Hi there.
We have a small LAN with about 10 workstations, a W2k3 application server and a W2k DC. They have been having a few problems which became worse today...users now cannot logon through AD and the error message above is what I get when trying to open ADUC.
I've been d1cking about most of the day trying to fix this and have run netdiag /q which gives me the result, 'cannot call dsbind to XXX (sec_e_wrong_principal)'. When I run net diag /test:dns /debug this appears OK.
I've followed a lot of the guides on the net which have involved stopping and starting various services, rebooting and checking DNS which looks fine. I also tried to promote the second server to a DC but this obviously wasn't going to work as neither machines can contact the domain.
When I attempt to run dcdiag I also get the error LDAP bind failed with error 31.
I'm almost at the stage where I'm going to dcpromo /forceremoval (if it'll let me!) and then reinstall AD meaing that I'm going to have to reintroduce users machines etc. I really don' want to do that. Has anybody got any suggestion? Bear in mind that this is a single DC.
Ta in advance.
We have a small LAN with about 10 workstations, a W2k3 application server and a W2k DC. They have been having a few problems which became worse today...users now cannot logon through AD and the error message above is what I get when trying to open ADUC.
I've been d1cking about most of the day trying to fix this and have run netdiag /q which gives me the result, 'cannot call dsbind to XXX (sec_e_wrong_principal)'. When I run net diag /test:dns /debug this appears OK.
I've followed a lot of the guides on the net which have involved stopping and starting various services, rebooting and checking DNS which looks fine. I also tried to promote the second server to a DC but this obviously wasn't going to work as neither machines can contact the domain.
When I attempt to run dcdiag I also get the error LDAP bind failed with error 31.
I'm almost at the stage where I'm going to dcpromo /forceremoval (if it'll let me!) and then reinstall AD meaing that I'm going to have to reintroduce users machines etc. I really don' want to do that. Has anybody got any suggestion? Bear in mind that this is a single DC.
Ta in advance.