeservername,CN=Servers,CN=domainname,CN=Administrative Groups,CN=Dansk InterNet Selskab,CN=Microsoft Exchange,CN=Services,CN=Configuration


I try to do repairs on AD DB with NTDSUTIL in directory restore mode:

Run Ntdsutil files integrity

And then a

Ntdsutil Symantec database analysis go

And then

Ntdsutil Symantec database analysis go fixup

This check actually reports some errors. but it doesn't seem like it removed the errors because when i run it again, it repports the same number of phantoms. there is also some timestamp errors.

I tried to do a metadata cleanup, but when connected to site and domain and try to connect to server, NTDSUTIL can only see the DC2, so that doesn’t help much.


How do I go on from here?
 
Check int he Win2K Forum. Go to FAQ and under AD you will find an FAQ I submitted. There is a script in that document that can check your metadirectory for references to the old DC and remove them if they are there.
 
thanks,
i tried it, but like ntdsutil it couldnt find the DC1 leftover.
it seems though that i found the solution...there is a MS kb 314649 that explains mangled attributes.
this seems to hit the spot, now i just have to correct it.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top