Bit of a strange one this and I'm completely stumped. I'll try and explain as best I can
We've got Domain A which I call Frog and Domain B which I'll call Tadpole, between the two a two way trust exists.
Users machines sit in Frog along with two DC's (win2k3's).
Tadpole consists of two DC's (win2k3's) and 4 memeber servers.
If the DNS settings on DC1 in Tadpole point to itself as the primary and then a DC in Frog then you can access DC1's shares without an issue from a machine in Frog.
If however you change the DNS settings on DC1 to point to say DC2 as primary and then a DC in Frog or even DC1 as primary and DC2 as secondary you are unable to access the shares on DC1 via unc path from the Frog domain.
When this happens you can ping DC1 using its netbios name (it seems to resolve by broadcast)
If you use one of the member servers in Tadpole you can still access the shares on DC1.
If you use DC1's IP and try to view the shares i.e. \\10.82.200.1\ it is unable to see any shares.
On users machine the error: There are no logon servers available is displayed
In the eventlog of DC1 around 20-25mins after the DNS change is made the error is displayed
Log: System
EntryType: Error
EventID: 5719
Source: NETLOGON
Message: This computer was not able to set up a secure session with a domain controller in domain Frog due to the following:
%There are currently no logon servers available to service the logon request.
Once you put the DNS settings back to how they were on DC1 shares imediately become available again to users in Frog domian.
Any ideas?
We've got Domain A which I call Frog and Domain B which I'll call Tadpole, between the two a two way trust exists.
Users machines sit in Frog along with two DC's (win2k3's).
Tadpole consists of two DC's (win2k3's) and 4 memeber servers.
If the DNS settings on DC1 in Tadpole point to itself as the primary and then a DC in Frog then you can access DC1's shares without an issue from a machine in Frog.
If however you change the DNS settings on DC1 to point to say DC2 as primary and then a DC in Frog or even DC1 as primary and DC2 as secondary you are unable to access the shares on DC1 via unc path from the Frog domain.
When this happens you can ping DC1 using its netbios name (it seems to resolve by broadcast)
If you use one of the member servers in Tadpole you can still access the shares on DC1.
If you use DC1's IP and try to view the shares i.e. \\10.82.200.1\ it is unable to see any shares.
On users machine the error: There are no logon servers available is displayed
In the eventlog of DC1 around 20-25mins after the DNS change is made the error is displayed
Log: System
EntryType: Error
EventID: 5719
Source: NETLOGON
Message: This computer was not able to set up a secure session with a domain controller in domain Frog due to the following:
%There are currently no logon servers available to service the logon request.
Once you put the DNS settings back to how they were on DC1 shares imediately become available again to users in Frog domian.
Any ideas?