3.11 DomainConnectivity

Use this Knowledge Script to monitor the connectivity between a domain controller and selected domains included in the scope of the target: domains included in the run target or selected on the Objects tab. This script raises an event if the connection to any trusted domain fails.

Trust relationships are fragile, and problems with them are hard to diagnose. Broken trusts prevent users from logging in or accessing cross-domain resources.

The most common reason for broken trust relationships are:

  • No domain controllers are available for a remote domain.

  • Trust password is not synchronized properly.

3.11.1 Resource Objects

Active Directory trusted domain

3.11.2 Default Schedule

The default interval for this script is Every 30 minutes.

3.11.3 Setting Parameter Values

Set the following parameters as needed:

Parameter

How to Set It

General Settings

Raise event if job fails

Event severity when job fails

Set the severity level, from 1 to 40, to indicate the importance of an event in which the DomainConnectivity job fails. The default is 35.

Monitor connectivity to selected domains

Enable job delegation?

Select Yes to enable the delegation of the job to another server where appropriate. If enabled, runs the job on the selected computer that holds the server role that you selected for the Delegate forest-wide monitoring to the... parameter. The default is unselected. For more information, see Section 3.1, AD Knowledge Script Job Delegation.

Delegate domain-wide monitoring to the

Select the server role to which the job should be delegated: Primary Domain Controller (PDC), Infrastructure Master, or RID Master. The default is PDC.

Raise event when DC assumes this role?

If you enabled job delegation, set to Yes to raise an event if the DC assumes the server role you selected for the Delegate domain-wide monitoring to the... parameter. The event indicates that the monitored computer has assumed the selected role. The default is Yes.

Event severity when DC assumes this role

Set the severity level, from 1 to 40, to indicate the importance of an event in which the DC assumes the role you selected for the Delegate domain-wide monitoring to the... parameter. The default is 30.

Raise event when DC relinquishes this role?

If you enabled job delegation, set to Yes to raise an event if the DC gives up the server role you selected for the Delegate domain-wide monitoring to the... parameter. The event indicates that the monitored computer has relinquished the selected role. The default is Yes.

Event severity when DC relinquishes this role

Set the severity level, from 1 to 40, to indicate the importance of an event in which the DC relinquishes the role you selected for the Delegate domain-wide monitoring to the... parameter. The default is 30.

Event Notification

Raise event when domain connectivity fails?

Select Yes to raise an event if connectivity to a domain fails. The default is Yes.

Event severity when domain connectivity fails

Set the severity level, from 1 to 40, to indicate the importance of an event in which connectivity to a domain fails. The default is 10.

Data Collection

Collect data for connection status?

Select Yes to collect data for charts and reports. If enabled, data collection returns:

  • 100 -- the connection to a trusted domain was successful, or

  • 0 -- the connection failed.

The default is unselected.