Unable to rename Win 10 Svr 2016 AD joined computer

Whenever I try to rename a Windows 10 Pro computer that has is a member of a Server 2016 AD network I receive an error message that says "The following error occurred attempting to rename the computer to "[new computer name]": Access Denied (see the screenshot).

This happens no matter which AD domain administrator account I use (including the administrator domain admin account) and even occurs if I am logged onto the computer with the domain admin account.

This is the only computer where I have ever received this error message on within this network.

I am currently able to rename other domain-joined computers and add new computers to the domain.

What can be done to fix this issue?

IT GuyNetwork EngineerAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

Seth SimmonsSr. Systems AdministratorCommented:
how is your AD environment setup?  do these admin account delegated access to the OU these machines are in?
it's possible the accounts don't have rights to rename computer accounts

you can also try from the command line using netdom

Netdom renamecomputer
yo_beeDirector of Information TechnologyCommented:
Are you trying to rename and join at the same time?
If so I have experienced the naming and joining at the same time rarely if ever work.
I would recommend renaming the computer, reboot, then join.

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
IT GuyNetwork EngineerAuthor Commented:
No I am trying to rename the computer which is already attached to the Active Directory domain.

All of these are domain admin accounts that I have previously used too add and rename AD joined computer accounts and that currently work with renaming other AD joined computer accounts and with adding new computers to the AD domain.
Big Business Goals? Which KPIs Will Help You

The most successful MSPs rely on metrics – known as key performance indicators (KPIs) – for making informed decisions that help their businesses thrive, rather than just survive. This eBook provides an overview of the most important KPIs used by top MSPs.

Seth SimmonsSr. Systems AdministratorCommented:
This is the only computer where I have ever received this error message on within this network.

then remove from the domain and add again
only machine having an issue i wouldn't waste time trying to figure out why
To rename the object without the disjoin/rejoin process Seth outlined, you gave to use netdom
To rename the computer, while updating the AD object at the same time.
You need to add the remote server admin tools or you can. Download the install from https://www.microsoft.com/en-us/download/details.aspx?id=45520

Netdom.exe is a utility that is included.

See command option to achieve the rename,
Shaun VermaakTechnical SpecialistCommented:
Open DSA.msc, enable Advance View and browse to the computer in question.
From properties, go to Security tab then click on Advance.
Do an effective permission on the accounts used during the rename process and revert back.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Windows 10

From novice to tech pro — start learning today.