Thanks for clicking into this thread. I appreciate any help I can get on this matter.<\/p>\n
Advertisement
I’ve been scratching my head for the past day, trying to troubleshoot issues I’m encountering with our Active Directory environment. We just moved into a brand new office space and a lot has changed, especially with our flat network design to a hierarchical network with multiple VLANs. Our domain controllers and physical VMware servers were shut down and moved from the old office space to the new one. Upon getting in Monday morning, I noticed that our Active Directory DNS servers were not working properly. I began investigating and also noticed that domain logins with credentials that were not previously cached was also not possible anymore. I’m wondering if anyone has suggestions on how I can troubleshoot this issue, or if someone has seen something similar. Additionally, what would have been the correct way to move domain controllers?<\/p>\n
For reference,<\/p>\n
\n
\n
Can successfully ping from client VLAN to DCs in server VLAN.<\/p>\n<\/li>\n
\n
Can successfully perform DNS queries from client VLAN to DCs in server VLAN.<\/p>\n<\/li>\n
\n
Can successfully resolve DC hostnames with nslookup.<\/p>\n<\/li>\n
\n
PTR records for DCs were already created.<\/p>\n<\/li>\n
\n
Greyed out _msdcs DNS folder in Forward Lookup Zone was deleted. Attempted to re-register with “ipconfig /registerdns” on DCs.<\/p>\n<\/li>\n
\n
DCs are successfully replicating between each other. Creating/modifying an object on one DC is reflected upon the other DC.<\/p>\n<\/li>\n
Attempted a server restart of all DCs. Attempted a service restart for netlogon, DNS Client, DNS Server, TCP/IP NetBIOS Helper.<\/p>\n<\/li>\n
\n
“Client for Microsoft Networks” NIC property/protocol is installed and enabled.<\/p>\n<\/li>\n
\n
Attempted to troubleshoot with firewall off for Domain, Public, and Private on DCs and client. DCs shares cannot be accessed using FQDN or IP address from File Explorer.<\/p>\n<\/li>\n
\n
No errors in Event Viewer relating to logins or authentications.<\/p>\n<\/li>\n
\n
DCDIAG DNS test results in error 53.<\/p>\n<\/li>\n
\n
Attempting to join a new computer to the domain results in the error “The network path was not found”.<\/p>\n<\/li>\n
\n
Subnets were created in AD Sites and Services to reflect new VLANs. All the new subnets were associated with<\/p>\n<\/li>\n<\/ul>\n
Any and all help is appreciated. Thanks in advance. \nPaul<\/p>","upvoteCount":4,"answerCount":10,"datePublished":"2018-07-10T03:21:52.000Z","author":{"@type":"Person","name":"paulzheng","url":"https://community.spiceworks.com/u/paulzheng"},"suggestedAnswer":[{"@type":"Answer","text":"
Hello,<\/p>\n
Thanks for clicking into this thread. I appreciate any help I can get on this matter.<\/p>\n
I’ve been scratching my head for the past day, trying to troubleshoot issues I’m encountering with our Active Directory environment. We just moved into a brand new office space and a lot has changed, especially with our flat network design to a hierarchical network with multiple VLANs. Our domain controllers and physical VMware servers were shut down and moved from the old office space to the new one. Upon getting in Monday morning, I noticed that our Active Directory DNS servers were not working properly. I began investigating and also noticed that domain logins with credentials that were not previously cached was also not possible anymore. I’m wondering if anyone has suggestions on how I can troubleshoot this issue, or if someone has seen something similar. Additionally, what would have been the correct way to move domain controllers?<\/p>\n
For reference,<\/p>\n
\n
\n
Can successfully ping from client VLAN to DCs in server VLAN.<\/p>\n<\/li>\n
\n
Can successfully perform DNS queries from client VLAN to DCs in server VLAN.<\/p>\n<\/li>\n
\n
Can successfully resolve DC hostnames with nslookup.<\/p>\n<\/li>\n
\n
PTR records for DCs were already created.<\/p>\n<\/li>\n
\n
Greyed out _msdcs DNS folder in Forward Lookup Zone was deleted. Attempted to re-register with “ipconfig /registerdns” on DCs.<\/p>\n<\/li>\n
\n
DCs are successfully replicating between each other. Creating/modifying an object on one DC is reflected upon the other DC.<\/p>\n<\/li>\n
Attempted a server restart of all DCs. Attempted a service restart for netlogon, DNS Client, DNS Server, TCP/IP NetBIOS Helper.<\/p>\n<\/li>\n
\n
“Client for Microsoft Networks” NIC property/protocol is installed and enabled.<\/p>\n<\/li>\n
\n
Attempted to troubleshoot with firewall off for Domain, Public, and Private on DCs and client. DCs shares cannot be accessed using FQDN or IP address from File Explorer.<\/p>\n<\/li>\n
\n
No errors in Event Viewer relating to logins or authentications.<\/p>\n<\/li>\n
\n
DCDIAG DNS test results in error 53.<\/p>\n<\/li>\n
\n
Attempting to join a new computer to the domain results in the error “The network path was not found”.<\/p>\n<\/li>\n
\n
Subnets were created in AD Sites and Services to reflect new VLANs. All the new subnets were associated with<\/p>\n<\/li>\n<\/ul>\n
Any and all help is appreciated. Thanks in advance. \nPaul<\/p>","upvoteCount":4,"datePublished":"2018-07-10T03:21:52.000Z","url":"https://community.spiceworks.com/t/troubleshooting-domain-logon-and-dns-issues/661003/1","author":{"@type":"Person","name":"paulzheng","url":"https://community.spiceworks.com/u/paulzheng"}},{"@type":"Answer","text":"
Can you ping your domain?<\/p>\n
Check the Advanced section of the TCP/IP properties DNS is set to “Append primary and connection specific DNS suffixes” \nand the checkbox beneath it should be ticked as well<\/p>\n
Do a ipconfig /all to see, if your DHCP hands out a domain information.<\/p>","upvoteCount":0,"datePublished":"2018-07-10T03:36:33.000Z","url":"https://community.spiceworks.com/t/troubleshooting-domain-logon-and-dns-issues/661003/2","author":{"@type":"Person","name":"bikerpete","url":"https://community.spiceworks.com/u/bikerpete"}},{"@type":"Answer","text":"