QuestionQ31

Secure Windows Server infrastructure

Overview

Your network contains an Active Directory Domain Services (AD DS) domain named contoso.com.

Existing environment

The domain contains a domain controller named DC1 and a member server named Server1.

Issue

Users cannot sign in to Server1 by using domain credentials and receive the following error message:

The trust relationship between this workstation and the primary domain failed.

Requirement

You need to restore domain authentication on Server1 without removing Server1 from the domain.

Solution: On Server1, you run Reset-ComputerMachinePassword -Server DC1.

Does this meet the goal?

Explanation

Reset-ComputerMachinePassword resets the local computer's machine-account password, which reestablishes the secure channel used for domain authentication. The -Server DC1 parameter selects DC1 as the domain controller used for the reset, and the computer remains joined to the domain.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!