Below is the result of the dcdiag run on the new server. Backup server on 2nd part.
It seems to me that the old server is causing problems - but I cannot force delete it or remove the connected metadata as I am apparently not having the proper log-on credentials anymore.
Directory Server Diagnosis (Backup server)
Performing initial setup:
Trying to find home server...
Home Server = tks-server2n
* Identified AD Forest.
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\TKS-SERVER2N
Starting test: Connectivity
......................... TKS-SERVER2N passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\TKS-SERVER2N
Starting test: Advertising
......................... TKS-SERVER2N passed test Advertising
Starting test: FrsEvent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... TKS-SERVER2N passed test FrsEvent
Starting test: DFSREvent
......................... TKS-SERVER2N passed test DFSREvent
Starting test: SysVolCheck
......................... TKS-SERVER2N passed test SysVolCheck
Starting test: KccEvent
......................... TKS-SERVER2N passed test KccEvent
Starting test: KnowsOfRoleHolders
[TKS-SERVER2] DsBindWithSpnEx() failed with error 1722,
The RPC server is unavailable..
Warning: TKS-SERVER2 is the Schema Owner, but is not responding to DS
RPC Bind.
Ldap search capabality attribute search failed on server TKS-SERVER2,
return value = 81
Warning: TKS-SERVER2 is the Schema Owner, but is not responding to
LDAP Bind.
......................... TKS-SERVER2N failed test KnowsOfRoleHolders
Starting test: MachineAccount
......................... TKS-SERVER2N passed test MachineAccount
Starting test: NCSecDesc
......................... TKS-SERVER2N passed test NCSecDesc
Starting test: NetLogons
[TKS-SERVER2N] User credentials does not have permission to perform
this operation.
The account used for this test must have network logon privileges
for this machine's domain.
......................... TKS-SERVER2N failed test NetLogons
Starting test: ObjectsReplicated
......................... TKS-SERVER2N passed test ObjectsReplicated
Starting test: Replications
[Replications Check,TKS-SERVER2N] DsReplicaGetInfo(PENDING_OPS, NULL)
failed, error 0x2105 "Replication access was denied."
......................... TKS-SERVER2N failed test Replications
Starting test: RidManager
......................... TKS-SERVER2N passed test RidManager
Starting test: Services
Could not open NTDS Service on TKS-SERVER2N, error 0x5
"Access is denied."
......................... TKS-SERVER2N failed test Services
Starting test: SystemLog
A warning event occurred. EventID: 0x80000068
Time Generated: 07/20/2015 18:05:18
EvtOpenPublisherMetaData failed, publisher = G200e, error 2 The system cannot find the file specified..
(Event String (event log = System) could not be retrieved, error
0x2)
A warning event occurred. EventID: 0x80000068
Time Generated: 07/20/2015 18:09:12
EvtOpenPublisherMetaData failed, publisher = G200e, error 2 The system cannot find the file specified..
(Event String (event log = System) could not be retrieved, error
0x2)
......................... TKS-SERVER2N passed test SystemLog
Starting test: VerifyReferences
......................... TKS-SERVER2N passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... ForestDnsZones passed test
CrossRefValidation
Running partition tests on : DomainDnsZones
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... DomainDnsZones passed test
CrossRefValidation
Running partition tests on : Schema
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Running partition tests on : Configuration
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Running partition tests on : elp
Starting test: CheckSDRefDom
......................... elp passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... elp passed test CrossRefValidation
Running enterprise tests on : elp.tks
Starting test: LocatorCheck
......................... elp.tks passed test LocatorCheck
Starting test: Intersite
......................... elp.tks passed test Intersite
Backup Server:
Directory Server Diagnosis
Performing initial setup:
Trying to find home server...
Home Server = TKS-SERVER3
* Identified AD Forest.
Done gathering initial info.
Doing initial required tests
Testing server: Default-First-Site-Name\TKS-SERVER3
Starting test: Connectivity
......................... TKS-SERVER3 passed test Connectivity
Doing primary tests
Testing server: Default-First-Site-Name\TKS-SERVER3
Starting test: Advertising
......................... TKS-SERVER3 passed test Advertising
Starting test: FrsEvent
There are warning or error events within the last 24 hours after the
SYSVOL has been shared. Failing SYSVOL replication problems may cause
Group Policy problems.
......................... TKS-SERVER3 passed test FrsEvent
Starting test: DFSREvent
......................... TKS-SERVER3 passed test DFSREvent
Starting test: SysVolCheck
......................... TKS-SERVER3 passed test SysVolCheck
Starting test: KccEvent
......................... TKS-SERVER3 passed test KccEvent
Starting test: KnowsOfRoleHolders
[TKS-SERVER2] DsBindWithSpnEx() failed with error 1722,
The RPC server is unavailable..
Warning: TKS-SERVER2 is the Schema Owner, but is not responding to DS
RPC Bind.
Ldap search capabality attribute search failed on server TKS-SERVER2,
return value = 81
Warning: TKS-SERVER2 is the Schema Owner, but is not responding to
LDAP Bind.
......................... TKS-SERVER3 failed test KnowsOfRoleHolders
Starting test: MachineAccount
......................... TKS-SERVER3 passed test MachineAccount
Starting test: NCSecDesc
......................... TKS-SERVER3 passed test NCSecDesc
Starting test: NetLogons
[TKS-SERVER3] User credentials does not have permission to perform
this operation.
The account used for this test must have network logon privileges
for this machine's domain.
......................... TKS-SERVER3 failed test NetLogons
Starting test: ObjectsReplicated
......................... TKS-SERVER3 passed test ObjectsReplicated
Starting test: Replications
[Replications Check,TKS-SERVER3] A recent replication attempt failed:
From TKS-SERVER2 to TKS-SERVER3
Naming Context: DC=ForestDnsZones,DC=elp,DC=tks
The replication generated an error (1256):
The remote system is not available. For information about network troubleshooting, see Windows Help.
The failure occurred at 2015-07-20 18:56:08.
The last success occurred at 2015-07-19 00:58:29.
44 failures have occurred since the last success.
[Replications Check,TKS-SERVER3] A recent replication attempt failed:
From TKS-SERVER2 to TKS-SERVER3
Naming Context: DC=DomainDnsZones,DC=elp,DC=tks
The replication generated an error (1256):
The remote system is not available. For information about network troubleshooting, see Windows Help.
The failure occurred at 2015-07-20 18:56:08.
The last success occurred at 2015-07-19 00:58:29.
44 failures have occurred since the last success.
[Replications Check,TKS-SERVER3] A recent replication attempt failed:
From TKS-SERVER2 to TKS-SERVER3
Naming Context: CN=Schema,CN=Configuration,DC=elp,DC=tks
The replication generated an error (8524):
The DSA operation is unable to proceed because of a DNS lookup failure.
The failure occurred at 2015-07-20 18:56:20.
The last success occurred at 2015-07-19 00:58:29.
43 failures have occurred since the last success.
The guid-based DNS name
4ee7c0a8-91a7-477b-a224-c678ebac32ee._msdcs.elp.tks
is not registered on one or more DNS servers.
[Replications Check,TKS-SERVER3] A recent replication attempt failed:
From TKS-SERVER2 to TKS-SERVER3
Naming Context: CN=Configuration,DC=elp,DC=tks
The replication generated an error (8524):
The DSA operation is unable to proceed because of a DNS lookup failure.
The failure occurred at 2015-07-20 18:56:14.
The last success occurred at 2015-07-19 00:58:29.
43 failures have occurred since the last success.
The guid-based DNS name
4ee7c0a8-91a7-477b-a224-c678ebac32ee._msdcs.elp.tks
is not registered on one or more DNS servers.
[Replications Check,TKS-SERVER3] A recent replication attempt failed:
From TKS-SERVER2 to TKS-SERVER3
Naming Context: DC=elp,DC=tks
The replication generated an error (8524):
The DSA operation is unable to proceed because of a DNS lookup failure.
The failure occurred at 2015-07-20 18:56:08.
The last success occurred at 2015-07-19 01:18:35.
43 failures have occurred since the last success.
The guid-based DNS name
4ee7c0a8-91a7-477b-a224-c678ebac32ee._msdcs.elp.tks
is not registered on one or more DNS servers.
......................... TKS-SERVER3 failed test Replications
Starting test: RidManager
......................... TKS-SERVER3 passed test RidManager
Starting test: Services
Could not open NTDS Service on TKS-SERVER3, error 0x5
"Access is denied."
......................... TKS-SERVER3 failed test Services
Starting test: SystemLog
An error event occurred. EventID: 0xC00A0032
Time Generated: 07/20/2015 18:05:37
Event String:
The RDP protocol component X.224 detected an error in the protocol stream and has disconnected the client.
A warning event occurred. EventID: 0x80000068
Time Generated: 07/20/2015 18:53:30
EvtFormatMessage failed, error 1813 The specified resource type cannot be found in the image file..
(Event String (event log = System) could not be retrieved, error
0x715)
......................... TKS-SERVER3 failed test SystemLog
Starting test: VerifyReferences
......................... TKS-SERVER3 passed test VerifyReferences
Running partition tests on : ForestDnsZones
Starting test: CheckSDRefDom
......................... ForestDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... ForestDnsZones passed test
CrossRefValidation
Running partition tests on : DomainDnsZones
Starting test: CheckSDRefDom
......................... DomainDnsZones passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... DomainDnsZones passed test
CrossRefValidation
Running partition tests on : Schema
Starting test: CheckSDRefDom
......................... Schema passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Schema passed test CrossRefValidation
Running partition tests on : Configuration
Starting test: CheckSDRefDom
......................... Configuration passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... Configuration passed test CrossRefValidation
Running partition tests on : elp
Starting test: CheckSDRefDom
......................... elp passed test CheckSDRefDom
Starting test: CrossRefValidation
......................... elp passed test CrossRefValidation
Running enterprise tests on : elp.tks
Starting test: LocatorCheck
......................... elp.tks passed test LocatorCheck
Starting test: Intersite
......................... elp.tks passed test Intersite