G
Guest
Hello,
i have a windows 2000 AD with all patches.
i have 2 DCs, DC1 and DC2 on 2 differents sites
the PDC role is on DC3 in the same site as DC1.
replication works from DC2 to DC1 but not from DC1 to DC2.
i have those event on DC2:
id event 1311 and 1566 (Directory service part) every 15 min
id event 13508 (replication part)
id event 594 (system) every minute
the last event is provided after have enabled the debug mode for kerberos.
the error is KRB_AP_ERR_MODIFIED (0x29)
on DC1:
id event 13508
i have looked at a lot of microsoft document and from third party (Q307593,
Q268109, troubleshooting kerberos errors...).
for 1311 and 1566 i've checked everything.
my DNS is clear, my topology is clear, my sites are well configured,
i tried repadmin \sync DC2 <guid of DC1> to force but i have the following
message:
dsrecplicasync failed with status 5
access denied.
i tried to reset my machine account with no more succes.
(netdom resetpwd /serverC1) from DC2
also (netdom resetpwd /serverC3) from DC2
does someone could help me with this kerberos problem ?
thank you in advance
i have a windows 2000 AD with all patches.
i have 2 DCs, DC1 and DC2 on 2 differents sites
the PDC role is on DC3 in the same site as DC1.
replication works from DC2 to DC1 but not from DC1 to DC2.
i have those event on DC2:
id event 1311 and 1566 (Directory service part) every 15 min
id event 13508 (replication part)
id event 594 (system) every minute
the last event is provided after have enabled the debug mode for kerberos.
the error is KRB_AP_ERR_MODIFIED (0x29)
on DC1:
id event 13508
i have looked at a lot of microsoft document and from third party (Q307593,
Q268109, troubleshooting kerberos errors...).
for 1311 and 1566 i've checked everything.
my DNS is clear, my topology is clear, my sites are well configured,
i tried repadmin \sync DC2 <guid of DC1> to force but i have the following
message:
dsrecplicasync failed with status 5
access denied.
i tried to reset my machine account with no more succes.
(netdom resetpwd /serverC1) from DC2
also (netdom resetpwd /serverC3) from DC2
does someone could help me with this kerberos problem ?
thank you in advance