Share via


Event ID 4011 — DNS Server Active Directory Integration

Applies To: Windows Server 2008

You can configure the DNS Server service to use Active Directory Domain Services (AD DS) to store zone data. This makes it possible for the DNS server to rely on directory replication, which enhances security, reliability, and ease of administration.

Event Details

Product: Windows Operating System
ID: 4011
Source: Microsoft-Windows-DNS-Server-Service
Version: 6.0
Symbolic Name: DNS_EVENT_DS_WRITE_FAILED
Message: The DNS server was unable to add or write an update of domain name %1 in zone %2 to the Active Directory. Check that the Active Directory is functioning properly and add or update this domain name using the DNS console. The extended error debug information (which may be empty) is "%3". The event data contains the error.

Resolve

Troubleshoot AD DS and reenter the record

AD DS is not responding to requests from the DNS Server service. The DNS Server service relies on Active Directory Domain Services (AD DS) to store and retrieve information for AD DS- integrated zones. Ensure that AD DS is functioning properly, troubleshoot any problems, and then correct the record that failed.

For information about troubleshooting AD DS, see Active Directory Troubleshooting Topics (https://go.microsoft.com/fwlink/?LinkId=95789).

To perform this procedure, you must have membership in Administrators, or you must have been delegated the appropriate authority.

To correct a resource record:

  1. On the DNS server, start Server Manager. To start Server Manager, click Start, click Administrative Tools, and then click Server Manager.
  2. In the console tree, expand Roles, expand DNS Server, and then expand DNS.
  3. Expand the DNS server, and then expand the resource record's container.
  4. If the resource record exists in the container, right-click the resource record, and then click Delete.
  5. Right-click the container, and then, to recreate the resource record, click the appropriate command for the type of resource record.

 

Verify

Ensure that Event IDs 4523 and 4524 are being logged and that no events in the range 4000 to 4019 appear in the Domain Name System (DNS) event log.

DNS Server Active Directory Integration

DNS Infrastructure