_msdcs.zone in DNS not forest replicated

J Z 21 Reputation points
2022-02-02T15:20:23.153+00:00

HI I have question about default zone _msdcs.root.forest.net. I have promoted new tree domain in existing forest, domain controllers is replicating fine with root domain, but on new tree domain controller DNS this zone is missing. When I check _msdcs.root.forest.net on root domain, zone is configured to only replicate all domain controlers in this domain (for windows 2000 compatibility), its necessary to change replication of this zone to all domain controller in forest ? Is there some chance to broke something. On root domain is bunch of old w2008r2 controllers and others is w2016. Its safe to change this?

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,244 questions
Windows Network
Windows Network
Windows: A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.Network: A group of devices that communicate either wirelessly or via a physical connection.
712 questions
Windows DHCP
Windows DHCP
Windows: A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.DHCP: Dynamic Host Configuration Protocol (DHCP). A communications protocol that lets network administrators manage centrally and automate the assignment of Internet Protocol (IP) addresses in an organization's network.
1,035 questions
0 comments No comments
{count} votes

3 answers

Sort by: Most helpful
  1. J Z 21 Reputation points
    2022-02-02T17:29:13.24+00:00

    Well i have use condittional forwarder in root domain, which point to tree domain dns and it works, also in tree domain also works conditional forwarder to root domain dns servers, question is that is neccesary to replicate _msdcs.root.domain.com to treee domain DNS server, by default it is replicated forest wide but in our case zone is only domain replicated in root domain, for unknown reason.
    Thank for your sugesstion DSPatrick.

    0 comments No comments

  2. Limitless Technology 39,511 Reputation points
    2022-02-03T08:15:56.933+00:00

    Hi there,

    The cause of this issue is that, in the DomainDNSZones partition, we already have an entry for this Zone. Changing the replication scope tries to recreate the Entry which Conflicts with the existing Entries and hence does not allow.

    To resolve this issue, the following solution is considerable:

    1. Change the Zone type from Active Directory-integrated to Standard primary Zone
    2. Go to adsiedit and connect to DomainDNSZones

    Here is a thread as well that discusses the same issue and you can try out some troubleshooting steps from this and see if that helps you to sort the Issue.

    DNS Zone Replication: reconfigure an _msdcs subdomain to a forest-wide DNS application directory partition. Server Failure
    https://social.technet.microsoft.com/Forums/en-US/e3c841ff-be02-411a-8411-0711e6e0fd01/dns-zone-replication-reconfigure-an-msdcs-subdomain-to-a-forestwide-dns-application-directory?forum=winservergen


    --If the reply is helpful, please Upvote and Accept it as an answer--

    0 comments No comments