Posts

Showing posts from June, 2014

Mount SP Content database Error

hello world! trying mount content database, unfortunately getting crazy message. "invalid object name 'sites' the funny thing im not referencing site, here code: mount-spcontentdatabase -name sp_content database -webapplication http://mysitename   -databaseserver sp-dbdev hi, run “test-spcontentdatabase” check results.  also, check see if below link helpful : http://blog.thefullcircle.com/2013/06/mount-spcontentdatabase-and-test-spcontentdatabase-fail-with-either-invalid-object-name-sites-or-webs/ please note: since web site not hosted microsoft, link may change without notice. microsoft not guarantee accuracy of information. above suggestion , reference. based on description, questions sharepoint, if have more questions/concerns, please post on sharepoint forum professional support: https://social.technet.microsoft.com/forums/sharepoint/en-us/home?category=sharepoint best regards, eve wang please remember mark replies answ...

Error Installing Update Windows Internal Database SP3 on 2007 Server(x64) KB955706

everytime try install update kb955706 windows internal database sp3  get: product: windows internal database -- error 29528. setup has encountered unexpected error while setting internal properties. error is: fatal error during installation.   the windows update log shows: 2010-07-09 13:07:17:577  340 b9c au ############# 2010-07-09 13:07:17:577  340 b9c au ## start ##  au: install updates 2010-07-09 13:07:17:577  340 b9c au ######### 2010-07-09 13:07:17:577  340 b9c au   # initiating manual install 2010-07-09 13:07:17:577  340 b9c au   # approved updates = 1 2010-07-09 13:07:17:577  340 b9c au <<## submitted ## au: install updates / installing updates [callid = {787eb198-2397-411d-92a5-f7033923b4ca}] 2010-07-09 13:07:17:577  340 f70 agent ************* 2010...

Server 2008 File Extensions over network

we using server 2008 standard. have several documents , pdf's fine on server, when access mapped drive on network have different file extension , won't open. first thought profile on 1 pc,so added new user , did same thing. ended reinstalling windows on pc , still it. under different users. browsed same folder on computer , had same problem. rebooted server , powered down our switches powered them up. still having same issue. created new folder on mapped drive , copied files folder , still open on server, not across network. we've scanned server , workstations having issue. our next thought change out switch. other ideas welcome. thank you. hi, it sounds strange. please on server: open cmd dir x:\folder /s (the folder contain these files) please check extension correct. if so, same step on client side: dir \\server\folder /s check if entension correct. if both correct, file extension associate issue - change extension on cilent side "open wit...

Hyper-V Server with Single NIC. NAT vs. "Allow management OS to share connection"?

hello, have acquired dedicated server host hyper-v. after doing research have found recommendation have 2 nics, unfortunately, dedicated server set 2 nics, 1 of them has internet access. second 1 used backend servers , vlans, etc. so leaves me no choice consider single nic infrastructure. nic exposed internet has been assigned 5 static ip addresses, here's accomplish. - need host separate vm for: web server, sql server , mail server. each of these 3 vms should able accessed 1 of public static ip addresses assigned nic. i know have 2 alternatives, a. 1 create external virtual network on nic connected internet, , check option "allow management os share connection." understanding create virtua switch , vnic , network traffic follow larger route, management purposes, kind of makes me uncomfortable. b. second option to: create internal network , add network policy , access services role host os, way somehow route traffic coming to, let's say: public ip 1.2.3....

Connect to Hyper-V (local )server from laptop (domain)

hi! this might not possible, anyway, have following setup: server 2012 (anmosrv) not connected domain windows 8 laptop (mallxxxx) connected domain what i'm trying connect hyper-v running on server windows 8 clients hyper-v manager. when enter name of server connect access denied error, i'm using domain account connect server. is possible add domain account groups required on server? (shouldn't possible since has no contact domain) or there way of doing this? best regards andreas molin check this: http://technet.microsoft.com/en-us/library/jj647785.aspx to manage hyper-v server not domain member mmc snap-in if hyper-v server not member of domain, establish alternate credentials use connect hyper-v server typing following command @ command prompt on remote computer: cmdkey /add:<servername> /user:<username> /pass:<password> where: servername name of hyper-v server username name of administrator account to p...

File server getting hammered by DFSR

i have 2012 r2 hyper-v server. 2 vms, dc, , file/print. file server getting hammered dfsr. there many files open, don't think cause such high utilization. hyper-v server doesn't show same high utilization , ques. so in vm disk itself. any suggestions? vmware guy myself, buddy wanted throw server , has windows 2012 r2. it corrupt dfsr process result of nic issue (broadcom). deleted secondary, cleaned dfsprivate folders (deleted them after changes appeared in logs of both file servers). i recreated , working fine. Windows Server  >  Hyper-V

Windows Search Filter Host constant high CPU usage

hi, have 2012 essentials set 3 x 2tb drives in storage spaces pool (no resiliency). when copy files server, instance right when populating pool data old server, cpu load goes 100%. granted machine 1.3ghz dual core, , appreciated using software pool solution carry cpu overheads operate.. didn't expect go 100% 1 file copy process going?? windows search filter host taking approx. 50% , 40% system. when stop file transfer, usage drops between 0-10%. is expected? seems wrong me considering series of single files being written server 1 one. what's going happen when it's serving multiple requests? thanks ok, have finished transferring data , have realised windows search filter host sitting , hogging approx. 46-50% cpu when server sat idle , not related writing files disk (at least don't think sat @ 50% , i'm not using machine except watch task manager). what process doing? need it? part server glorified nas takes client backups nicely (i've replaced...

How to configure backup network in Network Load Balancing?

some time ago failed find proper discription, how backup network should configured in nlb, because seems many options here. i´m having troubles in mbam, iis autherization failing error code 401 when dedicated fqdn adress used points to nlb cluster. more information my mbam problem here: https://social.microsoft.com/forums/en-us/a0dbe7d9-6440-42f2-99e1-21563647764f/mbam-25-installation-on-2-web-servers-as-ha-with-nlb-an-error-has-occurred-on-helpdesk-website?forum=mdopmbam now i need know, proper way configure nic and tcp/ip in nlb hosts. see it, there few options 1 one? 1. on hosts, 1st nic domain ips, 2nd nic direct ip another´s host 2nd nic. way how should done in fail-over cluster, method not seem work witn nlb @ all. cluster adress not respond. 2. on hosts, 1st , 2nd nic configured both domain network, same subnet. 2nd nic not have default gateway. method works somehow, displays error in nlb console, when cluster created. 3. on hosts, th...

Removing Published Software With Roaming Users

i have published software group policy in active directory to  user configuration | software settings | software installation .  published software works expected , user able install software going to  control panel | add or remove programs | add new programs , adds appropriate package. problem seeing when time upgrade or remove package select option "immediately remove" , occurs when user installed software logs in. in our enviroment our users roam roaming profiles , user potentially install software on other computers. software not removed/upgraded unless user installed logs in. may never occur on workstation older/unpatched/unwanted/insecure software may left around on workstations because user installed never signs onto workstations again. cannot remove the application either as domain admin msiexec /x command. basically want remove undesired published software workstations no matter installed it. thanks in advance, tim   hi,   i afraid have logon computers again u...

How to switch between text fonts easily?

hi, i writing algorithms , definitions on word 2010 , , during writing process need write symbols , abbreviations need take different font , style. when finish writing them, need turn original font , style complete writing. so, how switching between different styles , smoothly without need reset after writing symbols or words. please me write work smoothly. thanks in advance. best regards, aya.  aya zoghby the major part of paragraph should use font specified in paragraph style. if line uses times new roman main font, paragraph should set paragraph style set times new roman. you can assign styles keyboard shortcuts in tools > customize.... > keyboard... (word 2003), office button > word options > customize > keyboard... (word 2007) or file > options > customize ribbon > keyboard... (word 2010). regards, hans vogelaar Microsoft Office ...

Add users to domain admins in trusted domain

hello, i wrong.  i have 2 way trusted domain set (a , b) , want give couple of users in domain full admin rights in domina b, can figure out (agudlp etc). the trust working can add users either domain fodler permissions, want give couple of user full admin rights in other domain. thanks you can't add them members of domain admins group since global group. my recommendation create domain local group , delegate need it: http://social.technet.microsoft.com/wiki/contents/articles/20292.delegation-of-administration-in-active-directory.aspx once done, add users group , have permissions delegated. this posting provided no warranties or guarantees , , confers no rights. ahmed malek my website link my linkedin profile my mvp profile Windows Server  >  Dire...

Detect Windows Standard vs Enterprise remotely

hi all, i trying figure out way find version of os remotely, either registry search or snmp get.  know group of servers running standard or enterprise edition.  know of way? thanks, roberto you should able query ad this, eliminating need connect each computer remotely. operatingsystem attribute of computer objects have values "windows server 2008 r2 standard". query ad computers operatingsystem attribute has string "server" , either "standard" or "enterprise". i have example vbscript program retrieves servers linked here: http://www.rlmueller.net/enumerate%20servers.htm the ldap syntax filter used in program is: (&(objectcategory=computer)(operatingsystem=*server*)) this revised, perhaps to: (&(objectcategory=computer)(operatingsystem=*server*)(operatingsystem="standard")) or (since computer objects have operatingsystem attribute): (operatingsystem=windows server 2008 r2 standard) the strings...

WSE 2012 R2 and Exchange 2013 integration

i have installed wse 2012 r2 , exchange 2013 on 2012 r2 server integration wizard fails stating cant find exchange server though exchange on domain , has wse connector installed. anyone else found this? yes it's bug.  try installing latest update rollup exchange kicks make check ad, or have wait 15 days. i've opened several support cases , fix in works. unfortunately technet subscriptions aren&#39;t coming back, sorry folks :-( Windows Server  >  Windows Server 2012 Essentials

RemoteApp performance better with Windows XP than with Windows 7

hi, we use remoteapp in-house application displays lot of informations on high resolution (very large tables figures ans cells highlighted on 24" screen, large excel table). rds server windows server 2008 r2 sp1. when use horizontal scrollbar, performance poor windows 7 sp1 client. , strange performance better when connect windows xp client. windows xp x64 sp2 client, rdp 6.0. how explain this? , first of all, how solve this? plan migrate our winxp clients 7... thanks in advance. hi,   please updating windows 7 sp1 client pc’s nic drivers, setting speed of nic's auto.   please check av , firewall settings, can disable 3rd security software.   try restart remoteapp again see whether issue still exists.   technology changes life…… Windows Server  >  ...

Homegroup broken again in B10130?

after earlier builds broke homegroup, working fine me in 10074, since updating 10130 it's once again misbehaving (though differently earlier). although can join/leave/re-join homegroup, , apparently list users , computers/shares in homegroup without a problem, attempt see contents of shared folder on a homegroup computer fails with: [window title] network error [main instruction] windows cannot access \\media-pc\pictures [content] check spelling of name. otherwise, there might problem network. try identify , resolve network problems, click diagnose. [v] see details  [diagnose] [cancel] [expanded information] error code: 0x800704cf network location cannot reached. information network troubleshooting, see windows help. is known problem build? dave i've resorted uninstalling network adapter (realtek pcie gbe family controller) device manager , scanning hardware changes re-added. after minute or 2 (and surprisingly, i've n...

Windows Time "Allowing" the OS Kernel to sync to CMOS clock after 24H of no valid time sync

Image
hello, have been observing following scenario following environment: windows 2008 server r2 not part of domain cmos clock drifted , not sync'd os ntp aware time. 1. assume windows time has problem syncing time source , produces following when asked "w32tm /query /status /verbose": leap indicator: 0(no warning) stratum: 3 (secondary reference - syncd (s)ntp) precision: -6 (15.625ms per tick) root delay: 0.2028500s root dispersion: 7.8420074s referenceid: 0x413738ce (source ip:  65.55.56.206) last successful sync time: 2/1/2014 2:33:18 pm source: time.windows.com,0x9 poll interval: 10 (1024s) phase offset: -0.0260539s clockrate: 0.0155992s state machine: 2 (sync) time source flags: 0 (none) server role: 0 (none) last sync error : 2 (the computer did not resync because stale time data was  available.) time since last sync time: 85499.5378040s 2. when "time since last sync time" arrives @ value 86400 (24h) eve...

Collection x data output format

$mbcombcollection = @() get-mailbox "some ou" | foreach-object{     # various mailbox info $mbcasmbx = get-casmailbox $_.identity         ## inboxrules on user, if any. set $_.name property more indicative name $mbinbrule = get-inboxrule -mailbox $_.identity | select @{name="inboxruleyesorno";expression={$_.name}} $adattrib = get-qaduser $_.samaccountname $mbstatis = get-mailboxstatistics $_.identity         ## group x distribution group membership $usergroupmemberships = get-qaduser $_.samaccountname | get-qadmemberof | select-object @{name="regulargroups";expression={$_.name}},@{name="distributiongroups";expression={$_.grouptype}} $useranydistgroupsyesorno = $usergroupmemberships | where-object distributiongroups -match distribution     # work data $mbcomb = "" | select organizationalunit,displayname,primarysmtp...

Allowing access to an AD domain for users in another AD domain

hi, i simulating 4 organizations in virtual machine environment, meaning have 4 distinct domains , have ibm websphere process/lombardi server on 1 domain.  all machines running windows server 2008 datacenter sp1.  i have configured websphere allow access applications hosting active directory users. my goal grant access websphere process server users in other domains through existing ad of machine have single point of managing websphere users. i looking @ ad fs 1.1 , tried sample microsoft website.  the concept of assigning users in ad global-security group , federating group grant access web service in iis meets needs since using ibm websphere web server hoping can same without iis. so question suggested ways go ad users domain can granted access current domain using same credentials have in domain? (e.g. websphere in domain , need have ad of domain include users in domain b both domain & b users can login , use websphere stuff) thanks. hello, you ...

PKI - Publishing CRL to a IIS DMZ webserver

hi all, i've installed new ms pki 2008 have chosen cdp , aia distribution points http://organisation.com/pki my initial thought issuing ca, placed on internal lan, shall publish crl lists web server placed in dmz zone. web server can reach both internal clients , external clients (internet). the web server in dmz not member of domain, standalone server. my questions if there standard way create scheduled job on issuing ca copy crl files web server in dmz? have 1 found nice , easy way or use ftp or there white paper explaining how configurered? (i thinking both scheduled job, rights on iis web share issuing ca can copy crls files etc.) thanks in advance. best regards, benjamin late reply, should there. http://blogs.technet.com/configmgrteam/archive/2009/05/01/how-to-publish-the-crl-on-a-separate-web-server.aspx Windows Server  >  ...

vista/7 cannot verify crl when logging on with smart card

hello, several times have encountered weird behavior @ customers when logging on smart card (microsoft base smart card crypt provider, gemalto .net v2) outside network. their computer not have access private network - cdp nor aia locations nor of dcs. but have logged on same smart card , account (so account should have been cached s/c logon). the error when logging on smart card "cannot verify crl". the crl may expired, cannot confirm. their computer have network connection internet, not of cdp nor aia locations (on .local domain names domain has .local suffix). their cdps , aias contain http:/...local , ldap they can log on keyboard password (this proves account cached @ least password logon). without network connection (not internet), logon successful using smart card. according this, suspect, machine somehow thinks online (although not), should normal online logon instead of cached 1 , tries verify crl not accessible machine @ time. so question - reason possible? is possib...

Software always installs to Domain Admin account on connected PC-cant install to Domain User account

have completed following steps: set windows server 2012 r2 essentials successfully successfully connected windows 8.1 pro pc network running essentials connector software the pc has following users: original local account created when installed windows 8, domain admin account created when ran essentials connector account, domain user created after pc connected network. everything seems working fine. have installed ms office 365 pro, skype, various other applications while logged in domain user. every 1 of these installs triggered a uac prompt, expected, , after entering domain admin credentials install proceeded successfully. after install, software available domain user, shortcuts appeared in start menu or desktop, appropriate directories created in documents folder. all except 3 applications - upon being prompted permission install, enter domain admin credentials, installation proceeds, software installed domain admin account-not domain user account. shortcuts appear ...

Password not recognized

hello, i've installed windows 2016 tp4 core know new os (i've no experience windows server, i'm coming unix & linux). had no problem installing in virtualbox, things went wrong when rebooted system after having given new name server. asked me administrator's password, , when typed got message, "incorrect password". tried netdom renamecomputer command, , (on second installation) sconfig script, same result. i don't see problem because i've created 1 user account (administrator) and, during installation, system asked 1 password. no possibility confusion. sorry newbie question! i've found few tutorials on web installing 2016 core, take granted password recognized. things like, "reboot server , or that". thanks in advance! problem "solved": downloaded french version of windows iso file, , has bug (maybe related keyboard mapping?). using version, password accepted. thanks again help, andy. cheers, peter ...

Need to rename an OU in Active directory from ABC to ABCD. What would break?

hi, we have few changes in our organization , need rename ou in active directory abc abcd.  break if that? nothing ad perspective. what of time breaks applications, services , scripts assume ou structure , ou names. florian the views , opinions expressed in postings not correlate ones of friends, family or employer. if should allowed mark response "answer", should thread creator. no 1 else. Windows Server  >  Directory Services

Creating a Domain Trust between Forests

i have 2 domain forests. 1 resides in office in us. other in office in uk. users in uk able authenticate , access resources in forest , authenticate , access resources in uk forest. both networks not connected. my questions: would able create trust between 2 forests or misunderstanding whole trusts relationship concept? if can create trust, need connection between 2 forests in order replicate ad related data , forth between 2 forests? thanks, andrew your understanding correct. you need connectivity between 2 forests. port requirements listed in http://support.microsoft.com/kb/179442  . however, there no ad replication between trusted forests (replication limited domain controllers within same forest). to create forst trust, follow http://technet.microsoft.com/en-us/library/cc770907.aspx hth marcin Windows Server  >  ...

ADAM Data Loss ?!?

hi everybody, we using ms adam ldap @ customer connect phonebook/directory software (avaya ospc , avaya phonebook 96xx phones). customer has tool import phonebook data adam ldap. customer says data "lost" (can't shown ldap clients) , needs import data again. so, because of fact, more 1 software client has problems while reading ldap content, think problem caused adam ldap server. know problem? thanks in advance unfortunately, description there has been loss of data isn't helpful in solving problem.  forum need more info.  there event log messages on ldap server?  there on clients having trouble?  have verified there isn't script or pruning records ldap server?  ther records themeselves won't disappear, event occuring modify data. -- paul bergson mvp - directory services mcitp: enterprise administrator mcts, mct, mcse, mcsa, security+, bs csci 2008, vista, 2003, 2000 (early achiever), nt4 http://www.pbbergs.com   ...

Active Directory computer account rename permission

Image
hi,   i'm using active directory 2008 domain setup.. have given help-desk support team delegation permission join computer account domain. i've given following permission our team. ======================================= validated write dns host name reset password validated write service principal  read account restriction write account restriction create computer objects delete computer objects =======================================   if want rename computer account in domain can't . when tried rename support team getting below error.   the following error occurred attempting rename computer "computer account name"  : access denied.   anyone permission should give, please let me know.      aucsna hello,   as additional info: you can add more template delegwiz.inf file. go the directory %windir%\inf (in windows server 2008 or later %windir%\system32 ) , copy delegwiz.inf ...

wmf images won't print in Word 2010

i using word 2010 beta , xp pro. when insert .wmf image doc displays fine, print preview shows fine doesn't appear @ when printed. printing epson stylus office tx610fw. any gratefully received. thanks pete check epson site updated printer driver. as alternative, use file>save & send>create pdf/xps document convert file .pdf format , open adobe , try printing there. -- hope helps. please reply newsgroup unless wish avail of services on paid consulting basis. doug robbins - word mvp, posted via nntp bridge "pete faulkner" wrote in message news:4794ef88-8dd8-4b18-9281-530644154ae7@communitybridge.codeplex.com... i using word 2010 beta , xp pro. when insert .wmf image doc displays fine, print preview shows fine doesn't appear @ when printed. printing epson stylus office tx610fw. any gratefully received. thanks pete doug robbins - word mvp dkr[atsymbol]mvps[dot]org ...

Cannot upgrade server 2012 essentials to Server 2012 standard

using dism : ps c:\windows\system32> dism.exe /online /set-edition:serverstandard /productkey:xxxxx-hf7px-xxxxx-2xdpx-xxxxx /accepteula deployment image servicing , management tool version: 6.2.9200.16384 image version: 6.2.9200.16384 error: 0x8a010001 specified product key not validated. check specified product key valid , matches target edition. dism log file can found @ c:\windows\logs\dism\dism.log ps c:\windows\system32> dism /online /get-currentedition deployment image servicing , management tool version: 6.2.9200.16384 image version: 6.2.9200.16384 current edition is: current edition : serversolution operation completed successfully. bought new key ebuyer.com hi scotty, many prompt response. yes r2 bought. if use standard server key should work, , upgrade r2. perhaps need explain ms "upgrade" means.  Windows Server ...

Change E-Mail address to Users in Specific OU.

here tricky one. i have huge amount of users specific ou need new e-mail address. from user1@mail.com user1@mail2.com the web full of answers problem rely on 1 thing : “active directory web services” in environment off need go around get-aduser , find way of getting list of users attribute ou=… , of users, change e-mail address from… …. until had : function get-aduser( [string]$samid=$env:username){ $searcher=new-object directoryservices.directorysearcher $searcher.filter="(&(objectcategory=person)(objectclass=user)(samaccountname=$samid))" $user=$searcher.findone() if ($user -ne $null ){ $user.getdirectoryentry() } } $user = get-aduser "testuser" $user.psbase.displayname(users diplay name) $user.psbase.propertyname $user.psbase.mail $user.mail = 'test05@mail.com' $user.setinfo() write-host "changed attributes $user.name" $user.mail honestly don`t know came , when because have long time now...

Propossal for a new Windows 10 feature.

i propose feature allows you, via keyboard , mouse shortcut, decrease windows size. like example shift – ctrl – alt mousewheelscroll up/down. shrink open windows width.   i lot. oh yeah, automatic language recognition in word awesome! th th you should use feedback app built win 10 tp.  gets matter. wanikiya , dyami--team zigzag Windows 10 Insider Preview  >  Windows 10 Insider Preview General

Getting PS script to run from Task Scheduler

i have ps script wrote invokes sql script queries sql db , updates records.  then, using invoke-sqlcmd2 cmdlet, pulls name of changed records , uses move-item move the correlating file 1 folder another.  it writes out various text files i'm checking make sure runs properly.  i want set script in task scheduler automatically runs once week i'm having trouble getting run properly. when use command in 'run' results expected: powershell -executionpolicy bypass -command "& 'c:\path\to\script.ps1' " i , text files populated , went smoothly.  when use task scheduler run same command, text files "wasitthere" , "isittherenow" empty instead of listing true or false each item. i know module importing because text file called "imagename" populated correctly image names going move.  i can't figure out problem is. here code, please kind first attempt @ powershell!  also, realize sql queries kind of p...

Charms bar does not show

windows 10 build 9879 (64-bit) windows 8.1 professional (64-bit) vmware workstation 10.0.4 i have 2 vmware vms each running different version of windows. windows 8.1: move mouse pointer upper-right corner of desktop = charm bar appears. press windows + c keyboard keys = charm bar appears. windows 10: taskbar/navigation “when point upper-right corner, show charms” checked. move mouse pointer upper-right corner of desktop = no charm bar appears. press windows + c keyboard keys = charm bar appears. they have disabled charms bar in win 10 scrolling mouse win + c works! don't worry not facing problems/errors/bugs! cheers :) Windows 10 Insider Preview  >  Windows 10 Insider Preview Feedback ...

Account becoming Disabled

on virtual desktop (windows 7 pro) have several apps running (no services). account use network (admin) account. access account via cisco vpn. long while been accessing account , rdp desktop without indecent. ever since rebooted desktop due upgrades, account become disabled after 15 minutes. happened once before , creating account , running apps on new account worked while. new account started "locking". moved old account stayed working months until next reboot. trying recreate same procedure keep old account locking again did not work. what causing account lock? how can tell may causing account lock? hi, would please more specific account? local user account or domain user account? ever since rebooted desktop due upgrades, account become disabled after 15 minutes. after 15 minutes, is user account able log on? these account lockout troubleshooting articles below might useful you: troubleshooting account lockout https://technet.microsoft.com/en-us/li...

RemoteFX session on Remote Desktop Services

hello, how can know rdp session remotefx enable or disable ? dxdiag tool on rdp session , seems equal @ remotefx enable , disable. only event log , can know it. hi, event log on client or server great way know. there other ways - based on rdvh / rdsh remotefx-for-rdsh:  http://technet.microsoft.com/en-us/library/ff817580(ws.10).aspx remotefx-for-rdvh:  http://technet.microsoft.com/en-us/library/ff817575(ws.10).aspx thanks Windows Server  >  Remote Desktop Services (Terminal Services)

Cannot validate Windows 2008 R2 Forest Trust

we have existing two-way forest transitive trust , working.  added 2 new domain controllers , when try validate trust error message: the local security authority unable obtain rpc connection active directory domain controller abc.com.  please check name can resolved , server available. i can ping dc referenced in error message. i have checked event logs , not seeing errors. i have run dcdiag on new servers , looks ok. any ideas?? thank you hello, please assure not ping working, use nslookup , additional assure ports according to  http://support.microsoft.com/kb/179442/en-us open. see http://technet.microsoft.com/en-us/library/dd772723(ws.10).aspx best regards meinolf weber mvp, mcp, mcts microsoft mvp - directory services my blog : http://msmvps.com/blogs/mweber/ disclaimer: posting provided no warranties or guarantees , confers no rights. Windows Server ...