Solved

How do I recreate a lost computer account in a domain controller?

Posted on 1997-11-07
2
770 Views
Last Modified: 2013-12-14
We lost a hard drive on one of our NT boxes in our domain.  We were able to restore it from a backup to a new drive, but I think we screwed up the computer account on the Primary Domain Controller (PDC).

The problem I think is that in order to restore the backup, we had to reinstall NT first.  During setup,  we added the computer to the PDC and checked the "create computer account" option.  

This worked fine, but after we restored the backup no domain users could logon to the machine and if we tried to get to the machine from the PDC, we got a "trust" error message.

I think where we screwed up was that when we installed NT we overwrote the original security identifier for the failed machine that was stored on the PDC so that when we restored the backup, the oriiginal security info was restored but it no longer matches what is on the PDC.

Does anyone know how to fix this?  If I go into Server Manager and then select the computer that failed and "remove" it from the domain and then "add" it to the domain, I always get the error "The trust relationship between this workstation and the primary domain failed."

Any ideas?
0
Comment
Question by:magenta
2 Comments
 
LVL 4

Accepted Solution

by:
arminl earned 200 total points
ID: 1768493
Delete the faulty account using Server Manager, change the Domain Name in the WS control-panel, network applet to a workgroup name that does not exist and reboot. Log on locally, change the domain name back to the name of your domain, check the "create computer account" checkbox and enter a domain administrator's name and password.

You'll receive a "Welcome to domain xxxxx" message, reboot and everything should be allright.

Armin Linder
arminl@adlon.de
0
 

Expert Comment

by:touse
ID: 4398717

Since you say you have tried adding and removing it from the domain (multiple times, I hope), go the the website www.sysinternals.com and D/L newsid.exe and run it.

This replaces the sid on a nt/2k machine.

--touse
0

Featured Post

Portable, direct connect server access

The ATEN CV211 connects a laptop directly to any server allowing you instant access to perform data maintenance and local operations, for quick troubleshooting, updating, service and repair.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

In this article, I will show you HOW TO: Perform a Physical to Virtual (P2V) Conversion the easy way from a computer backup (image).
A project that enables an administrator to perform actions within a user session context not just at the time of login but any time later on day(s) or week(s) later.
This video Micro Tutorial explains how to clone a hard drive using a commercial software product for Windows systems called Casper from Future Systems Solutions (FSS). Cloning makes an exact, complete copy of one hard disk drive (HDD) onto another d…
The Task Scheduler is a powerful tool that is built into Windows. It allows you to schedule tasks (actions) on a recurring basis, such as hourly, daily, weekly, monthly, at log on, at startup, on idle, etc. This video Micro Tutorial is a brief intro…

820 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question