Changed server IPs, getting errors.


Recommended Posts

I split my network into multiple VLANs putting all the servers into a VLAN and clients on to a separate VLAN.

 

I have changed the server IPs to reflect this.

 

My main DC is 2008 which I am slowly migrating to a new 2012 r2 server, which is currently the secondary DC.

 

Everything seems OK except from the Group Policy Management Console on the 2012, when loading it says:

 

"The specified domain controller cannot be contacted"

 

I can select the Master manually but then I get a different error:

"The RPC Server was unavailable"

 

Most google results relate to firewall issues, however the Windows Firewall is disabled on both servers.

 

2012 server is a VM.

.. I have also noticed I can't access it remotely, I need to go through Hyper V Manager on the host.

 

Any ideas?
 

Link to comment
https://www.neowin.net/forum/topic/1252694-changed-server-ips-getting-errors/
Share on other sites

And what do you have in your AD.. Why did you split them to different vlans?  And your not firewalling between the segments?  What is doing the routing between your segments?

 

Can you give us details of what is routing and what your segments are?  Do you have dns on both servers?  What does dcdiag say ?  https://technet.microsoft.com/en-us/library/cc731968.aspx

^ Exactly -- think maybe they just changed the address space and running both over the same physical network.  Or did they just say lets use 192.168.0.1-254 for clients and 192.168.1.1-254 for servers in our 192.168.0.0/23 ??  Details will help us help you.

  On 07/04/2015 at 10:43, BudMan said:

And what do you have in your AD.. Why did you split them to different vlans?  And your not firewalling between the segments?  What is doing the routing between your segments?

 

Can you give us details of what is routing and what your segments are?  Do you have dns on both servers?  What does dcdiag say ?  https://technet.microsoft.com/en-us/library/cc731968.aspx

 

Because we are coming away from our local authority network and had it reconfigured as a result.. we now have multiple VLANs: servers, printers, wireless APs, finance, workstations.

 

Firewall was just disabled for testing.

VLAN NAME, IP, ADDRESS RANGE, ROUTER, DEFAULT GATEWAY 
VLAN 80 ROUTING NETWORK 10.83.125.208 /28 10.83.125.209 10.83.125.215 
VLAN 81 
VLAN 82 FINANCE 10.83.121.0 /24   10.83.121.1 
VLAN 83 PRINTERS 10.83.122.0 /24   10.83.122.1 
VLAN 84 SERVERS 10.83.123.0 /24   10.83.123.1 
VLAN 85 WIRELESS AP 10.83.124.0 /24   10.83.124.1 
VLAN 86 WORKSTATIONS 10.83.112.0 /24   10.83.112.1 

Yes DNS is on both servers.

     Starting test: FrsEvent

         There are warning or error events within the last 24 hours after the

         SYSVOL has been shared.  Failing SYSVOL replication problems may cause

         Group Policy problems.


     Starting test: NetLogons

         [WVPS-SCH-SRV] User credentials does not have permission to perform

         this operation.

         The account used for this test must have network logon privileges

         for this machine's domain.

         ......................... WVPS-SCH-SRV failed test NetLogons



    Starting test: Replications

         [Replications Check,WVPS-SCH-SRV] DsReplicaGetInfo(PENDING_OPS, NULL)

         failed, error 0x2105 "Replication access was denied."

         ......................... WVPS-SCH-SRV failed test Replications




      Starting test: Services

            Could not open NTDS Service on WVPS-SCH-SRV, error 0x5

            "Access is denied."

         ......................... WVPS-SCH-SRV failed test Services

Seems like some permission errors? Maybe unrelated to the networking changes? It is strange this only happened after network changes, these errors weren't present previously.

Well you might be getting access denied because of dns problems pointing to old IPs, etc..

 

Validate dns with dcdiag..  As to firewalls - not talking software firewall.. What is actually routing between your segments?  A layer 3 switch?  Router/Firewall distro, hardware router?

As budman stated you are probably missing something, a dns entry on your network adapters possibly.   may need to run a ipconfig /registerdns to force an immediate update to dns. 

 

If you have internet access, I would be more than happy to look at this for you.  open up a teamviewer session (go to teamviewer.com) and pm me the id and password.

  On 07/04/2015 at 12:24, BudMan said:

Well you might be getting access denied because of dns problems pointing to old IPs, etc..

 

Validate dns with dcdiag..  As to firewalls - not talking software firewall.. What is actually routing between your segments?  A layer 3 switch?  Router/Firewall distro, hardware router?

 

Cisco Catalyst 3560 v2

 

  On 07/04/2015 at 12:38, Jared- said:

Can you access other VMs on your Hyper-V host remotely? 

 

Yes they seem ok.. We have 3 VMs on the server, one of them is the domain controller which is the only one I am having trouble from.

 

  On 07/04/2015 at 13:05, sc302 said:

As budman stated you are probably missing something, a dns entry on your network adapters possibly.   may need to run a ipconfig /registerdns to force an immediate update to dns. 

 

If you have internet access, I would be more than happy to look at this for you.  open up a teamviewer session (go to teamviewer.com) and pm me the id and password.

 

I am off site now but will give it a go tomorrow.. If I need help I will send you team view details in PM, thanks for the offer.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • That'll be it for my 2018 Mac mini then. There is, of course, OpenCore Legacy Patcher . . .
    • Support cost cutting and nudging people to upgrade for profit. Pure and simple. Nothing as noble as hardware actually becoming "obsolete" about most of the hardware requirements from Apple, Microsoft, or Android companies either. iMac 2017 with AMD running legacy Core still have native GPU support in macOS 15 and run perfectly fine. Doesn't even need any fancy patching outside of the minimum patching needed to get macOS 15 on the system to bypass Apple system requirements aking to running windows 11 on a PC that doesn't match the arbitrary CPU generation requirements that make you bypass them too. You can usually tell if hardware is truly in the realm of "obsolete" if you are having a hard time finding a major Linux distro that'll install on it.
    • >Mozilla's Firefox has been left behind over time in terms of market share, as it has not been able to keep up with Chromium-based browsers in the performance department. I have no problems with Firefox's performance whatsoever. I suspect the reason Firefox is lagging in market share is that average consumers haven't heard of it and are fine with what was installed on their systems.
    • The Expanse: Osiris Reborn is a new narrative-driven sci-fi RPG inspired by Mass Effect by Pulasthi Ariyasinghe Out of nowhere, a narrative-driven sci-fi action RPG has been announced that will take players into the universe of The Expanse TV show and novels. The reveal trailer landed today during the Future Games Showcase, offering both a cinematic look at the setting as well as snippets of gameplay. Check out the The Expanse: Osiris Reborn debut trailer above. The studio behind the project is Owlcat Games. Some may remember that name from being involved in the role-playing titles Pathfinder: Kingmaker, Pathfinder: Wrath of the Righteous, as well as the most recent hugely well-received RPG Warhammer 40,000: Rogue Trader. Now, the studio's sights are set on The Expanse universe, and it's going for the over-the-shoulder third-person gameplay route for the first time. “We’ve been dreaming about building a sci-fi action RPG of this scale for a long time, and The Expanse is the perfect universe to bring that vision to life,” says Owlcat’s Creative Director, Alexander Mishulin. “It’s a world grounded in realism and complexity, perfect for telling a story the way we like it— mature and character-driven, where your choices truly matter." The story will have players taking the role of a custom captain that can be from the Earth, Mars, or the Belt to take control of the most advanced ship currently available. There's a crew to meet and lead, tactical third-person combat, and, as expected from this franchise, a divided solar system to navigate and make decisions on. The studio was also very direct about this experience being inspired by BioWare's Mass Effect trilogy. Aside from the action-heavy gameplay seen in the trailer, Owlcat is promising plenty of political intrigue, as well as romance options for players to dive into. Game Design Producer Yuliya Chernenko added "many of us first played it in our teenage years, and it left a lasting impression," and that "we are building on that legacy and expanding what players anticipate from this experience." The Expanse: Osiris Reborn does not have a release window just yet, but it will be coming out on PC (Steam, Epic Games Store, GOG), Xbox Series X|S, and PlayStation 5.
    • I don't know of anyway other than winareo tweaker to set the font type in Win11. They took that option away!   No wonder people are staying with Win10, or 7.   It's not our computer with Win11.... it's theirs!
  • Recent Achievements

    • Conversation Starter
      Naomi723 earned a badge
      Conversation Starter
    • Week One Done
      abortretryfail earned a badge
      Week One Done
    • First Post
      Mr bot earned a badge
      First Post
    • First Post
      Bkl211 earned a badge
      First Post
    • One Year In
      Mido gaber earned a badge
      One Year In
  • Popular Contributors

    1. 1
      +primortal
      486
    2. 2
      +FloatingFatMan
      256
    3. 3
      snowy owl
      243
    4. 4
      ATLien_0
      222
    5. 5
      +Edouard
      191
  • Tell a friend

    Love Neowin? Tell a friend!