Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium

x
?
Solved

Cannot join a Win2003 server to a Win2000 domain

Posted on 2011-02-25
6
Medium Priority
?
493 Views
Last Modified: 2013-12-05
I have a new 2003 server (standard) with SP2.  When I try to join it to the domain, single 2000 SP3 DC, I get the following error:

The following error occurred attempting to join the domain "domianname":
The account is not authorized to log in from this station.

I have tried adding new accounts with admin priv.  
I have tried setting the security policies to DISABLED per Microsoft.  
I cannot upgrade to 2000 server due space limitations and it is validated.
The DC is listed in the 2003's hosts and lmhosts files with the PRE and DOM tags.
The server name has been added to the DC's DNS and created in the Computers CN.
I have read through similar questions and cannot find an answer that works.
Ideas?
0
Comment
Question by:Arr0w
  • 3
  • 2
6 Comments
 
LVL 17

Expert Comment

by:Sajid Shaik M
ID: 34983998
see this article

all the best

http://support.microsoft.com/kb/281648
0
 
LVL 35

Expert Comment

by:it_saige
ID: 34984034
Are you attempting to add the server as a DC?  Is this an R2 2003 Server?  If both of the preceeding are true, have you ran ADPREP from the second CD on the 2000 server.

If both of the preceeding were false try this:

On the Window 2003 Server open Control panel > Administrative Tools
Open Local Security Policy > expand Local Policies to select Security Options.
Locate "Microsoft network server: Digitally signed Communications (if server agrees)"
Change this setting to DISABLED

-saige-
0
 
LVL 17

Expert Comment

by:Sajid Shaik M
ID: 34984157
0
Making Bulk Changes to Active Directory

Watch this video to see how easy it is to make mass changes to Active Directory from an external text file without using complicated scripts.

 

Author Comment

by:Arr0w
ID: 34991186
No, the servers are not R2, just 2003 standard.  They will be DCs in the future, but they need to be joined first.  I have already checked the Security Options and they are all set as specified in the KB articles.  I have added this version of 2003 to the network in the past without trouble.  
0
 

Accepted Solution

by:
Arr0w earned 0 total points
ID: 34997435
Solution was to remove SP2 from the server, join the network, then reapply.
0
 

Author Closing Comment

by:Arr0w
ID: 35042451
None of the supplied solutions worked.  If I was able to put SP4 on the DC then they probably would have worked, but that was not an option as it is a validated server.
0

Featured Post

Free Tool: Port Scanner

Check which ports are open to the outside world. Helps make sure that your firewall rules are working as intended.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Active Directory can easily get cluttered with unused service, user and computer accounts. In this article, I will show you the way I like to implement ADCleanup..
I’m willing to make a bet that your organization stores sensitive data in your Windows File Servers; files and folders that you really don’t want making it into the wrong hands.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlle…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
Suggested Courses

577 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question