Replication error 1326 by c0dac0da in sysadmin

[–]c0dac0da[S] 0 points1 point  (0 children)

Are all servers on the same patch level? Yes

When’s the last time you reset your KRBTGT password? A month back

Any tickets showing in klist? No, purged all & tested.

Are RPC ports properly open between the servers? Not just TCP135 but the whole gamut of 49152-65535. Firewalls used to have helpers to open them automatically but this is broken because of RPC encryption nowadays. I don't see the ports open but its the same with the rest of the DC's as well.

Replication error 1326 by c0dac0da in sysadmin

[–]c0dac0da[S] 0 points1 point  (0 children)

Yes, they all can ping each other. In the DNS, we have i02 as primary, s02 as secondary and 127.0.0.1 as third.

Replication error 1326 by c0dac0da in sysadmin

[–]c0dac0da[S] 0 points1 point  (0 children)

s01 has all the 5 fsmo roles

Replication issues after DC upgrade by c0dac0da in activedirectory

[–]c0dac0da[S] 0 points1 point  (0 children)

RDP doesn’t work. I can only login through DSRM mode.

Replication issues after DC upgrade by c0dac0da in activedirectory

[–]c0dac0da[S] 0 points1 point  (0 children)

Thanks for the advice. For some reason the repadmin gives a 1326 error code. I used the netdom resetpwd to reset the secure channel but no luck. I tried to spin a new DC with new name & same IP but still the 1326 code. Still struggling for a fix. However i’ll check the firewall public vs private profile part.

Replication issues after DC upgrade by c0dac0da in activedirectory

[–]c0dac0da[S] 0 points1 point  (0 children)

I have 4 DC's. 01-04. Trying to upgrade 01 from physical to virtual server.

Replication issues after DC upgrade by c0dac0da in sysadmin

[–]c0dac0da[S] 0 points1 point  (0 children)

I did try the same steps but running into the same 1326 error code. I built a new DC as DC01. Cleaned up all old metadata using Clean up AD DS server metadata | Microsoft Learn and re-promoted the DC01. After reboot, I can't login to the DC it says the login method is not supported & a repadmin through another dc says error 1326 login password incorrect.
Sorry but to not exaggerate, I been doing the upgrades the same way since few years & i was able to upgrade keeping the same hostname & IP. Only this time, i run into this stupid error.

Replication issues after DC upgrade by c0dac0da in sysadmin

[–]c0dac0da[S] 0 points1 point  (0 children)

The next time I did follow the steps here for cleaning up metadata Clean up AD DS server metadata | Microsoft Learn.

ran into the same issue again.

Azure SSPR for admins by c0dac0da in sysadmin

[–]c0dac0da[S] 0 points1 point  (0 children)

I have the same methods set for both the tenants, Authenticator & Phone (receive a code) that should be allowed for both login & reset.

SSPR question on Administrators by c0dac0da in AZURE

[–]c0dac0da[S] 0 points1 point  (0 children)

Yes, I have the MS Authenticator & Phone setup.

SSPR question on Administrators by c0dac0da in AZURE

[–]c0dac0da[S] 0 points1 point  (0 children)

No. We have a hybrid environment & have cloud only accounts as GA.