Windows Server 2012 Domain Controller and Windows 7 workstations

Posted on 2014-08-19
Last Modified: 2014-08-20
I had a major failure (hardware: harddrives) on my Windows Server 2012 domain controller. I had to rebuild the server and install a fresh copy of Windows Servers 2012 along with AD and DNS. I used the same domain name, but change the password of the administrator account. I recreated all of the users in AD and created new passwords for the users.

Most of the computers I was able to drop out of the domain and into a workgroup, create a local admin and password and reboot. After which I was able to bring the computer back into the domain.

On two computers, which were at a shut down status and the time of the failure and rebuild are getting the following error: The security database on the server does not have a computer account for this workstation trust relationship. When I get to the logon screen I see the domainname/user and enter in both the old known password and the new password that I just created for AD. If there was a local admin account on the computer, it is hidden and I do not know the password.

In AD Computers,  I added the name of the computers in questions, hoping this might be enough to jump start them.

1. Is there a way to get into the workstation at this point? Would I bypass the logon screen in SafeMode, and then create a local admin?
2. Is there a powershell script?

Any suggestions?
Question by:Trish Glees
    LVL 6

    Expert Comment

    by:Chad Franks
    Delete the computer accounts from AD and re-join them to the domain.  They need to get a new guuid
    LVL 14

    Accepted Solution

    If you are unable to login to those pc's with ANY set of credentials.. then IMO you need to reset the local admin password using :

    Then once you reset it, login and disjoin then rejoin the computers to the new domain.
    LVL 4

    Expert Comment

    Use the password reset tools for reset the password that two computers.. unplug the servers from network and reset the password and rejoin them on domain..

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    How does your email signature look on mobiles?

    Do your employees use mobile devices to reply to emails? With mobile becoming increasingly important to the business world, it is in your best interest to make sure that your email signature looks great across all types of devices.

    Table of Contents: Lesson 1 - Installing Windows Server 2012 ( Lesson 2 - Configuring Ser…
    This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …
    Windows 8 came with a dramatically different user interface known as Metro. Notably missing from that interface was a Start button and Start Menu. Microsoft responded to negative user feedback of the Metro interface, bringing back the Start button a…

    761 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    14 Experts available now in Live!

    Get 1:1 Help Now