GPO, DNS, and problems

  • Thread starter Thread starter Blake
  • Start date Start date
B

Blake

We have 2 Win2K DCs and a bunch of Win2KPRO/XP workstations on our domain.
90% of our workstations pick up GP fine and install the software. The 10%
are giving me gray hair.

They each have events in the system log:

"No Domain Controller is available for domain LONGWOOD due to the following:
There are currently no logon servers available to service the logon request.
Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator."
OR
"No Windows NT or Windows 2000 Domain Controller is available for domain
LONGWOOD. The following error occurred:
There are currently no logon servers available to service the logon
request."

(I also get W32Time errors, about no DC found)

All machines have the same DNS config, which they pick up from DHCP. Since
these 10% can't find a DC, they obviously can't get the policy. I have
tried everything. I can't see how DNS server is configured wrong, since it
works on 90%. These machines that do not work allow me to ping/map to the
DCs with no problem after a logon. But when the machine first comes up and
tries to find the DC (pre-logon), it fails.

Does anyone have any ideas? Any diags I can try? All DNS (forward/reverse
for client) seems OK.

Very tired
Blake
 
Are they on a different subnet at all? What are the common things about
these 10% of computers? Running a particular app? Different subnet?
Different service packs? Similar services running?
 
That's the problem that I can't see. They don't have any app in common that
I can see. All are on the newest SP and are pretty standard installs. We
have a higher number of machines fail in the buildings that have 'slow'
network. 100% of the PCs in our building worked (all the servers are here).
Our library, for example, has shared 10megabit. Many over there do NOT work
(but some do).

Is there a timeout here? Can it be changed?

Blake
 
In Blake <[email protected]> posted a question
Then Kevin replied below:
: We have 2 Win2K DCs and a bunch of Win2KPRO/XP workstations on our
: domain. 90% of our workstations pick up GP fine and install the
: software. The 10% are giving me gray hair.
:
: They each have events in the system log:
:
: "No Domain Controller is available for domain LONGWOOD due to the
: following: There are currently no logon servers available to service
: the logon request. Make sure that the computer is connected to the
: network and try again. If the problem persists, please contact your
: domain administrator."
: OR
: "No Windows NT or Windows 2000 Domain Controller is available for
: domain LONGWOOD. The following error occurred:
: There are currently no logon servers available to service the logon
: request."
:
: (I also get W32Time errors, about no DC found)
:
: All machines have the same DNS config, which they pick up from DHCP.
: Since these 10% can't find a DC, they obviously can't get the policy.
: I have tried everything. I can't see how DNS server is configured
: wrong, since it works on 90%. These machines that do not work allow
: me to ping/map to the DCs with no problem after a logon. But when
: the machine first comes up and tries to find the DC (pre-logon), it
: fails.
:
: Does anyone have any ideas? Any diags I can try? All DNS
: (forward/reverse for client) seems OK.
:
: Very tired
: Blake

run netdiag /fix from the problem machines then run netdiag /v and look for
errors
If you can't see what is causing this post a netdiag /v from one of the
problem machines.
It is a very long output you can run this like this netdiag /v >
C:\netdiag.txt
 
I have actually run netdiag trying to find this problem, which leads to a
question - do I run netdiag logged on as a local (non-domain) user? Or run
it logged on as a domain user? The GPO is applied to the computer BEFORE
any user logs on.

Here are the results from the locally logged on admin:

Gathering IPX configuration information.
Opening \Device\NwlnkIpx failed
Querying status of the Netcard drivers... Passed
Testing IpConfig - pinging the DHCP Server... Passed
Testing IpConfig - pinging the Primary WINS server... Passed
Testing Domain membership... Passed
Gathering NetBT configuration information.
Testing for autoconfiguration... Passed
Testing IP loopback ping... Passed
Testing default gateways... Passed
Enumerating local and remote NetBT name cache... Passed
Testing the WINS server
Local Area Connection
Sending name query to primary WINS server 159.230.64.37 -
querying name LIZWEIDINGER on server 159.230.64.37
bytes sent 50
Passed
There is no secondary WINS server defined for this adapter.
Gathering Winsock information.
Testing DNS
Testing redirector and browser... Passed
Testing DC discovery.
Looking for a DC
Looking for a PDC emulator
Looking for a Windows 2000 DC
Gathering the list of Domain Controllers for domain 'LONGWOOD'
Testing trust relationships... Passed
Testing Kerberos authentication... Passed
Testing LDAP servers in Domain LONGWOOD ...
Gathering routing information
Gathering network statistics information.
Gathering configuration of bindings.
Gathering RAS connection information
Gathering Modem information
Gathering Netware information
Gathering IP Security information

Tests complete.


Computer Name: LIZWEIDINGER
DNS Host Name: lizweidinger.longwood.edu
DNS Domain Name: longwood.edu
System info : Windows 2000 Professional (Build 2195)
Processor : x86 Family 6 Model 8 Stepping 1, GenuineIntel
Hotfixes :
Installed? Name
Yes KB329115
Yes KB819696
Yes KB820888
Yes KB822831
Yes KB823182
Yes KB823559
Yes KB823980
Yes KB824105
Yes KB824141
Yes KB824146
Yes KB825119
Yes KB826232
Yes KB828035
Yes KB828749
Yes KB829558
Yes Q147222
Yes Q816093
Yes Q818043
Yes Q828026
No ServicePackUninstall


Netcard queries test . . . . . . . : Passed

Information of Netcard drivers:

------------------------------------------------------------------------
---
Description: Intel 21143 Based PCI Fast Ethernet Adapter
Device: \DEVICE\{BE59304A-A746-48EE-98F7-C3C00D15AEC5}

Media State: Connected

Device State: Connected
Connect Time: 00:03:42
Media Speed: 10 Mbps

Packets Sent: 447
Bytes Sent (Optional): 69175

Packets Received: 1275
Directed Pkts Recd (Optional): 485
Bytes Received (Optional): 77675
Directed Bytes Recd (Optional): 77675

------------------------------------------------------------------------
---
[PASS] - At least one netcard is in the 'Connected' state.



Per interface results:

Adapter : Local Area Connection
Adapter ID . . . . . . . . : {BE59304A-A746-48EE-98F7-C3C00D15AEC5}

Netcard queries test . . . : Passed

Adapter type . . . . . . . : Ethernet
Host Name. . . . . . . . . : lizweidinger.longwood.edu
Description. . . . . . . . : Intel DC21143 PCI Fast Ethernet Adapter
Physical Address . . . . . : 00-C0-F0-4C-60-B4
Dhcp Enabled . . . . . . . : Yes
DHCP ClassID . . . . . . . :
Autoconfiguration Enabled. : Yes
IP Address . . . . . . . . : 159.230.111.56
Subnet Mask. . . . . . . . : 255.255.248.0
Default Gateway. . . . . . : 159.230.104.1
DHCP Server. . . . . . . . : 159.230.64.37
Primary WINS Server. . . . : 159.230.64.37
Lease Obtained . . . . . . : Monday, January 12, 2004 3:33:44 PM
Lease Expires. . . . . . . : Thursday, January 15, 2004 3:33:44 PM
Dns Servers. . . . . . . . : 159.230.64.70
159.230.64.37

IpConfig results . . . . . : Passed
Pinging DHCP server - reachable
Pinging the Primary WINS server 159.230.64.37 - reachable

AutoConfiguration results. . . . . . : Passed
AutoConfiguration is not in use.

Default gateway test . . . : Passed
Pinging gateway 159.230.104.1 - reachable
At least one gateway reachable for this adapter.

NetBT name test. . . . . . : Passed
NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}
LIZWEIDINGER <00> UNIQUE REGISTERED
LONGWOOD <00> GROUP REGISTERED
LONGWOOD <1E> GROUP REGISTERED
[WARNING] At least one of the <00> 'WorkStation Service', <03>
'Messenger Service', <20> 'WINS' names is missing.

NetBios Resolution : Enabled

Netbios Remote Cache Table
Name Type HostAddress Life [sec]
---------------------------------------------------------------
CTB.LONGWOOD.ED<55> UNIQUE 159.230.64.25 560
LONGWOOD <1C> GROUP 159.230.64.70 560
ORIGIN.LONGWOOD<2E> UNIQUE 159.230.64.70 560


WINS service test. . . . . : Passed
Sending name query to primary WINS server 159.230.64.37 - Passed
There is no secondary WINS server defined for this adapter.
The test was successful. At least one WINS server was found.
IPX test : IPX is not installed on this machine.


Global results:


IP General configuration
LMHOSTS Enabled. . . . . . . . : No
DNS for WINS resolution. . . . : Enabled
Node Type. . . . . . . . . . . : Hybrid
NBT Scope ID . . . . . . . . . :
Routing Enabled. . . . . . . . : No
WINS Proxy Enabled . . . . . . : No
DNS resolution for NETBIOS . . : No



Domain membership test . . . . . . : Passed
Machine is a . . . . . . . . . : Member Workstation
Netbios Domain name. . . . . . : LONGWOOD
Dns domain name. . . . . . . . : longwood.edu
Dns forest name. . . . . . . . : longwood.edu
Domain Guid. . . . . . . . . . : {54F5125B-7D29-40E8-83FA-9D7D21FD060B}
Domain Sid . . . . . . . . . . :
S-1-5-21-1801674531-823518204-2146731321
Logon User . . . . . . . . . . : Administrator
Logon Domain . . . . . . . . . : LIZWEIDINGER


NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}
1 NetBt transport currently configured.


Autonet address test . . . . . . . : Passed
PASS - you have at least one non-autoconfigured IP address


IP loopback ping test. . . . . . . : Passed
PASS - pinging IP loopback address was successful.
Your IP stack is most probably OK.


Default gateway test . . . . . . . : Passed
PASS - you have at least one reachable gateway.


NetBT name test. . . . . . . . . . : Passed
No NetBT scope defined
[WARNING] You don't have a single interface with the <00> 'WorkStation
Service', <03> 'Messenger Service', <20> 'WINS' names defined.


Winsock test . . . . . . . . . . . : Passed
The number of protocols which have been reported : 10
Description: MSAFD Tcpip [TCP/IP]
Provider Version :2
Max message size : Stream Oriented
Description: MSAFD Tcpip [UDP/IP]
Provider Version :2
Description: RSVP UDP Service Provider
Provider Version :4
Description: RSVP TCP Service Provider
Provider Version :4
Max message size : Stream Oriented
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}] SEQPACKET 0
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}] DATAGRAM 0
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{A459D2A6-403D-4360-BAA5-4DBC06BBF074}] SEQPACKET 1
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{A459D2A6-403D-4360-BAA5-4DBC06BBF074}] DATAGRAM 1
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{A7884975-8DCC-4080-AA6C-597AE12E6950}] SEQPACKET 2
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{A7884975-8DCC-4080-AA6C-597AE12E6950}] DATAGRAM 2
Provider Version :2

Max UDP size : 65507 bytes


DNS test . . . . . . . . . . . . . : Passed
Interface {BE59304A-A746-48EE-98F7-C3C00D15AEC5}
DNS Domain: longwood.edu
DNS Servers: 159.230.64.70 159.230.64.37
IP Address: 159.230.111.56
The DNS registration is disabled for this interface


Redir and Browser test . . . . . . : Passed
List of transports currently bound to the Redir
NetbiosSmb
NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}
The redir is bound to 1 NetBt transport.

List of transports currently bound to the browser
NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}
The browser is bound to 1 NetBt transport.
Mailslot test for LONGWOOD* passed.


DC discovery test. . . . . . . . . : Passed

Find DC in domain 'LONGWOOD':
Found this DC in domain 'LONGWOOD':
DC. . . . . . . . . . . : \\ctb.longwood.edu
Address . . . . . . . . : \\159.230.64.25
Domain Guid . . . . . . : {54F5125B-7D29-40E8-83FA-9D7D21FD060B}
Domain Name . . . . . . : longwood.edu
Forest Name . . . . . . : longwood.edu
DC Site Name. . . . . . : Default-First-Site-Name
Our Site Name . . . . . : Default-First-Site-Name
Flags . . . . . . . . . : DS KDC TIMESERV WRITABLE DNS_DC DNS_DOMAIN
DNS_FOREST CLOSE_SITE 0x8

Find PDC emulator in domain 'LONGWOOD':
Found this PDC emulator in domain 'LONGWOOD':
DC. . . . . . . . . . . : \\origin.longwood.edu
Address . . . . . . . . : \\159.230.64.70
Domain Guid . . . . . . : {54F5125B-7D29-40E8-83FA-9D7D21FD060B}
Domain Name . . . . . . : longwood.edu
Forest Name . . . . . . : longwood.edu
DC Site Name. . . . . . : Default-First-Site-Name
Our Site Name . . . . . : Default-First-Site-Name
Flags . . . . . . . . . : PDC emulator GC DS KDC TIMESERV WRITABLE
DNS_DC DNS_DOMAIN DNS_FOREST CLOSE_SITE 0x8

Find Windows 2000 DC in domain 'LONGWOOD':
Found this Windows 2000 DC in domain 'LONGWOOD':
DC. . . . . . . . . . . : \\ctb.longwood.edu
Address . . . . . . . . : \\159.230.64.25
Domain Guid . . . . . . : {54F5125B-7D29-40E8-83FA-9D7D21FD060B}
Domain Name . . . . . . : longwood.edu
Forest Name . . . . . . : longwood.edu
DC Site Name. . . . . . : Default-First-Site-Name
Our Site Name . . . . . : Default-First-Site-Name
Flags . . . . . . . . . : DS KDC TIMESERV WRITABLE DNS_DC DNS_DOMAIN
DNS_FOREST CLOSE_SITE 0x8


DC list test . . . . . . . . . . . : Failed
[WARNING] Cannot call DsBind to ctb.longwood.edu (159.230.64.25).
[SEC_E_SECURITY_QOS_FAILED]
List of DCs in Domain 'LONGWOOD':
ctb.longwood.edu
origin.longwood.edu


Trust relationship test. . . . . . : Passed
Test to ensure DomainSid of domain 'LONGWOOD' is correct.
[WARNING] Don't have access to test your domain sid for domain
'LONGWOOD'.
[Test skipped]
Secure channel for domain 'LONGWOOD' is to '\\origin.longwood.edu'.
Secure channel for domain 'LONGWOOD' was successfully set to DC
'\\ctb.longwood.edu'.
Secure channel for domain 'LONGWOOD' was successfully set to DC
'\\origin.longwood.edu'.


Kerberos test. . . . . . . . . . . : Skipped
[WARNING] You are logged on as a local user.
Kerberos cannot be tested.


LDAP test. . . . . . . . . . . . . : Passed

Do un-authenticated LDAP call to 'ctb.longwood.edu'.
Found 1 entries:
Attr: currentTime
Val: 17 20040112203705.0Z
Attr: subschemaSubentry
Val: 58
CN=Aggregate,CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: dsServiceName
Val: 106 CN=NTDS
Settings,CN=CTB,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configurat
ion,DC=longwood,DC=edu
Attr: namingContexts
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Val: 35 CN=Configuration,DC=longwood,DC=edu
Val: 18 DC=longwood,DC=edu
Attr: defaultNamingContext
Val: 18 DC=longwood,DC=edu
Attr: schemaNamingContext
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: configurationNamingContext
Val: 35 CN=Configuration,DC=longwood,DC=edu
Attr: rootDomainNamingContext
Val: 18 DC=longwood,DC=edu
Attr: supportedControl
Val: 22 1.2.840.113556.1.4.319
Val: 22 1.2.840.113556.1.4.801
Val: 22 1.2.840.113556.1.4.473
Val: 22 1.2.840.113556.1.4.528
Val: 22 1.2.840.113556.1.4.417
Val: 22 1.2.840.113556.1.4.619
Val: 22 1.2.840.113556.1.4.841
Val: 22 1.2.840.113556.1.4.529
Val: 22 1.2.840.113556.1.4.805
Val: 22 1.2.840.113556.1.4.521
Val: 22 1.2.840.113556.1.4.970
Val: 23 1.2.840.113556.1.4.1338
Val: 22 1.2.840.113556.1.4.474
Val: 23 1.2.840.113556.1.4.1339
Val: 23 1.2.840.113556.1.4.1340
Val: 23 1.2.840.113556.1.4.1413
Attr: supportedLDAPVersion
Val: 1 3
Val: 1 2
Attr: supportedLDAPPolicies
Val: 14 MaxPoolThreads
Val: 15 MaxDatagramRecv
Val: 16 MaxReceiveBuffer
Val: 15 InitRecvTimeout
Val: 14 MaxConnections
Val: 15 MaxConnIdleTime
Val: 16 MaxActiveQueries
Val: 11 MaxPageSize
Val: 16 MaxQueryDuration
Val: 16 MaxTempTableSize
Val: 16 MaxResultSetSize
Val: 22 MaxNotificationPerConn
Attr: highestCommittedUSN
Val: 7 1501004
Attr: supportedSASLMechanisms
Val: 6 GSSAPI
Val: 10 GSS-SPNEGO
Attr: dnsHostName
Val: 16 ctb.longwood.edu
Attr: ldapServiceName
Val: 30 longwood.edu:[email protected]
Attr: serverName
Val: 89
CN=CTB,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=lo
ngwood,DC=edu
Attr: supportedCapabilities
Val: 22 1.2.840.113556.1.4.800
Val: 23 1.2.840.113556.1.4.1791
Attr: isSynchronized
Val: 4 TRUE
Attr: isGlobalCatalogReady
Val: 5 FALSE
[WARNING] You are logged on as a local user.
(LIZWEIDINGER\Administrator)
Cannot test NTLM Authentication to 'ctb.longwood.edu'.
[WARNING] Failed to query SPN registration on DC 'ctb.longwood.edu'.

Do un-authenticated LDAP call to 'origin.longwood.edu'.
Found 1 entries:
Attr: currentTime
Val: 17 20040112203705.0Z
Attr: subschemaSubentry
Val: 58
CN=Aggregate,CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: dsServiceName
Val: 109 CN=NTDS
Settings,CN=ORIGIN,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configu
ration,DC=longwood,DC=edu
Attr: namingContexts
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Val: 35 CN=Configuration,DC=longwood,DC=edu
Val: 18 DC=longwood,DC=edu
Attr: defaultNamingContext
Val: 18 DC=longwood,DC=edu
Attr: schemaNamingContext
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: configurationNamingContext
Val: 35 CN=Configuration,DC=longwood,DC=edu
Attr: rootDomainNamingContext
Val: 18 DC=longwood,DC=edu
Attr: supportedControl
Val: 22 1.2.840.113556.1.4.319
Val: 22 1.2.840.113556.1.4.801
Val: 22 1.2.840.113556.1.4.473
Val: 22 1.2.840.113556.1.4.528
Val: 22 1.2.840.113556.1.4.417
Val: 22 1.2.840.113556.1.4.619
Val: 22 1.2.840.113556.1.4.841
Val: 22 1.2.840.113556.1.4.529
Val: 22 1.2.840.113556.1.4.805
Val: 22 1.2.840.113556.1.4.521
Val: 22 1.2.840.113556.1.4.970
Val: 23 1.2.840.113556.1.4.1338
Val: 22 1.2.840.113556.1.4.474
Val: 23 1.2.840.113556.1.4.1339
Val: 23 1.2.840.113556.1.4.1340
Val: 23 1.2.840.113556.1.4.1413
Attr: supportedLDAPVersion
Val: 1 3
Val: 1 2
Attr: supportedLDAPPolicies
Val: 14 MaxPoolThreads
Val: 15 MaxDatagramRecv
Val: 16 MaxReceiveBuffer
Val: 15 InitRecvTimeout
Val: 14 MaxConnections
Val: 15 MaxConnIdleTime
Val: 16 MaxActiveQueries
Val: 11 MaxPageSize
Val: 16 MaxQueryDuration
Val: 16 MaxTempTableSize
Val: 16 MaxResultSetSize
Val: 22 MaxNotificationPerConn
Attr: highestCommittedUSN
Val: 7 3556044
Attr: supportedSASLMechanisms
Val: 6 GSSAPI
Val: 10 GSS-SPNEGO
Attr: dnsHostName
Val: 19 origin.longwood.edu
Attr: ldapServiceName
Val: 33 longwood.edu:o[email protected]
Attr: serverName
Val: 92
CN=ORIGIN,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC
=longwood,DC=edu
Attr: supportedCapabilities
Val: 22 1.2.840.113556.1.4.800
Val: 23 1.2.840.113556.1.4.1791
Attr: isSynchronized
Val: 4 TRUE
Attr: isGlobalCatalogReady
Val: 4 TRUE
[WARNING] You are logged on as a local user.
(LIZWEIDINGER\Administrator)
Cannot test NTLM Authentication to 'origin.longwood.edu'.
[WARNING] Failed to query SPN registration on DC 'origin.longwood.edu'.


Routing table test . . . . . . . . : Passed
Active Routes :
Network Destination Netmask Gateway Interface
Metric
0.0.0.0 0.0.0.0 159.230.104.1 159.230.111.56
1
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1
1
159.230.104.0 255.255.248.0 159.230.111.56 159.230.111.56
1
159.230.111.56 255.255.255.255 127.0.0.1 127.0.0.1
1
159.230.255.255 255.255.255.255 159.230.111.56 159.230.111.56
1
224.0.0.0 224.0.0.0 159.230.111.56 159.230.111.56
1
255.255.255.255 255.255.255.255 159.230.111.56 159.230.111.56
1
No persistent route entries.


Netstat information test . . . . . : Passed


Interface Statistics

Received Sent
Unicast Packets 153874 96178
Non-unicast packets 783 15
Discards 0 0
Errors 0 0
Unknown protocols 32 457224

Interface index = 1
Description = MS TCP Loopback interface
Type = 24
MTU = 1500
Speed = 10000000
Physical Address = 00-00-00-00-00-00
Administrative Status = 1
Operational Status = 1
Last Changed = 531000413
Output Queue Length = 0


Interface index = 16777219
Description = Intel DC21143 PCI Fast Ethernet Adapter
Type = 6
MTU = 1500
Speed = 10000000
Physical Address = 00-C0-F0-4C-60-B4
Administrative Status = 1
Operational Status = 1
Last Changed = 531000738
Output Queue Length = 0



Active Connections

Proto Local Address Foreign Address
State
TCP lizweidinger:epmap lizweidinger.longwood.edu:18630
LISTENING
TCP lizweidinger:microsoft-ds lizweidinger.longwood.edu:18670
LISTENING
TCP lizweidinger:1025 lizweidinger.longwood.edu:2128
LISTENING
TCP lizweidinger:1038 lizweidinger.longwood.edu:51369
LISTENING
TCP lizweidinger:1072 lizweidinger.longwood.edu:10329
LISTENING
TCP lizweidinger:1142 lizweidinger.longwood.edu:10373
LISTENING
TCP lizweidinger:1150 lizweidinger.longwood.edu:26820
LISTENING
TCP lizweidinger:1151 lizweidinger.longwood.edu:2102
LISTENING
TCP lizweidinger:1152 lizweidinger.longwood.edu:2064
LISTENING
TCP lizweidinger:1154 lizweidinger.longwood.edu:43244
LISTENING
TCP lizweidinger:netbios-ssn lizweidinger.longwood.edu:59579
LISTENING
TCP lizweidinger:1032 origin.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1033 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1034 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1036 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1037 origin.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1039 origin.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1041 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1042 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1047 origin.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1051 origin.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1055 origin.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1059 origin.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1063 ctb.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1067 origin.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1069 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1070 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1072 origin.longwood.edu:microsoft-ds
ESTABLISHED
TCP lizweidinger:1076 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1077 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1078 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1080 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1081 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1082 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1084 ctb.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1085 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1086 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1088 origin.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1092 ctb.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1107 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1108 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1111 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1112 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1113 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1115 origin.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1123 ctb.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1133 ctb.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1137 ctb.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1139 ctb.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1140 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1142 ctb.longwood.edu:microsoft-ds
ESTABLISHED
TCP lizweidinger:1145 ctb.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1146 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1147 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1149 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1150 origin.longwood.edu:1025
ESTABLISHED
TCP lizweidinger:1151 origin.longwood.edu:1025
ESTABLISHED
TCP lizweidinger:1152 ctb.longwood.edu:ldap
ESTABLISHED
TCP lizweidinger:1153 ctb.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1154 origin.longwood.edu:ldap
ESTABLISHED
TCP lizweidinger:1155 origin.longwood.edu:ldap
TIME_WAIT
UDP lizweidinger:microsoft-ds *:*
UDP lizweidinger:1027 *:*
UDP lizweidinger:1029 *:*
UDP lizweidinger:1121 *:*
UDP lizweidinger:netbios-ns *:*
UDP lizweidinger:netbios-dgm *:*
UDP lizweidinger:isakmp *:*
UDP lizweidinger:4500 *:*


IP Statistics

Packets Received = 969
Received Header Errors = 0
Received Address Errors = 85
Datagrams Forwarded = 0
Unknown Protocols Received = 0
Received Packets Discarded = 0
Received Packets Delivered = 884
Output Requests = 656
Routing Discards = 0
Discarded Output Packets = 0
Output Packet No Route = 0
Reassembly Required = 0
Reassembly Successful = 0
Reassembly Failures = 0
Datagrams successfully fragmented = 0
Datagrams failing fragmentation = 0
Fragments Created = 0
Forwarding = 2
Default TTL = 128
Reassembly timeout = 60


TCP Statistics

Active Opens = 61
Passive Opens = 0
Failed Connection Attempts = 4
Reset Connections = 3
Current Connections = 6
Received Segments = 516
Segment Sent = 467
Segment Retransmitted = 1
Retransmission Timeout Algorithm = vanj
Minimum Retransmission Timeout = 300
Maximum Retransmission Timeout = 240,000
Maximum Number of Connections = -1


UDP Statistics

Datagrams Received = 229
No Ports = 127
Receive Errors = 0
Datagrams Sent = 93


ICMP Statistics

Received Sent
Messages 95 95
Errors 0 0
Destination Unreachable 0 0
Time Exceeded 0 0
Parameter Problems 0 0
Source Quenchs 0 0
Redirects 0 0
Echos 12 12
Echo Replies 83 83
Timestamps 0 0
Timestamp Replies 0 0
Address Masks 0 0
Address Mask Replies 0 0


Bindings test. . . . . . . . . . . : Passed
Component Name : NDIS Usermode I/O Protocol
Bind Name: Ndisuio
Binding Paths:
Owner of the binding path : NDIS Usermode I/O Protocol
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndis5
Upper Component: NDIS Usermode I/O Protocol
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter


Component Name : Point to Point Tunneling Protocol
Bind Name: mspptp
Binding Paths:

Component Name : Layer 2 Tunneling Protocol
Bind Name: msl2tp
Binding Paths:

Component Name : Remote Access NDIS WAN Driver
Bind Name: NdisWan
Binding Paths:
Owner of the binding path : Remote Access NDIS WAN Driver
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiscowan
Upper Component: Remote Access NDIS WAN Driver
Lower Component: Direct Parallel

Owner of the binding path : Remote Access NDIS WAN Driver
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiswan
Upper Component: Remote Access NDIS WAN Driver
Lower Component: WAN Miniport (PPTP)

Owner of the binding path : Remote Access NDIS WAN Driver
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiscowan
Upper Component: Remote Access NDIS WAN Driver
Lower Component: WAN Miniport (L2TP)

Owner of the binding path : Remote Access NDIS WAN Driver
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiswanasync
Upper Component: Remote Access NDIS WAN Driver
Lower Component: RAS Async Adapter


Component Name : Message-oriented TCP/IP Protocol (SMB session)
Bind Name: NetbiosSmb
Binding Paths:

Component Name : WINS Client(TCP/IP) Protocol
Bind Name: NetBT
Binding Paths:
Owner of the binding path : WINS Client(TCP/IP) Protocol
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : WINS Client(TCP/IP) Protocol
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : Internet Protocol (TCP/IP)
Bind Name: Tcpip
Binding Paths:
Owner of the binding path : Internet Protocol (TCP/IP)
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : Internet Protocol (TCP/IP)
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : Client for Microsoft Networks
Bind Name: LanmanWorkstation
Binding Paths:
Owner of the binding path : Client for Microsoft Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios_smb
Upper Component: Client for Microsoft Networks
Lower Component: Message-oriented TCP/IP Protocol (SMB session)

Owner of the binding path : Client for Microsoft Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: Client for Microsoft Networks
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : Client for Microsoft Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: Client for Microsoft Networks
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : Wireless Configuration
Bind Name: wzcsvc
Binding Paths:

Component Name : Steelhead
Bind Name: RemoteAccess
Binding Paths:

Component Name : Dial-Up Server
Bind Name: msrassrv
Binding Paths:

Component Name : Remote Access Connection Manager
Bind Name: RasMan
Binding Paths:

Component Name : Dial-Up Client
Bind Name: msrascli
Binding Paths:

Component Name : File and Printer Sharing for Microsoft Networks
Bind Name: LanmanServer
Binding Paths:
Owner of the binding path : File and Printer Sharing for Microsoft
Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios_smb
Upper Component: File and Printer Sharing for Microsoft Networks
Lower Component: Message-oriented TCP/IP Protocol (SMB session)

Owner of the binding path : File and Printer Sharing for Microsoft
Networks
Binding Enabled: No
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: File and Printer Sharing for Microsoft Networks
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : File and Printer Sharing for Microsoft
Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: File and Printer Sharing for Microsoft Networks
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : NetBIOS Interface
Bind Name: NetBIOS
Binding Paths:
Owner of the binding path : NetBIOS Interface
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: NetBIOS Interface
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : NetBIOS Interface
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: NetBIOS Interface
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : QoS RSVP
Bind Name: RSVP
Binding Paths:

Component Name : Generic Packet Classifier
Bind Name: Gpc
Binding Paths:

Component Name : WAN Miniport (IP)
Bind Name: NdisWanIp
Binding Paths:

Component Name : Direct Parallel
Bind Name: {BB85DAEB-A964-4D6A-85DA-C93C16071437}
Binding Paths:

Component Name : WAN Miniport (PPTP)
Bind Name: {45315226-BB71-4C12-AA75-BD95EBC6A430}
Binding Paths:

Component Name : WAN Miniport (L2TP)
Bind Name: {8CD6ED73-1FB5-45E0-A4BE-EAAB9A887B58}
Binding Paths:

Component Name : RAS Async Adapter
Bind Name: {FD9C6619-2CC3-4073-A99C-396A964D74F2}
Binding Paths:

Component Name : Intel 21143 Based PCI Fast Ethernet Adapter
Bind Name: {BE59304A-A746-48EE-98F7-C3C00D15AEC5}
Binding Paths:



WAN configuration test . . . . . . : Skipped
No active remote access connections.


Modem diagnostics test . . . . . . : Passed

IP Security test . . . . . . . . . : Passed
IPSec policy service is active, but no policy is assigned.

There are 0 filters


The command completed successfully

Any ideas???
Blake

My reasoning - GPO is applied to the computer object before any user ever
logs on.
 
In Blake <[email protected]> posted a question
Then Kevin replied below:

It looks like it is having a problem connecting to the DC "ctb.longwood.edu"
However you are apparently using a member for DNS there is something really
weird going on here.
Your DC list:
ctb.longwood.edu (159.230.64.25)
origin.longwood.edu (159.230.64.70)

Your DNS list:
DNS Servers: 159.230.64.70 159.230.64.37<-----what is this alternate DNS?
What gets me here is you obviously have only two DCs but you are only using
one for DNS the other DNS address is your DHCP and WINS server. AD does not
replicate to members and you seem to have a mix of DNS servers here.

But your Logon domain:
Logon Domain . . . . . . . . . : LIZWEIDINGER
That is the host name of this machine this means you are logged on to the
local machine and have not authenticated to the domain. Until you
authenticate to the domain you can't get GPOs.

That is what I see right off the bat if you would explain the DNS setup and
authenticate to the domain and post back I'll be checking the rest of the
netdiag, in the mean time.
 
origin and ctb are the DCs, correct

159.230.64.37 acts as DNS/DHCP/WINS server. MS says not to run DHCP on a
DC, so we had to have a machine just for network services. It is a member
server, as you point out.

origin -> DC and DNS
CTB -> DC
64.37 -> DNS, DHCP, WINS

It shouldn't be a problem that our backup DNS isn't running on a DC (at
least I don't see why it would be a problem).

Also - GPO is applied to the computer before logon (correct?)

If you can't get GPO before logon, and the computer GPO is applied before
any user logs on - which comes first, chicken or egg?

Thanks for your help.

Blake
 
In Blake <[email protected]> posted a question
Then Kevin replied below:
: origin and ctb are the DCs, correct
:
: 159.230.64.37 acts as DNS/DHCP/WINS server. MS says not to run DHCP
: on a DC, so we had to have a machine just for network services. It
: is a member server, as you point out.
:
: origin -> DC and DNS
: CTB -> DC
: 64.37 -> DNS, DHCP, WINS
:
: It shouldn't be a problem that our backup DNS isn't running on a DC
: (at least I don't see why it would be a problem).

It could be a big security problem, Standard primary and standard secondary
zones have NO security. A member server cannot hold an AD Integrated zone,
they are exclusive to DCs. You can use a member for DNS *IF* all DCs are
using the member for DNS and the forward lookup zone if it is a standard
Primary, you allow dynamic updates to the zone, of if it is a Secondary of
the AD integrated zone on your other DC.

So does this member have a secondary of the AD integrated zone or is it a
standard primary?


:
: Also - GPO is applied to the computer before logon (correct?)
Default GPOs are, but user GPO's are not, user GPO's can only be applied at
user logon.

:
: If you can't get GPO before logon, and the computer GPO is applied
: before any user logs on - which comes first, chicken or egg?

How can it possibly know which GPO to apply to users if they have not logged
on?
There are two types of GPOs those applied to the computer and those applied
to the user. Different users can have different GPOs depending on group
membership and how GPOs are setup.


If you look closely it plainly states you are logged on as a local user
local users have *NO* domain rights at all.
[WARNING] You are logged on as a local user.
(LIZWEIDINGER\Administrator)
Cannot test NTLM Authentication to 'origin.longwood.edu'.
[WARNING] Failed to query SPN registration on DC 'origin.longwood.edu'.
 
: It shouldn't be a problem that our backup DNS isn't running on a DC
: (at least I don't see why it would be a problem).

It could be a big security problem, Standard primary and standard secondary
zones have NO security. A member server cannot hold an AD Integrated zone,
they are exclusive to DCs. You can use a member for DNS *IF* all DCs are
using the member for DNS and the forward lookup zone if it is a standard
Primary, you allow dynamic updates to the zone, of if it is a Secondary of
the AD integrated zone on your other DC.

So does this member have a secondary of the AD integrated zone or is it a
standard primary?

It is as you describe - the DC is an AD integrated primary DNS server, that
member server that acts as our backup DNS is only secondary. Do you see
that as a problem? All our internal servers point first to our DC/DNS, and
secondly to the member server.

: Also - GPO is applied to the computer before logon (correct?)
Default GPOs are, but user GPO's are not, user GPO's can only be applied at
user logon.

:
: If you can't get GPO before logon, and the computer GPO is applied
: before any user logs on - which comes first, chicken or egg?

How can it possibly know which GPO to apply to users if they have not logged
on?
There are two types of GPOs those applied to the computer and those applied
to the user. Different users can have different GPOs depending on group
membership and how GPOs are setup.

I realize that. This problem is specifically with a computer based policy.
The software is applied to the computer account - and that install happens
prior to any user logon. So the computer has to get the DC information with
some kind of credentials (maybe the computer account has the needed
permissions to query DNS for the DCs)
If you look closely it plainly states you are logged on as a local user
local users have *NO* domain rights at all.
[WARNING] You are logged on as a local user.
(LIZWEIDINGER\Administrator)
Cannot test NTLM Authentication to 'origin.longwood.edu'.
[WARNING] Failed to query SPN registration on DC
'origin.longwood.edu'.

True - and I'll try that next and send that on to the group.

Thanks, Kevin.
 
In Blake <[email protected]> posted a question
Then Kevin replied below:
::: It shouldn't be a problem that our backup DNS isn't running on a DC
::: (at least I don't see why it would be a problem).
::
:: It could be a big security problem, Standard primary and standard
:: secondary zones have NO security. A member server cannot hold an AD
:: Integrated zone, they are exclusive to DCs. You can use a member for
:: DNS *IF* all DCs are using the member for DNS and the forward lookup
:: zone if it is a standard Primary, you allow dynamic updates to the
:: zone, of if it is a Secondary of the AD integrated zone on your
:: other DC.
::
:: So does this member have a secondary of the AD integrated zone or is
:: it a standard primary?
:
: It is as you describe - the DC is an AD integrated primary DNS
: server, that member server that acts as our backup DNS is only
: secondary. Do you see that as a problem? All our internal servers
: point first to our DC/DNS, and secondly to the member server.
:
I'm not sure why you have done it this way, becuse from what I can see DNS
is running on both DCs, therefore the AD zone is replicated to both of these
DCs through AD, most of us would only recommend that for domain members to
use the DCs for DNS. Legacy machines like NT4 and Win9x can use the member
with the secondary zone.


:
::: Also - GPO is applied to the computer before logon (correct?)
:: Default GPOs are, but user GPO's are not, user GPO's can only be
:: applied at user logon.
::
:::
::: If you can't get GPO before logon, and the computer GPO is applied
::: before any user logs on - which comes first, chicken or egg?
::
:: How can it possibly know which GPO to apply to users if they have
:: not logged on?
:: There are two types of GPOs those applied to the computer and those
:: applied to the user. Different users can have different GPOs
:: depending on group membership and how GPOs are setup.
:
: I realize that. This problem is specifically with a computer based
: policy. The software is applied to the computer account - and that
: install happens prior to any user logon. So the computer has to get
: the DC information with some kind of credentials (maybe the computer
: account has the needed permissions to query DNS for the DCs)
:
IIRC, the machine gets a list of the GPOs to apply, but they are only
applied when a domain user athenticates on the machine.
I may be wrong about this, I have never tried to apply GPOs to a machine
used by a non-domain user. But it only makes sense that domain resources
should be available to domain users.
 
Have you ever applied a 'package' to a *computer* via GPO? Basically, if
you go into the Active Directory Users and Computers and create an OU where
you put a computer account. Then create a policy under COMPUTER
CONFIGURATION-SOFTWARE SETTINGS - the software is applied to the computer,
and not a user (we want the anti-virus installed on all PCs, regardless of
what user is logged on).

On the 90% that work, the machine POSTS, you get the little deal that says
'Windows is starting up', then you get a window saying 'Installing managed
software blah blah'. Time passes (as the MSI file is applied). When it is
done, you are then prompted to log on. Additionally, the 'cannot find a
domain controller' event is logged BEFORE any logon attempt is made (it is
done at Windows boot, not at a log on).

Does that log I sent before say that DNS is running on BOTH DCs? Also - I
shut off CTB (the DC that doesn't run DNS) and only have DC up - and it
still didn't help.

Thanks again for your time.

Here is the netdiag of an authenticated user.

Gathering IPX configuration information.
Querying status of the Netcard drivers... Passed
Testing IpConfig - pinging the DHCP Server... Passed
Testing IpConfig - pinging the Primary WINS server... Passed
Testing Domain membership... Passed
Gathering NetBT configuration information.
Testing for autoconfiguration... Passed
Testing IP loopback ping... Passed
Testing default gateways... Passed
Enumerating local and remote NetBT name cache... Passed
Testing the WINS server
Local Area Connection
Sending name query to primary WINS server 159.230.64.37 - Passed
There is no secondary WINS server defined for this adapter.
Gathering Winsock information.
Testing DNS
Testing redirector and browser... Passed
Testing DC discovery.
Looking for a DC
Looking for a PDC emulator
Looking for a Windows 2000 DC
Gathering the list of Domain Controllers for domain 'LONGWOOD'
Testing trust relationships... Passed
Testing Kerberos authentication... Passed
Testing LDAP servers in Domain LONGWOOD ...
Gathering routing information
Gathering network statistics information.
Gathering configuration of bindings.
Gathering RAS connection information
Gathering Modem information
Gathering Netware information
Gathering IP Security information

Tests complete.


Computer Name: LIZWEIDINGER
DNS Host Name: lizweidinger.longwood.edu
DNS Domain Name: longwood.edu
System info : Windows 2000 Professional (Build 2195)
Processor : x86 Family 6 Model 8 Stepping 1, GenuineIntel
Hotfixes :
Installed? Name
Yes KB329115
Yes KB819696
Yes KB820888
Yes KB822831
Yes KB823182
Yes KB823559
Yes KB823980
Yes KB824105
Yes KB824141
Yes KB824146
Yes KB825119
Yes KB826232
Yes KB828035
Yes KB828749
Yes KB829558
Yes Q147222
Yes Q816093
Yes Q818043
Yes Q828026
No ServicePackUninstall


Netcard queries test . . . . . . . : Passed

Information of Netcard drivers:

------------------------------------------------------------------------
---
Description: Intel 21143 Based PCI Fast Ethernet Adapter
Device: \DEVICE\{BE59304A-A746-48EE-98F7-C3C00D15AEC5}

Media State: Connected

Device State: Connected
Connect Time: 00:10:29
Media Speed: 10 Mbps

Packets Sent: 1382
Bytes Sent (Optional): 246422

Packets Received: 4222
Directed Pkts Recd (Optional): 1759
Bytes Received (Optional): 1014539
Directed Bytes Recd (Optional): 1014539

------------------------------------------------------------------------
---
[PASS] - At least one netcard is in the 'Connected' state.



Per interface results:

Adapter : Local Area Connection
Adapter ID . . . . . . . . : {BE59304A-A746-48EE-98F7-C3C00D15AEC5}

Netcard queries test . . . : Passed

Adapter type . . . . . . . : Ethernet
Host Name. . . . . . . . . : lizweidinger.longwood.edu
Description. . . . . . . . : Intel DC21143 PCI Fast Ethernet Adapter
Physical Address . . . . . : 00-C0-F0-4C-60-B4
Dhcp Enabled . . . . . . . : Yes
DHCP ClassID . . . . . . . :
Autoconfiguration Enabled. : Yes
IP Address . . . . . . . . : 159.230.111.56
Subnet Mask. . . . . . . . : 255.255.248.0
Default Gateway. . . . . . : 159.230.104.1
DHCP Server. . . . . . . . : 159.230.64.37
Primary WINS Server. . . . : 159.230.64.37
Lease Obtained . . . . . . : Wednesday, January 14, 2004 10:10:29 AM
Lease Expires. . . . . . . : Saturday, January 17, 2004 10:10:29 AM
Dns Servers. . . . . . . . : 159.230.64.70
159.230.64.37

IpConfig results . . . . . : Passed
Pinging DHCP server - reachable
Pinging the Primary WINS server 159.230.64.37 - reachable

AutoConfiguration results. . . . . . : Passed
AutoConfiguration is not in use.

Default gateway test . . . : Passed
Pinging gateway 159.230.104.1 - reachable
At least one gateway reachable for this adapter.

NetBT name test. . . . . . : Passed
NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}
LIZWEIDINGER <00> UNIQUE REGISTERED
LONGWOOD <00> GROUP REGISTERED
LONGWOOD <1E> GROUP REGISTERED
[WARNING] At least one of the <00> 'WorkStation Service', <03>
'Messenger Service', <20> 'WINS' names is missing.

NetBios Resolution : Enabled

Netbios Remote Cache Table
Name Type HostAddress Life [sec]
---------------------------------------------------------------
ADMIN <20> UNIQUE 159.230.64.17 315
CTB.LONGWOOD.ED<55> UNIQUE 159.230.64.25 312
CTB <20> UNIQUE 159.230.64.25 287
WEB <20> UNIQUE 159.230.4.205 487
LONGWOOD <1B> UNIQUE 159.230.64.70 362
LONGWOOD <1C> GROUP 159.230.64.70 362
ORIGIN.LONGWOOD<2E> UNIQUE 159.230.64.70 477


WINS service test. . . . . : Passed
Sending name query to primary WINS server 159.230.64.37 - Passed
There is no secondary WINS server defined for this adapter.
The test was successful. At least one WINS server was found.
IPX test : IPX is not installed on this machine.


Global results:


IP General configuration
LMHOSTS Enabled. . . . . . . . : No
DNS for WINS resolution. . . . : Enabled
Node Type. . . . . . . . . . . : Hybrid
NBT Scope ID . . . . . . . . . :
Routing Enabled. . . . . . . . : No
WINS Proxy Enabled . . . . . . : No
DNS resolution for NETBIOS . . : No



Domain membership test . . . . . . : Passed
Machine is a . . . . . . . . . : Member Workstation
Netbios Domain name. . . . . . : LONGWOOD
Dns domain name. . . . . . . . : longwood.edu
Dns forest name. . . . . . . . : longwood.edu
Domain Guid. . . . . . . . . . : {54F5125B-7D29-40E8-83FA-9D7D21FD060B}
Domain Sid . . . . . . . . . . :
S-1-5-21-1801674531-823518204-2146731321
Logon User . . . . . . . . . . : eweiding
Logon Domain . . . . . . . . . : LONGWOOD
Logon Server . . . . . . . . . : \\CTB


NetBT transports test. . . . . . . : Passed
List of NetBt transports currently configured:
NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}
1 NetBt transport currently configured.


Autonet address test . . . . . . . : Passed
PASS - you have at least one non-autoconfigured IP address


IP loopback ping test. . . . . . . : Passed
PASS - pinging IP loopback address was successful.
Your IP stack is most probably OK.


Default gateway test . . . . . . . : Passed
PASS - you have at least one reachable gateway.


NetBT name test. . . . . . . . . . : Passed
No NetBT scope defined
[WARNING] You don't have a single interface with the <00> 'WorkStation
Service', <03> 'Messenger Service', <20> 'WINS' names defined.


Winsock test . . . . . . . . . . . : Passed
The number of protocols which have been reported : 10
Description: MSAFD Tcpip [TCP/IP]
Provider Version :2
Max message size : Stream Oriented
Description: MSAFD Tcpip [UDP/IP]
Provider Version :2
Description: RSVP UDP Service Provider
Provider Version :4
Description: RSVP TCP Service Provider
Provider Version :4
Max message size : Stream Oriented
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}] SEQPACKET 0
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}] DATAGRAM 0
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{A459D2A6-403D-4360-BAA5-4DBC06BBF074}] SEQPACKET 1
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{A459D2A6-403D-4360-BAA5-4DBC06BBF074}] DATAGRAM 1
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{A7884975-8DCC-4080-AA6C-597AE12E6950}] SEQPACKET 2
Provider Version :2
Description: MSAFD NetBIOS
[\Device\NetBT_Tcpip_{A7884975-8DCC-4080-AA6C-597AE12E6950}] DATAGRAM 2
Provider Version :2

Max UDP size : 65507 bytes


DNS test . . . . . . . . . . . . . : Passed
Interface {BE59304A-A746-48EE-98F7-C3C00D15AEC5}
DNS Domain: longwood.edu
DNS Servers: 159.230.64.70 159.230.64.37
IP Address: 159.230.111.56
The DNS registration is disabled for this interface


Redir and Browser test . . . . . . : Passed
List of transports currently bound to the Redir
NetbiosSmb
NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}
The redir is bound to 1 NetBt transport.

List of transports currently bound to the browser
NetBT_Tcpip_{BE59304A-A746-48EE-98F7-C3C00D15AEC5}
The browser is bound to 1 NetBt transport.
Mailslot test for LONGWOOD* passed.


DC discovery test. . . . . . . . . : Passed

Find DC in domain 'LONGWOOD':
Found this DC in domain 'LONGWOOD':
DC. . . . . . . . . . . : \\ctb.longwood.edu
Address . . . . . . . . : \\159.230.64.25
Domain Guid . . . . . . : {54F5125B-7D29-40E8-83FA-9D7D21FD060B}
Domain Name . . . . . . : longwood.edu
Forest Name . . . . . . : longwood.edu
DC Site Name. . . . . . : Default-First-Site-Name
Our Site Name . . . . . : Default-First-Site-Name
Flags . . . . . . . . . : DS KDC TIMESERV WRITABLE DNS_DC DNS_DOMAIN
DNS_FOREST CLOSE_SITE 0x8

Find PDC emulator in domain 'LONGWOOD':
Found this PDC emulator in domain 'LONGWOOD':
DC. . . . . . . . . . . : \\origin.longwood.edu
Address . . . . . . . . : \\159.230.64.70
Domain Guid . . . . . . : {54F5125B-7D29-40E8-83FA-9D7D21FD060B}
Domain Name . . . . . . : longwood.edu
Forest Name . . . . . . : longwood.edu
DC Site Name. . . . . . : Default-First-Site-Name
Our Site Name . . . . . : Default-First-Site-Name
Flags . . . . . . . . . : PDC emulator GC DS KDC TIMESERV WRITABLE
DNS_DC DNS_DOMAIN DNS_FOREST CLOSE_SITE 0x8

Find Windows 2000 DC in domain 'LONGWOOD':
Found this Windows 2000 DC in domain 'LONGWOOD':
DC. . . . . . . . . . . : \\origin.longwood.edu
Address . . . . . . . . : \\159.230.64.70
Domain Guid . . . . . . : {54F5125B-7D29-40E8-83FA-9D7D21FD060B}
Domain Name . . . . . . : longwood.edu
Forest Name . . . . . . : longwood.edu
DC Site Name. . . . . . : Default-First-Site-Name
Our Site Name . . . . . : Default-First-Site-Name
Flags . . . . . . . . . : PDC emulator GC DS KDC TIMESERV WRITABLE
DNS_DC DNS_DOMAIN DNS_FOREST CLOSE_SITE 0x8


DC list test . . . . . . . . . . . : Passed
List of DCs in Domain 'LONGWOOD':
ctb.longwood.edu
origin.longwood.edu


Trust relationship test. . . . . . : Passed
Test to ensure DomainSid of domain 'LONGWOOD' is correct.
Secure channel for domain 'LONGWOOD' is to '\\ctb.longwood.edu'.
Secure channel for domain 'LONGWOOD' was successfully set to DC
'\\ctb.longwood.edu'.
Secure channel for domain 'LONGWOOD' was successfully set to DC
'\\origin.longwood.edu'.


Kerberos test. . . . . . . . . . . : Passed
Cached Tickets:
Server: krbtgt/LONGWOOD.EDU
End Time: 1/14/2004 18:18:29
Renew Time: 1/19/2004 10:18:29
Server: krbtgt/LONGWOOD.EDU
End Time: 1/14/2004 18:18:29
Renew Time: 1/19/2004 10:18:29
Server: CTB$
End Time: 1/14/2004 18:18:29
Renew Time: 1/19/2004 10:18:29
Server: WEB$
End Time: 1/14/2004 18:18:29
Renew Time: 1/19/2004 10:18:29
Server: ADMIN$
End Time: 1/14/2004 18:18:29
Renew Time: 1/19/2004 10:18:29
Server: ORIGIN$
End Time: 1/14/2004 18:18:29
Renew Time: 1/19/2004 10:18:29
Server: ldap/ctb.longwood.edu/longwood.edu
End Time: 1/14/2004 18:18:29
Renew Time: 1/19/2004 10:18:29
Server: LIZWEIDINGER$
End Time: 1/14/2004 18:18:29
Renew Time: 1/19/2004 10:18:29


LDAP test. . . . . . . . . . . . . : Passed

Do un-authenticated LDAP call to 'ctb.longwood.edu'.
Found 1 entries:
Attr: currentTime
Val: 17 20040114152036.0Z
Attr: subschemaSubentry
Val: 58
CN=Aggregate,CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: dsServiceName
Val: 106 CN=NTDS
Settings,CN=CTB,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configurat
ion,DC=longwood,DC=edu
Attr: namingContexts
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Val: 35 CN=Configuration,DC=longwood,DC=edu
Val: 18 DC=longwood,DC=edu
Attr: defaultNamingContext
Val: 18 DC=longwood,DC=edu
Attr: schemaNamingContext
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: configurationNamingContext
Val: 35 CN=Configuration,DC=longwood,DC=edu
Attr: rootDomainNamingContext
Val: 18 DC=longwood,DC=edu
Attr: supportedControl
Val: 22 1.2.840.113556.1.4.319
Val: 22 1.2.840.113556.1.4.801
Val: 22 1.2.840.113556.1.4.473
Val: 22 1.2.840.113556.1.4.528
Val: 22 1.2.840.113556.1.4.417
Val: 22 1.2.840.113556.1.4.619
Val: 22 1.2.840.113556.1.4.841
Val: 22 1.2.840.113556.1.4.529
Val: 22 1.2.840.113556.1.4.805
Val: 22 1.2.840.113556.1.4.521
Val: 22 1.2.840.113556.1.4.970
Val: 23 1.2.840.113556.1.4.1338
Val: 22 1.2.840.113556.1.4.474
Val: 23 1.2.840.113556.1.4.1339
Val: 23 1.2.840.113556.1.4.1340
Val: 23 1.2.840.113556.1.4.1413
Attr: supportedLDAPVersion
Val: 1 3
Val: 1 2
Attr: supportedLDAPPolicies
Val: 14 MaxPoolThreads
Val: 15 MaxDatagramRecv
Val: 16 MaxReceiveBuffer
Val: 15 InitRecvTimeout
Val: 14 MaxConnections
Val: 15 MaxConnIdleTime
Val: 16 MaxActiveQueries
Val: 11 MaxPageSize
Val: 16 MaxQueryDuration
Val: 16 MaxTempTableSize
Val: 16 MaxResultSetSize
Val: 22 MaxNotificationPerConn
Attr: highestCommittedUSN
Val: 7 1512014
Attr: supportedSASLMechanisms
Val: 6 GSSAPI
Val: 10 GSS-SPNEGO
Attr: dnsHostName
Val: 16 ctb.longwood.edu
Attr: ldapServiceName
Val: 30 longwood.edu:[email protected]
Attr: serverName
Val: 89
CN=CTB,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=lo
ngwood,DC=edu
Attr: supportedCapabilities
Val: 22 1.2.840.113556.1.4.800
Val: 23 1.2.840.113556.1.4.1791
Attr: isSynchronized
Val: 4 TRUE
Attr: isGlobalCatalogReady
Val: 5 FALSE

Do NTLM authenticated LDAP call to 'ctb.longwood.edu'.
Found 1 entries:
Attr: currentTime
Val: 17 20040114152036.0Z
Attr: subschemaSubentry
Val: 58
CN=Aggregate,CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: dsServiceName
Val: 106 CN=NTDS
Settings,CN=CTB,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configurat
ion,DC=longwood,DC=edu
Attr: namingContexts
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Val: 35 CN=Configuration,DC=longwood,DC=edu
Val: 18 DC=longwood,DC=edu
Attr: defaultNamingContext
Val: 18 DC=longwood,DC=edu
Attr: schemaNamingContext
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: configurationNamingContext
Val: 35 CN=Configuration,DC=longwood,DC=edu
Attr: rootDomainNamingContext
Val: 18 DC=longwood,DC=edu
Attr: supportedControl
Val: 22 1.2.840.113556.1.4.319
Val: 22 1.2.840.113556.1.4.801
Val: 22 1.2.840.113556.1.4.473
Val: 22 1.2.840.113556.1.4.528
Val: 22 1.2.840.113556.1.4.417
Val: 22 1.2.840.113556.1.4.619
Val: 22 1.2.840.113556.1.4.841
Val: 22 1.2.840.113556.1.4.529
Val: 22 1.2.840.113556.1.4.805
Val: 22 1.2.840.113556.1.4.521
Val: 22 1.2.840.113556.1.4.970
Val: 23 1.2.840.113556.1.4.1338
Val: 22 1.2.840.113556.1.4.474
Val: 23 1.2.840.113556.1.4.1339
Val: 23 1.2.840.113556.1.4.1340
Val: 23 1.2.840.113556.1.4.1413
Attr: supportedLDAPVersion
Val: 1 3
Val: 1 2
Attr: supportedLDAPPolicies
Val: 14 MaxPoolThreads
Val: 15 MaxDatagramRecv
Val: 16 MaxReceiveBuffer
Val: 15 InitRecvTimeout
Val: 14 MaxConnections
Val: 15 MaxConnIdleTime
Val: 16 MaxActiveQueries
Val: 11 MaxPageSize
Val: 16 MaxQueryDuration
Val: 16 MaxTempTableSize
Val: 16 MaxResultSetSize
Val: 22 MaxNotificationPerConn
Attr: highestCommittedUSN
Val: 7 1512014
Attr: supportedSASLMechanisms
Val: 6 GSSAPI
Val: 10 GSS-SPNEGO
Attr: dnsHostName
Val: 16 ctb.longwood.edu
Attr: ldapServiceName
Val: 30 longwood.edu:[email protected]
Attr: serverName
Val: 89
CN=CTB,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=lo
ngwood,DC=edu
Attr: supportedCapabilities
Val: 22 1.2.840.113556.1.4.800
Val: 23 1.2.840.113556.1.4.1791
Attr: isSynchronized
Val: 4 TRUE
Attr: isGlobalCatalogReady
Val: 5 FALSE

Do Negotiate authenticated LDAP call to 'ctb.longwood.edu'.
Found 1 entries:
Attr: currentTime
Val: 17 20040114152036.0Z
Attr: subschemaSubentry
Val: 58
CN=Aggregate,CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: dsServiceName
Val: 106 CN=NTDS
Settings,CN=CTB,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configurat
ion,DC=longwood,DC=edu
Attr: namingContexts
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Val: 35 CN=Configuration,DC=longwood,DC=edu
Val: 18 DC=longwood,DC=edu
Attr: defaultNamingContext
Val: 18 DC=longwood,DC=edu
Attr: schemaNamingContext
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: configurationNamingContext
Val: 35 CN=Configuration,DC=longwood,DC=edu
Attr: rootDomainNamingContext
Val: 18 DC=longwood,DC=edu
Attr: supportedControl
Val: 22 1.2.840.113556.1.4.319
Val: 22 1.2.840.113556.1.4.801
Val: 22 1.2.840.113556.1.4.473
Val: 22 1.2.840.113556.1.4.528
Val: 22 1.2.840.113556.1.4.417
Val: 22 1.2.840.113556.1.4.619
Val: 22 1.2.840.113556.1.4.841
Val: 22 1.2.840.113556.1.4.529
Val: 22 1.2.840.113556.1.4.805
Val: 22 1.2.840.113556.1.4.521
Val: 22 1.2.840.113556.1.4.970
Val: 23 1.2.840.113556.1.4.1338
Val: 22 1.2.840.113556.1.4.474
Val: 23 1.2.840.113556.1.4.1339
Val: 23 1.2.840.113556.1.4.1340
Val: 23 1.2.840.113556.1.4.1413
Attr: supportedLDAPVersion
Val: 1 3
Val: 1 2
Attr: supportedLDAPPolicies
Val: 14 MaxPoolThreads
Val: 15 MaxDatagramRecv
Val: 16 MaxReceiveBuffer
Val: 15 InitRecvTimeout
Val: 14 MaxConnections
Val: 15 MaxConnIdleTime
Val: 16 MaxActiveQueries
Val: 11 MaxPageSize
Val: 16 MaxQueryDuration
Val: 16 MaxTempTableSize
Val: 16 MaxResultSetSize
Val: 22 MaxNotificationPerConn
Attr: highestCommittedUSN
Val: 7 1512014
Attr: supportedSASLMechanisms
Val: 6 GSSAPI
Val: 10 GSS-SPNEGO
Attr: dnsHostName
Val: 16 ctb.longwood.edu
Attr: ldapServiceName
Val: 30 longwood.edu:[email protected]
Attr: serverName
Val: 89
CN=CTB,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=lo
ngwood,DC=edu
Attr: supportedCapabilities
Val: 22 1.2.840.113556.1.4.800
Val: 23 1.2.840.113556.1.4.1791
Attr: isSynchronized
Val: 4 TRUE
Attr: isGlobalCatalogReady
Val: 5 FALSE

Registered Service Principal Names:
HOST/LIZWEIDINGER
HOST/lizweidinger.longwood.edu

Do un-authenticated LDAP call to 'origin.longwood.edu'.
Found 1 entries:
Attr: currentTime
Val: 17 20040114152036.0Z
Attr: subschemaSubentry
Val: 58
CN=Aggregate,CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: dsServiceName
Val: 109 CN=NTDS
Settings,CN=ORIGIN,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configu
ration,DC=longwood,DC=edu
Attr: namingContexts
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Val: 35 CN=Configuration,DC=longwood,DC=edu
Val: 18 DC=longwood,DC=edu
Attr: defaultNamingContext
Val: 18 DC=longwood,DC=edu
Attr: schemaNamingContext
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: configurationNamingContext
Val: 35 CN=Configuration,DC=longwood,DC=edu
Attr: rootDomainNamingContext
Val: 18 DC=longwood,DC=edu
Attr: supportedControl
Val: 22 1.2.840.113556.1.4.319
Val: 22 1.2.840.113556.1.4.801
Val: 22 1.2.840.113556.1.4.473
Val: 22 1.2.840.113556.1.4.528
Val: 22 1.2.840.113556.1.4.417
Val: 22 1.2.840.113556.1.4.619
Val: 22 1.2.840.113556.1.4.841
Val: 22 1.2.840.113556.1.4.529
Val: 22 1.2.840.113556.1.4.805
Val: 22 1.2.840.113556.1.4.521
Val: 22 1.2.840.113556.1.4.970
Val: 23 1.2.840.113556.1.4.1338
Val: 22 1.2.840.113556.1.4.474
Val: 23 1.2.840.113556.1.4.1339
Val: 23 1.2.840.113556.1.4.1340
Val: 23 1.2.840.113556.1.4.1413
Attr: supportedLDAPVersion
Val: 1 3
Val: 1 2
Attr: supportedLDAPPolicies
Val: 14 MaxPoolThreads
Val: 15 MaxDatagramRecv
Val: 16 MaxReceiveBuffer
Val: 15 InitRecvTimeout
Val: 14 MaxConnections
Val: 15 MaxConnIdleTime
Val: 16 MaxActiveQueries
Val: 11 MaxPageSize
Val: 16 MaxQueryDuration
Val: 16 MaxTempTableSize
Val: 16 MaxResultSetSize
Val: 22 MaxNotificationPerConn
Attr: highestCommittedUSN
Val: 7 3569058
Attr: supportedSASLMechanisms
Val: 6 GSSAPI
Val: 10 GSS-SPNEGO
Attr: dnsHostName
Val: 19 origin.longwood.edu
Attr: ldapServiceName
Val: 33 longwood.edu:o[email protected]
Attr: serverName
Val: 92
CN=ORIGIN,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC
=longwood,DC=edu
Attr: supportedCapabilities
Val: 22 1.2.840.113556.1.4.800
Val: 23 1.2.840.113556.1.4.1791
Attr: isSynchronized
Val: 4 TRUE
Attr: isGlobalCatalogReady
Val: 4 TRUE

Do NTLM authenticated LDAP call to 'origin.longwood.edu'.
Found 1 entries:
Attr: currentTime
Val: 17 20040114152036.0Z
Attr: subschemaSubentry
Val: 58
CN=Aggregate,CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: dsServiceName
Val: 109 CN=NTDS
Settings,CN=ORIGIN,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configu
ration,DC=longwood,DC=edu
Attr: namingContexts
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Val: 35 CN=Configuration,DC=longwood,DC=edu
Val: 18 DC=longwood,DC=edu
Attr: defaultNamingContext
Val: 18 DC=longwood,DC=edu
Attr: schemaNamingContext
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: configurationNamingContext
Val: 35 CN=Configuration,DC=longwood,DC=edu
Attr: rootDomainNamingContext
Val: 18 DC=longwood,DC=edu
Attr: supportedControl
Val: 22 1.2.840.113556.1.4.319
Val: 22 1.2.840.113556.1.4.801
Val: 22 1.2.840.113556.1.4.473
Val: 22 1.2.840.113556.1.4.528
Val: 22 1.2.840.113556.1.4.417
Val: 22 1.2.840.113556.1.4.619
Val: 22 1.2.840.113556.1.4.841
Val: 22 1.2.840.113556.1.4.529
Val: 22 1.2.840.113556.1.4.805
Val: 22 1.2.840.113556.1.4.521
Val: 22 1.2.840.113556.1.4.970
Val: 23 1.2.840.113556.1.4.1338
Val: 22 1.2.840.113556.1.4.474
Val: 23 1.2.840.113556.1.4.1339
Val: 23 1.2.840.113556.1.4.1340
Val: 23 1.2.840.113556.1.4.1413
Attr: supportedLDAPVersion
Val: 1 3
Val: 1 2
Attr: supportedLDAPPolicies
Val: 14 MaxPoolThreads
Val: 15 MaxDatagramRecv
Val: 16 MaxReceiveBuffer
Val: 15 InitRecvTimeout
Val: 14 MaxConnections
Val: 15 MaxConnIdleTime
Val: 16 MaxActiveQueries
Val: 11 MaxPageSize
Val: 16 MaxQueryDuration
Val: 16 MaxTempTableSize
Val: 16 MaxResultSetSize
Val: 22 MaxNotificationPerConn
Attr: highestCommittedUSN
Val: 7 3569059
Attr: supportedSASLMechanisms
Val: 6 GSSAPI
Val: 10 GSS-SPNEGO
Attr: dnsHostName
Val: 19 origin.longwood.edu
Attr: ldapServiceName
Val: 33 longwood.edu:o[email protected]
Attr: serverName
Val: 92
CN=ORIGIN,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC
=longwood,DC=edu
Attr: supportedCapabilities
Val: 22 1.2.840.113556.1.4.800
Val: 23 1.2.840.113556.1.4.1791
Attr: isSynchronized
Val: 4 TRUE
Attr: isGlobalCatalogReady
Val: 4 TRUE

Do Negotiate authenticated LDAP call to 'origin.longwood.edu'.
Found 1 entries:
Attr: currentTime
Val: 17 20040114152036.0Z
Attr: subschemaSubentry
Val: 58
CN=Aggregate,CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: dsServiceName
Val: 109 CN=NTDS
Settings,CN=ORIGIN,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configu
ration,DC=longwood,DC=edu
Attr: namingContexts
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Val: 35 CN=Configuration,DC=longwood,DC=edu
Val: 18 DC=longwood,DC=edu
Attr: defaultNamingContext
Val: 18 DC=longwood,DC=edu
Attr: schemaNamingContext
Val: 45 CN=Schema,CN=Configuration,DC=longwood,DC=edu
Attr: configurationNamingContext
Val: 35 CN=Configuration,DC=longwood,DC=edu
Attr: rootDomainNamingContext
Val: 18 DC=longwood,DC=edu
Attr: supportedControl
Val: 22 1.2.840.113556.1.4.319
Val: 22 1.2.840.113556.1.4.801
Val: 22 1.2.840.113556.1.4.473
Val: 22 1.2.840.113556.1.4.528
Val: 22 1.2.840.113556.1.4.417
Val: 22 1.2.840.113556.1.4.619
Val: 22 1.2.840.113556.1.4.841
Val: 22 1.2.840.113556.1.4.529
Val: 22 1.2.840.113556.1.4.805
Val: 22 1.2.840.113556.1.4.521
Val: 22 1.2.840.113556.1.4.970
Val: 23 1.2.840.113556.1.4.1338
Val: 22 1.2.840.113556.1.4.474
Val: 23 1.2.840.113556.1.4.1339
Val: 23 1.2.840.113556.1.4.1340
Val: 23 1.2.840.113556.1.4.1413
Attr: supportedLDAPVersion
Val: 1 3
Val: 1 2
Attr: supportedLDAPPolicies
Val: 14 MaxPoolThreads
Val: 15 MaxDatagramRecv
Val: 16 MaxReceiveBuffer
Val: 15 InitRecvTimeout
Val: 14 MaxConnections
Val: 15 MaxConnIdleTime
Val: 16 MaxActiveQueries
Val: 11 MaxPageSize
Val: 16 MaxQueryDuration
Val: 16 MaxTempTableSize
Val: 16 MaxResultSetSize
Val: 22 MaxNotificationPerConn
Attr: highestCommittedUSN
Val: 7 3569059
Attr: supportedSASLMechanisms
Val: 6 GSSAPI
Val: 10 GSS-SPNEGO
Attr: dnsHostName
Val: 19 origin.longwood.edu
Attr: ldapServiceName
Val: 33 longwood.edu:o[email protected]
Attr: serverName
Val: 92
CN=ORIGIN,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC
=longwood,DC=edu
Attr: supportedCapabilities
Val: 22 1.2.840.113556.1.4.800
Val: 23 1.2.840.113556.1.4.1791
Attr: isSynchronized
Val: 4 TRUE
Attr: isGlobalCatalogReady
Val: 4 TRUE

Registered Service Principal Names:
HOST/LIZWEIDINGER
HOST/lizweidinger.longwood.edu


Routing table test . . . . . . . . : Passed
Active Routes :
Network Destination Netmask Gateway Interface
Metric
0.0.0.0 0.0.0.0 159.230.104.1 159.230.111.56
1
127.0.0.0 255.0.0.0 127.0.0.1 127.0.0.1
1
159.230.104.0 255.255.248.0 159.230.111.56 159.230.111.56
1
159.230.111.56 255.255.255.255 127.0.0.1 127.0.0.1
1
159.230.255.255 255.255.255.255 159.230.111.56 159.230.111.56
1
224.0.0.0 224.0.0.0 159.230.111.56 159.230.111.56
1
255.255.255.255 255.255.255.255 159.230.111.56 159.230.111.56
1
No persistent route entries.


Netstat information test . . . . . : Passed


Interface Statistics

Received Sent
Unicast Packets 1232238 313023
Non-unicast packets 2441 15
Discards 0 0
Errors 0 0
Unknown protocols 43 457224

Interface index = 1
Description = MS TCP Loopback interface
Type = 24
MTU = 1500
Speed = 10000000
Physical Address = 00-00-00-00-00-00
Administrative Status = 1
Operational Status = 1
Last Changed = 546341063
Output Queue Length = 0


Interface index = 16777219
Description = Intel DC21143 PCI Fast Ethernet Adapter
Type = 6
MTU = 1500
Speed = 10000000
Physical Address = 00-C0-F0-4C-60-B4
Administrative Status = 1
Operational Status = 1
Last Changed = 546341342
Output Queue Length = 0



Active Connections

Proto Local Address Foreign Address
State
TCP lizweidinger:epmap lizweidinger.longwood.edu:59601
LISTENING
TCP lizweidinger:microsoft-ds lizweidinger.longwood.edu:26648
LISTENING
TCP lizweidinger:1025 lizweidinger.longwood.edu:59625
LISTENING
TCP lizweidinger:1038 lizweidinger.longwood.edu:51227
LISTENING
TCP lizweidinger:1128 lizweidinger.longwood.edu:51415
LISTENING
TCP lizweidinger:1140 lizweidinger.longwood.edu:10482
LISTENING
TCP lizweidinger:1145 lizweidinger.longwood.edu:2215
LISTENING
TCP lizweidinger:1167 lizweidinger.longwood.edu:59403
LISTENING
TCP lizweidinger:1168 lizweidinger.longwood.edu:18590
LISTENING
TCP lizweidinger:1171 lizweidinger.longwood.edu:34964
LISTENING
TCP lizweidinger:1178 lizweidinger.longwood.edu:43034
LISTENING
TCP lizweidinger:netbios-ssn lizweidinger.longwood.edu:2276
LISTENING
TCP lizweidinger:1057 ctb.longwood.edu:netbios-ssn
TIME_WAIT
TCP lizweidinger:1060 ctb.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1066 origin.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1071 admin.longwood.edu:netbios-ssn
TIME_WAIT
TCP lizweidinger:1112 ctb.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1113 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1115 ctb.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1116 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1117 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1118 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1119 ctb.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1120 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1121 ctb.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1122 origin.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1124 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1125 ctb.longwood.edu:microsoft-ds
TIME_WAIT
TCP lizweidinger:1127 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1128 admin.longwood.edu:microsoft-ds
ESTABLISHED
TCP lizweidinger:1130 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1133 lizweidinger.longwood.edu:43082
LISTENING
TCP lizweidinger:1133 web.longwood.edu:netbios-ssn
ESTABLISHED
TCP lizweidinger:1134 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1135 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1140 ctb.longwood.edu:microsoft-ds
ESTABLISHED
TCP lizweidinger:1142 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1145 origin.longwood.edu:microsoft-ds
ESTABLISHED
TCP lizweidinger:1155 ctb.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1156 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1157 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1158 lizweidinger.longwood.edu:2048
LISTENING
TCP lizweidinger:1158 ctb.longwood.edu:netbios-ssn
ESTABLISHED
TCP lizweidinger:1159 ctb.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1160 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1162 ctb.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1163 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1164 ctb.longwood.edu:4000
TIME_WAIT
TCP lizweidinger:1166 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1167 origin.longwood.edu:1025
ESTABLISHED
TCP lizweidinger:1168 origin.longwood.edu:1025
ESTABLISHED
TCP lizweidinger:1169 ctb.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1170 ctb.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1171 ctb.longwood.edu:ldap
ESTABLISHED
TCP lizweidinger:1172 ctb.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1173 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1174 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1175 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1176 origin.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1177 origin.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1178 origin.longwood.edu:ldap
ESTABLISHED
TCP lizweidinger:1179 origin.longwood.edu:ldap
TIME_WAIT
TCP lizweidinger:1180 origin.longwood.edu:kerberos
TIME_WAIT
TCP lizweidinger:1181 origin.longwood.edu:epmap
TIME_WAIT
TCP lizweidinger:1182 origin.longwood.edu:1025
TIME_WAIT
TCP lizweidinger:1183 origin.longwood.edu:kerberos
TIME_WAIT
UDP lizweidinger:microsoft-ds *:*
UDP lizweidinger:1027 *:*
UDP lizweidinger:1029 *:*
UDP lizweidinger:1138 *:*
UDP lizweidinger:netbios-ns *:*
UDP lizweidinger:netbios-dgm *:*
UDP lizweidinger:isakmp *:*
UDP lizweidinger:4500 *:*


IP Statistics

Packets Received = 3,046
Received Header Errors = 0
Received Address Errors = 324
Datagrams Forwarded = 0
Unknown Protocols Received = 0
Received Packets Discarded = 0
Received Packets Delivered = 2,722
Output Requests = 1,717
Routing Discards = 0
Discarded Output Packets = 0
Output Packet No Route = 0
Reassembly Required = 0
Reassembly Successful = 0
Reassembly Failures = 0
Datagrams successfully fragmented = 0
Datagrams failing fragmentation = 0
Fragments Created = 0
Forwarding = 2
Default TTL = 128
Reassembly timeout = 60


TCP Statistics

Active Opens = 101
Passive Opens = 0
Failed Connection Attempts = 5
Reset Connections = 2
Current Connections = 9
Received Segments = 1,989
Segment Sent = 1,568
Segment Retransmitted = 0
Retransmission Timeout Algorithm = vanj
Minimum Retransmission Timeout = 300
Maximum Retransmission Timeout = 240,000
Maximum Number of Connections = -1


UDP Statistics

Datagrams Received = 599
No Ports = 126
Receive Errors = 0
Datagrams Sent = 83


ICMP Statistics

Received Sent
Messages 66 66
Errors 0 0
Destination Unreachable 0 0
Time Exceeded 0 0
Parameter Problems 0 0
Source Quenchs 0 0
Redirects 0 0
Echos 8 8
Echo Replies 58 58
Timestamps 0 0
Timestamp Replies 0 0
Address Masks 0 0
Address Mask Replies 0 0


Bindings test. . . . . . . . . . . : Passed
Component Name : NDIS Usermode I/O Protocol
Bind Name: Ndisuio
Binding Paths:
Owner of the binding path : NDIS Usermode I/O Protocol
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndis5
Upper Component: NDIS Usermode I/O Protocol
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter


Component Name : Point to Point Tunneling Protocol
Bind Name: mspptp
Binding Paths:

Component Name : Layer 2 Tunneling Protocol
Bind Name: msl2tp
Binding Paths:

Component Name : Remote Access NDIS WAN Driver
Bind Name: NdisWan
Binding Paths:
Owner of the binding path : Remote Access NDIS WAN Driver
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiscowan
Upper Component: Remote Access NDIS WAN Driver
Lower Component: Direct Parallel

Owner of the binding path : Remote Access NDIS WAN Driver
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiswan
Upper Component: Remote Access NDIS WAN Driver
Lower Component: WAN Miniport (PPTP)

Owner of the binding path : Remote Access NDIS WAN Driver
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiscowan
Upper Component: Remote Access NDIS WAN Driver
Lower Component: WAN Miniport (L2TP)

Owner of the binding path : Remote Access NDIS WAN Driver
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiswanasync
Upper Component: Remote Access NDIS WAN Driver
Lower Component: RAS Async Adapter


Component Name : Message-oriented TCP/IP Protocol (SMB session)
Bind Name: NetbiosSmb
Binding Paths:

Component Name : WINS Client(TCP/IP) Protocol
Bind Name: NetBT
Binding Paths:
Owner of the binding path : WINS Client(TCP/IP) Protocol
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : WINS Client(TCP/IP) Protocol
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : Internet Protocol (TCP/IP)
Bind Name: Tcpip
Binding Paths:
Owner of the binding path : Internet Protocol (TCP/IP)
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : Internet Protocol (TCP/IP)
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : Client for Microsoft Networks
Bind Name: LanmanWorkstation
Binding Paths:
Owner of the binding path : Client for Microsoft Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios_smb
Upper Component: Client for Microsoft Networks
Lower Component: Message-oriented TCP/IP Protocol (SMB session)

Owner of the binding path : Client for Microsoft Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: Client for Microsoft Networks
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : Client for Microsoft Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: Client for Microsoft Networks
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : Wireless Configuration
Bind Name: wzcsvc
Binding Paths:

Component Name : Steelhead
Bind Name: RemoteAccess
Binding Paths:

Component Name : Dial-Up Server
Bind Name: msrassrv
Binding Paths:

Component Name : Remote Access Connection Manager
Bind Name: RasMan
Binding Paths:

Component Name : Dial-Up Client
Bind Name: msrascli
Binding Paths:

Component Name : File and Printer Sharing for Microsoft Networks
Bind Name: LanmanServer
Binding Paths:
Owner of the binding path : File and Printer Sharing for Microsoft
Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios_smb
Upper Component: File and Printer Sharing for Microsoft Networks
Lower Component: Message-oriented TCP/IP Protocol (SMB session)

Owner of the binding path : File and Printer Sharing for Microsoft
Networks
Binding Enabled: No
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: File and Printer Sharing for Microsoft Networks
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : File and Printer Sharing for Microsoft
Networks
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: File and Printer Sharing for Microsoft Networks
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : NetBIOS Interface
Bind Name: NetBIOS
Binding Paths:
Owner of the binding path : NetBIOS Interface
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: NetBIOS Interface
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndis5
Upper Component: Internet Protocol (TCP/IP)
Lower Component: Intel 21143 Based PCI Fast Ethernet Adapter

Owner of the binding path : NetBIOS Interface
Binding Enabled: Yes
Interfaces of the binding path:
-Interface Name: netbios
Upper Component: NetBIOS Interface
Lower Component: WINS Client(TCP/IP) Protocol
-Interface Name: tdi
Upper Component: WINS Client(TCP/IP) Protocol
Lower Component: Internet Protocol (TCP/IP)
-Interface Name: ndiswanip
Upper Component: Internet Protocol (TCP/IP)
Lower Component: WAN Miniport (IP)


Component Name : QoS RSVP
Bind Name: RSVP
Binding Paths:

Component Name : Generic Packet Classifier
Bind Name: Gpc
Binding Paths:

Component Name : WAN Miniport (IP)
Bind Name: NdisWanIp
Binding Paths:

Component Name : Direct Parallel
Bind Name: {BB85DAEB-A964-4D6A-85DA-C93C16071437}
Binding Paths:

Component Name : WAN Miniport (PPTP)
Bind Name: {45315226-BB71-4C12-AA75-BD95EBC6A430}
Binding Paths:

Component Name : WAN Miniport (L2TP)
Bind Name: {8CD6ED73-1FB5-45E0-A4BE-EAAB9A887B58}
Binding Paths:

Component Name : RAS Async Adapter
Bind Name: {FD9C6619-2CC3-4073-A99C-396A964D74F2}
Binding Paths:

Component Name : Intel 21143 Based PCI Fast Ethernet Adapter
Bind Name: {BE59304A-A746-48EE-98F7-C3C00D15AEC5}
Binding Paths:



WAN configuration test . . . . . . : Skipped
No active remote access connections.


Modem diagnostics test . . . . . . : Passed

IP Security test . . . . . . . . . : Passed
IPSec policy service is active, but no policy is assigned.

IPSec Statistics

Oakley Main Modes : 0
Oakley Quick Modes : 0
Active Associations : 0
Soft Associations : 0
Authenticated Bytes Sent : 0
Authenticated Bytes Received : 0
Confidential Bytes Sent : 0
Confidential Bytes Received : 0
Offloaded Bytes Sent : 0
Offloaded Bytes Received : 0
ReKeys : 0

Authentication Failures : 0
Negotiation Failures : 0
Packets not decrypted : 0
Packets not authenticated : 0
Invalid Cookies Rcvd : 0
Acquire fail : 0
Receive fail : 0
Send fail : 0
GetSpiFail : 0
KeyAddFail : 0
KeyUpdateFail : 0

Active Acquire : 1
Active Rcv : 0
Active Send : 0
Total Acquire : 0
TotalGetSpi : 0
TotalKeyAdd : 0
TotalKeyUpdate : 0
Inactive Associations : 0
Dead Associations : 0
Pending Keys : 0
Key Flushes : 0
Key Additions : 0
Key Deletes : 0

Phase 1 offers count is 4
OFFER #1:
PFS : No, Encryption : 3DES, Hash : SHA1, Group : Medium (2)
Quickmodes per MainMode : 0, Lifetime Seconds : 28800
OFFER #2:
PFS : No, Encryption : 3DES, Hash : MD5, Group : Medium (2)
Quickmodes per MainMode : 0, Lifetime Seconds : 28800
OFFER #3:
PFS : No, Encryption : DES, Hash : SHA1, Group : Low (1)
Quickmodes per MainMode : 0, Lifetime Seconds : 28800
OFFER #4:
PFS : No, Encryption : DES, Hash : MD5, Group : Low (1)
Quickmodes per MainMode : 0, Lifetime Seconds : 28800

Current Phase 1 SAs:
No SAs.


Current Phase 2 SAs:
No SAs.




The command completed successfully
 
In Blake <[email protected]> posted a question
Then Kevin replied below:
: Have you ever applied a 'package' to a *computer* via GPO?

Yes I have, That is how I assign MS Office, Perfect disk and Domain
administration tools. I don't see what this have to do with your problem.
There are many things that can cause policies to not apply.
Are there any events in the event log?
On the properties of the GPO is this machine in the group that the policy is
applied to?
Does the computer account or the group the computer is in have at least read
access to the source files?
What does the gpresult command return?
Packages Assigned to Computers with Group Policy Are Not Installed
http://support.microsoft.com/default.aspx?scid=kb;en-us;278472&Product=win2000
 
Hmmm...

The initial problem was that the computer GPO isn't being applied to a small
percentage of our workstations. The only thing they have in common (that I
can find) is that they get the system event 'no domain controller
available'. I have jumped to the conclusion that the inability to find a DC
at system start time is the reason why the GPO isn't being applied.

Our setup only involves 2 DCs and 2 DNS servers. This process works
flawlessly on about 90% of our workstations. But on those it doesn't work,
we get the event logged.

The system event is logged at startup, not at logon. This is when the
computer GPO is supposed to be applied, and when I'm getting the 'no domain
controller' available. Very aggravating. Some people in the group policy
newsgroup suggested it may be a DNS issue, so I posted here.

We have a single OU called McAfee, with a computer policy applied to install
the AV software. 448 our our PCs have installed the software via GP fine.
About 25 have not. ALL of these get the 'no DC available' business.

I appreciate your time (and patience) Kevin.

Blake
 
In Blake <[email protected]> posted a question
Then Kevin replied below:
: Hmmm...
:
: The initial problem was that the computer GPO isn't being applied to
: a small percentage of our workstations. The only thing they have in
: common (that I can find) is that they get the system event 'no domain
: controller available'. I have jumped to the conclusion that the
: inability to find a DC at system start time is the reason why the GPO
: isn't being applied.
:
: Our setup only involves 2 DCs and 2 DNS servers. This process works
: flawlessly on about 90% of our workstations. But on those it doesn't
: work, we get the event logged.
:
: The system event is logged at startup, not at logon. This is when the
: computer GPO is supposed to be applied, and when I'm getting the 'no
: domain controller' available. Very aggravating. Some people in the
: group policy newsgroup suggested it may be a DNS issue, so I posted
: here.
:
: We have a single OU called McAfee, with a computer policy applied to
: install the AV software. 448 our our PCs have installed the software
: via GP fine. About 25 have not. ALL of these get the 'no DC
: available' business.
:
: I appreciate your time (and patience) Kevin.
:
This should log userenv events in the event log what are these events?
 
I get these in the system log at windows start time (pre-logon):

event id 5719

No Domain Controller is available for domain LONGWOOD due to the following:
There are currently no logon servers available to service the logon request.
Make sure that the computer is connected to the network and try again. If
the problem persists, please contact your domain administrator.

OR

No Windows NT or Windows 2000 Domain Controller is available for domain
LONGWOOD. The following error occurred:
There are currently no logon servers available to service the logon request.
 
Back
Top