AD restore problem

  • Thread starter Thread starter Shah
  • Start date Start date
S

Shah

Hi all,
I am having 80 domain controllers in 80 sites country wide. I have Windows
2000 based single domain in native mode. Last month one domain controller
got crashed and I restore it from 2 months old backup. I do fullback every
six months. After restoration I am unable to access active directory from
this domain controller. Event viewer shows error for SAM, NTDS KCC, DNS and
Netlogon. I am not sure but I guess the replication process has been broken
between the DCs. I guess secure channel password expire after every 30 days,
so this may be the cause for errors. I if I change the secure channel
password, problem can be solved but not forever. Since I have 80 DCs so it
quite hard to follow the same method to get rid of the problem.
Is there any method or way to complicately get rid of this problem?
Any help will be appreciated.


-- SHAH -
With You For You Always

---------------------
 
A 6 month backup cycle is no good as the default tombstone lifetime is only
60 days. Any backup older than 60 days is not going to be much use. See this
kb for more details http://support.microsoft.com/?id=216993
I have never tried changing the tombstone lifetime in order to install an
older backup but maybe someone else knows if this is possible.
 
Hi,
Thanks for your info. As we have 80 DCs country wide, I set the tombstone
value to 548. After restoration by Arcserve2000, although DC account was
created in FSMO. I am unable to open even active directory snaps-in. I am
contineously getting Netlogon, NTDS KCC, DNS and userenve error. More help
in details will be appreciated.
 
Back
Top