05-10-2022 03:21 AM
There are two windows AD domains.
loclab.com
demo.local
I'm already joined loclab.com,but can't join demo.local.
Error message displayed on ISE:
Error Description: Failed To Find Domain Controller, Please Check Network Connectivity
Support Details...
Error Name: LW_ERROR_FAILED_FIND_DC
Error Code: 40049
Detailed Log:
Error Description :
Failed To Find Domain Controller In Domain DEMO.LOCAL : Domain Does Not Exists In DNS
Error Resolution :
Please Make Sure That Your DNS Contains Records For Domain : DEMO.LOCAL, For Further Information Please Refer To The AD DNS Diagnostic Tools
Join Steps :
18:22:33 Joining To Domain DEMO.LOCAL Using User Administrator
18:22:33 Searching For DC In Domain DEMO.LOCAL
18:22:33 Failed To Find Domain Controller In Domain DEMO.LOCAL : Domain Does Not Exists In DNS
This is the error message from the debug tool:
I refer to this document, but I don't know how to set it on DNS?
Could not understand the following information:
please help
thx
Solved! Go to Solution.
05-10-2022 08:32 AM
Which DNS are you using?
You need to add "A" host and IP address to resolve internal querries. This overcome what they call recursive problem. You can create a zone as well.
If you manage the DNS is pretty straithforward but will require some "how to do" things.
05-10-2022 04:50 AM
Basically it is saying that you need to have an Internet DNS service. If you have an Internal DNS server, then you can attend all this requirements easilly.
"
I refer to this document, but I don't know how to set it on DNS?"
But do you manage your DNS? it is a lab or real network? Which DNS are you using?
05-10-2022 07:55 AM
yes .I manage DNS server.
it is a lab.
05-10-2022 08:32 AM
Which DNS are you using?
You need to add "A" host and IP address to resolve internal querries. This overcome what they call recursive problem. You can create a zone as well.
If you manage the DNS is pretty straithforward but will require some "how to do" things.
05-10-2022 06:39 PM
windows server-DNS server
05-10-2022 06:33 AM
From ISE console or CLI, check are yo able to ping that domain, and make sure ISE and AD NTP time is sync.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide