only 1 of 3 dcs allow logon
the authentication performed dc locate dc dns required. considering earlier dc windows 2003 & transferred windows 2008 r2, did make new 2008 r2 dc time server too, if not have because dc holding pdc fsmo role should time server.
dns reason, considering windows 2003 servers dns has been defined in clients nic & when switch off same dc, clients can't find other available dc, since there no dns specified point clients new dc/dns authentication.specify, domain clients(systems/servers/applications) point windows 2008 r2 machine in nic preferred dns server & alternate dns server other dc's in network. use local dns in clients dc system in nic, no public ip or other ip defined.
make sure windows 2008 r2 dc's not multihomed(dc's multiple live ip nic), multihomed dc not recommended. verify dc's health using dcdiag replication using repadmin /replsummary.
regards
awinish vishwakarma
my blog: http://awinish.wordpress.com
this posting provided as-is no warranties/guarantees , confers no rights.
Windows Server > Directory Services
Comments
Post a Comment