DNS Basic test failured

M NAGA SRI RAMA SHARMA 1 Reputation point
2021-07-29T06:46:54.147+00:00

Dcdiag basic dns test failed at local server reports
server 1,2 failed local test
server 1 success from server 2 vice versa

other failure
Warning: no DNS RPC connectivity (error or non Microsoft DNS server is running)
[Error details: 5 (Type: Win32 - Description: Access is denied.
[Error details: 1460 (Type: Win32 - Description: This operation returned because the timeout period expired.)]

dc -
https://onedrive.live.com/embed?cid=FED419EFFD6A1C37&resid=FED419EFFD6A1C37%21278&authkey=AOJNbqhIBmQ1HRs

dc on sepm
https://onedrive.live.com/embed?cid=FED419EFFD6A1C37&resid=FED419EFFD6A1C37%21276&authkey=APi8Z5PgCLAgEPA

sepm
https://onedrive.live.com/embed?cid=FED419EFFD6A1C37&resid=FED419EFFD6A1C37%21279&authkey=AKqS-0xE5t_eOj0

sepm on dc
https://onedrive.live.com/embed?cid=FED419EFFD6A1C37&resid=FED419EFFD6A1C37%21277&authkey=AI0lbx0f81IKYYA

Microsoft Identity Manager
Microsoft Identity Manager
A family of Microsoft products that manage a user's digital identity using identity synchronization, certificate management, and user provisioning.
736 questions
Windows Server 2016
Windows Server 2016
A Microsoft server operating system that supports enterprise-level management updated to data storage.
2,556 questions
Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,800 questions
{count} votes

2 answers

Sort by: Most helpful
  1. Ashley Smith 5 Reputation points
    2024-01-26T17:05:33.6333333+00:00

    I know this is an old thread - but it's high in the search results. Try re-running the test from an elevated command prompt. In some configurations I've seen the error only show in normal command prompts suggesting it isnt a full DNS error - just how it is being tested.

    1 person found this answer helpful.

  2. Hannah Xiong 6,276 Reputation points
    2021-07-29T09:25:25.88+00:00

    Hello,

    Thank you so much for posting here.

    As for the DNS management, it is strongly recommended to use domain controller as DNS servers. In single DC/DNS domain environment, DC/DNS server points to its private IP address as preferred DNS server in TCP/IP property.

    If multiple DCs that’s the DNS servers are in a domain environment, recommendation to have all DCs point to ANOTHER/REMOTE DC’s IP address as preferred DNS and then point to it’s private IP address as an alternate DNS.

    In an AD network we should only use your DCs as DNS servers. External DNS such as your gateway or 8.8.8.8 has no idea of the SRV records. Using them as DNS is what is incorrect.

    Reference:
    https://abhijitw.wordpress.com/2012/03/03/best-practices-for-dns-client-settings-on-domain-controller/

    https://community.spiceworks.com/topic/2035647-gpo-status-says-ip-address-of-server-is-a-169-x-x-x

    I would suggest we could have a check of the DNS configuration at first. Besides, here is the discussion about the similar DNS issue. Hope it is of some help to you.

    Reference: https://social.technet.microsoft.com/Forums/windowsserver/en-US/0eb650c6-512f-4338-bd62-9ea543147928/dcdiag-testdns-fail-00000007-microsoft-virtual-machine-bus-network-adapter-has-invalid-dns?forum=winserverDS

    Notes: Due to security, it is suggested not to post any logs here which contains the private information.

    Please note: Information posted in the given link is hosted by a third party. Microsoft does not guarantee the accuracy and effectiveness of information.

    Best regards,
    Hannah Xiong

    ============================================
    If the Answer is helpful, please click "Accept Answer" and upvote it.

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.