Re: win2000 pro client cannot join mixed mode ActiveDirectory after being deleted
From: Simon Geary (simon_geary_at_hotmail.com)
Date: 07/21/04
- Next message: Saif: "Administrators permissions..."
- Previous message: Simon Geary: "Re: Default Logon Server"
- In reply to: Derek Ragona: "win2000 pro client cannot join mixed mode ActiveDirectory after being deleted"
- Next in thread: Derek Ragona: "Re: win2000 pro client cannot join mixed mode ActiveDirectory after being deleted"
- Reply: Derek Ragona: "Re: win2000 pro client cannot join mixed mode ActiveDirectory after being deleted"
- Messages sorted by: [ date ] [ thread ]
Date: Wed, 21 Jul 2004 15:19:11 +0100
When this happens the easiest way to fix it is usually to put the computer
into a workgroup and then rejoin the domain.
You can use tools to reset the machine accounts secure channel to get it
fixed but unjoining and then rejoining the domain is just as quick to do for
a single PC.
"Derek Ragona" <derek@computinginnovations.com> wrote in message
news:%23TGeoixbEHA.556@tk2msftngp13.phx.gbl...
> A computer account was deleted from the Active Directory, but now cannot
be
> added back into the AD.
>
> When this problem first arose, there were two AD servers. The original
> Master had recently had a RAID 10 drive fail, but the drive rebuild left
> Windows 2000 server not bootable, so the Windows 2000 server OS was
> reloaded. Once loaded this server was promoted using dcpromo, and looked
to
> be working. However, it became clear once the Windows 2000 pro client was
> removed from one AD server, but the deletion did not replicate, there was
a
> problem. I found that replication issue was due because these servers are
> multi-honed and somehow not finding each other. I disabled all but one
NIC
> on each server, and removed the DNS entries for the other NIC's. It
looked
> like the AD's were connecting, but still not replicating. So I demoted
the
> reloaded server, using dcpromo hoping that with only one AD server, now
the
> client computer account could be added. While I can add the computer
> account, you cannot logon from that computer. If I delete the client
> computer account, you get the same error when trying to logon.
>
> If the computer is NOT logged on at boot, leaving the ethernet unplugged,
> then after it boots, plug the ethernet in, all domain resources are
> available as the user's account credentials are fine.
>
> I suspect there must be some old objects in the AD for the client
computer,
> or some thing else wrong.
>
> I have followed the KB articles and checked the AD and DNS setup, all
looks
> right.
>
> Any help would be appreciated. Thanks.
>
>
> Derek Ragona
> derek@computinginnovations.com
>
>
- Next message: Saif: "Administrators permissions..."
- Previous message: Simon Geary: "Re: Default Logon Server"
- In reply to: Derek Ragona: "win2000 pro client cannot join mixed mode ActiveDirectory after being deleted"
- Next in thread: Derek Ragona: "Re: win2000 pro client cannot join mixed mode ActiveDirectory after being deleted"
- Reply: Derek Ragona: "Re: win2000 pro client cannot join mixed mode ActiveDirectory after being deleted"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|