Home > Microsoft Exchange Tips > Exchange Server Administration Tips > Tool diagnoses Active Directory schema problems
Exchange Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

EXCHANGE SERVER ADMINISTRATION TIPS

Tool diagnoses Active Directory schema problems


Serdar Yegulalp
09.29.2005
Rating: -4.50- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


Please let others know how useful this tip is via the rating scale at the end of it. Do you have a useful Exchange or Outlook tip, timesaver or workaround to share? Submit it to our tip contest and you could win a prize.


The Active Directory schema controls what objects can be listed in AD and what their attributes can be. In a Windows domain, the server that has the schema master role performs whatever updates and modifications are needed to the schema.

A malfunctioning Active Directory schema can cause all sorts of problems for Exchange, from replication issues between servers to Exchange not working at all. An administrator not aware of possible problems with the AD schema might be inclined to (mistakenly) blame the problem on Exchange itself.

If your domain's schema updates are not taking place or seem to be having problems, there is a utility from WinDeveloper.com that can take some of the pain out of debugging problems with schema updates. Active Directory Schema Diagnose (ADSD) runs several tests to determine whether or not the schema can be successfully updated, and also where a problem might lie if it can't.

When run, ADSD performs five tests:

  1. It gets the security context information the application itself is running under. This ensures that the user running the application is part of the Schema Admins group. If you're logged on as Administrator, this should work by default, but if something's been done to the group membership for that account, this should sniff it out.

  2. It retrieves the schema's master machine details -- the machine name, distinguished name (as listed in AD), machine object name, and what OS/service-pack level is on the machine in question. If there's a mismatch between the machine name and its distinguished name, the machine may need to have its role reset.

  3. It tests LDAP connectivity to the schema master. If the connection test fails, but the other tests so far succeed, that might indicate a network misconfiguration.

  4. It tests connectivity to the scheme master machine's registry. If this fails, check to make sure the user in question has the rights to set the "Schema Update Allowed" registry value -- either because they don't have the rights to modify the registry in general, or because that particular subkey/value has the wrong permissions set on it.

  5. It tests the access level(s) the user has on the AD schema container. This makes sure that the user has all the needed individual rights as well (i.e., the right to create object children or write object properties).

For the best results, ADSD should be run by an administrator, as running the program in a limited-privileges context may cause some of the tests to fail. (This isn't a symptom of anything wrong per se; lowered privileges just inherently cause many AD actions to fail.)

About the author: Serdar Yegulalp is editor of the Windows Power Users Newsletter,


Do you have comments on this tip? Let us know.
Related information from SearchExchange.com:

  • Learning Center: Toolbox for Exhange administrators
  • Reference Center: More Exchange Server administration tools
  • Reference Center: Active Directory and Exchange tips and resources



    Rate this Tip
    To rate tips, you must be a member of SearchExchange.com.
    Register now to start rating these tips. Log in if you are already a member.


    Submit a Tip




    Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


    RELATED CONTENT
    Exchange Server Administration Tips
    Migrating .PST files to an Exchange Server information store
    Virtualizing Exchange Server 2007 with Microsoft's Hyper-V
    Configure SMTP connection limits in Exchange Server 2003 and SBS
    Five Microsoft Exchange Server backup worst practices
    How to export Global Address List data to Microsoft Office Access
    Create a group policy to prevent .PST file storage in Exchange 2007
    Synchronizing the Windows Mobile emulator with Exchange Server 2007
    Considerations for virtualizing an Exchange Server environment
    Why are .PST files a security threat to Exchange Server mailboxes?
    EMS add-on tool generates graphical Exchange Server 2007 reports

    Microsoft Exchange Server and Active Directory
    Email sent to a PDA doesn't get saved in Exchange Server mailbox
    How to verify Exchange Server email forwarding
    Remove Exchange 2007 public folder stores from a Mailbox Server role
    A network connection problem or an offline server prevented delivery of the message
    Create Exchange user and mailbox accounts on a Windows 2000 PDC
    Error 1053: Exchange System Attendant service could not start
    Forward Exchange Server email to an ISP using Active Directory
    Using the Active Directory Migration Tool in a large environment
    How to troubleshoot the Exchange Recipient Update Service
    An introduction to Microsoft Exchange System Attendant
    Microsoft Exchange Server and Active Directory Research

    Microsoft Exchange Server Administration Tools
    Setting up email disclaimers and signatures in Exchange Server
    Tool deploys customized Microsoft Outlook 2007 configurations
    Third-party Exchange Server 2007 backup and restore tools
    Customizing an Outlook Web Access 2003 email signature
    Tool exports messages from Microsoft Outlook to Unix .EML file format
    Monitor mail flow with the Exchange Server 2007 Queue Viewer tool
    Use Performance Monitor to detect Exchange 2003 message queue problems
    Migrating antispam settings from Exchange 2003 to Exchange 2007
    An affordable Exchange Server database backup software option for SMBs
    How to set up Remote Desktop for Exchange Server administration
    Microsoft Exchange Server Administration Tools Research

    RELATED GLOSSARY TERMS
    Terms from Whatis.com − the technology online dictionary
    User Principal Name  (SearchExchange.com)

    RELATED RESOURCES
    2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
    Search Bitpipe.com for the latest white papers and business webcasts
    Whatis.com, the online computer dictionary

    DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.

  • HomeNewsTopicsITKnowledge ExchangeTipsAsk the ExpertsMultimediaWhite PapersIT Downloads
    About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
    SEARCH 
    TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

    TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




    All Rights Reserved, Copyright 2004 - 2008, TechTarget | Read our Privacy Policy
      TechTarget - The IT Media ROI Experts