I've in the process of upgrading my test domain (empty root and 1 child) to w2k3 R2 based DCs and (thanks to help from the friendly folks here) am just about done. I have one last w2k dc left to remove. It doesn't want to go peacefully.

I moved the FSMO roles off and the next day tried to dcpromo it down to a simple server. I get

Managing the network session with FBDC1.fnal.gov failed

"Access is denied. "
dcpromoui t:0x848 00479 Exit State::GetFailureMessage The operation failed because:

Managing the network session with FBDC1.fnal.gov failed

A quick check shows that I can't get to the admin shares of my new w2k3 dc/FSMO role holder from the w2k dc. I can get to the admin shares of the other simple servers but not either of the 2 DCs. Other systems can access the admin shares via the domain admin account I'm using on the w2k DC.

I've been searching and have found people having a similar problem when promoting a w2k machine to be a DC but not when demoting. I've tried a number of the things that were suggested in those articles and they have had no affect.

There is no firewall in the way. AD replication and FRS work.

Any ideas before I rip it out?

        al

--

Al Lilianstrom
CD/CSS/CSI
[EMAIL PROTECTED]
List info   : http://www.activedir.org/List.aspx
List FAQ    : http://www.activedir.org/ListFAQ.aspx
List archive: http://www.activedir.org/ml/threads.aspx

Reply via email to