Solved

Why these workstations were not able find the DC?

Posted on 2014-03-16
2
136 Views
Last Modified: 2014-03-24
This is using a MS Windows 2003 AD domain. As for the workstations, there are XP, Win7, and little bit on Win8. Once in a while, the problem of workstation not able to logon to the domain occurs. Please see the error message in details:

 EventID: 5722
    Source: Netlogon

    Problem Descriptions:
    The session setup by the computer ACCT_EXEC1_PC failed to authenticated.
    The name(s) of the account(s) referenced in the security database
    is wks77_PC$. The following errors occurred:

    Access is denied    

I heard that this is because the password of the computer account reset and some how, it wasn't recognized by the DC. The only way I can do is to disjoin this workstation, and then re-join it back. This method works, but still, this is not the right method right? Any way to solve the problem once and for all?

Thanks!
0
Comment
Question by:MichaelBalack
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 13

Accepted Solution

by:
Santosh Gupta earned 500 total points
ID: 39932687
Hi,

This setting can be changed by "Computer Configuration\Windows Settings\Security Settings\Local Policies\Security Options\Domain member: Maximum machine account password age" using Local computer policies or domain GPOs.

Note:
If you increase this interval to 0 so that the computers no longer change their passwords, an attacker will have more time to undertake a brute force attack to guess the password of one or more computer accounts. if you dont think you have such threat then you can change it.
0
 
LVL 1

Author Closing Comment

by:MichaelBalack
ID: 39949703
okay
0

Featured Post

Industry Leaders: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Scenerio: You have a server running Server 2003 and have applied a retail pack of Terminal Server Licenses.  You want to change servers or your server has crashed and you need to reapply the Terminal Server Licenses. When you enter the 16-digit lic…
Setting up a Microsoft WSUS update system is free relatively speaking if you have hard disk space and processor capacity.   However, WSUS can be a blessing and a curse. For example, there is nothing worse than approving updates and they just have…
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …
Finding and deleting duplicate (picture) files can be a time consuming task. My wife and I, our three kids and their families all share one dilemma: Managing our pictures. Between desktops, laptops, phones, tablets, and cameras; over the last decade…

736 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question