Solved

VMware Snapshot Rollback Loses Domain Identity

Posted on 2011-09-23
7
468 Views
Last Modified: 2012-06-27
I have a server running VMware ESXi 4.1.0 (free version).  On this server, I have 25 Virtual PCs created with various Operating Systems.  (Windows XP SP3, Vista SP2 32 & 64-Bit, and Windows 7 SP1 32 & 64-Bit).  These PCs are used for loading and testing software that our developers write.  The testers will take an initial Baseline snapshot of the PCs, load the software perform their testing, and then roll the snapshot back once they are ready to try another product out.  This way they have a clean slate for testing.

The problem I am experiencing is that when they roll the software back, the Virtual PCs somehow lose their Active Directory Domain identity.  You can no longer log them in with the AD usernames & passwords.  To solve the problem, I have to log in as a local admin, add the PC back to the WORKGROUP, reboot, then re-add it to AD.  Should the Snapshot not be retaining this information so I don't have to do this?
0
Comment
Question by:neptuneit
  • 5
  • 2
7 Comments
 
LVL 119
ID: 36587545
This is normal for an old snapshot.

The issues is not with the snapshot, it's with Active Directory.

0
 
LVL 119

Accepted Solution

by:
Andrew Hancock (VMware vExpert / EE MVE^2) earned 500 total points
ID: 36587816
The issue is similar to a VMware View Desktop issues

The machine password is stored in the Virtual Machine, It changes in Windows performs every 30 days as per policy setting and stores the machine account password retrieved from Active Directory in this virtual disk.

So you have a VM running, the machine password changes, and then you ROLLBACK the VM, which has a different machine password, and Hey Presto the passwords do not match, so the trust is broken.

See here

http://www.experts-exchange.com/Software/VMWare/Q_27116503.html
http://www.experts-exchange.com/Software/VMWare/Q_27320237.html
0
 
LVL 119
ID: 36587831
It may be better to remove these workstations from the Domain, and add to Domain when using them.

or Check the other Articles for GPO Policies, which could be applied to a Container.
0
Three Reasons Why Backup is Strategic

Backup is strategic to your business because your data is strategic to your business. Without backup, your business will fail. This white paper explains why it is vital for you to design and immediately execute a backup strategy to protect 100 percent of your data.

 
LVL 1

Author Comment

by:neptuneit
ID: 36587889
The passwords on the accounts used to log into these machines are set to never change.  So would that still apply?
0
 
LVL 119
ID: 36587969
I'm sorry I'm not discussing User Accounts.

When you Add a Workstation to a Domain, at the time it's joined, a Machine Account Password is Exchanged with the Machine. This expires every x days, set by AD!

No MACHINE ACCOUNT PASSWORD (internal on machine!).

Not user Accounts.
0
 
LVL 1

Author Comment

by:neptuneit
ID: 36587979
Okay.  I misunderstood.  That makes perfect sense.  Thanks for the feedback.
0
 
LVL 119
ID: 36588000
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
backup strategy concern 5 79
Live Storage Vmotion VMs with shared VMDK 10 57
Inactive computer in domain 7 62
AD Sites/AD Replication 11 34
In this article, I will show you HOW TO: Install VMware Tools for Windows on a VMware Windows virtual machine on a VMware vSphere Hypervisor 6.5 (ESXi 6.5) Host Server, using the VMware Host Client. The virtual machine has Windows Server 2016 instalā€¦
In this article, I show you step by step with screenshots to assist you - HOW TO: Deploy and Install the VMware vCenter Server Appliance 6.5 (VCSA 6.5), with some helpful tips along the way.
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles from a Windows Server 2008 domain controller to a Windows Server 2012 domain controlleā€¦
This video shows you how easy it is to boot from ISO images for virtual machines with the ISO images stored on a local datastore on the ESXi host.

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question