[SDP 3][efbfc426-9147-495f-bafe-34cf87f53acf] Windows Distributed File System Namespaces

Applies to: Windows Server 2012 StandardWindows Server 2012 StandardWindows Server 2012 Datacenter

Summary


The Windows Distributed File System Namespaces troubleshooter collects information to help troubleshoot common issues that are related to the DFS Namespace service.

More Information


This article describes the information that may be collected from a computer when you run Windows Distributed File System Namespaces.

Information collected

Applied Security Templates
DescriptionFile Name
Applied Security Templates{Computername}_AppliedSecTempl.txt
Audit policy
DescriptionFile Name
Auditpol Audit Policy

Auditpol Get Configuration output

Auditpol Current Per User policy

Auditpol Per User configured accounts
{Computername}_Auditpolicy.csv
{Computername}_Auditpol_Configuration.txt

{Computername}_Auditpol_UserPolicy.txt

{Computername}_Auditpol_Per-User.txt
DCDiag
DescriptionFile Name
DCDiag Verbose

DCDiag DNS

DCDiag Topology
{Computername}_DCDiag-Verbose.log

{Computername}_DCDiag-DNS.log

{Computername}_DCDiag-Topology.log

Distributed File System Namespaces
DescriptionFile Name
DFSDiag TestReferral output

DFSDiag TestDFSIntegrity output

DFSUtil Namespace export

Dsacls export of namespace object permissions

Ldifde export of namespace object attributes

Icacls export of namespace folder permissions

Reg export of DFSN-related registry keys

Detect installed hotfixes for DFSN components

Determine file versions of DFSN components

List of subnets with no site associations

DFSUtil PKT cache

DFSUtil SPC cache

DFSUtil MUP cache
{computername}_dfsdiag_testreferral.txt

{computername}_dfsdiag_testdfsintegrity.txt

{computername}_dfsutil_namespace_export.txt

{computername}_DFS_namespace_permissions.txt

{computername}_DFS_namespace_attributes.txt

{computername}_DFS_NTFS_permissions.txt

{computername}_DFS_RegistryKeys.txt

{computername}_DFSDiag_Progress_and_Results.txt

{computername}_DFSDiag_Progress_and_Results.txt

{computername}_DFSDiag_Progress_and_Results.txt

{computername}_dfsutil_PKT_cache.txt

{computername}_dfsutil_SPC_cache.txt

{computername}_dfsutil_MUP_cache.txt

DNS Client
DescriptionFile Name
DNS Client - HOSTS file

Ipconfig /displaydns

DNS Client netsh show state (for DirectAccess)DNS Client registry output
{COMPUTERNAME}_DnsClient_HostsFile.TXT
{COMPUTERNAME}_DnsClient_ipconfig-displaydns.TXT
{COMPUTERNAME}_DnsClient_netsh_dnsclient-show-state.TXT
{COMPUTERNAME}_DnsClient_reg_.TXT


Domain Controller Promotion Logs
DescriptionFile Name
Domain Controller promotion debug log from \Windows\debug

Domain Controller promotion UI debug log from \Windows\debug
{Computername}_DCPromo.log

{Computername}_DCPromoUI.log


Dr. Watson log files
DescriptionFile Name
Drwatson log file from \Windows

Drwtsn32 log file from \All Users
{Computername}_Drwatson.log

{Computername}_Drwtsn32.log

Environment Variables
DescriptionFile Name
Environment Variables{Computername}_EnvironmentVariables.txt


Event Log Files
DescriptionFile Name
System (.csv)

System (.evtx)

System (.txt)

Application (.csv)

Application (.evtx)

Application (.txt)

Security (.csv)

Security (.evtx)

Security (.txt)

DFS Replication (.csv)

DFS Replication (.evtx)

DFS Replication (.txt)

DNS Server (.csv)

DNS Server (.evtx)

DNS Server (.txt)

Active Directory Web Services (.csv)

Active Directory Web Services (.evtx)

Active Directory Web Services (.txt)

Microsoft-Windows-Application-Experience/Program-Inventory (.csv)

Microsoft-Windows-Application-Experience/Program-Inventory (.evtx)

Microsoft-Windows-Application-Experience/Program-Inventory (.txt)

Microsoft-Windows-CAPI2/Operational (.csv)

Microsoft-Windows-CAPI2/Operational (.evtx)

Microsoft-Windows-CAPI2/Operational (.txt)

Microsoft-Windows-CertificateServicesClient-CredentialRoaming/Operational (.csv)

Microsoft-Windows-CertificateServicesClient-CredentialRoaming/Operational (.evtx)

Microsoft-Windows-CertificateServicesClient-CredentialRoaming/Operational (.txt)

Microsoft-Windows-DNS-Client/Operational (.csv)

Microsoft-Windows-DNS-Client/Operational (.evtx)

Microsoft-Windows-DNS-Client/Operational (.txt)

Microsoft-Windows-EnrollmentPolicyWebService/Admin (.csv)

Microsoft-Windows-EnrollmentPolicyWebService/Admin (.evtx)

Microsoft-Windows-EnrollmentPolicyWebService/Admin (.txt)

Microsoft-Windows-EnrollmentWebService/Admin (.csv)

Microsoft-Windows-EnrollmentWebService/Admin (.evtx)

Microsoft-Windows-EnrollmentWebService/Admin (.txt)

Microsoft-Windows-Folder Redirection/Operational (.csv)

Microsoft-Windows-Folder Redirection/Operational (.evtx)

Microsoft-Windows-Folder Redirection/Operational (.txt)

Microsoft-Windows-GroupPolicy/Operational (.csv)

Microsoft-Windows-GroupPolicy/Operational (.evtx)

Microsoft-Windows-GroupPolicy/Operational (.txt)

Microsoft-Windows-NetworkProfile/Operational (.csv)

Microsoft-Windows-NetworkProfile/Operational (.evtx)

Microsoft-Windows-NetworkProfile/Operational (.txt)

Microsoft-Windows-NlaSvc/Operational (.csv)

Microsoft-Windows-NlaSvc/Operational (.evtx)

Microsoft-Windows-NlaSvc/Operational (.txt)

Microsoft-Windows-NTLM/Operational (.csv)

Microsoft-Windows-NTLM/Operational (.evtx)

Microsoft-Windows-NTLM/Operational (.txt)

Microsoft-Windows-TerminalServices-Licensing/Admin (.csv)

Microsoft-Windows-TerminalServices-Licensing/Admin (.evtx)

Microsoft-Windows-TerminalServices-Licensing/Admin (.txt)

Microsoft-Windows-TerminalServices-Licensing/Operational (.csv)

Microsoft-Windows-TerminalServices-Licensing/Operational (.evtx)

Microsoft-Windows-TerminalServices-Licensing/Operational (.txt)

Microsoft-Windows-User Profile Service/Operational (.csv)

Microsoft-Windows-User Profile Service/Operational (.evtx)

Microsoft-Windows-User Profile Service/Operational (.txt)

Microsoft-Windows-Windows Firewall With Advanced Security/Firewall (.csv)

Microsoft-Windows-Windows Firewall With Advanced Security/Firewall (.evtx)

Microsoft-Windows-Windows Firewall With Advanced Security/Firewall (.txt)

Microsoft-Windows-Winlogon/Operational (.csv)

Microsoft-Windows-Winlogon/Operational (.evtx)

Microsoft-Windows-Winlogon/Operational (.txt)
{Computername}_evt_System.csv

{Computername}_evt_System.evtx

{Computername}_evt_System.txt

{Computername}_evt_Application.csv

{Computername}_evt_Application.evtx

{Computername}_evt_Application.txt

{Computername}_evt_Security.csv

{Computername}_evt_Security.evtx

{Computername}_evt_Security.txt

{Computername}_evt_DFSReplication.csv

{Computername}_evt_DFSReplication.evtx

{Computername}_evt_DFSReplication.txt

{Computername}_evt_DNSServer.csv

{Computername}_evt_DNSServer.evtx

{Computername}_evt_DNSServer.txt

{Computername}_evt_ActiveDirectoryWebServices.csv

{Computername}_evt_ActiveDirectoryWebServices.evtx

{Computername}_evt_ActiveDirectoryWebServices.txt

{Computername}_evt_ApplicationExperienceProgram-Inventory.csv

{Computername}_evt_ApplicationExperienceProgram-Inventory.evtx

{Computername}_evt_ApplicationExperienceProgram-Inventory.txt

{Computername}_evt_CAPI2-Operational.csv

{Computername}_evt_CAPI2-Operational.evtx

{Computername}_evt_CAPI2-Operational.txt

{Computername}_evt_ CertificateServicesClient-CredentialRoaming-Operational.csv

{Computername}_evt_ CertificateServicesClient-CredentialRoaming-Operational.evtx

{Computername}_evt_ CertificateServicesClient-CredentialRoaming-Operational.txt

{Computername}_evt_DNS-Client-Operational.csv

{Computername}_evt_DNS-Client-Operational.evtx

{Computername}_evt_DNS-Client-Operational.txt

{Computername}_evt_EnrollmentPolicyWebService-Admin.csv

{Computername}_evt_ EnrollmentPolicyWebService-Admin.evtx

{Computername}_evt_ EnrollmentPolicyWebService-Admin.txt

{Computername}_evt_EnrollmentWebService-Admin.csv

{Computername}_evt_ EnrollmentWebService-Admin.evtx

{Computername}_evt_ EnrollmentWebService-Admin.txt

{Computername}_evt_Folder Redirection-Operational.csv

{Computername}_evt_Folder Redirection-Operational.evtx

{Computername}_evt_Folder Redirection-Operational.txt

{Computername}_evt_GroupPolicy-Operational.csv

{Computername}_evt_GroupPolicy-Operational.evtx

{Computername}_evt_GroupPolicy-Operational.txt

{Computername}_evt_NetworkProfile-Operational.csv

{Computername}_evt_NetworkProfile-Operational.evtx

{Computername}_evt_NetworkProfile-Operational.txt

{Computername}_evt_NlaSvc-Operational.csv

{Computername}_evt_NlaSvc-Operational.evtx

{Computername}_evt_NlaSvc-Operational.txt

{Computername}_evt_NTLM-Operational.csv

{Computername}_evt_NTLM-Operational.evtx

{Computername}_evt_NTLM-Operational.txt

{Computername}_evt_TerminalServices-Licensing-Admin.csv

{Computername}_evt_TerminalServices-Licensing-Admin.evtx

{Computername}_evt_TerminalServices-Licensing-Admin.txt

{Computername}_evt_TerminalServices-Licensing- Operational.csv

{Computername}_evt_TerminalServices-Licensing- Operational.evtx

{Computername}_evt_TerminalServices-Licensing- Operational.txt

{Computername}_evt_UserProfileService-Operational.csv

{Computername}_evt_UserProfileService-Operational.evtx

{Computername}_evt_UserProfileService-Operational.txt

{Computername}_evt_WindowsFirewallWithAdvancedSecurity-Firewall.csv

{Computername}_evt_WindowsFirewallWithAdvancedSecurity-Firewall.evtx

{Computername}_evt_WindowsFirewallWithAdvancedSecurity-Firewall.txt

{Computername}_evt_Winlogon-Operational.csv

{Computername}_evt_Winlogon-Operational.evtx

{Computername}_evt_Winlogon-Operational.txt


File Version Information (ChkSym)
DescriptionFile Name
C:\Program Files\*.sys

C:\Program Files\*.sys

C:\Program Files (x86)\*.sys

C:\Program Files (x86)\*.sys

C:\Windows\System32\drivers\*.*

C:\Windows\System32\drivers\*.*

C:\Windows\System32\*.DLL

C:\Windows\System32\*.DLL

C:\Windows\SysWOW64\*.dll

C:\Windows\SysWOW64\*.dll

C:\Windows\System32\*.EXE

C:\Windows\System32\*.EXE

C:\Windows\SysWOW64\*.exe

C:\Windows\SysWOW64\*.exe

C:\Windows\System32\*.SYS

C:\Windows\System32\*.SYS

C:\Windows\SysWOW64\*.sys

C:\Windows\SysWOW64\*.sys

C:\Windows\System32\Spool\*.*

C:\Windows\System32\Spool\*.*

C:\Windows\System32\iscsi*.*

C:\Windows\System32\iscsi*.*

Running Processes

Running Processes

Running Drivers

Running Drivers
{Computername}_sym_ProgramFiles_SYS.CSV

{Computername}_sym_ProgramFiles_SYS.TXT

{Computername}_sym_ProgramFilesx86_SYS.CSV

{Computername}_sym_ProgramFilesx86_SYS.TXT

{Computername}_sym_Drivers.CSV

{Computername}_sym_Drivers.TXT

{Computername}_sym_System32_DLL.CSV

{Computername}_sym_System32_DLL.TXT

{Computername}_sym_SysWOW64_DLL.CSV

{Computername}_sym_SysWOW64_DLL.TXT

{Computername}_sym_System32_EXE.CSV

{Computername}_sym_System32_EXE.TXT

{Computername}_sym_SysWOW64_EXE.CSV

{Computername}_sym_SysWOW64_EXE.TXT

{Computername}_sym_System32_SYS.CSV

{Computername}_sym_System32_SYS.TXT

{Computername}_sym_SysWOW64_SYS.CSV

{Computername}_sym_SysWOW64_SYS.TXT

{Computername}_sym_PrintSpool.CSV

{Computername}_sym_PrintSpool.TXT

{Computername}_sym_MS_iSCSI.CSV

{Computername}_sym_MS_iSCSI.TXT

{Computername}_sym_Process.CSV

{Computername}_sym_Process.txt

{Computername}_sym_RunningDrivers.CSV

{Computername}_sym_RunningDrivers.TXT


FSMO Role Owners
DescriptionFile Name
FSMO role owner information via netdom{Computername}_NetdomFSMO.txt


Functional Levels and Group Membership Information
DescriptionFile Name
Functional Levels and Group Membership Information{Computername}_DSMisc.txt


Group Policy Service Log
DescriptionFile Name
Group Policy Service Debug Log (gpsvc.log) from \windows\debug\usermode{Computername}_gpsvc.txt

Installed updates/hotfixes
DescriptionFile Name
Update/Hotfix history

Update/Hotfix history

Update/Hotfix history
{Computername}_Hotfixes.CSV

{Computername}_Hotfixes.htm

{Computername}_Hotfixes.TXT


Kerberos tickets and TGT
DescriptionFile Name
KList{Computername}_KList.txt


Memory dump related information
DescriptionFile Name
Memory dump report

Memory dump report

Memory dump file (minidumps)
{Computername}_DumpReport.htm

{Computername}_DumpReport.txt

{Computername}_DMP_{Date}.zip


Netlogon Log
DescriptionFile Name
Netlogon Log file{Computername}_NetLogon.Log


NetSetup Log
DescriptionFile Name
NetSetup Log file{Computername}_netsetup.log


Networking Information
DescriptionFile Name
TCP/IP Basic Information

SMB Basic Information
{Computername}_TcpIp-Info.txt

{Computername}_SMB-Info.txt


Process and Thread Status (pstat)
DescriptionFile Name
Information about process and threads using pstat.exe{Computername}_Pstat.txt


Registry Entries
DescriptionFile Name
Registry Entries Output{Computername}_REGENTRIES.txt

Replication Diagnostics Tool
DescriptionFile Name
Replication topology overview via ‘repadmin.exe /showrepl’ output{Computername}_Repadmin-Showrepl.txt

Resultant Set of Policy (RSoP)
DescriptionFile Name
GPResult /H output (.txt)

GPResult /H output (.htm)
{Computername}_GPResult.txt

{Computername}_GPResult.htm


Schedule Tasks Information
DescriptionFile Name
Schedule Tasks List

Schedule Tasks List
{Computername}_schtasks.csv

{Computername}_schtasks.txt


Server Manager Information
DescriptionFile Name
Server Manager Log File

Roles and features (servermanagercmd) (.txt)

Roles and features (servermanagercmd) (.xml)
{Computername}_ServerManager.log

{Computername}_ServerManagerCmdQuery.txt

{Computername}_ServerManagerCmdQuery.xml


System Information (MSInfo32)
DescriptionFile Name
System Information (MSInfo32) (.txt)

System Information (MSInfo32) (.nfo)
{Computername}_msinfo32.txt

{Computername}_msinfo32.nfo


System Security Settings
DescriptionFile Name
System Security Settings file{Computername}_Security-settings.inf


TCP Port Usage
DescriptionFile Name
TCP Port usage output{Computername}_PortUsage.txt


Upper and lower filters information
DescriptionFile Name
Fltrfind Output{Computername}_FltrFind.txt


User and Group Information
DescriptionFile Name
Whoami /all Output{Computername}_Whoami.txt

User Environment Debug Log
DescriptionFile Name
User environment debug log (UserEnv.*) from \windows\debug\usermode{Computername}_userenv.*

User Rights Assignments
DescriptionFile Name
UserRights Output{Computername}_userrights.txt


Virtualization Information
DescriptionFile Name
Virtualization Information Output (.htm)

Virtualization Information Output (.txt)
{Computername}_Virtualization.htm

{Computername}_Virtualization.txt

Windows Firewall Configuration
DescriptionFile Name
Windows Firewall Configuration{Computername}_FirewallConfig.txt

Winlogon Log
DescriptionFile Name
Winlogon Log file{Computername}_winlogon.log

WINS Client
DescriptionFile Name
WINS Client nbtstat output

WINS Client registry output

WINS Client - LMHOSTS file
{Computername}_WinsClient_nbtstat-output.TXT
{Computername}_WinsClient_reg_output.TXT
{Computername}_WinsClient_LmhostsFile.TXT

Additional information

In addition to the files collected and listed in this article, this diagnostic can perform one or more of the following actions:
  • Check whether Active Directory replication is failing for one or more partitions: Status 1256 - The remote system is not available
  • Check whether Active Directory replication is failing for one or more partitions: Status 1722 - The RPC server is unavailable
  • Check whether Active Directory replication is failing for one or more partitions: Status 8452 - The naming context is in the process of being removed
  • Check for Symantec Endpoint Protection MR1/MR2
  • Check for unsupported versions of Windows Vista or Windows Server 2008
  • Check whether the driver verifier has been enabled for at least one driver
  • Check whether EMC Replistor Software is installed on thge computer but KB 975759 is not installed
  • Check whether one or more Advanced Format Disks (512e) are detected in the system
  • Check whether page heap is enabled against one or more processes
  • Check whether any 4K native drives exist on the system
  • Detect whether the instaled operating system is evaluation media
  • Check for high CPU usage by Local Security Authority Subsystem Service (LSASS)
  • Check whether Lingering objects have been detected
  • Check whether one or more Active Directory replication failures has been detected
  • Check whether SYSVOL and/or NETLOGON shares are missing on domain controller
  • Check whether Active Directory replication is failing for one or more partitions: Status 8453 - Replication Access Was Denied