The DNS server has encountered a critical error from the Active Directory. Client cannot authenticated.

Den Pasternak 101 Reputation points
2020-08-09T03:20:03.467+00:00

Hello,

I have four DCs, one of them in personal site. Client in same site could not authenticate in AD because server is not available if I reboot one of DC from other site, for example DC01

On primary DC for this clients (for example DC03), I got error in DNS events

Log Name: DNS Server
Source: Microsoft-Windows-DNS-Server-Service
Event ID: 4015
Task Category: None
Level: Error
Keywords: (131072)
User: SYSTEM
Computer: DC03.contoso.com
Description:
The DNS server has encountered a critical error from the Active Directory. Check that the Active Directory is functioning properly. The extended error debug information (which may be empty) is "". The event data contains the error.

DCDIAG /test:dns /v /e - return that is not errors
16427-mstsc-l0cy4y2386.png

Network configuration for DC03 contains other DCs and self address too (not 127.0.0.1 but real IP) as DNS servers.
Client network configuration have all DC`s IP addresses as DNS servers.

What can it be?

Windows Server 2012
Windows Server 2012
A Microsoft server operating system that supports enterprise-level management, data storage, applications, and communications.
1,525 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,816 questions
Windows DHCP
Windows DHCP
Windows: A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.DHCP: Dynamic Host Configuration Protocol (DHCP). A communications protocol that lets network administrators manage centrally and automate the assignment of Internet Protocol (IP) addresses in an organization's network.
1,021 questions
0 comments No comments
{count} votes

4 answers

Sort by: Most helpful
  1. Vicky Wang 2,646 Reputation points
    2020-08-10T08:35:11.563+00:00

    Hello,

    You need to restart the DNS server from dns management console

    If it still persists, need to reboot the server and check dns service is running or not.

    As already suggested, restart DNS service then verify again.

    Also, this might happen along with other AD DS problems. Check for any event logs about your AD DS, and see if there is any problem of AD DS.

    reference:http://www.eventid.net/display-eventid-4015-source-DNS-eventno-333-phase-1.htm

    Regards,

    Vicky

    0 comments No comments

  2. Vicky Wang 2,646 Reputation points
    2020-08-14T08:53:31.567+00:00

    Hi,
     
    Just checking in to see if the information provided was helpful. Please let us know if you would like further assistance.
     
    Best Regards,
    Vicky

    0 comments No comments

  3. Vicky Wang 2,646 Reputation points
    2020-08-17T07:03:42.56+00:00

    Hi,
     
    Just checking in to see if the information provided was helpful. Please let us know if you would like further assistance.
     
    Best Regards,
    Vicky

    0 comments No comments