Solved

How do I recreate a lost computer account in a domain controller?

Posted on 1997-11-07
2
766 Views
Last Modified: 2013-12-14
We lost a hard drive on one of our NT boxes in our domain.  We were able to restore it from a backup to a new drive, but I think we screwed up the computer account on the Primary Domain Controller (PDC).

The problem I think is that in order to restore the backup, we had to reinstall NT first.  During setup,  we added the computer to the PDC and checked the "create computer account" option.  

This worked fine, but after we restored the backup no domain users could logon to the machine and if we tried to get to the machine from the PDC, we got a "trust" error message.

I think where we screwed up was that when we installed NT we overwrote the original security identifier for the failed machine that was stored on the PDC so that when we restored the backup, the oriiginal security info was restored but it no longer matches what is on the PDC.

Does anyone know how to fix this?  If I go into Server Manager and then select the computer that failed and "remove" it from the domain and then "add" it to the domain, I always get the error "The trust relationship between this workstation and the primary domain failed."

Any ideas?
0
Comment
Question by:magenta
2 Comments
 
LVL 4

Accepted Solution

by:
arminl earned 200 total points
ID: 1768493
Delete the faulty account using Server Manager, change the Domain Name in the WS control-panel, network applet to a workgroup name that does not exist and reboot. Log on locally, change the domain name back to the name of your domain, check the "create computer account" checkbox and enter a domain administrator's name and password.

You'll receive a "Welcome to domain xxxxx" message, reboot and everything should be allright.

Armin Linder
arminl@adlon.de
0
 

Expert Comment

by:touse
ID: 4398717

Since you say you have tried adding and removing it from the domain (multiple times, I hope), go the the website www.sysinternals.com and D/L newsid.exe and run it.

This replaces the sid on a nt/2k machine.

--touse
0

Featured Post

Are your end users making ugly email signatures?

Have you left it up to your end users to create their own email signatures? Are they forgetting to add the company logo or using garish font colors? Take control and ensure all users have the same email signature.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

A few months ago I had an issue with LaserJet 1020 printer which was installed to XP and Windows 7.  It was installed to XP and working, but when I tried to connect from a Windows 7 PC, it would attempt connection and then fail.  Sometimes the Spool…
Our Group Policy work started with Small Business Server in 2000. Microsoft gave us an excellent OU and GPO model in subsequent SBS editions that utilized WMI filters, OU linking, and VBS scripts. These are some of experiences plus our spending a lo…
This Micro Tutorial will give you a basic overview of Windows DVD Burner through its features and interface. This will be demonstrated using Windows 7 operating system.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

895 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now