Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Trust relationship

Status
Not open for further replies.

kurtismonger

IS-IT--Management
Joined
Nov 2, 2005
Messages
34
Location
US
I thought I had this problem cured, but it has reared its ugly head recently when trying to add a user to a client computer. I know why its occuring, but I don't know how to fix it.

The specific error I get is the following: "The user could not be added because the following error has occured: The trust relationship between this workstation and the primary domain failed"

I also get a similar error message in the system logs on the server regarding the trust relationship of each client machine. These messages occur throughout the day, but don't seem to prevent users from using network resources.

This problem cropped up, I believe, because I had to reinstall my PDC due to a licensing issue. I shut down all clients, reinstalled the 2000 server, setup DC, DNS, DCHP and Active directory exactly as they had been before. I then started all the clients and logged them into the domian, which they did without issue.

The one thing I noticed is that no computer accounts were created in ADUC when the clients logged in. Thinking this was the problem with the trust issue, I created accounts for all machines and even tried reseting the accounts. Nothing has worked.
 
Can anyone help me here? I am stumped!?!
 
Have you tried this? This worked for me a couple years ago:

The trust relationship can go stale and delay logons if the computer is not used for a while or the relationship otherwise flakes out for unknown reasons. Simpler to (1) move the computer to a workgroup, reboot, go to the W2K server and remove the computer account, go back to the local computer and rejoin the domain. (Whether the user account is messed up and needs to be removed and recreated, I don't know.)

Also, search in this forum and the XP Pro forum for keywords "trust relationship" for other ideas and fixes.

dbMark
 
I thought of this as well - move the computer to a workgroup and then back to the domain. The problem is that this creates a whole new user account on the local machine and blows away the users settings, even if the name hasn't changed.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top