Remote Site communication


we have approox 55 domain controller. spread across various site in country. each site associated proper subnet. each site has 1 or 2 domain controller service clients(all domain controller gc). have noticed client different sites communicating domain controllers in primary site getting suthenticated local dc. dns settings on clients fine , pointing nearest dc's. across wan authentication increases traffic largely.this single forest- single domain architecture.
  
we have enabled netlogon loggin on few of clinets , found result below:
  
====================================================================================================
  

07/11 09:21:18 [misc] netpdcgetname: domain permanently negative cached.

07/11 09:21:18 [misc] dsgetdcname function returns 1355: dom:(null) acct:(null) flags: ds writable background ret_netbios

07/11 09:21:18 [logon] samlogon: network logon of domain\user workstation1 entered

07/11 09:21:18 [session] domain: nlsessionsetup: try session setup

07/11 09:21:18 [session] domain: nldiscoverdc: start synchronous discovery

07/11 09:21:18 [mailslot] sent 'sam logon' message domain[1c] on transports.

07/11 09:21:18 [critical] nlbrowsersenddatagram: no transports available

07/11 09:21:18 [critical] netpdcgetnamenetbios: domain: cannot nlbrowsersenddatagram. (1c) 53

07/11 09:21:18 [critical] netpdcgetname: domain: ip , netbios both done.

07/11 09:21:18 [critical] domain: nldiscoverdc: cannot find dc.

07/11 09:21:18 [critical] domain: nlsessionsetup: session setup: cannot pick trusted dc

07/11 09:21:18 [misc] eventlog: 5719 (1) "domain" 0xc000005e c000005e   ^...

07/11 09:21:18 [session] domain: nlsetstatusclientsession: set connection status c000005e

07/11 09:21:18 [session] domain: nlsessionsetup: session setup failed

07/11 09:21:18 [logon] samlogon: network logon of domain\user workstation1 returns 0xc000005e

07/11 09:21:18 [misc] dsrenumeratedomaintrusts: called, flags = 0x9

07/11 09:21:18 [misc] dsrenumeratedomaintrusts: returns: 0

07/11 09:21:19 [logon] samlogon: network logon of domain\user workstation1 entered

07/11 09:21:19 [logon] samlogon: network logon of domain\user workstation1 returns 0xc000005e

07/11 09:21:20 [misc] dsgetdcname function called: dom:(null) acct:(null) flags: background ret_dns

07/11 09:21:20 [misc] netpdcgetname: domain similar query failed 2032

07/11 09:21:20 [misc] dsgetdcname function returns 1355: dom:(null) acct:(null) flags: background ret_dns

07/11 09:21:22 [misc] dsgetdcname function called: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 09:21:22 [critical] netpdcgetdcnext: _ldap._tcp.local site._sites.dc._msdcs.domainrootdc.domain.in.: cannot query dns. 9852 0x267c

07/11 09:21:22 [critical] netpdcgetnameip: domainrootdc.domain.in: ip not configured dnsquery.

07/11 09:21:22 [critical] netpdcgetname: domainrootdc.domain.in: ip , netbios both done.

07/11 09:21:22 [misc] dsgetdcname function returns 1355: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 09:21:22 [misc] dsgetdcname function called: dom:domainrootdc.domain.in acct:(null) flags: ds writable netbios ret_dns

07/11 09:21:22 [misc] dsgetdcname function returns 1212: dom:domainrootdc.domain.in acct:(null) flags: ds writable netbios ret_dns

07/11 09:21:22 [misc] dsgetdcname function called: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 09:21:22 [misc] netpdcgetname: domainrootdc.domain.in similar query failed 32

07/11 09:21:22 [misc] dsgetdcname function returns 1355: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 09:21:22 [misc] dsgetdcname function called: dom:domainrootdc.domain.in acct:(null) flags: ds writable netbios ret_dns

07/11 09:21:22 [misc] dsgetdcname function returns 1212: dom:domainrootdc.domain.in acct:(null) flags: ds writable netbios ret_dns

07/11 09:21:46 [misc] dsrenumeratedomaintrusts: called, flags = 0x3

07/11 09:21:46 [misc] dsrenumeratedomaintrusts: returns: 0

07/11 09:21:49 [misc] dsgetdcname function called: dom:domain acct:(null) flags: ip kdc

07/11 09:21:49 [mailslot] sent 'sam logon' message domain[1c] on transports.

07/11 09:21:49 [critical] nlbrowsersenddatagram: no transports available

07/11 09:21:49 [critical] netpdcgetnamenetbios: domain: cannot nlbrowsersenddatagram. (1c) 53

07/11 09:21:49 [critical] netpdcgetname: domain: ip , netbios both done.

07/11 09:21:49 [misc] dsgetdcname function returns 1355: dom:domain acct:(null) flags: ip kdc

07/11 09:21:49 [logon] samlogon: interactive logon of domain\user workstation1 entered

07/11 09:21:49 [logon] samlogon: interactive logon of domain\user workstation1 returns 0xc000005e

07/11 09:23:50 [session] winsock addrs: 192.168.1.226 (1) list used empty.

07/11 09:23:56 [session] \device\netbt_tcpip_{3f3bf119-7d91-4e78-a94f-d359d709da00}: transport added (192.168.1.226)

07/11 09:23:56 [session] domain:      zero lastauth

07/11 09:23:56 [session] winsock addrs: (0) list empty.

07/11 09:23:56 [session] winsock addrs: 192.168.1.226 (1) list used empty.

07/11 09:23:59 [session] \device\netbt_tcpip_{3f3bf119-7d91-4e78-a94f-d359d709da00}: transport removed

07/11 09:24:05 [session] \device\netbt_tcpip_{3f3bf119-7d91-4e78-a94f-d359d709da00}: transport added (192.168.1.226)

07/11 09:24:05 [session] domain:      zero lastauth

07/11 09:26:19 [misc] dsgetdcname function called: dom:(null) acct:(null) flags: ds writable background ret_netbios

07/11 09:26:19 [mailslot] netpdcpinglistip: domain.in.: sent udp ping 192.168.1.33

07/11 09:26:19 [misc] dsgetdcname function returns 0: dom:(null) acct:(null) flags: ds writable background ret_netbios

07/11 09:26:19 [misc] dsgetdcname function called: dom:(null) acct:(null) flags: force ds writable background ret_netbios

07/11 09:26:19 [mailslot] netpdcpinglistip: domain.in.: sent udp ping 192.168.1.33

07/11 09:26:19 [misc] dsgetdcname function returns 0: dom:(null) acct:(null) flags: force ds writable background ret_netbios

07/11 09:36:12 [misc] nlwksscavenger: can called again in 28 days (0x922c6291)

07/11 09:36:12 [misc] dsgetdcname function called: dom:domain.in acct:(null) flags: ip kdc

07/11 09:36:12 [misc] netpdcgetname: domain.in using cached information

07/11 09:36:12 [misc] dsgetdcname function returns 0: dom:domain.in acct:(null) flags: ip kdc

07/11 09:36:12 [misc] dsgetdcname function called: dom:(null) acct:(null) flags: ds background

07/11 09:36:12 [misc] netpdcgetname: domain.in. using cached information

07/11 09:36:12 [misc] dsgetdcname function returns 0: dom:(null) acct:(null) flags: ds background

07/11 09:38:56 [site] dsrgetsitename: site name 'local site' old. getting new 1 dc.

07/11 09:38:56 [session] domain: nldiscoverdc: start synchronous discovery

07/11 09:38:56 [mailslot] netpdcpinglistip: domain.in.: sent udp ping 192.168.1.33

07/11 09:38:56 [session] domain: nldiscoverdc: found dc \\adc1.domain.in

07/11 09:38:56 [mailslot] netpdcpinglistip: domain.in.: sent udp ping 192.168.1.33

07/11 09:38:56 [misc] nlpingdcnamewithcontext: sent 1/1 ldap pings adc1.domain.in

07/11 09:38:56 [misc] nlpingdcnamewithcontext: adc1.domain.in responded on ip.

07/11 09:38:56 [misc] dsgetdcname function called: dom:(null) acct:(null) flags: ip timeserv avoidself background

07/11 09:38:56 [misc] netpdcgetname: domain.in. using cached information

07/11 09:38:56 [misc] dsgetdcname function returns 0: dom:(null) acct:(null) flags: ip timeserv avoidself background

07/11 09:38:56 [session] domain: nlsessionsetup: try session setup

07/11 09:38:56 [session] domain: nlsetstatusclientsession: set connection status 0

07/11 09:38:56 [domain] setting lsa netbiosdomain: domain dnsdomain: domain.in. dnstree: domain.in. domainguid:828f7de4-2c88-4f1e-99f0-ddc401dd9cf2

07/11 09:38:56 [logon] nlsetforesttrustlist: new trusted domain list:

07/11 09:38:56 [logon]     0: domain domain.in (nt 5) (forest tree root) (primary domain) (native)

07/11 09:38:56 [logon]        dom guid: 828f7de4-2c88-4f1e-99f0-ddc401dd9cf2

07/11 09:38:56 [logon]        dom sid: s-1-5-21-1645044700-3448773816-3630254967

07/11 09:38:56 [session] domain: nlsetstatusclientsession: set connection status 0

07/11 09:38:56 [session] domain: nlsessionsetup: session setup succeeded

07/11 09:41:20 [misc] dsgetdcname function called: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 09:41:20 [critical] netpdcgetnameip: domainrootdc.domain.in: no data returned dnsquery.

07/11 09:41:20 [critical] netpdcgetname: domainrootdc.domain.in: ip , netbios both done.

07/11 09:41:20 [misc] dsgetdcname function returns 1355: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 09:41:20 [misc] dsgetdcname function called: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 09:41:20 [misc] netpdcgetname: domainrootdc.domain.in similar query failed 438

07/11 09:41:20 [misc] dsgetdcname function returns 1355: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 09:41:56 [session] domain: nltimeoutapiclientsession: unbind server \\adc1.domain.in (tcp) 0.

07/11 09:51:12 [misc] nlwksscavenger: can called again in 28 days (0x921ea6d2)

07/11 09:51:12 [misc] dsgetdcname function called: dom:(null) acct:(null) flags: ds background

07/11 09:51:12 [misc] netpdcgetname: domain.in. using cached information

07/11 09:51:12 [misc] dsgetdcname function returns 0: dom:(null) acct:(null) flags: ds background

07/11 09:52:13 [misc] dsrenumeratedomaintrusts: called, flags = 0x3

07/11 09:52:13 [misc] domain: dsrenumeratedomaintrusts: domain list collected \\adc1.domain.in

07/11 09:52:13 [domain] setting lsa netbiosdomain: domain dnsdomain: domain.in. dnstree: domain.in. domainguid:828f7de4-2c88-4f1e-99f0-ddc401dd9cf2

07/11 09:52:13 [logon] nlsetforesttrustlist: new trusted domain list:

07/11 09:52:13 [logon]     0: domain domain.in (nt 5) (forest tree root) (primary domain) (native)

07/11 09:52:13 [logon]        dom guid: 828f7de4-2c88-4f1e-99f0-ddc401dd9cf2

07/11 09:52:13 [logon]        dom sid: s-1-5-21-1645044700-3448773816-3630254967

07/11 09:52:13 [misc] dsrenumeratedomaintrusts: returns: 0

07/11 09:52:18 [misc] dsgetdcname function called: dom:domain acct:(null) flags: ip kdc

07/11 09:52:18 [misc] netpdcgetname: domain.in. using cached information

07/11 09:52:18 [misc] dsgetdcname function returns 0: dom:domain acct:(null) flags: ip kdc

07/11 09:55:13 [session] domain: nltimeoutapiclientsession: unbind server \\adc1.domain.in (tcp) 0.

07/11 10:01:19 [misc] dsgetdcname function called: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 10:01:19 [critical] netpdcgetnameip: domainrootdc.domain.in: no data returned dnsquery.

07/11 10:01:19 [critical] netpdcgetname: domainrootdc.domain.in: ip , netbios both done.

07/11 10:01:19 [misc] dsgetdcname function returns 1355: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 10:01:21 [misc] dsgetdcname function called: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 10:01:21 [misc] netpdcgetname: domainrootdc.domain.in similar query failed 1453

07/11 10:01:21 [misc] dsgetdcname function returns 1355: dom:domainrootdc.domain.in acct:(null) flags: ds writable dns ret_dns

07/11 10:06:12 [misc] nlwksscavenger: can called again in 28 days (0x9210eb15)

==============================================================================================================

  

in above can see client login in using adc1 local clinet using function dsgetdc domainrootdc in ho site.

please me understand why , how rectify same.

  

hello,

make sure ad sites , services configured correct: http://technet.microsoft.com/en-us/library/cc730868.aspx

for dclocator process see jorge's great articles: http://blogs.dirteam.com/blogs/jorge/search.aspx?q=locator&p=1


best regards meinolf weber disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights.


Windows Server  >  Directory Services



Comments

Popular posts from this blog

CRL Revocation always failed

Failed to query the results of bpa xpath

0x300000d errors in Microsoft Remote Desktop client