Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations bkrike on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Replication error 1411

Status
Not open for further replies.

bdoub1eu

IS-IT--Management
Dec 10, 2003
440
US
I demoted a DC a few days ago and am now getting an error:

Active Directory failed to construct a mutual authentication service principal name (SPN) for the following domain controller.

Domain controller:
c709ad6b-5222-450e-ba36-7c69be4f7d3a._msdcs.chemspec.com

The call was denied. Communication with this domain controller might be affected.

Additional Data
Error value:
8589 The DS cannot derive a service principal name (SPN) with which to mutually authenticate the target server because the corresponding server object in the local DS database has no serverReference attribute.

The c709... DC is the one I demoted...Should I check DNS, ADSIEDIT or ntdsutil? thanks!
 
Another note...I'm only getting this error on one DC. I ran the ntdsutil and didn't see any entry under the sites for this server...
 
I looked at the above Microsoft article and followed the steps...Don't see any reference to this server in ndtsutil, adsiedit or DNS. Again, error only happening on one server...Not the other 3 DC's I have.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top