AD Users Authetication

Mancharagopan Ponnampalam 1 Reputation point
2022-01-31T04:57:09.297+00:00

We have Windows 2003 Server Enterprise version for our Primary and Secondary AD Servers. Currently our Primary server is down due to raid failure. All the FSMO Maters are in Primary. But according to my knowledge without PDC master users cannot authenticate especially new users. But all the users (existing and new users) can authenticate without any issues.

Anyone have any explanation how is this working?

Windows for business Windows Client for IT Pros Directory services Active Directory
Windows for business Windows Server User experience Other
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Gary Reynolds 9,621 Reputation points
    2022-01-31T06:14:28.033+00:00

    There are a few articles out there about the impact of the PDC FSMO role going off line. Users (new or old) will still be able to authenticate, however, you might start seeing issues if the users enters the wrong password or account lockouts as this is done on the PDC, also time sync could become an issue. There are few other issues that could raise listed in the article below.

    https://learn.microsoft.com/en-us/archive/blogs/bpuhl/what-to-do-with-fsmo-roles

    https://www.windowstechno.com/what-happen-if-pdc-goes-down/

    https://blogs.msmvps.com/acefekay/category/what-happens-if-you-lose-a-fsmo-role/

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.