"Security Database does not have a computer account for this workstation" - does a computer account in active directory ever expire?


hi folks,

1 of experts can shine light on topic. work support in large company doing i.t. (has multiple departments).

have had more few incidents the user tries login in computer , receive following message: "security database not have computer account workstation"

turns out found computer account in 'inactive>disabled' ou folder in active directory.

our server intel team may have done cleanup , informed of following: "machines have not talked domain in last 30 days have invalid trust password , need rejoined domain." 

'thought' computer account never expired or become inactive - meaning if user out in field months, never on network , 1 day came still on domain?

can inform me if above statement true? point me related microsoft article.

hi,

it caused machine’s password hasn’t been updated, initiated computer every 30 days default.

here blog below reference:

machine account password process

http://blogs.technet.com/b/askds/archive/2009/02/15/test2.aspx

best regards,

amy



Windows Server  >  Directory Services



Comments

Popular posts from this blog

WIMMount (HSM) causing cluster storage to go redirected (2012r2 DC)

Failed to delete the test record dcdiag-test-record in zone test.com

Azure MFA with Azure AD and RDS