Company advocate complementary domain control and two group policy for some reason the default domain control policy and strategy of the domain controller and using wsus strategy all failure, 1. How can repair these group policy? (2) is currently considering five characters transferred to the main strategy of auxiliary domain controller, then reinstall the primary domain controller, and then five big role transferring, this operation is workable? Group policy will take effect? thank you
CodePudding user response:
Has been through the command to fix two default group policy, but is invalid,
CodePudding user response:
To remove problematic DC idea is right, Refer to https://docs.microsoft.com/en-us/windows-server/identity/ad-ds/deploy/ad-ds-metadata-cleanup Eliminate problem DC in the active directory, And reinstall, improve domain control, case the character doesn't have to go back,
When only 1 DC run dcdiag/v check whether there are any errors, such as error disappear after ascending field control,