Имя пользователя:
Пароль:  
Помощь | Регистрация | Забыли пароль?  | Правила  

Компьютерный форум OSzone.net » Серверные продукты Microsoft » Microsoft Windows NT/2000/2003 » ошибки политики безопасности.

Ответить
Настройки темы
ошибки политики безопасности.

Аватара для rivera

Ветеран


Сообщения: 661
Благодарности: 10

Профиль | Отправить PM | Цитировать


Изменения
Автор: rivera
Дата: 28-02-2007
Ребят помогите решить:
1. при поключении сетевого принтера, выдается сообщение:
На данном компьютере существует политика, препятствующая поключения к этой очереди печати. обратитесь к админу.

ps в политике включен режим: использовать драйвера принтеров использующие режим ядра.


2. при наборе "rsop.msc" мне выдает ошибку:
самые последние версии adm шаблонов недоступны. компьютер будет использовать локальные версии этих файлов.
возможно нет доступа.

ps по сети в папку sysvol/policies pa[jlbn удаляет и копирует туда файлы, с доступом вроде все ясно


3. rsop.msc показывает красные крестики на разделах "политика компа" и "политика пользователя"
иногда вместо крестиков, восклицательные знаки в треуголнике!

как бороться? куда копать?


домен на win2k3 enterprise
клиенты загнанные в домен: 2000 и хр

Отправлено: 12:49, 28-02-2007

 

Аватара для xoxmodav

PainStaking


Moderator


Сообщения: 3992
Благодарности: 442

Профиль | Отправить PM | Цитировать


Опиши структуру своей сети, выкладывай логи настроек сетевых интерфесов (ipconfig /all), dcdiag /v, netdiag /v используя тег [code].

Посмотри "Журнал событий" на предмет наличия в нём ошибок, выложи их номера и описание.

Напиши производившиеся тобой действия и полученные результаты.

-------
RadioActive - and therefore harmful, cynical and the extremely dangerous.


Отправлено: 14:22, 28-02-2007 | #2



Для отключения данного рекламного блока вам необходимо зарегистрироваться или войти с учетной записью социальной сети.

Если же вы забыли свой пароль на форуме, то воспользуйтесь данной ссылкой для восстановления пароля.


Аватара для rivera

Ветеран


Сообщения: 661
Благодарности: 10

Профиль | Отправить PM | Цитировать


xoxmodav
1. структура сети:
2 домена в одной физической сети. настроены доверительные отношения - отношения работают.
DNS и DHCP сервер на оба домена в новом домене.

2. я потихоньку перегоняю из старого (win2k advanced) в новый (win2k3 enterprise) домен компы.

3. в новом домене создал 2 дополнительных OU: 1. users-users 2. users-comps
для первой своя политика, для второй своя. в перовом объекте "computer configuration disabled", во втором "user configuration disabled"
в первый контейнер я создаю пользователей, во второй - компы пользователей.
(для админов и серверов имеется свои OU)

4. в политике разрешено использовать драйвера принтеров использующие режим ядра, но принтера которвые висят на 2k3 enterprise, а именно xerox docuprint n24 (древний такой, у которого последние дрова под nt4.0) и Xerox Phaser 3150 PCL 6 не устанавливаются выдавая ошибки: "На данном компьютере существует политика, препятствующая поключения к этой очереди печати. обратитесь к админу.
"

5. ipconfig -all клиента
Код: Выделить весь код
Настройка протокола IP для Windows



        Имя компьютера  . . . . . . . . . : oper07

        Основной DNS-суффикс  . . . . . . : trb.uz

        Тип узла. . . . . . . . . . . . . : неизвестный

        IP-маршрутизация включена . . . . : нет

        WINS-прокси включен . . . . . . . : нет

        Порядок просмотра суффиксов DNS . : trb.uz



Подключение по локальной сети - Ethernet адаптер:



        DNS-суффикс этого подключения . . : 

        Описание  . . . . . . . . . . . . : Broadcom NetXtreme Gigabit Ethernet for hp

        Физический адрес. . . . . . . . . : 00-40-CA-8E-2B-6F

        Dhcp включен. . . . . . . . . . . : да

        Автонастройка включена  . . . . . : да

        IP-адрес  . . . . . . . . . . . . : 192.168.0.122

        Маска подсети . . . . . . . . . . : 255.255.255.0

        Основной шлюз . . . . . . . . . . : 192.168.0.22

        DHCP-сервер . . . . . . . . . . . : 192.168.0.14

        DNS-серверы . . . . . . . . . . . : 192.168.0.14

                                            192.168.0.65

        Аренда получена . . . . . . . . . : 28 февраля 2007 г. 12:36:40

        Аренда истекает . . . . . . . . . : 7 марта 2007 г. 12:36:40
ipconfig -all сервера
Код: Выделить весь код
Настройка протокола IP для Windows



   Имя компьютера  . . . . . . . . . : it

   Основной DNS-суффикс  . . . . . . : trb.uz

   Тип узла. . . . . . . . . . . . . : неизвестный

   IP-маршрутизация включена . . . . : нет

   WINS-прокси включен . . . . . . . : нет

   Порядок просмотра суффиксов DNS . : trb.uz



Local Area Connection - Ethernet адаптер:



   DNS-суффикс этого подключения . . : 

   Описание  . . . . . . . . . . . . : BCM5703 Gigabit Ethernet

   Физический адрес. . . . . . . . . : 00-0B-CD-CF-A6-0A

   DHCP включен. . . . . . . . . . . : нет

   IP-адрес  . . . . . . . . . . . . : 192.168.0.14

   Маска подсети . . . . . . . . . . : 255.255.255.0

   Основной шлюз . . . . . . . . . . : 192.168.0.22

   DNS-серверы . . . . . . . . . . . : 192.168.0.14

                                       192.168.0.65
dcdiag /v сервера
Код: Выделить весь код
Domain Controller Diagnosis

Performing initial setup:
   * Verifying that the local machine it, is a DC. 
   * Connecting to directory service on server it.
   * Collecting site info.
   * Identifying all servers.
   * Identifying all NC cross-refs.
   * Found 1 DC(s). Testing 1 of them.
   Done gathering initial info.

Doing initial required tests
   
   Testing server: Default-First-Site-Name\IT
      Starting test: Connectivity
         * Active Directory LDAP Services Check
         * Active Directory RPC Services Check
         ......................... IT passed test Connectivity

Doing primary tests
   
   Testing server: Default-First-Site-Name\IT
      Starting test: Replications
         * Replications Check
         * Replication Latency Check
         * Replication Site Latency Check 
         ......................... IT passed test Replications
      Test omitted by user request: Topology
      Test omitted by user request: CutoffServers
      Starting test: NCSecDesc
         * Security Permissions Check for
           DC=ForestDnsZones,DC=trb,DC=uz
            (NDNC,Version 2)
         * Security Permissions Check for
           DC=DomainDnsZones,DC=trb,DC=uz
            (NDNC,Version 2)
         * Security Permissions Check for
           CN=Schema,CN=Configuration,DC=trb,DC=uz
            (Schema,Version 2)
         * Security Permissions Check for
           CN=Configuration,DC=trb,DC=uz
            (Configuration,Version 2)
         * Security Permissions Check for
           DC=trb,DC=uz
            (Domain,Version 2)
         ......................... IT passed test NCSecDesc
      Starting test: NetLogons
         * Network Logons Privileges Check
         ......................... IT passed test NetLogons
      Starting test: Advertising
         The DC IT is advertising itself as a DC and having a DS.
         The DC IT is advertising as an LDAP server
         The DC IT is advertising as having a writeable directory
         The DC IT is advertising as a Key Distribution Center
         The DC IT is advertising as a time server
         The DS IT is advertising as a GC.
         ......................... IT passed test Advertising
      Starting test: KnowsOfRoleHolders
         Role Schema Owner = CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
         Role Domain Owner = CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
         Role PDC Owner = CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
         Role Rid Owner = CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
         Role Infrastructure Update Owner = CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
         ......................... IT passed test KnowsOfRoleHolders
      Starting test: RidManager
         * Available RID Pool for the Domain is 1603 to 1073741823
         * it.trb.uz is the RID Master
         * DsBind with RID Master was successful
         * rIDAllocationPool is 1103 to 1602
         * rIDPreviousAllocationPool is 1103 to 1602
         * rIDNextRID: 1167
         ......................... IT passed test RidManager
      Starting test: MachineAccount
         * SPN found :LDAP/it.trb.uz/trb.uz
         * SPN found :LDAP/it.trb.uz
         * SPN found :LDAP/IT
         * SPN found :LDAP/it.trb.uz/TRB
         * SPN found :LDAP/19c5421b-b908-43f0-a9fe-d993e6a002d7._msdcs.trb.uz
         * SPN found :E3514235-4B06-11D1-AB04-00C04FC2DCD2/19c5421b-b908-43f0-a9fe-d993e6a002d7/trb.uz
         * SPN found :HOST/it.trb.uz/trb.uz
         * SPN found :HOST/it.trb.uz
         * SPN found :HOST/IT
         * SPN found :HOST/it.trb.uz/TRB
         * SPN found :GC/it.trb.uz/trb.uz
         ......................... IT passed test MachineAccount
      Starting test: Services
         * Checking Service: Dnscache
         * Checking Service: NtFrs
         * Checking Service: IsmServ
         * Checking Service: kdc
         * Checking Service: SamSs
         * Checking Service: LanmanServer
         * Checking Service: LanmanWorkstation
         * Checking Service: RpcSs
         * Checking Service: w32time
         * Checking Service: NETLOGON
         ......................... IT passed test Services
      Test omitted by user request: OutboundSecureChannels
      Starting test: ObjectsReplicated
         IT is in domain DC=trb,DC=uz
         Checking for CN=IT,OU=Domain Controllers,DC=trb,DC=uz in domain DC=trb,DC=uz on 1 servers
            Object is up-to-date on all servers.
         Checking for CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz in domain CN=Configuration,DC=trb,DC=uz on 1 servers
            Object is up-to-date on all servers.
         ......................... IT passed test ObjectsReplicated
      Starting test: frssysvol
         * The File Replication Service SYSVOL ready test 
         File Replication Service's SYSVOL is ready 
         ......................... IT passed test frssysvol
      Starting test: frsevent
         * The File Replication Service Event log test 
         ......................... IT passed test frsevent
      Starting test: kccevent
         * The KCC Event log test
         Found no KCC errors in Directory Service Event log in the last 15 minutes.
         ......................... IT passed test kccevent
      Starting test: systemlog
         * The System Event log test
         Found no errors in System Event log in the last 60 minutes.
         ......................... IT passed test systemlog
      Test omitted by user request: VerifyReplicas
      Starting test: VerifyReferences
         The system object reference (serverReference)

         CN=IT,OU=Domain Controllers,DC=trb,DC=uz and backlink on

         CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz

         are correct. 
         The system object reference (frsComputerReferenceBL)

         CN=IT,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=trb,DC=uz

         and backlink on CN=IT,OU=Domain Controllers,DC=trb,DC=uz are correct. 
         The system object reference (serverReferenceBL)

         CN=IT,CN=Domain System Volume (SYSVOL share),CN=File Replication Service,CN=System,DC=trb,DC=uz

         and backlink on

         CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz

         are correct. 
         ......................... IT passed test VerifyReferences
      Test omitted by user request: VerifyEnterpriseReferences
   
   Running partition tests on : ForestDnsZones
      Starting test: CrossRefValidation
         ......................... ForestDnsZones passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... ForestDnsZones passed test CheckSDRefDom
   
   Running partition tests on : DomainDnsZones
      Starting test: CrossRefValidation
         ......................... DomainDnsZones passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... DomainDnsZones passed test CheckSDRefDom
   
   Running partition tests on : Schema
      Starting test: CrossRefValidation
         ......................... Schema passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Schema passed test CheckSDRefDom
   
   Running partition tests on : Configuration
      Starting test: CrossRefValidation
         ......................... Configuration passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... Configuration passed test CheckSDRefDom
   
   Running partition tests on : trb
      Starting test: CrossRefValidation
         ......................... trb passed test CrossRefValidation
      Starting test: CheckSDRefDom
         ......................... trb passed test CheckSDRefDom
   
   Running enterprise tests on : trb.uz
      Starting test: Intersite
         Skipping site Default-First-Site-Name, this site is outside the scope

         provided by the command line arguments provided. 
         ......................... trb.uz passed test Intersite
      Starting test: FsmoCheck
         GC Name: \\it.trb.uz
         Locator Flags: 0xe00003fd
         PDC Name: \\it.trb.uz
         Locator Flags: 0xe00003fd
         Time Server Name: \\it.trb.uz
         Locator Flags: 0xe00003fd
         Preferred Time Server Name: \\it.trb.uz
         Locator Flags: 0xe00003fd
         KDC Name: \\it.trb.uz
         Locator Flags: 0xe00003fd
         ......................... trb.uz passed test FsmoCheck

-------
...


Отправлено: 15:41, 28-02-2007 | #3


Аватара для rivera

Ветеран


Сообщения: 661
Благодарности: 10

Профиль | Отправить PM | Цитировать


netdiag /v сервера
Код: Выделить весь код
    Gathering IPX configuration information.
    Querying status of the Netcard drivers... Passed
    Testing Domain membership... Passed
    Gathering NetBT configuration information.
    Testing for autoconfiguration... Passed
    Testing IP loopback ping... Passed
    Testing default gateways... Passed
    Enumerating local and remote NetBT name cache... Passed
    Testing the WINS server
        Local Area Connection
            There is no primary WINS server defined for this adapter.
            There is no secondary WINS server defined for this adapter.
    Gathering Winsock information.
    Testing DNS
    PASS - All the DNS entries for DC are registered on DNS server '192.168.0.14'.
    [WARNING] The DNS entries for this DC are not registered correctly on DNS server '192.168.0.65'. Please wait for 30 minutes for DNS server replication.
    Testing redirector and browser... Passed
    Testing DC discovery. 
        Looking for a DC
        Looking for a PDC emulator
        Looking for a Windows 2000 DC
    Gathering the list of Domain Controllers for domain 'TRB'
    Testing trust relationships... Skipped
    Testing Kerberos authentication... Passed
    Testing LDAP servers in Domain TRB ... 
    Gathering routing information
    Gathering network statistics information. 
    Gathering configuration of bindings.
    Gathering RAS connection information 
    Gathering Modem information
    Gathering Netware information
    Gathering IP Security information

    Tests complete.


    Computer Name: IT
    DNS Host Name: it.trb.uz
    DNS Domain Name: trb.uz
    System info : Windows 2000 Server (Build 3790)
    Processor : x86 Family 15 Model 2 Stepping 7, GenuineIntel
    Hotfixes :
        Installed?      Name
           Yes          Q147222


Netcard queries test . . . . . . . : Passed

    Information of Netcard drivers: 

    ---------------------------------------------------------------------------
    Description: RAS Async Adapter
    Device: \DEVICE\{825C3C23-A83B-4072-8BDA-38AB93496943}

    Media State:                     Connected

    Device State:                    Connected
    Connect Time:                    14 days, 08:06:00
    Media Speed:                     28 Kbps

    Packets Sent:                    0
    Bytes Sent (Optional):           0

    Packets Received:                0
    Directed Pkts Recd (Optional):   0
    Bytes Received (Optional):       0
    Directed Bytes Recd (Optional):  0

    [WARNING] The net card 'RAS Async Adapter' may not be working because it has not received any packets.
    ---------------------------------------------------------------------------
    Description: BCM5703 Gigabit Ethernet
    Device: \DEVICE\{C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}

    Media State:                     Connected

    Device State:                    Connected
    Connect Time:                    14 days, 08:06:50
    Media Speed:                     100 Mbps

    Packets Sent:                    9093414
    Bytes Sent (Optional):           0

    Packets Received:                13766050
    Directed Pkts Recd (Optional):   9557052
    Bytes Received (Optional):       0
    Directed Bytes Recd (Optional):  0

    ---------------------------------------------------------------------------
    [PASS] - At least one netcard is in the 'Connected' state.



Per interface results:

    Adapter : Local Area Connection
        Adapter ID . . . . . . . . : {C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}

        Netcard queries test . . . : Passed

        Adapter type . . . . . . . : Ethernet
        Host Name. . . . . . . . . : it
        Description. . . . . . . . : BCM5703 Gigabit Ethernet
        Physical Address . . . . . : 00-0B-CD-CF-A6-0A
        Dhcp Enabled . . . . . . . : No
        DHCP ClassID . . . . . . . : 
        Autoconfiguration Enabled. : Yes
        IP Address . . . . . . . . : 192.168.0.14
        Subnet Mask. . . . . . . . : 255.255.255.0
        Default Gateway. . . . . . : 192.168.0.22
        Dns Servers. . . . . . . . : 192.168.0.14
                                     192.168.0.65

        IpConfig results . . . . . : Passed

        AutoConfiguration results. . . . . . : Passed
            AutoConfiguration is not in use. 

        Default gateway test . . . : Passed
            Pinging gateway 192.168.0.22 - reachable
            At least one gateway reachable for this adapter. 

        NetBT name test. . . . . . : Passed
            NetBT_Tcpip_{C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}
            IT             <00>  UNIQUE      REGISTERED
            TRB            <00>  GROUP       REGISTERED
            TRB            <1C>  GROUP       REGISTERED
            IT             <20>  UNIQUE      REGISTERED
            TRB            <1B>  UNIQUE      REGISTERED
            TRB            <1E>  GROUP       REGISTERED
            TRB            <1D>  UNIQUE      REGISTERED
            ..__MSBROWSE__.<01>  GROUP       REGISTERED
        [WARNING] At least one of the <00> 'WorkStation Service', <03> 'Messenger Service', <20> 'WINS' names is missing.

            NetBios Resolution : via DHCP 

		Netbios Remote Cache Table
            Name           Type              HostAddress         Life [sec]
            ---------------------------------------------------------------
            RD             <20>  UNIQUE      192.168.0.65          500
            BUHCARD        <20>  UNIQUE      192.168.0.48          500
            C011           <20>  UNIQUE      192.168.0.99          550
            STORE01        <20>  UNIQUE      192.168.0.26          500
            STORE00        <20>  UNIQUE      192.168.0.50          500
            DALLAS         <20>  UNIQUE      192.168.0.222         122
            DALLAS         <00>  UNIQUE      192.168.0.222         122
            ECON01         <20>  UNIQUE      192.168.0.69          500
            ML             <20>  UNIQUE      192.168.0.148         500
            N001           <20>  UNIQUE      192.168.0.149         500
            OPER10         <20>  UNIQUE      192.168.0.30          500
            OPER07         <20>  UNIQUE      192.168.0.122         132


        WINS service test. . . . . : Skipped
            There is no primary WINS server defined for this adapter.
            There is no secondary WINS server defined for this adapter.
            There are no WINS servers configured for this interface.
        IPX test : IPX is not installed on this machine.


Global results:


IP General configuration 
    LMHOSTS Enabled. . . . . . . . : Yes
    DNS for WINS resolution. . . . : Enabled
    Node Type. . . . . . . . . . . : Broadcast
    NBT Scope ID . . . . . . . . . : 
    Routing Enabled. . . . . . . . : No
    WINS Proxy Enabled . . . . . . : No
    DNS resolution for NETBIOS . . : No



Domain membership test . . . . . . : Passed
    Machine is a . . . . . . . . . : Primary Domain Controller Emulator
    Netbios Domain name. . . . . . : TRB
    Dns domain name. . . . . . . . : trb.uz
    Dns forest name. . . . . . . . : trb.uz
    Domain Guid. . . . . . . . . . : {EA7C2081-CE42-4F8E-86F1-243FC75A2ADD}
    Domain Sid . . . . . . . . . . : S-1-5-21-1711050988-4257622575-1540512868
    Logon User . . . . . . . . . . : ADM
    Logon Domain . . . . . . . . . : TRB


NetBT transports test. . . . . . . : Passed
    List of NetBt transports currently configured:
        NetBT_Tcpip_{C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}
    1 NetBt transport currently configured.


Autonet address test . . . . . . . : Passed
    PASS - you have at least one non-autoconfigured IP address


IP loopback ping test. . . . . . . : Passed
    PASS - pinging IP loopback address was successful.
    Your IP stack is most probably OK.


Default gateway test . . . . . . . : Passed
    PASS - you have at least one reachable gateway.


NetBT name test. . . . . . . . . . : Passed
   No NetBT scope defined
    [WARNING] You don't have a single interface with the <00> 'WorkStation Service', <03> 'Messenger Service', <20> 'WINS' names defined.


Winsock test . . . . . . . . . . . : Passed
    The number of protocols which have been reported : 10
        Description: MSAFD Tcpip [TCP/IP]
            Provider Version   :2
            Max message size  : Stream Oriented
        Description: MSAFD Tcpip [UDP/IP]
            Provider Version   :2
        Description: RSVP UDP Service Provider
            Provider Version   :6
        Description: RSVP TCP Service Provider
            Provider Version   :6
            Max message size  : Stream Oriented
        Description: MSAFD NetBIOS [\Device\NetBT_Tcpip_{C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}] SEQPACKET 0
            Provider Version   :2
        Description: MSAFD NetBIOS [\Device\NetBT_Tcpip_{C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}] DATAGRAM 0
            Provider Version   :2
        Description: MSAFD NetBIOS [\Device\NetBT_Tcpip_{336F1A1A-311B-4C64-83E9-2B294BCF2317}] SEQPACKET 1
            Provider Version   :2
        Description: MSAFD NetBIOS [\Device\NetBT_Tcpip_{336F1A1A-311B-4C64-83E9-2B294BCF2317}] DATAGRAM 1
            Provider Version   :2
        Description: MSAFD NetBIOS [\Device\NetBT_Tcpip_{1F907317-3249-4458-A23D-3C52BC71BD9B}] SEQPACKET 2
            Provider Version   :2
        Description: MSAFD NetBIOS [\Device\NetBT_Tcpip_{1F907317-3249-4458-A23D-3C52BC71BD9B}] DATAGRAM 2
            Provider Version   :2

    Max UDP size : 65507 bytes


DNS test . . . . . . . . . . . . . : Passed
      Interface {C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}
        DNS Domain: 
        DNS Servers: 192.168.0.14 192.168.0.65 
        IP Address:         Expected registration with PDN (primary DNS domain name):
          Hostname: it.trb.uz.
          Authoritative zone: trb.uz.
          Primary DNS server: it.trb.uz 192.168.0.14
          Authoritative NS:192.168.0.14 
Check the DNS registration for DCs entries on DNS server '192.168.0.14'
The Record is correct on DNS server '192.168.0.14'.

The Record is correct on DNS server '192.168.0.14'.
…..
The Record is correct on DNS server '192.168.0.14'.

    PASS - All the DNS entries for DC are registered on DNS server '192.168.0.14'.
Check the DNS registration for DCs entries on DNS server '192.168.0.65'
Query for DC DNS entry trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.Default-First-Site-Name._sites.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.pdc._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.gc._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.Default-First-Site-Name._sites.gc._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.ea7c2081-ce42-4f8e-86f1-243fc75a2add.domains._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry gc._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry 19c5421b-b908-43f0-a9fe-d993e6a002d7._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _kerberos._tcp.dc._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _kerberos._tcp.Default-First-Site-Name._sites.dc._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.dc._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.Default-First-Site-Name._sites.dc._msdcs.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _kerberos._tcp.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _kerberos._tcp.Default-First-Site-Name._sites.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _gc._tcp.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _gc._tcp.Default-First-Site-Name._sites.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _kerberos._udp.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _kpasswd._tcp.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _kpasswd._udp.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry DomainDnsZones.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.DomainDnsZones.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.Default-First-Site-Name._sites.DomainDnsZones.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry ForestDnsZones.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.ForestDnsZones.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
Query for DC DNS entry _ldap._tcp.Default-First-Site-Name._sites.ForestDnsZones.trb.uz. on DNS server 192.168.0.65 failed.
DNS Error code: DNS_ERROR_RCODE_NAME_ERROR (Name does not exist on DNS server)
    [WARNING] The DNS entries for this DC are not registered correctly on DNS server '192.168.0.65'. Please wait for 30 minutes for DNS server replication.


Redir and Browser test . . . . . . : Passed
    List of transports currently bound to the Redir
        NetbiosSmb
        NetBT_Tcpip_{C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}
    The redir is bound to 1 NetBt transport.

    List of transports currently bound to the browser
        NetBT_Tcpip_{C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}
    The browser is bound to 1 NetBt transport.
    Mailslot test for TRB* passed.


DC discovery test. . . . . . . . . : Passed

    Find DC in domain 'TRB':
    Found this DC in domain 'TRB':
        DC. . . . . . . . . . . : \\it.trb.uz
        Address . . . . . . . . : \\192.168.0.14
        Domain Guid . . . . . . : {EA7C2081-CE42-4F8E-86F1-243FC75A2ADD}
        Domain Name . . . . . . : trb.uz
        Forest Name . . . . . . : trb.uz
        DC Site Name. . . . . . : Default-First-Site-Name
        Our Site Name . . . . . : Default-First-Site-Name
        Flags . . . . . . . . . : PDC emulator GC DS KDC TIMESERV GTIMESERV WRITABLE DNS_DC DNS_DOMAIN DNS_FOREST CLOSE_SITE 0x8

    Find PDC emulator in domain 'TRB':
    Found this PDC emulator in domain 'TRB':
        DC. . . . . . . . . . . : \\it.trb.uz
        Address . . . . . . . . : \\192.168.0.14
        Domain Guid . . . . . . : {EA7C2081-CE42-4F8E-86F1-243FC75A2ADD}
        Domain Name . . . . . . : trb.uz
        Forest Name . . . . . . : trb.uz
        DC Site Name. . . . . . : Default-First-Site-Name
        Our Site Name . . . . . : Default-First-Site-Name
        Flags . . . . . . . . . : PDC emulator GC DS KDC TIMESERV GTIMESERV WRITABLE DNS_DC DNS_DOMAIN DNS_FOREST CLOSE_SITE 0x8

    Find Windows 2000 DC in domain 'TRB':
    Found this Windows 2000 DC in domain 'TRB':
        DC. . . . . . . . . . . : \\it.trb.uz
        Address . . . . . . . . : \\192.168.0.14
        Domain Guid . . . . . . : {EA7C2081-CE42-4F8E-86F1-243FC75A2ADD}
        Domain Name . . . . . . : trb.uz
        Forest Name . . . . . . : trb.uz
        DC Site Name. . . . . . : Default-First-Site-Name
        Our Site Name . . . . . : Default-First-Site-Name
        Flags . . . . . . . . . : PDC emulator GC DS KDC TIMESERV GTIMESERV WRITABLE DNS_DC DNS_DOMAIN DNS_FOREST CLOSE_SITE 0x8

Отправлено: 15:42, 28-02-2007 | #4


Аватара для rivera

Ветеран


Сообщения: 661
Благодарности: 10

Профиль | Отправить PM | Цитировать


продолжение netdiag /v сервера
Код: Выделить весь код
DC list test . . . . . . . . . . . : Passed
    List of DCs in Domain 'TRB':
        it.trb.uz


Trust relationship test. . . . . . : Skipped


Kerberos test. . . . . . . . . . . : Passed
    Cached Tickets:
    Server: krbtgt/TRB.UZ
        End Time: 3/1/2007 3:28:29
        Renew Time: 3/7/2007 17:28:29
    Server: host/it.trb.uz
        End Time: 3/1/2007 3:28:29
        Renew Time: 3/7/2007 17:28:29


LDAP test. . . . . . . . . . . . . : Passed

    Do un-authenticated LDAP call to 'it.trb.uz'.
        Found 1 entries:
        Attr: currentTime
            Val: 17 20070228123053.0Z
        Attr: subschemaSubentry
            Val: 52 CN=Aggregate,CN=Schema,CN=Configuration,DC=trb,DC=uz
        Attr: dsServiceName
            Val: 99 CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
        Attr: namingContexts
            Val: 12 DC=trb,DC=uz
            Val: 29 CN=Configuration,DC=trb,DC=uz
            Val: 39 CN=Schema,CN=Configuration,DC=trb,DC=uz
            Val: 30 DC=DomainDnsZones,DC=trb,DC=uz
            Val: 30 DC=ForestDnsZones,DC=trb,DC=uz
        Attr: defaultNamingContext
            Val: 12 DC=trb,DC=uz
        Attr: schemaNamingContext
            Val: 39 CN=Schema,CN=Configuration,DC=trb,DC=uz
        Attr: configurationNamingContext
            Val: 29 CN=Configuration,DC=trb,DC=uz
        Attr: rootDomainNamingContext
            Val: 12 DC=trb,DC=uz
        Attr: supportedControl
            Val: 22 1.2.840.113556.1.4.319
            Val: 22 1.2.840.113556.1.4.801
            Val: 22 1.2.840.113556.1.4.473
            Val: 22 1.2.840.113556.1.4.528
            Val: 22 1.2.840.113556.1.4.417
            Val: 22 1.2.840.113556.1.4.619
            Val: 22 1.2.840.113556.1.4.841
            Val: 22 1.2.840.113556.1.4.529
            Val: 22 1.2.840.113556.1.4.805
            Val: 22 1.2.840.113556.1.4.521
            Val: 22 1.2.840.113556.1.4.970
            Val: 23 1.2.840.113556.1.4.1338
            Val: 22 1.2.840.113556.1.4.474
            Val: 23 1.2.840.113556.1.4.1339
            Val: 23 1.2.840.113556.1.4.1340
            Val: 23 1.2.840.113556.1.4.1413
            Val: 23 2.16.840.1.113730.3.4.9
            Val: 24 2.16.840.1.113730.3.4.10
            Val: 23 1.2.840.113556.1.4.1504
            Val: 23 1.2.840.113556.1.4.1852
            Val: 22 1.2.840.113556.1.4.802
        Attr: supportedLDAPVersion
            Val: 1 3
            Val: 1 2
        Attr: supportedLDAPPolicies
            Val: 14 MaxPoolThreads
            Val: 15 MaxDatagramRecv
            Val: 16 MaxReceiveBuffer
            Val: 15 InitRecvTimeout
            Val: 14 MaxConnections
            Val: 15 MaxConnIdleTime
            Val: 11 MaxPageSize
            Val: 16 MaxQueryDuration
            Val: 16 MaxTempTableSize
            Val: 16 MaxResultSetSize
            Val: 22 MaxNotificationPerConn
            Val: 11 MaxValRange
        Attr: highestCommittedUSN
            Val: 5 66426
        Attr: supportedSASLMechanisms
            Val: 6 GSSAPI
            Val: 10 GSS-SPNEGO
            Val: 8 EXTERNAL
            Val: 10 DIGEST-MD5
        Attr: dnsHostName
            Val: 9 it.trb.uz
        Attr: ldapServiceName
            Val: 17 trb.uz:it$@TRB.UZ
        Attr: serverName
            Val: 82 CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
        Attr: supportedCapabilities
            Val: 22 1.2.840.113556.1.4.800
            Val: 23 1.2.840.113556.1.4.1670
            Val: 23 1.2.840.113556.1.4.1791
        Attr: isSynchronized
            Val: 4 TRUE
        Attr: isGlobalCatalogReady
            Val: 4 TRUE
        Attr: domainFunctionality
            Val: 1 0
        Attr: forestFunctionality
            Val: 1 0
        Attr: domainControllerFunctionality
            Val: 1 2

    Do NTLM authenticated LDAP call to 'it.trb.uz'.
        Found 1 entries:
        Attr: currentTime
            Val: 17 20070228123053.0Z
        Attr: subschemaSubentry
            Val: 52 CN=Aggregate,CN=Schema,CN=Configuration,DC=trb,DC=uz
        Attr: dsServiceName
            Val: 99 CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
        Attr: namingContexts
            Val: 12 DC=trb,DC=uz
            Val: 29 CN=Configuration,DC=trb,DC=uz
            Val: 39 CN=Schema,CN=Configuration,DC=trb,DC=uz
            Val: 30 DC=DomainDnsZones,DC=trb,DC=uz
            Val: 30 DC=ForestDnsZones,DC=trb,DC=uz
        Attr: defaultNamingContext
            Val: 12 DC=trb,DC=uz
        Attr: schemaNamingContext
            Val: 39 CN=Schema,CN=Configuration,DC=trb,DC=uz
        Attr: configurationNamingContext
            Val: 29 CN=Configuration,DC=trb,DC=uz
        Attr: rootDomainNamingContext
            Val: 12 DC=trb,DC=uz
        Attr: supportedControl
            Val: 22 1.2.840.113556.1.4.319
            Val: 22 1.2.840.113556.1.4.801
            Val: 22 1.2.840.113556.1.4.473
            Val: 22 1.2.840.113556.1.4.528
            Val: 22 1.2.840.113556.1.4.417
            Val: 22 1.2.840.113556.1.4.619
            Val: 22 1.2.840.113556.1.4.841
            Val: 22 1.2.840.113556.1.4.529
            Val: 22 1.2.840.113556.1.4.805
            Val: 22 1.2.840.113556.1.4.521
            Val: 22 1.2.840.113556.1.4.970
            Val: 23 1.2.840.113556.1.4.1338
            Val: 22 1.2.840.113556.1.4.474
            Val: 23 1.2.840.113556.1.4.1339
            Val: 23 1.2.840.113556.1.4.1340
            Val: 23 1.2.840.113556.1.4.1413
            Val: 23 2.16.840.1.113730.3.4.9
            Val: 24 2.16.840.1.113730.3.4.10
            Val: 23 1.2.840.113556.1.4.1504
            Val: 23 1.2.840.113556.1.4.1852
            Val: 22 1.2.840.113556.1.4.802
        Attr: supportedLDAPVersion
            Val: 1 3
            Val: 1 2
        Attr: supportedLDAPPolicies
            Val: 14 MaxPoolThreads
            Val: 15 MaxDatagramRecv
            Val: 16 MaxReceiveBuffer
            Val: 15 InitRecvTimeout
            Val: 14 MaxConnections
            Val: 15 MaxConnIdleTime
            Val: 11 MaxPageSize
            Val: 16 MaxQueryDuration
            Val: 16 MaxTempTableSize
            Val: 16 MaxResultSetSize
            Val: 22 MaxNotificationPerConn
            Val: 11 MaxValRange
        Attr: highestCommittedUSN
            Val: 5 66426
        Attr: supportedSASLMechanisms
            Val: 6 GSSAPI
            Val: 10 GSS-SPNEGO
            Val: 8 EXTERNAL
            Val: 10 DIGEST-MD5
        Attr: dnsHostName
            Val: 9 it.trb.uz
        Attr: ldapServiceName
            Val: 17 trb.uz:it$@TRB.UZ
        Attr: serverName
            Val: 82 CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
        Attr: supportedCapabilities
            Val: 22 1.2.840.113556.1.4.800
            Val: 23 1.2.840.113556.1.4.1670
            Val: 23 1.2.840.113556.1.4.1791
        Attr: isSynchronized
            Val: 4 TRUE
        Attr: isGlobalCatalogReady
            Val: 4 TRUE
        Attr: domainFunctionality
            Val: 1 0
        Attr: forestFunctionality
            Val: 1 0
        Attr: domainControllerFunctionality
            Val: 1 2

    Do Negotiate authenticated LDAP call to 'it.trb.uz'.
        Found 1 entries:
        Attr: currentTime
            Val: 17 20070228123053.0Z
        Attr: subschemaSubentry
            Val: 52 CN=Aggregate,CN=Schema,CN=Configuration,DC=trb,DC=uz
        Attr: dsServiceName
            Val: 99 CN=NTDS Settings,CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
        Attr: namingContexts
            Val: 12 DC=trb,DC=uz
            Val: 29 CN=Configuration,DC=trb,DC=uz
            Val: 39 CN=Schema,CN=Configuration,DC=trb,DC=uz
            Val: 30 DC=DomainDnsZones,DC=trb,DC=uz
            Val: 30 DC=ForestDnsZones,DC=trb,DC=uz
        Attr: defaultNamingContext
            Val: 12 DC=trb,DC=uz
        Attr: schemaNamingContext
            Val: 39 CN=Schema,CN=Configuration,DC=trb,DC=uz
        Attr: configurationNamingContext
            Val: 29 CN=Configuration,DC=trb,DC=uz
        Attr: rootDomainNamingContext
            Val: 12 DC=trb,DC=uz
        Attr: supportedControl
            Val: 22 1.2.840.113556.1.4.319
            Val: 22 1.2.840.113556.1.4.801
            Val: 22 1.2.840.113556.1.4.473
            Val: 22 1.2.840.113556.1.4.528
            Val: 22 1.2.840.113556.1.4.417
            Val: 22 1.2.840.113556.1.4.619
            Val: 22 1.2.840.113556.1.4.841
            Val: 22 1.2.840.113556.1.4.529
            Val: 22 1.2.840.113556.1.4.805
            Val: 22 1.2.840.113556.1.4.521
            Val: 22 1.2.840.113556.1.4.970
            Val: 23 1.2.840.113556.1.4.1338
            Val: 22 1.2.840.113556.1.4.474
            Val: 23 1.2.840.113556.1.4.1339
            Val: 23 1.2.840.113556.1.4.1340
            Val: 23 1.2.840.113556.1.4.1413
            Val: 23 2.16.840.1.113730.3.4.9
            Val: 24 2.16.840.1.113730.3.4.10
            Val: 23 1.2.840.113556.1.4.1504
            Val: 23 1.2.840.113556.1.4.1852
            Val: 22 1.2.840.113556.1.4.802
        Attr: supportedLDAPVersion
            Val: 1 3
            Val: 1 2
        Attr: supportedLDAPPolicies
            Val: 14 MaxPoolThreads
            Val: 15 MaxDatagramRecv
            Val: 16 MaxReceiveBuffer
            Val: 15 InitRecvTimeout
            Val: 14 MaxConnections
            Val: 15 MaxConnIdleTime
            Val: 11 MaxPageSize
            Val: 16 MaxQueryDuration
            Val: 16 MaxTempTableSize
            Val: 16 MaxResultSetSize
            Val: 22 MaxNotificationPerConn
            Val: 11 MaxValRange
        Attr: highestCommittedUSN
            Val: 5 66426
        Attr: supportedSASLMechanisms
            Val: 6 GSSAPI
            Val: 10 GSS-SPNEGO
            Val: 8 EXTERNAL
            Val: 10 DIGEST-MD5
        Attr: dnsHostName
            Val: 9 it.trb.uz
        Attr: ldapServiceName
            Val: 17 trb.uz:it$@TRB.UZ
        Attr: serverName
            Val: 82 CN=IT,CN=Servers,CN=Default-First-Site-Name,CN=Sites,CN=Configuration,DC=trb,DC=uz
        Attr: supportedCapabilities
            Val: 22 1.2.840.113556.1.4.800
            Val: 23 1.2.840.113556.1.4.1670
            Val: 23 1.2.840.113556.1.4.1791
        Attr: isSynchronized
            Val: 4 TRUE
        Attr: isGlobalCatalogReady
            Val: 4 TRUE
        Attr: domainFunctionality
            Val: 1 0
        Attr: forestFunctionality
            Val: 1 0
        Attr: domainControllerFunctionality
            Val: 1 2

    Registered Service Principal Names:
        ldap/it.trb.uz/ForestDnsZones.trb.uz
        ldap/it.trb.uz/DomainDnsZones.trb.uz
        DNS/it.trb.uz
        GC/it.trb.uz/trb.uz
        HOST/it.trb.uz/TRB
        HOST/IT
        HOST/it.trb.uz
        HOST/it.trb.uz/trb.uz
        E3514235-4B06-11D1-AB04-00C04FC2DCD2/19c5421b-b908-43f0-a9fe-d993e6a002d7/trb.uz
        ldap/19c5421b-b908-43f0-a9fe-d993e6a002d7._msdcs.trb.uz
        ldap/it.trb.uz/TRB
        ldap/IT
        ldap/it.trb.uz
        ldap/it.trb.uz/trb.uz
        NtFrs-88f5d2bd-b646-11d2-a6d3-00c04fc9b232/it.trb.uz


Routing table test . . . . . . . . : Passed
Active Routes :
Network Destination        Netmask           Gateway         Interface  Metric
         0.0.0.0           0.0.0.0      192.168.0.22      192.168.0.14      20
       127.0.0.0         255.0.0.0         127.0.0.1         127.0.0.1       1
     192.168.0.0     255.255.255.0      192.168.0.14      192.168.0.14      20
    192.168.0.14   255.255.255.255         127.0.0.1         127.0.0.1      20
   192.168.0.255   255.255.255.255      192.168.0.14      192.168.0.14      20
       224.0.0.0         240.0.0.0      192.168.0.14      192.168.0.14      20
 255.255.255.255   255.255.255.255      192.168.0.14      192.168.0.14       1
No persistent route entries.


Netstat information test . . . . . : Passed


    Interface Statistics

                                    Received             Sent
    Unicast Packets                406916742        618082829
    Non-unicast packets              4129586            91656
    Discards                               0                0
    Errors                                 0                0
    Unknown protocols                 171081           458284

    Interface index         =  1
    Description             =  MS TCP Loopback interface
    Type                    =  24
    MTU                     =  1520
    Speed                   =  10000000
    Physical Address        =  00-00-00-00-00-00
    Administrative Status   =  1
    Operational Status      =  1
    Last Changed            =  1689809917
    Output Queue Length     =  0


    Interface index         =  65539
    Description             =  BCM5703 Gigabit Ethernet
    Type                    =  6
    MTU                     =  1500
    Speed                   =  100000000
    Physical Address        =  00-0B-CD-CF-A6-0A
    Administrative Status   =  1
    Operational Status      =  1
    Last Changed            =  1689809942
    Output Queue Length     =  0
    Active Connections

  Proto Local Address         Foreign Address                           State
    TCP   it:domain             it.trb.uz:8201                            LISTENING
    TCP   it:kerberos           it.trb.uz:2064                            LISTENING
    TCP   it:epmap              it.trb.uz:2096                            LISTENING
    TCP   it:ldap               it.trb.uz:63692                           LISTENING
    TCP   it:microsoft-ds       it.trb.uz:34933                           LISTENING
    TCP   it:kpasswd            it.trb.uz:8314                            LISTENING
    TCP   it:593                it.trb.uz:45059                           LISTENING
    TCP   it:ldaps              it.trb.uz:22694                           LISTENING
    TCP   it:1025               it.trb.uz:59445                           LISTENING
    TCP   it:1026               it.trb.uz:10364                           LISTENING
    TCP   it:1028               it.trb.uz:37045                           LISTENING
    TCP   it:1043               it.trb.uz:22603                           LISTENING
    TCP   it:1045               it.trb.uz:41034                           LISTENING
    TCP   it:1048               it.trb.uz:10268                           LISTENING
    TCP   it:1081               it.trb.uz:2293                            LISTENING
    TCP   it:3268               it.trb.uz:45240                           LISTENING
    TCP   it:3269               it.trb.uz:2160                            LISTENING
    TCP   it:6129               it.trb.uz:6227                            LISTENING
    TCP   it:ldap               it.trb.uz:1036                            ESTABLISHED
    TCP   it:ldap               it.trb.uz:1037                            ESTABLISHED
    TCP   it:ldap               it.trb.uz:1038                            ESTABLISHED
    TCP   it:ldap               it.trb.uz:4424                            ESTABLISHED
    TCP   it:1036               it.trb.uz:ldap                            ESTABLISHED
    TCP   it:1037               it.trb.uz:ldap                            ESTABLISHED
    TCP   it:1038               it.trb.uz:ldap                            ESTABLISHED
    TCP   it:4424               it.trb.uz:ldap                            ESTABLISHED
    TCP   it:4741               it.trb.uz:microsoft-ds                    TIME_WAIT
    TCP   it:4742               it.trb.uz:microsoft-ds                    TIME_WAIT
    TCP   it:4743               it.trb.uz:microsoft-ds                    TIME_WAIT
    TCP   it:4744               it.trb.uz:microsoft-ds                    TIME_WAIT
    TCP   it:epmap              STORE00:1102                              ESTABLISHED
    TCP   it:netbios-ssn        it.trb.uz:43118                           LISTENING
    TCP   it:netbios-ssn        STORE00:1064                              ESTABLISHED
    TCP   it:netbios-ssn        RD:1383                                   ESTABLISHED
    TCP   it:netbios-ssn        OPER07:1471                               ESTABLISHED
    TCP   it:ldap               it.trb.uz:4321                            ESTABLISHED
    TCP   it:ldap               it.trb.uz:4653                            ESTABLISHED
    TCP   it:ldap               it.trb.uz:4729                            TIME_WAIT
    TCP   it:ldap               it.trb.uz:4730                            TIME_WAIT
    TCP   it:ldap               it.trb.uz:4732                            TIME_WAIT
    TCP   it:ldap               it.trb.uz:4812                            TIME_WAIT
    TCP   it:ldap               it.trb.uz:4813                            TIME_WAIT
    TCP   it:ldap               it.trb.uz:4814                            ESTABLISHED
    TCP   it:ldap               it.trb.uz:4815                            TIME_WAIT
    TCP   it:microsoft-ds       STORE01:1200                              ESTABLISHED
    TCP   it:microsoft-ds       OPER10:1062                               ESTABLISHED
    TCP   it:microsoft-ds       BUHCARD:1513                              ESTABLISHED
    TCP   it:microsoft-ds       ECON01:2005                               ESTABLISHED
    TCP   it:microsoft-ds       C011:1313                                 ESTABLISHED
    TCP   it:microsoft-ds       N001:1080                                 ESTABLISHED

-------
...


Отправлено: 15:53, 28-02-2007 | #5


Аватара для rivera

Ветеран


Сообщения: 661
Благодарности: 10

Профиль | Отправить PM | Цитировать


продолжение netdiag /v сервера
Код: Выделить весь код
    TCP   it:1025               it.trb.uz:1103                            ESTABLISHED
    TCP   it:1025               it.trb.uz:1104                            ESTABLISHED
    TCP   it:1025               it.trb.uz:1262                            ESTABLISHED
    TCP   it:1103               it.trb.uz:1025                            ESTABLISHED
    TCP   it:1104               it.trb.uz:1025                            ESTABLISHED
    TCP   it:1262               it.trb.uz:1025                            ESTABLISHED
    TCP   it:1369               it.trb.uz:ldap                            CLOSE_WAIT
    TCP   it:1401               it.trb.uz:ldap                            CLOSE_WAIT
    TCP   it:1688               RD:microsoft-ds                           ESTABLISHED
    TCP   it:2287               STORE00:microsoft-ds                      ESTABLISHED
    TCP   it:3965               N001:microsoft-ds                         ESTABLISHED
    TCP   it:4321               it.trb.uz:ldap                            ESTABLISHED
    TCP   it:4653               it.trb.uz:ldap                            ESTABLISHED
    TCP   it:4655               it.trb.uz:epmap                           TIME_WAIT
    TCP   it:4656               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4657               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4707               STORE01:microsoft-ds                      ESTABLISHED
    TCP   it:4724               it.trb.uz:epmap                           TIME_WAIT
    TCP   it:4725               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4726               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4727               ML:netbios-ssn                            TIME_WAIT
    TCP   it:4733               it.trb.uz:epmap                           TIME_WAIT
    TCP   it:4734               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4735               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4739               it.trb.uz:epmap                           TIME_WAIT
    TCP   it:4740               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4745               C011:microsoft-ds                         ESTABLISHED
    TCP   it:4748               192.168.0.17:9100                         TIME_WAIT
    TCP   it:4807               it.trb.uz:epmap                           TIME_WAIT
    TCP   it:4808               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4809               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4810               ML:netbios-ssn                            TIME_WAIT
    TCP   it:4814               it.trb.uz:ldap                            ESTABLISHED
    TCP   it:4816               it.trb.uz:epmap                           TIME_WAIT
    TCP   it:4817               it.trb.uz:1025                            TIME_WAIT
    TCP   it:4818               it.trb.uz:1025                            TIME_WAIT
    TCP   it:5001               it.trb.uz:53464                           LISTENING
    TCP   it:6129               DALLAS:1543                               ESTABLISHED
    UDP  it:epmap              *:*                                     
    UDP  it:microsoft-ds       *:*                                     
    UDP  it:isakmp             *:*                                     
    UDP  it:1030               *:*                                     
    UDP  it:1031               *:*                                     
    UDP  it:1035               *:*                                     
    UDP  it:1040               *:*                                     
    UDP  it:1041               *:*                                     
    UDP  it:1042               *:*                                     
    UDP  it:1044               *:*                                     
    UDP  it:1046               *:*                                     
    UDP  it:1049               *:*                                     
    UDP  it:1051               *:*                                     
    UDP  it:1070               *:*                                     
    UDP  it:1084               *:*                                     
    UDP  it:1114               *:*                                     
    UDP  it:1124               *:*                                     
    UDP  it:1368               *:*                                     
    UDP  it:2967               *:*                                     
    UDP  it:3105               *:*                                     
    UDP  it:4158               *:*                                     
    UDP  it:4500               *:*                                     
    UDP  it:4811               *:*                                     
    UDP  it:38293              *:*                                     
    UDP  it:domain             *:*                                     
    UDP  it:ntp                *:*                                     
    UDP  it:1039               *:*                                     
    UDP  it:domain             *:*                                     
    UDP  it:bootps             *:*                                     
    UDP  it:bootpc             *:*                                     
    UDP  it:kerberos           *:*                                     
    UDP  it:ntp                *:*                                     
    UDP  it:netbios-ns         *:*                                     
    UDP  it:netbios-dgm        *:*                                     
    UDP  it:389                *:*                                     
    UDP  it:kpasswd            *:*                                     
    UDP  it:2535               *:*                                     

    IP  Statistics

    Packets Received              =   16*536*602
    Received Header Errors        =   0
    Received Address Errors       =   131*440
    Datagrams Forwarded           =   0
    Unknown Protocols Received    =   0
    Received Packets Discarded    =   0
    Received Packets Delivered    =   16*434*128
    Output Requests               =   13*277*643
    Routing Discards              =   0
    Discarded Output Packets      =   0
    Output Packet No Route        =   0
    Reassembly  Required          =   76
    Reassembly Successful         =   38
    Reassembly Failures           =   0
    Datagrams successfully fragmented  =   38
    Datagrams failing fragmentation    =   0
    Fragments Created                  =   76
    Forwarding                        =    2
    Default TTL                       =    128
    Reassembly  timeout               =    60


    TCP Statistics 

    Active Opens               =    116*016
    Passive Opens              =    124*121
    Failed Connection Attempts =    4*390
    Reset Connections          =    1*371
    Current Connections        =    38
    Received Segments          =    11*893*321
    Segment Sent               =    11*165*161
    Segment Retransmitted      =    21*133
    Retransmission Timeout Algorithm  =   vanj
    Minimum Retransmission Timeout  = 300
    Maximum Retransmission Timeout  = 120*000
    Maximum Number of Connections   = -1


    UDP Statistics

    Datagrams Received    =   4*400*376
    No Ports              =   93*048
    Receive Errors        =   0
    Datagrams Sent        =   1*988*148


    ICMP Statistics 

                              Received           Sent
    Messages                    96*119         96*119
    Errors                           0              0
    Destination  Unreachable     5*625          5*625
    Time    Exceeded                 0              0
    Parameter Problems               0              0
    Source Quenchs                   0              0
    Redirects                        0              0
    Echos                       47*383         47*383
    Echo Replies                43*111         43*111
    Timestamps                       0              0
    Timestamp Replies                0              0
    Address Masks                    0              0
    Address Mask Replies             0              0


Bindings test. . . . . . . . . . . : Passed
    Component Name : NDIS Usermode I/O Protocol
    Bind Name: Ndisuio
    Binding Paths:
        Owner of the binding path : NDIS Usermode I/O Protocol
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndis5
            Upper Component: NDIS Usermode I/O Protocol
            Lower Component: BCM5703 Gigabit Ethernet


    Component Name : Point to Point Protocol Over Ethernet
    Bind Name: RasPppoe
    Binding Paths:
        Owner of the binding path : Point to Point Protocol Over Ethernet
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndis5
            Upper Component: Point to Point Protocol Over Ethernet
            Lower Component: BCM5703 Gigabit Ethernet


    Component Name : Point to Point Tunneling Protocol
    Bind Name: mspptp
    Binding Paths:

    Component Name : Layer 2 Tunneling Protocol
    Bind Name: msl2tp
    Binding Paths:

    Component Name : Remote Access NDIS WAN Driver
    Bind Name: NdisWan
    Binding Paths:
        Owner of the binding path : Remote Access NDIS WAN Driver
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndiscowan
            Upper Component: Remote Access NDIS WAN Driver
            Lower Component: Direct Parallel

        Owner of the binding path : Remote Access NDIS WAN Driver
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndiswan
            Upper Component: Remote Access NDIS WAN Driver
            Lower Component: WAN Miniport (PPPOE)

        Owner of the binding path : Remote Access NDIS WAN Driver
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndiswan
            Upper Component: Remote Access NDIS WAN Driver
            Lower Component: WAN Miniport (PPTP)

        Owner of the binding path : Remote Access NDIS WAN Driver
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndiscowan
            Upper Component: Remote Access NDIS WAN Driver
            Lower Component: WAN Miniport (L2TP)

        Owner of the binding path : Remote Access NDIS WAN Driver
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndiswanasync
            Upper Component: Remote Access NDIS WAN Driver
            Lower Component: RAS Async Adapter


    Component Name : Message-oriented TCP/IP Protocol (SMB session)
    Bind Name: NetbiosSmb
    Binding Paths:

    Component Name : WINS Client(TCP/IP) Protocol
    Bind Name: NetBT
    Binding Paths:
        Owner of the binding path : WINS Client(TCP/IP) Protocol
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: tdi
            Upper Component: WINS Client(TCP/IP) Protocol
            Lower Component: Internet Protocol (TCP/IP)
        -Interface Name: ndis5
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: BCM5703 Gigabit Ethernet

        Owner of the binding path : WINS Client(TCP/IP) Protocol
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: tdi
            Upper Component: WINS Client(TCP/IP) Protocol
            Lower Component: Internet Protocol (TCP/IP)
        -Interface Name: ndiswanip
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: WAN Miniport (IP)


    Component Name : Internet Protocol (TCP/IP)
    Bind Name: Tcpip
    Binding Paths:
        Owner of the binding path : Internet Protocol (TCP/IP)
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndis5
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: BCM5703 Gigabit Ethernet

        Owner of the binding path : Internet Protocol (TCP/IP)
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: ndiswanip
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: WAN Miniport (IP)


    Component Name : Client for Microsoft Networks
    Bind Name: LanmanWorkstation
    Binding Paths:
        Owner of the binding path : Client for Microsoft Networks
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: netbios_smb
            Upper Component: Client for Microsoft Networks
            Lower Component: Message-oriented TCP/IP Protocol (SMB session)

        Owner of the binding path : Client for Microsoft Networks
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: netbios
            Upper Component: Client for Microsoft Networks
            Lower Component: WINS Client(TCP/IP) Protocol
        -Interface Name: tdi
            Upper Component: WINS Client(TCP/IP) Protocol
            Lower Component: Internet Protocol (TCP/IP)
        -Interface Name: ndis5
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: BCM5703 Gigabit Ethernet

        Owner of the binding path : Client for Microsoft Networks
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: netbios
            Upper Component: Client for Microsoft Networks
            Lower Component: WINS Client(TCP/IP) Protocol
        -Interface Name: tdi
            Upper Component: WINS Client(TCP/IP) Protocol
            Lower Component: Internet Protocol (TCP/IP)
        -Interface Name: ndiswanip
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: WAN Miniport (IP)


    Component Name : WebClient
    Bind Name: WebClient
    Binding Paths:

    Component Name : DHCP Server
    Bind Name: DHCPServer
    Binding Paths:

    Component Name : Wireless Configuration
    Bind Name: wzcsvc
    Binding Paths:

    Component Name : Network Load Balancing
    Bind Name: Wlbs
    Binding Paths:
        Owner of the binding path : Network Load Balancing
        Binding Enabled: No
    Interfaces of the binding path: 
        -Interface Name: ndis5
            Upper Component: Network Load Balancing
            Lower Component: BCM5703 Gigabit Ethernet


    Component Name : Steelhead
    Bind Name: RemoteAccess
    Binding Paths:

    Component Name : Dial-Up Server
    Bind Name: msrassrv
    Binding Paths:

    Component Name : Remote Access Connection Manager
    Bind Name: RasMan
    Binding Paths:

    Component Name : Dial-Up Client
    Bind Name: msrascli
    Binding Paths:

    Component Name : File and Printer Sharing for Microsoft Networks
    Bind Name: LanmanServer
    Binding Paths:
        Owner of the binding path : File and Printer Sharing for Microsoft Networks
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: netbios_smb
            Upper Component: File and Printer Sharing for Microsoft Networks
            Lower Component: Message-oriented TCP/IP Protocol (SMB session)

        Owner of the binding path : File and Printer Sharing for Microsoft Networks
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: netbios
            Upper Component: File and Printer Sharing for Microsoft Networks
            Lower Component: WINS Client(TCP/IP) Protocol
        -Interface Name: tdi
            Upper Component: WINS Client(TCP/IP) Protocol
            Lower Component: Internet Protocol (TCP/IP)
        -Interface Name: ndis5
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: BCM5703 Gigabit Ethernet

        Owner of the binding path : File and Printer Sharing for Microsoft Networks
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: netbios
            Upper Component: File and Printer Sharing for Microsoft Networks
            Lower Component: WINS Client(TCP/IP) Protocol
        -Interface Name: tdi
            Upper Component: WINS Client(TCP/IP) Protocol
            Lower Component: Internet Protocol (TCP/IP)
        -Interface Name: ndiswanip
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: WAN Miniport (IP)


    Component Name : NetBIOS Interface
    Bind Name: NetBIOS
    Binding Paths:
        Owner of the binding path : NetBIOS Interface
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: netbios
            Upper Component: NetBIOS Interface
            Lower Component: WINS Client(TCP/IP) Protocol
        -Interface Name: tdi
            Upper Component: WINS Client(TCP/IP) Protocol
            Lower Component: Internet Protocol (TCP/IP)
        -Interface Name: ndis5
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: BCM5703 Gigabit Ethernet

        Owner of the binding path : NetBIOS Interface
        Binding Enabled: Yes
    Interfaces of the binding path: 
        -Interface Name: netbios
            Upper Component: NetBIOS Interface
            Lower Component: WINS Client(TCP/IP) Protocol
        -Interface Name: tdi
            Upper Component: WINS Client(TCP/IP) Protocol
            Lower Component: Internet Protocol (TCP/IP)
        -Interface Name: ndiswanip
            Upper Component: Internet Protocol (TCP/IP)
            Lower Component: WAN Miniport (IP)


    Component Name : Generic Packet Classifier
    Bind Name: Gpc
    Binding Paths:

    Component Name : Application Layer Gateway
    Bind Name: ALG
    Binding Paths:

    Component Name : WAN Miniport (IP)
    Bind Name: NdisWanIp
    Binding Paths:

    Component Name : Direct Parallel
    Bind Name: {8917DB20-FE55-4D4A-A59F-C05B12B8EC23}
    Binding Paths:

    Component Name : WAN Miniport (PPPOE)
    Bind Name: {3BB89DC8-F4A9-4E47-9341-CD309E55C0DE}
    Binding Paths:

    Component Name : WAN Miniport (PPTP)
    Bind Name: {29C5E114-D3BE-4AE4-96D5-94BA46CEC47E}
    Binding Paths:

    Component Name : WAN Miniport (L2TP)
    Bind Name: {8B0B9F7B-46D9-458B-ABA3-72F3B91BF9D6}
    Binding Paths:

    Component Name : RAS Async Adapter
    Bind Name: {825C3C23-A83B-4072-8BDA-38AB93496943}
    Binding Paths:

    Component Name : BCM5703 Gigabit Ethernet
    Bind Name: {C7C4EBFB-728B-4FA8-81DA-F99E86DF3DDA}
    Binding Paths:

WAN configuration test . . . . . . : Skipped
    No active remote access connections.

Modem diagnostics test . . . . . . : Passed

IP Security test . . . . . . . . . : Skipped
    Note: run "netsh ipsec dynamic show /?" for more detailed information

The command completed successfully

-------
...


Отправлено: 15:54, 28-02-2007 | #6


Аватара для rivera

Ветеран


Сообщения: 661
Благодарности: 10

Профиль | Отправить PM | Цитировать


ну вот опять затишье...

-------
...


Отправлено: 13:36, 02-03-2007 | #7



Компьютерный форум OSzone.net » Серверные продукты Microsoft » Microsoft Windows NT/2000/2003 » ошибки политики безопасности.

Участник сейчас на форуме Участник сейчас на форуме Участник вне форума Участник вне форума Автор темы Автор темы Шапка темы Сообщение прикреплено

Похожие темы
Название темы Автор Информация о форуме Ответов Последнее сообщение
Загрузка - Применение политики безопасности, win2000pro kudling Microsoft Windows 2000/XP 0 17-05-2009 18:42
Слетает настройка локальной политики безопасности SerBep Microsoft Windows NT/2000/2003 0 22-05-2008 13:34
[решено] Форсированное применение политики безопасности КД rrev Microsoft Windows NT/2000/2003 8 18-04-2007 15:06
Ошибка приминения политики безопасности Andrey3952 Microsoft Windows NT/2000/2003 1 04-05-2006 15:55
Настройка локальной политики безопасности yager Защита компьютерных систем 2 03-02-2006 17:25




 
Переход