Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Why can I logon to Domain from Client PC without connect to DC 3

Status
Not open for further replies.

Isao

Technical User
Mar 19, 2006
3
JP
Hi
There are a DC and a client and the client PC has joined into the Domain of the DC.
I was trying to logon to the Domain from the client PC by using username and password which I already created in AD of the DC.
so I managed to logon to the Domain, afterthat I reallised that Lan Cable wasn't connected on the client PC.
I have no idea why I could logon to the Domain without connection and
the client PC also could separate from Domain without physical connect to DC.
Does anyone know why I was allowed to do the things above?

if anyone has any info about it, please tell me.

Thanks

Isao
 
I'm not sure I understand what you've done, or what happened.

But you can still logon to a client machine with domain credentials, because they get cached (cached credentials).

Ie you can logon with cached credentials when not connected to the lan.

Windows and NT Admin.
 
Hi ScottrCr
Thank you for your reply and sorry to get confused by
my poor English.

I thought that a client machine always has to get an authentication from a DC to logon to Domain.

so then Do you know where cached credentials are?
I really would like to make an exprement
like below

1.delete cached credentials without Lan Cable.
2.try to logon to Domain from a Client PC after the cached credentials is gone.

I really want to see how it works.

Thanks

Isao
 
Delete the local profile and the use should not be able to log on if there is no access to the DC.

I hope you find this post helpful.

Regards,

Mark
 
Like Scott said - whats happening is you are logging on with Cached Credentials - this is particularly useful when you have a laptop and you need to login when you are not in the office. Dont worry though about security as you wont be able to access any data on the network as you arent actually physically connected to the network and so cannot access any network shares or data.
If you try and connect to a server it will fail.
 
Hi everyone.

Thanks for your info.
I deleted a user profile from local PC and
tried to logon to domain without physical connection.
then I failed to logon as you guys said.

thanks for your help guys.
I really appriciated that.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top