Windows Server 2012 R2 FRS Sysvol Replication issue

Jnarthan Govindasamy 5 Reputation points
2024-01-28T15:29:45.0266667+00:00

Hi everyone,

NOTE:

  1. This Active Directory Server is also a DCHP Sever.

I am encountering a issue which FRS Sysvol Replication issue where the gpo's and the sysvol files are not in synced.

There are two domain controller. PM_AD01 is the Primary Domain Controller meanwhile PM_AD01 is a Doman Controller. Policies WhatsApp Image 2024-01-28 at 16.19.58_6177adaa error

I have tried some solutions:

  1. I have tried to run this command repadmin /syncall /adep but still no anything resolve.
  2. Repadmin /replsummary shows no errors. User's image
  3. I have tried the nonauthoritative restore in PM_AD02 which only led me to another error where all the sysvol and netlogon files went missing and also have this error domain controller is not advertising as a time server. And also somehow the netlogon fails as well. Plus also it gave me the error SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE.

This below link is where I refer for the nonauthoritative restore.

(https://learn.microsoft.com/en-US/troubleshoot/windows-server/networking/use-burflags-to-reinitialize-frs#nonauthoritative-restore)

WhatsApp Image 2024-01-28 at 16.08.35_5e9922fd

Somehow I have managed to get back the sysvol files but the Netlogons file is still missing in PM_AD02.

Below are some questions : Questions

  1. Should I do an authoritative restore ? ( For FRS Sysvol Replication )
  2. Should I do a non authoritative restore ? ( For FRS Sysvol Replication )
  3. Initially my plan was to fix the Sysvol Issue and then Migrate to DFSR.
  4. Someone please give me the steps to fix this Sysvol Replication issue.
  5. And after I done the nonauthoritative restore or authoritative restore I might encounter the error which is domain controller is not advertising as a time server, SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE.
  6. If I do an authoritative restore or a non authoritative restore where so I initialize it? Primary Domain Controller ? Or Domain Controller?
  7. Is authoritative restore for DFSR Replication ?
  8. So by right I should do nonauthoritative restore for FRS right?
  9. Also I plan to restart the Netlogons Service but worry might encounter any issue since this AD Server is actually also a DCHP Sever.

At the end the FRS Sysvol replication error still persists.

I have no idea what else to do.

I really hope someone would give me a solution for this issue as soon as possible.

Thanks and regards,

JAY

Windows Server 2012
Windows Server 2012
A Microsoft server operating system that supports enterprise-level management, data storage, applications, and communications.
1,542 questions
Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,287 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
5,996 questions
Windows DHCP
Windows DHCP
Windows: A family of Microsoft operating systems that run across personal computers, tablets, laptops, phones, internet of things devices, self-contained mixed reality headsets, large collaboration screens, and other devices.DHCP: Dynamic Host Configuration Protocol (DHCP). A communications protocol that lets network administrators manage centrally and automate the assignment of Internet Protocol (IP) addresses in an organization's network.
1,025 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Thameur-BOURBITA 32,606 Reputation points
    2024-01-28T16:03:04.72+00:00

    Hi,

    1. Should I do an authoritative restore ? ( For FRS Sysvol Replication )
    2. Should I do a non authoritative restore ? ( For FRS Sysvol Replication ) If you have a issue only on one domain controller you should launch nonauthoritative restore to reinitiaze FRS replication on impacted domain controller.
    3. Initially my plan was to fix the Sysvol Issue and then Migrate to DFSR. It's good blan
    4. Someone please give me the steps to fix this Sysvol Replication issue. To perform a nonauthoritative restore, stop the FRS service, configure the BurFlags registry key, and then restart the FRS service. Follow these steps: Select Start, and then select Run. In the Open box, type cmd and then press ENTER. In the Command box, type net stop ntfrs. Select Start, and then select Run. In the Open box, type regedit and then press ENTER. Locate the following subkey in the registry:
      HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\NtFrs\Parameters\Backup/Restore\Process at Startup In the right pane, double-click BurFlags. In the Edit DWORD Value dialog box, type D2 and then select OK. Quit Registry Editor, and then switch to the Command box. In the Command box, type net start ntfrs. Quit the Command box. When the FRS service restarts, the following actions occur:
      • The value for BurFlags registry key returns to 0.
      • Files in the reinitialized FRS folders are moved to a Pre-existing folder.
      • An event 13565 is logged to signal that a nonauthoritative restore is started.
      • The FRS database is rebuilt.
      • The member performs an initial join of the replica set from an upstream partner or from the computer that is specified in the Replica Set Parent registry key if a parent has been specified for SYSVOL replica sets.
      • The reinitialized computer runs a full replication of the affected replica sets when the relevant replication schedule begins.
      • When the process is complete, an event 13516 is logged to signal that FRS is operational. If the event is not logged, there is a problem with the FRS configuration.
    5. And after I done the nonauthoritative restore or authoritative restore I might encounter the error which is domain controller is not advertising as a time server, SERVER IS NOT RESPONDING or IS NOT CONSIDERED SUITABLE. This is another issue. related to AD replication and time configuration
    6. If I do an authoritative restore or a non authoritative restore where so I initialize it? Primary Domain Controller ? Or Domain Controller?

    Please refer to the following link :

    https://learn.microsoft.com/en-US/troubleshoot/windows-server/networking/use-burflags-to-reinitialize-frs#nonauthoritative-restore

    1. Is authoritative restore for DFSR Replication ?
      If you are using FRS replication not DFSR you have to use the FRS procedure mentioned in the link above.
    2. So by right I should do nonauthoritative restore for FRS right?
      Yes. if you have the issue on aly some domain controller
    3. Also I plan to restart the Netlogons Service but worry might encounter any issue since this AD Server is actually also a DCHP Sever.
      DHCP service will continue working during the netlogon restore.

    Please don't forget to accept helpful answer