Saturday, November 15, 2014






If you have issue with your Domain controller or any ADC where the netlogon service went into paused state whenever the server started or the when the server is running. 

If the netlogon service is not running then no other computers can connect to it. In the case of a domain controller it effects the whole domain. No other services can work until the netlogon service is running.




There are three things you can check on domain controller.

1. Check for USN rollback by using the command Repadmin /showutdvec (KB Article: 875495, 885875)
2. Check the Registry value “HKLM\System\CurrentControlSet\Services\NTDS\Parameters, “DSA Not Writable” (REG_DWORD) and its value is 0×4.
3. Delete “DSA Not Writable” (REG_DWORD) from registry and reboot the server.

IF the problem still continue, try a normal restart the domain controller.

0 comments:

Post a Comment