local user password missing, trust relationship failure, cannot reset via AD or NETDOM

Posted on 2011-09-08
Last Modified: 2012-06-27
trust relationship between this wkstn and primary domain failed and local user passwords now incorrect

Can someone assist me with this error?  This is a win7 pro Pavilion dv4 laptop which had an aborted system restore operation.  Prior to the restore, I checked local administrator logon to ensure I could access the local domain.  

The restore operation aborted w/out successful completion - it was making no progress after over an hour (this was a simple restore to a point 4 days prior - should not take anywhere near that long) and the laptop powered down on it's own after this.  Power options were set to HD never when plugged in.

when I rebooted, I could not log onto the network, and am now getting password incorrect when attempting to log onto the local computer domain.

On the windows side, I've tried resetting the account in Active Directory and the NETDOM command to fix - both to negative results.

I need to access the local domain, i can then rejoin to the network.  Can anyone offer helpful hints for this?  thanks in advance.
Question by:Gordo9
LVL 22

Accepted Solution

Joseph Moody earned 250 total points
ID: 36502283

Author Comment

ID: 36502417
tx, Jmoody10 - am going down the list, options and trying them.  As soon as I have a resolution, i'll post here.

LVL 22

Expert Comment

by:Joseph Moody
ID: 36502429
Ok. If that list doesn't work, I have a tool I can upload that is free.

I just wanted to show you other solutions first (because I wouldn't trust a tool someone uploaded)

Expert Comment

ID: 36502511
If the user has logged on the machine before, then just unplug the network cable\switch off wireless and see if it lets you to logon using cached credentials
Then you can reset the local administrator password and if needed rejoin to the domain

This issue can also occur if the UserAccountControl value of the DC whom the client contacts is not the default of what it should be of a DC 532480
So please check that as well
LVL 70

Expert Comment

ID: 36502522
You need to take the machine out of the domain, then add it back in again.
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.


Author Comment

ID: 36502665
Trinity rescue Kit got the job done.  Nice and quick, too.  Thanks to JMoody10 for the solution!
LVL 22

Expert Comment

by:Joseph Moody
ID: 36502666
Not a problem!

Author Closing Comment

ID: 36502670
excellent took kit (trinity rescue) and other links look good, too -

Author Comment

ID: 36502730
jmoody and all other contributors on this thread - gotta share this with you.

After logging onto the LPT at the local domain, I proceeded to confirm local user passwords, admin access, etc, then went to rejoin the computer to the network.  Mind you, I'm logged on as the local domain, not network.

I choose to remove from my network and add to workgroup (nice and vanilla) - and am prompted with an access popup requiring that I enter network admin credentials that would allow me to remove the wkstn from the network!

Gents, i've been in this business for years, and this is the first time I've been required to pass access in order to remove something - it's always been for joining.

All I can say is, I"m glad this weird logjam was cleared up.  Has anyone else ever seen this happen?


LVL 22

Expert Comment

by:Joseph Moody
ID: 36502746
It is a weird one! You should have been able to enter your local password (even though it prompted for network) to remove it though.

Basically, just an extra security precaution before you bring that network connection (which was already broken...)

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Question regarding adding in a new domain controller 5 54
AD RMS - Exchange 2010 3 38
Question about Authentication Domain 6 71
Change AD password via MS Access DB 2 17
Introduction You may have a need to setup a group of users to allow local administrative access on workstations.  In a domain environment this can easily be achieved with Restricted Groups and Group Policies. This article will demonstrate how to…
Is your Office 365 signature not working the way you want it to? Are signature updates taking up too much of your time? Let's run through the most common problems that an IT administrator can encounter when dealing with Office 365 email signatures.
The viewer will learn how to successfully create a multiboot device using the SARDU utility on Windows 7. Start the SARDU utility: Change the image directory to wherever you store your ISOs, this will prevent you from having 2 copies of an ISO wit…
The viewer will learn how to successfully download and install the SARDU utility on Windows 7, without downloading adware.

910 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

23 Experts available now in Live!

Get 1:1 Help Now