Link to home
Start Free TrialLog in
Avatar of rsbgroup
rsbgroupFlag for United States of America

asked on

active directory delegation control

We configure active directory delegation control for particular user to join a computer to domain.
If we add a new computer to domain then it successfully join to domain. But if same computer remove form domain and rejoin again we are getting error. Please find attachment for screen shot.
Same I was doing in administrator account this computer was re- join to domain. There is something delegation issue. Please help me to resolve this issue.
Error.jpg
Avatar of Mahesh
Mahesh
Flag of India image

Two things you need to do:

In addition to delegation, in Default domain policy GPO, grant same user \ group "add workstation to domain" user rights and then run gpupdate /force on DC, may be DC reboot is more useful.
Now you can try rejoining existing accounts, it should work
If still you face issues, try below.
When you rejoin same computer to domain again, 1st reset its existing computer account in active directory by right clicking it and click on reset computer
This will reset its existing binding by resetting its secure channel
Then hopefully you can able to rejoin same computer account again

Mahesh
ASKER CERTIFIED SOLUTION
Avatar of Arjun Vyavahare
Arjun Vyavahare
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial