OVH Cloud OVH Cloud

Duplicate SID

1 réponse
Avatar
Guy
Bonjour, (Ce message est aussi posté dans
...fr.windows2000server)

J'ai un domaine W2k SP4 avec 2 CD (CD1 et CD2). CD2 utilise des RID qui ont
déjà été utilisé. Tout nouvel objet créé obtient donc un SID déjà existant.
Le système repère que le SID existe déjà, efface le nouvel objet (c'est
bien), et efface l'ancien objet avec le même SID (c'est plus embêtant,
heureusement le journal à la liste des objets effacés).

Source : SAM
EventID: 12293
User: S-1-5-21-xxxxxxxxxx-xxxxxxxxxx-xxxxxxxxxx-6694

There are two or more objects that have the same SID attribute in the SAM
datatbase. The Distinguished Name of the account is CN=CINA
,OU=monOU,DC=mydomain,DC=ch. All duplicate accounts have been deleted. Check
the event log for additional Duplicates

J'ai évidement la même erreur 2 fois avec le même SID

La commande dcdiag /v /test:ridmanager donne les résultats suivants:
Sur CD1:
DC Diagnosis

Performing initial setup:
* Verifing that the local machine CD1, is a DC.
* Connecting to directory service on server CD1.
* Collecting site info.
* Identifying all servers.
* Found 2 DC(s). Testing 1 of them.
Done gathering initial info.

Doing initial non skippeable tests

Testing server: Site1\CD1
Starting test: Connectivity
* Active Directory LDAP Services Check
* Active Directory RPC Services Check
......................... CD1 passed test Connectivity

Doing primary tests

Testing server: Site1\CD1
Test omitted by user request: Replications
Test omitted by user request: Topology
Test omitted by user request: CutoffServers
Test omitted by user request: NCSecDesc
Test omitted by user request: NetLogons
Test omitted by user request: Advertising
Test omitted by user request: KnowsOfRoleHolders
Starting test: RidManager
* Available RID Pool for the Domain is 8601 to 1073741823
* CD1.mydomain.ch is the RID Master
* DsBind with RID Master was successful
* rIDAllocationPool is 8101 to 8600
* rIDNextRID: 8143
* rIDPreviousAllocationPool is 8101 to 8600
......................... CD1 passed test RidManager
Test omitted by user request: MachineAccount
Test omitted by user request: Services
Test omitted by user request: OutboundSecureChannels
Test omitted by user request: ObjectsReplicated
Test omitted by user request: frssysvol
Test omitted by user request: kccevent
Test omitted by user request: systemlog

Running enterprise tests on : mydomain.ch
Test omitted by user request: Intersite
Test omitted by user request: FsmoCheck

Sur CD2:

DC Diagnosis

Performing initial setup:
* Verifing that the local machine CD2, is a DC.
* Connecting to directory service on server CD2.
* Collecting site info.
* Identifying all servers.
* Found 2 DC(s). Testing 1 of them.
Done gathering initial info.

Doing initial non skippeable tests

Testing server: Site2\CD2
Starting test: Connectivity
* Active Directory LDAP Services Check
* Active Directory RPC Services Check
......................... CD2 passed test Connectivity

Doing primary tests

Testing server: Site2\CD2
Test omitted by user request: Replications
Test omitted by user request: Topology
Test omitted by user request: CutoffServers
Test omitted by user request: NCSecDesc
Test omitted by user request: NetLogons
Test omitted by user request: Advertising
Test omitted by user request: KnowsOfRoleHolders
Starting test: RidManager
* Available RID Pool for the Domain is 8601 to 1073741823
* CD1.mydomain.ch is the RID Master
* DsBind with RID Master was successful
* rIDAllocationPool is 7601 to 8100
* rIDNextRID: 6694
* rIDPreviousAllocationPool is 6601 to 7100
......................... CD2 passed test RidManager
Test omitted by user request: MachineAccount
Test omitted by user request: Services
Test omitted by user request: OutboundSecureChannels
Test omitted by user request: ObjectsReplicated
Test omitted by user request: frssysvol
Test omitted by user request: kccevent
Test omitted by user request: systemlog

Running enterprise tests on : mydomain.ch
Test omitted by user request: Intersite
Test omitted by user request: FsmoCheck

Les SID en erreur appartiennent bien a CD2 qui affecte des SID avec comme
RID => rIDNextRID: 6694 dans la tranche => rIDPreviousAllocationPool is 6601
to 7100.

J'ai essayé de modifié la valeur rIDNextRID (avec ADSIEdit) en la mettant à
7099. En créant 2 objets supplémentaires le système passerai à la tranche
suivante... (pas très pro, mais bon) => Le système me dit que la valeur est
utilisée par le système et que je ne peux donc pas la mettre à jour !

J'ai longuement cherché (sur le technet, KB, news, etc) un utilitaire
(NTDSUtil ?) me permettant de dire au CD2 de prendre la tranche de RID
suivante, sans résultat.

Bref, je suis à cours d'idée.

Meilleures salutations

Guy

1 réponse

Avatar
Emmanuel Dreux
Bonjour,

dépromotez le dc qui a la mauvaise plage puis repromotez le.

--
Cordialement,
Emmanuel Dreux

"Guy" wrote in message
news:
Bonjour, (Ce message est aussi posté dans
...fr.windows2000server)

J'ai un domaine W2k SP4 avec 2 CD (CD1 et CD2). CD2 utilise des RID qui
ont déjà été utilisé. Tout nouvel objet créé obtient donc un SID déjà
existant. Le système repère que le SID existe déjà, efface le nouvel objet
(c'est bien), et efface l'ancien objet avec le même SID (c'est plus
embêtant, heureusement le journal à la liste des objets effacés).

Source : SAM
EventID: 12293
User: S-1-5-21-xxxxxxxxxx-xxxxxxxxxx-xxxxxxxxxx-6694

There are two or more objects that have the same SID attribute in the SAM
datatbase. The Distinguished Name of the account is CN=CINA
,OU=monOU,DC=mydomain,DC=ch. All duplicate accounts have been deleted.
Check the event log for additional Duplicates

J'ai évidement la même erreur 2 fois avec le même SID

La commande dcdiag /v /test:ridmanager donne les résultats suivants:
Sur CD1:
DC Diagnosis

Performing initial setup:
* Verifing that the local machine CD1, is a DC.
* Connecting to directory service on server CD1.
* Collecting site info.
* Identifying all servers.
* Found 2 DC(s). Testing 1 of them.
Done gathering initial info.

Doing initial non skippeable tests

Testing server: Site1CD1
Starting test: Connectivity
* Active Directory LDAP Services Check
* Active Directory RPC Services Check
......................... CD1 passed test Connectivity

Doing primary tests

Testing server: Site1CD1
Test omitted by user request: Replications
Test omitted by user request: Topology
Test omitted by user request: CutoffServers
Test omitted by user request: NCSecDesc
Test omitted by user request: NetLogons
Test omitted by user request: Advertising
Test omitted by user request: KnowsOfRoleHolders
Starting test: RidManager
* Available RID Pool for the Domain is 8601 to 1073741823
* CD1.mydomain.ch is the RID Master
* DsBind with RID Master was successful
* rIDAllocationPool is 8101 to 8600
* rIDNextRID: 8143
* rIDPreviousAllocationPool is 8101 to 8600
......................... CD1 passed test RidManager
Test omitted by user request: MachineAccount
Test omitted by user request: Services
Test omitted by user request: OutboundSecureChannels
Test omitted by user request: ObjectsReplicated
Test omitted by user request: frssysvol
Test omitted by user request: kccevent
Test omitted by user request: systemlog

Running enterprise tests on : mydomain.ch
Test omitted by user request: Intersite
Test omitted by user request: FsmoCheck

Sur CD2:

DC Diagnosis

Performing initial setup:
* Verifing that the local machine CD2, is a DC.
* Connecting to directory service on server CD2.
* Collecting site info.
* Identifying all servers.
* Found 2 DC(s). Testing 1 of them.
Done gathering initial info.

Doing initial non skippeable tests

Testing server: Site2CD2
Starting test: Connectivity
* Active Directory LDAP Services Check
* Active Directory RPC Services Check
......................... CD2 passed test Connectivity

Doing primary tests

Testing server: Site2CD2
Test omitted by user request: Replications
Test omitted by user request: Topology
Test omitted by user request: CutoffServers
Test omitted by user request: NCSecDesc
Test omitted by user request: NetLogons
Test omitted by user request: Advertising
Test omitted by user request: KnowsOfRoleHolders
Starting test: RidManager
* Available RID Pool for the Domain is 8601 to 1073741823
* CD1.mydomain.ch is the RID Master
* DsBind with RID Master was successful
* rIDAllocationPool is 7601 to 8100
* rIDNextRID: 6694
* rIDPreviousAllocationPool is 6601 to 7100
......................... CD2 passed test RidManager
Test omitted by user request: MachineAccount
Test omitted by user request: Services
Test omitted by user request: OutboundSecureChannels
Test omitted by user request: ObjectsReplicated
Test omitted by user request: frssysvol
Test omitted by user request: kccevent
Test omitted by user request: systemlog

Running enterprise tests on : mydomain.ch
Test omitted by user request: Intersite
Test omitted by user request: FsmoCheck

Les SID en erreur appartiennent bien a CD2 qui affecte des SID avec comme
RID => rIDNextRID: 6694 dans la tranche => rIDPreviousAllocationPool is
6601 to 7100.

J'ai essayé de modifié la valeur rIDNextRID (avec ADSIEdit) en la mettant
à 7099. En créant 2 objets supplémentaires le système passerai à la
tranche suivante... (pas très pro, mais bon) => Le système me dit que la
valeur est utilisée par le système et que je ne peux donc pas la mettre à
jour !

J'ai longuement cherché (sur le technet, KB, news, etc) un utilitaire
(NTDSUtil ?) me permettant de dire au CD2 de prendre la tranche de RID
suivante, sans résultat.

Bref, je suis à cours d'idée.

Meilleures salutations

Guy