Event Id | 5744 |
Source | NETLOGON |
Description | Registration of the DNS record _ldap._tcp.MainSite._sites.pacific.firstworld.com. 600 IN SRV 0 100 389 childdcname.childdomain.parentdomain.com. failed with the following error: DNS operation refused. |
Event Information | According to Microsoft: CAUSE: Registration of SRV records may not work if the following conditions exist: 1. During the Dcpromo.exe process on the first domain controller for a child domain, that domain controller points to the Active Directory-integrated DNS server in the parent domain as a primary DNS server. 2. The Allow dynamic updates setting on the parent Active Directory-integrated DNS server is set to Only Secure Updates. RESOLUTION: To resolve this issue: 1. In the parent domain, start the DNS snap-in. 2. Open the Forward Lookup zone, right-click your domain name, and then click Properties. 3. On the General tab, make sure that Allow dynamic updates is set to Yes. By default, this is set to Only Secure Updates. 4. Stop and then restart the DNS service. At a command prompt, type the following lines, pressing ENTER after each line: net stop dns net start dns 5. On the child domain controller, stop and then restart the Netlogon service. This registers SRV records. At a command prompt, type the following lines, pressing ENTER after each line: net stop netlogon net start netlogon. |
Reference Links | SRV Records Cannot Be Registered on a DNS Server Troubleshooting Netlogon Event 5774, 5775, and 5781 |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.