RODC with NETLOGON 5723 & 5805 EventIDs | Machines in Domain


about 6 months ago, travelled to a remote office had issues machines falling out of domain, more regularly @ our headquarters.  decided deploy rodc @ site, hoping alleviate issue.  since deployment, every machine on site generates eventids netlogon 5805/5723, these machines still in domain.  can remote them, see them authenticated machines, , act if joined.  error reported on rodc. 

perhaps i've done wrong in setting rodc, such prp incorrect or accounts joined machine domain not setup rodc.  on rodc, hit properties , went password replication policy->advanced, , see machines in "accounts been authenticated read-only domain controller".  "accounts passwords stored o nthis read-only domain controller" krbtgt_xxxxx, , rodc itself.  on prp tab of rodc properties, see allowed rodc password replication group "allowed" group.

i not sure occurring here, these windows 2008 r2 servers reporting windows 2008 r2 rodc, compatbility pack not apply(i believe).  there sort of delegation responsbilities need assign rodc?

thanks all,

hello,

what mean "falling out of domain" in detail? loosing machines trust domain?

are machines created image not prepared sysprep?

prp must configured according http://technet.microsoft.com/en-us/library/cc730883(v=ws.10).aspx users , computers on remote site rodc located.


best regards

meinolf weber
mvp, mcp, mcts
microsoft mvp - directory services
my blog: http://msmvps.com/blogs/mweber/

disclaimer: posting provided no warranties or guarantees , confers no rights.



Windows Server  >  Directory Services



Comments

Popular posts from this blog

CRL Revocation always failed

Failed to query the results of bpa xpath

0x300000d errors in Microsoft Remote Desktop client