joining a pc to a new domain

Posted on 2011-02-10
Medium Priority
Last Modified: 2012-05-11
Hello, we are moving a client to a completely new domain. The new domain is running on new servers. The domain/active directory is completely empty as well - although we did create new user accounts/mailboxes in the new domain. Today, when I attempted to move one of their PCs to the new domain by changing the domain from the old old domain to the new, it seemed to join the new domain ok but once I reboot and try to login as one of the users on the new domain, i get the following error:

"The trust relationship between the workstation and the primary domain failed.".

What coudl the problem be? I already ran a dcdiag on the domain and it passed everything.

The PC has also already been directed to the new DNS server which is one of the new domain controllers. Please advise. The PC is XP and the DC's are Windows 2003 and 2008.
Question by:StarfishTech
  • 3
  • 2

Accepted Solution

dattatraykadam earned 2000 total points
ID: 34867166
Logon as an administrator on the local computer, remove the computer from the domain.

Restart and rejoin it to the domain. It should work.

Author Comment

ID: 34867185
OK, so just join the PC to a workgroup, reboot and join to the new domain?
LVL 26

Expert Comment

ID: 34867186
Typically, that error between a workstation and the domain means you're in for a bit of work.
On the workstation:
Reset the local admin password so you're cure of what it is
Change the workstation from the domain to a workgroup
Log on with the local admin password
Check the DCs to ensure the computer account has been removed; if it hasn't, delete it and wait for replication
Check workstation IP settings to ensure it's pointing to the new domain
Rejoin workstation to domain

See if that gets this one through.

Free tool for managing users' photos in Office 365

Easily upload multiple users’ photos to Office 365. Manage them with an intuitive GUI and use handy built-in cropping and resizing options. Link photos with users based on Azure AD attributes. Free tool!


Expert Comment

ID: 34867203
@Starfish Tech: Yes. Thats it.  Just join the PC to a workgroup, reboot and join to the new domain.

Author Comment

ID: 34867580
That worked great. I have to do the same thing to a domain controller on the old domain. I want to demote it, and then join it to the new domain but NOT promote it to a dc of the new domain.Does the same principle apply? Do I need to demote the DC, join it to a workgroup and then join it to the new domain?

Expert Comment

ID: 34867706
If that old DC won't act as a DC in the new domain then you will have to demote the DC, join it to a workgroup and then join it to the new domain.

Dattatray Kadam

Please remember to Mark as Answer to a comment that helped you.
It will help other users facing similar issues to resolve their issue as well.

Featured Post

Easily manage email signatures in Office 365

Managing email signatures in Office 365 can be a challenging task if you don't have the right tool. CodeTwo Email Signatures for Office 365 will help you implement a unified email signature look, no matter what email client is used by users. Test it for free!

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Understanding the various editions available is vital when you decide to purchase Windows Server 2012. You need to have a basic understanding of the features and limitations in each edition in order to make a well-informed decision that best suits …
Seizing the Operation Master Roles in Windows Server 2016 in case of FSMO holder failure.
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…

587 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question