Solved

How do I recreate a lost computer account in a domain controller?

Posted on 1997-11-07
2
769 Views
Last Modified: 2013-12-14
We lost a hard drive on one of our NT boxes in our domain.  We were able to restore it from a backup to a new drive, but I think we screwed up the computer account on the Primary Domain Controller (PDC).

The problem I think is that in order to restore the backup, we had to reinstall NT first.  During setup,  we added the computer to the PDC and checked the "create computer account" option.  

This worked fine, but after we restored the backup no domain users could logon to the machine and if we tried to get to the machine from the PDC, we got a "trust" error message.

I think where we screwed up was that when we installed NT we overwrote the original security identifier for the failed machine that was stored on the PDC so that when we restored the backup, the oriiginal security info was restored but it no longer matches what is on the PDC.

Does anyone know how to fix this?  If I go into Server Manager and then select the computer that failed and "remove" it from the domain and then "add" it to the domain, I always get the error "The trust relationship between this workstation and the primary domain failed."

Any ideas?
0
Comment
Question by:magenta
2 Comments
 
LVL 4

Accepted Solution

by:
arminl earned 200 total points
ID: 1768493
Delete the faulty account using Server Manager, change the Domain Name in the WS control-panel, network applet to a workgroup name that does not exist and reboot. Log on locally, change the domain name back to the name of your domain, check the "create computer account" checkbox and enter a domain administrator's name and password.

You'll receive a "Welcome to domain xxxxx" message, reboot and everything should be allright.

Armin Linder
arminl@adlon.de
0
 

Expert Comment

by:touse
ID: 4398717

Since you say you have tried adding and removing it from the domain (multiple times, I hope), go the the website www.sysinternals.com and D/L newsid.exe and run it.

This replaces the sid on a nt/2k machine.

--touse
0

Featured Post

ScreenConnect 6.0 Free Trial

At ScreenConnect, partner feedback doesn't fall on deaf ears. We collected partner suggestions off of their virtual wish list and transformed them into one game-changing release: ScreenConnect 6.0. Explore all of the extras and enhancements for yourself!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The use of stolen credentials is a hot commodity this year allowing threat actors to move laterally within the network in order to avoid breach detection.
In this article, I will show you HOW TO: Perform a Physical to Virtual (P2V) Conversion the easy way from a computer backup (image).
Windows 8 came with a dramatically different user interface known as Metro. Notably missing from that interface was a Start button and Start Menu. Microsoft responded to negative user feedback of the Metro interface, bringing back the Start button a…
This is used to tweak the memory usage for your computer, it is used for servers more so than workstations but just be careful editing registry settings as it may cause irreversible results. I hold no responsibility for anything you do to the regist…

778 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question