Solved

Suddenly our 2000 Server doesn't accept our credentials!!

Posted on 2008-06-14
10
182 Views
Last Modified: 2013-12-05
One of my clients has a rather strange problem I've never encountered before.

Their Windows 2000 server has started shutting down and since doing this, when restarting it, it will not allow us to logon, not accepting our credentials.

Furthermore, the 12 computers connected to it are fine keeping their connection to mapped drives, Internet, etc, however, if any are restarted they are unable to log back onto the domain.

No-one would have changed any passwords (family business) and I'm really stuck.

Thanks for any ideas.

Mike
 
0
Comment
Question by:mikeabc27
  • 4
  • 3
  • 3
10 Comments
 
LVL 7

Expert Comment

by:fhmc
Comment Utility
are any of the currently logged in users domain admins?


if so, you could try the following from one of their command lines.

net user /domain /add tempadmin Password123!
net group /domain "domain admins" /add tempadmin


try to logon the the server using the "tempadmin" account using the password "Password123!"

does it work?

if not, I'll try to come up with some more NATIVE suggestions.
There are many utils available to deal with server and/or AD admin lockouts, but my preference is to exhaust my native options first.
0
 
LVL 38

Expert Comment

by:ChiefIT
Comment Utility
What status do you have on the 2003 server? Computers can logon to domain shares and file shares prior to an actaul logon network connections are loaded prior to the logon screen. It seems like the actual logon process shuts down the NIC or TCP/IP protocol. It may be timing out.

It almost sounds like you have a problem with the TCP/IP stack. Having a problem with this could shut down your computer and will definately stop the Netlogon process. Look in Event logs for errors associated with the netlogon process. Maybe 5719, not logon servers available.

What I might do in your shoes is logon in safe mode without Network booting. Uninstall/Reinstall TCP/IP. Then, look into the event logs for errors that may point you in the right direction. Also run a netdiag at the safeboot command prompt.

NOTE: Your driver seems to be working fine, since your clients are still logging on with domain access.  
0
 
LVL 7

Expert Comment

by:fhmc
Comment Utility
good point... I had not concidered the netlogon service part, and I agree, that's a likely culprit.
0
 

Author Comment

by:mikeabc27
Comment Utility
Sorry for the delay in replying, I sent the orginal post from my clients and, as they're closed till Monday, I've brought the server home with me. Just got back and tested your ideas.

The two Domain Admin user accounts are amongst those showing Account Locked Out. I tried the tempadmin login but no luck.

The server is running 2000 and I've logging in using Safe Mode and Safe Mode - Command Prompt, but still get stuck at the login.
0
 
LVL 38

Expert Comment

by:ChiefIT
Comment Utility
So, you don't even have the ability to logon locally?

 
0
Why You Should Analyze Threat Actor TTPs

After years of analyzing threat actor behavior, it’s become clear that at any given time there are specific tactics, techniques, and procedures (TTPs) that are particularly prevalent. By analyzing and understanding these TTPs, you can dramatically enhance your security program.

 

Author Comment

by:mikeabc27
Comment Utility
No I can't
0
 
LVL 7

Expert Comment

by:fhmc
Comment Utility
you may have to crack the local admin password to logon locally and then employ additional techniques to recover domain level access.

some of the following articles may prove useful:

http://www.petri.co.il/forgot_administrator_password.htm

http://www.petri.co.il/change_recovery_console_password.htm
http://www.petri.co.il/reset_domain_admin_password_in_windows_2000_ad.htm
0
 

Author Comment

by:mikeabc27
Comment Utility
Thanks fhmc I'll try those.
0
 

Author Comment

by:mikeabc27
Comment Utility

Could a virus/disk corruption have altered the account profiles causing a failure to authenticate?
0
 
LVL 38

Accepted Solution

by:
ChiefIT earned 500 total points
Comment Utility
Yes, a virus can mess with the logon service.
0

Featured Post

What Is Threat Intelligence?

Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

Join & Write a Comment

Some time ago I faced the need to use a uniform folder structure that spanned across numerous sites of an enterprise to be used as a common repository for the Software packages of the Configuration Manager 2007 infrastructure. Because the procedu…
Welcome to my series of short tips on migrations. Whilst based on Microsoft migrations the same principles can be applied to any type of migration. My first tip Migration Tip #1 – Source Server Health can be found listed in my profile here: http:…
Excel styles will make formatting consistent and let you apply and change formatting faster. In this tutorial, you'll learn how to use Excel's built-in styles, how to modify styles, and how to create your own. You'll also learn how to use your custo…
This video demonstrates how to create an example email signature rule for a department in a company using CodeTwo Exchange Rules. The signature will be inserted beneath users' latest emails in conversations and will be displayed in users' Sent Items…

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now