Build a great reporting interface using Splunk, one of the leaders in the Security Information and Event Management (SIEM) field, linking the collected Windows events to www.eventid.net. The EventId.Net for Splunk Add-on assumes that Splunk is collecting information from Windows servers and workstation via the Splunk Universal Forwarder.
Process INETINFO.EXE (PID=200). DSAccess is unable to connect to the Domain Controller domain although its service location (SRV) resource record was found in the DNS
The query was for the SRV record for _ldap._tcp.dc._msdcs.domain
The following domain controllers were identified by the query:
Common causes of this error include:
- Host (A) records that map the name of the domain controller to its IP addresses are missing or contain incorrect addresses.
- Domain controllers registered in DNS are not connected to the network or are not running.
For information about correcting this problem type in the command line:
|English: Request a translation of the event description in plain English.|
|Concepts to understand:|
What are the DNS zone files and resource records?
As per Microsoft: "This event may be logged if the required A (Address) resource records that map the names of the domain controllers to their respective IP addresses do not exist in DNS". See MSEX2K3DB for additional information about this event.
|Private comment: Subscribers only. See example of private comment|
|Search: Google - Bing - Microsoft - Yahoo - EventID.Net Queue (0) - More links...|
Send comments or solutions
- Notify me when updated