Link to home
Start Free TrialLog in
Avatar of Robert Perez-Corona
Robert Perez-CoronaFlag for United States of America

asked on

How to proactively tell if windows system lost it's trust relationship with the domain

Is there a way via powershell/scheduled task, or software/app or other solution that we can see if a windows machine lost its trust with the domain?

Since it's a occurring issue at my job, I was hoping to execute something and generate reports to hand off to my Ops team

Thank you.
ASKER CERTIFIED SOLUTION
Avatar of oBdA
oBdA

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
in Addition to oBdA's comments, it is very difficult or proactively tell system lost it's trust relationship with the domain.
You need to have your previous history to see how many clients affected per year to show as estimates.
The only time a machine loses trust with a domain is when an update or a failing drive triggers a system repair and rolls/reverts to a prior snapshot.

I think your question is somewhat similar to how can I proactively determine whether I lost my keys.
You find out when the keys are needed. same with the trust relationship.

Note. The login using cached credentials is available when the system is OFF the network. If you have a local admin, or you are an admin on the domain, once you have an active session, and the system is
Avatar of Robert Perez-Corona

ASKER

thank you all for the input.