Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

active directory delegation control

Posted on 2014-03-21
2
Medium Priority
?
339 Views
Last Modified: 2014-03-27
We configure active directory delegation control for particular user to join a computer to domain.
If we add a new computer to domain then it successfully join to domain. But if same computer remove form domain and rejoin again we are getting error. Please find attachment for screen shot.
Same I was doing in administrator account this computer was re- join to domain. There is something delegation issue. Please help me to resolve this issue.
Error.jpg
0
Comment
Question by:rsbgroup
2 Comments
 
LVL 38

Expert Comment

by:Mahesh
ID: 39944979
Two things you need to do:

In addition to delegation, in Default domain policy GPO, grant same user \ group "add workstation to domain" user rights and then run gpupdate /force on DC, may be DC reboot is more useful.
Now you can try rejoining existing accounts, it should work
If still you face issues, try below.
When you rejoin same computer to domain again, 1st reset its existing computer account in active directory by right clicking it and click on reset computer
This will reset its existing binding by resetting its secure channel
Then hopefully you can able to rejoin same computer account again

Mahesh
0
 
LVL 5

Accepted Solution

by:
Arjun Vyavahare earned 1000 total points
ID: 39944992
Hi,

Suggestion you to refer below link, which has given step by step screenshot based information along with the solution:

http://chentiangemalc.wordpress.com/2012/07/27/case-of-the-domain-join-failure/

I hope this will solve your issue.

Regards,
Arjun
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Here's a look at newsworthy articles and community happenings during the last month.
How to deal with a specific error when using the Enable-RemoteMailbox cmdlet to create a mailbox in the cloud-based service, for an existing user in an on-premises Active Directory.
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
Sometimes it takes a new vantage point, apart from our everyday security practices, to truly see our Active Directory (AD) vulnerabilities. We get used to implementing the same techniques and checking the same areas for a breach. This pattern can re…

916 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question