Solved

Windows 7 Trust Relationship between the workstation and primary domain failed

Posted on 2012-03-28
6
987 Views
Last Modified: 2013-01-24
Hello,

We have a workstation on or domain that suddenly stopped working this week.  We have server 2003 SBS running our domain.  When I try to login or rejoin the domain I get the error "the trust relationship between the workstation and primary domain failed"

Ideas?
0
Comment
Question by:networkadmin
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 28

Accepted Solution

by:
Run5k earned 500 total points
ID: 37778105
The first thing you should check is the time zone and accuracy of the current time.  That can cause problems like this.

Once you are sure that's good, you will probably need to login with a local administrator account, remove the machine from the domain, and temporarily switch it to a workgroup.  Then, delete the computer account from Active Directory in order to be thorough.  Finally, add it back to the domain in the proper OU, and you should be all set.
0
 
LVL 11

Expert Comment

by:BillBondo
ID: 37778353
I found out by mistake by pulling the network cable I could log on, then rename and remove from domain. Reconnect the wire and and rename and add back to domain.
0
 

Expert Comment

by:fd4u
ID: 38810063
Removing workstation from the domain, and then adding it back in some situations IS NOT acceptable. This way you'll lost all the settings related to the workstation account, e.g. DOMAIN\WORKSTATION$. So if you have any systems that depends on this - you'll get more trouble. In my case it is MS Lync Server 2013. After removing it form, and then adding it back to the domain - I've got useless workstation.
0
Best Practices: Disaster Recovery Testing

Besides backup, any IT division should have a disaster recovery plan. You will find a few tips below relating to the development of such a plan and to what issues one should pay special attention in the course of backup planning.

 
LVL 28

Expert Comment

by:Run5k
ID: 38812810
Fd4u, in my experience it would be exceedingly rare to encounter any type of problems like that.  In all of the years that I have utilized that work-around, I have yet to find myself with a "useless workstation" in the aftermath.
0
 

Expert Comment

by:fd4u
ID: 38815346
Probably "useless workstation" is too strong, but just to explain you what I've tried to say:
I've ran into the same problem (trust relationship) with one of my servers after migrating the whole infrastructure. Lync 2013 Front End was installed on it. I've solved "trust relationship" issue as you've proposed, but Lync was never ever able to start some services, so, in my case, I've got just that - useless workstation, and I've had to reinstall the server.
0
 

Expert Comment

by:fd4u
ID: 38815428
I think that there's better solution. Login with:
Local admin account
- OR -
Domain account, but using domain credentials cached in the machine. It can be done if you disconnect (unplug) the machine from the domain network. After you logged in connect the machine to the domain network again.

Instead of removing the workstation from the domain just change domain name. If your machine is member of domain MYDOMAIN then change it to be member of mydomain.local, and if it is member of mydomain.local change to MYDOMAIN. It is the same domain, of course, but you'll trick workstation to think that you are changing it. You'll get domain credential prompt, and "welcome to the domain..." message.

Trust relationship is established this way.

Honestly, I'm not sure if this procedure changes machine domain account, but at least it is faster, having just one step (restart) instead of two.
0

Featured Post

NFR key for Veeam Backup for Microsoft Office 365

Veeam is happy to provide a free NFR license (for 1 year, up to 10 users). This license allows for the non‑production use of Veeam Backup for Microsoft Office 365 in your home lab without any feature limitations.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

When you try to extract and to view the contents of a Microsoft Update Standalone Package (MSU) for Windows Vista, you cannot extract the files from the MSU. Here we are going to explain how to extract those hotfix details without using any third pa…
While rebooting windows server 2003 server , it's showing "active directory rebuilding indices please wait" at startup. It took a little while for this process to complete and once we logged on not all the services were started so another reboot is …
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…
This Micro Tutorial will give you a introduction in two parts how to utilize Windows Live Movie Maker to its maximum editing capability. This will be demonstrated using Windows Live Movie Maker on Windows 7 operating system.

737 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question