Share via


Event ID 1035 — The DHCP service was unable to create or lookup the DHCP Users local group on this computer

Question

Tuesday, August 3, 2010 8:03 PM

I have setup a new Server 2008 R2 based domain on a new server hardware. Actually there is only a first DC.
After installing ADS, DNS and DHCP roles I see continously two errors in the event viewer issued by the DHCP service.

Event ID 1035  The DHCP service was unable to create or lookup the DHCP Users local group on this computer
Event ID 1036   The DHCP server was unable to create or lookup the DHCP Administrators local group on this computer

There is provided a link to e.g. http://technet.microsoft.com/en-us/library/dd380179(WS.10).aspx
but there is no procedure for a fix available.

It seems to be a critical error which should be fixed.

MS says: To function properly, the DHCP service must be able to create or look up the DHCP Users and DHCP Administrators local groups.

Can anybody help me out ?

Rudi_

All replies (4)

Tuesday, August 3, 2010 8:10 PM ✅Answered

the article says to stop and start the dhcp service. if you already restarted the service you may try uninstalling the role and reinstalling dhcp, provided you haven't configured many scopes that you would loose I hope this information is useful.


Tuesday, August 3, 2010 10:05 PM ✅Answered

I think the issue has been solved after de-installation and re-installation of the DHCP role.

After re-installing DHCP I scanned with BPA the DHCP role again.
This time a warning was posted telling that the DHCP security group would be missing.
I used netsh command to add the dhcp security group. Then stopping and re-starting DHCP service and another scan with BPA tool did no longer show any warning or error. And no new ID's 1035/1036  anymore visible in the event viewer.

Thanks very much for your help.


Tuesday, August 3, 2010 8:22 PM

is there an event 20035 in the system log?I hope this information is useful.


Tuesday, August 3, 2010 9:40 PM

In addition to Roy's suggestions, which if 20035 does show up, did you also install RRAS, or the ICS feature?

It's also possible that it's an AD communications issue. Is the DNS entry in NIC properties only pointing to itself (not the loopback, but the actual IP address)? Can you post an ipconfig /all from the machine, please, in order to allow us to evaluate its configuration and alert you to any issues we see?

Any other event log errors showing up?

Ace

Ace Fekay, MVP, MCT, MCITP EA, MCTS Windows 2008 & Exchange 2007, MCSE & MCSA 2003/2000, MCSA Messaging 2003, Microsoft Certified Trainer, Microsoft MVP - Directory Services. This posting is provided AS-IS with no warranties or guarantees and confers no rights.