• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

"DNS Operation Refused" Netlogon Error

IgoByte

Diamond Member
Event viewer shows the following error message(s):

Registration of the DNS record '_kerberos._tcp.dc._msdcs.xxxxxx.com. 600 IN SRV 0 100 88 ajtadc1.ajta.com.' failed with the following error:
DNS operation refused.

This began happening after we moved and switched ISPs. The resulting problem is that client computers take forever to log on to the network. What gives?
 
Originally posted by: Phil
Have you altered the DNS configuration to reflect the new ISP DNS servers?

I have tried to no avail. What I've done is a. set up the router to use the new ISP's DNS address and b. set up the DC to us it as well.
 
Originally posted by: IgoByte
Originally posted by: Phil
Have you altered the DNS configuration to reflect the new ISP DNS servers?

I have tried to no avail. What I've done is a. set up the router to use the new ISP's DNS address and b. set up the DC to us it as well.

You may need to check the forward/reverse lookup zones. I forget exactly which one you need to change, but have a look in there to make sure that you're not using old DNS information.

[Edit] Of course, the zones configuration will be done on the server, and you'll also need to verify that the clients do not have static DNS information; i.e. the DHCP server running on the server is assigning the DNS server information to the clients.
 
Originally posted by: IgoByte
Originally posted by: Phil
Have you altered the DNS configuration to reflect the new ISP DNS servers?

I have tried to no avail. What I've done is a. set up the router to use the new ISP's DNS address and b. set up the DC to us it as well.

What do the clients use for DNS? Your DC or the ISP DNS? They should be using the DC only...the ISP isn't going to let you update DNS records.

The only place the ISP DNS servers should appear is in the "Forwarders" section of the DNS server.
 
I believe I've tried both ways, clients using DC and the ISP's DNS server, but I'll give it another try...
 
Back
Top