Ask the Expert

AD permissions error issues

I have a problem with my AD that I think is caused by a sysvol problem. I have two Domain Controllers. The first one has all FSMO roles except RID master. The server starts and appears to run with no errors in event log. If I run "dcdiag" I get an error: "No record of File Replication System" The AD may be prevented from starting.
For the second Domain Controller, I get event log error 13508 -- "frs problem sysvol not shared." The same error as above shows up running dcdiag. Both DCs are global catalog servers and run DNS. The problem first occurred after a UPS failure caused both servers to shut down. The problem is that I can add new objects to the AD, but if I try to give user permissions on, say, a new PC, I get the error that the domain does not exist after choosing the user from a list.
Additional information from frs log files:
DC1 - error invalid partner
DC2 - error access denied

This obviously looks like a permissions problem but I have checked these and they appear OK. Also, I tried to run adsiedit on DC1 and got error "name not available CLSID:"

Requires Free Membership to View

I found possible solutions at:

 Editor's Note: For more on Active Directory, visit our online learning guides below.
Active Directory Learning Guide: Planning/Designing
Active Directory Learning Guide: Managing

This was first published in August 2004

There are Comments. Add yours.

TIP: Want to include a code block in your comment? Use <pre> or <code> tags around the desired text. Ex: <code>insert code</code>

REGISTER or login:

Forgot Password?
By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy
Sort by: OldestNewest

Forgot Password?

No problem! Submit your e-mail address below. We'll send you an email containing your password.

Your password has been sent to: