Re: Administrator cant logon to his domain workstation as administrator

From: Matjaz Ladava [MVP] (matjaz_at_ladava.com)
Date: 08/31/04


Date: Tue, 31 Aug 2004 10:03:53 +0200

Hi James,

Bebore we start to troubleshoot your problem, it would be goot to check that
your AD is functioning properly. Install support tools from windows server
CD and run dcdiag and netdiag. Also make sure, that all your clients and
servers are pointing to your internal DNS server.
Then try to disjoin your computer from domain and join it again..

-- 
Regards
Matjaz Ladava
MVP Windows Server - Directory Services
matjaz@ladava.com, matjazl@mvps.org
"James W. Long" <JamesLong@wowway.com> wrote in message 
news:Gbudnc5xqZWPnKncRVn-rQ@wideopenwest.com...
> Dear all:
>
>        HELP!
>
> My workstation fell out of the domain and I cant get it back in!
> I dont have a clue how it happened. I was trying to get to it
> from another client and could not see its files anymore.
> Then, I noticed my DC could not see it either.
> Then I noticed it would not logon when rebooted.
>
> I can logon to the DC fine,
> I can logon to hal9000 in the hal9000 (local) domain fine,
> and I can logon to to hal9000.jewelconsulting only IF
> IF I turn off the DC or disconnect the cable.
>
> My set up:
>
> 1 win2k adv server DC. jewelntserver.jewelconsulting.org  (jewelntserver)
> 10.0.0.50
>
> 2 win2k pro client  hal9000.jewelconsulting.org  (hal9000) 10.0.0.10
>
> 3 win2k pro client  c18909-f.jewelconsulting.org   (c18909-f) 10.0.0.20
>
>
> The administrator cant login to his own account
> (which he has everything on)
> on the hal9000 machine as administrator.
> hal9000 no longer shows up in AD computers
> on the DC.
>
>  However....
>
>  Turning off the DC or disconnecting the cable from hal9000 allows me
>  to logon to hal9000 as administrator of jewelconsulting,
>  but the domain doesnt see me, even if brought up afterwards.
>  I think hal9000 is operating on a a cached copy  in this case.
>
> No domain computers can get to me, the messages are
> "no logon server available", when UNC access is tried from them,
> and " Hal9000 is not accessable, network path noth found "
> when clicked in "my network places" from other computers.
>
> but, I can see other computers from Hal9000 via a UNC reference.
> (AHA it works one direction... so the domain DOES know about me).
>
> (also, in hal9000 I can get user profile info on the profiles on it,
> and THERE, it lists Jewelconsulting\administrator. so It knows that much,
> and the type of that account is "local")
>
> I cant get any account info from the dc while on hal9000 other than that.
> no listings of any types of accounts from the dc at all in the
> jewelconsulting domain.
>
> when I try to log on to hal9000 with the dc on and all connected up
> normally, the
> message is:  the machine account does not exist on the dc or the password 
> is
> incorrect.
>
> I tried adding a new machine in AD , but AD says I cant because a
> pre-windows2000
> machine is already in use.  - (odd, it was native from the get go).
> probably a good thing
> this did not succede.
>
> I would REALLY like hal9000 to get back into my domain,  how do I do it?
> can I save my account on hal9000? can I rescue the machine account on the
> DC?
>
> This machine has all my stuff.
>
> Thank you in advance to all you bright souls!
>
>  James W Long.
>
>
>
> 


Relevant Pages

  • Re: Please help refresh my memory on AD DC
    ... When I boot my Laptop I reach the Logon screeen for XP Laptop and here ... admin account to be able to Login so I can control it from the DC. ... A domain user can by default logon to any domain computer, except Domain controllers. ... A Server has websites already hosted on it in a Workgroup and now I ...
    (microsoft.public.windows.server.active_directory)
  • Re: Please help refresh my memory on AD DC
    ... When I boot my Laptop I reach the Logon screeen for XP Laptop and here I am ... administrator account. ... account to be able to Login so I can control it from the DC. ... A Server has websites already hosted on it in a Workgroup and now I join it ...
    (microsoft.public.windows.server.active_directory)
  • Re: Please help refresh my memory on AD DC
    ... "Meinolf Weber" wrote: ... They however cannot logon directly to the physical DC machine. ... NOT an admin account to be able to Login so I can control it from ... A Server has websites already hosted on it in a Workgroup and now ...
    (microsoft.public.windows.server.active_directory)
  • Re: Please help refresh my memory on AD DC
    ... they just get the result of that what the domain administrator ... They however cannot logon directly to the physical DC machine. ... administrator account. ... A Server has websites already hosted on it in a Workgroup and now I ...
    (microsoft.public.windows.server.active_directory)
  • Re: Please help refresh my memory on AD DC
    ... The users will not see anything of that basically, they just get the result of that what the domain administrator or equivalent configures there. ... They however cannot logon directly to the physical DC machine. ... administrator account. ... A Server has websites already hosted on it in a Workgroup and now I ...
    (microsoft.public.windows.server.active_directory)

Loading