Trust relation issue from AD to Kiosk PC's


i’ll start off introducing how our network made, have 100-150 computers around rather big area (different buildings etc.) acting similar “kiosk pc’s”, got web browser , automatically logs on, other access stripped, , web browser forced full screen can go around on our internal web page (this pure intention.)

these pc’s running windows embedded, , according ms pretty “xp sp3 light”, stripped down version of xp sp3.

our domain controller running windows server 2008 r2.

upon startup of these clients, sign on individual account name in domain (yes, use domain users , not local users.) logon automated upon startup.

now, problem, along, , worst recently, more , more of these computers looses trust relationship ad, giving ad system errors event 5722, 5805, 5723, 5722 – netlogon related, , there id 4 – security-kerberos, getting further , further away basic understanding of how computers work together.

now, i’ve worked on day out , day in weeks now, , coworkers longer, we’ve investigated , on how fix on machines has problem, seems root cause of loosing trust relationship ad. months our department has been investigating scripts , systems on how fix trust relationship these computers, tried nltest, netdom, etc. basic examples , instructions on resetting trust relationship gives “access denied.” matches event logs tells us.

now, removing, changing name , adding domain fixes trust relationship, not working solution us. need starters figure out why these computers keeps loosing trust relationship ad , fix that, can start working on how can sort out computers having trust issue ad.

 

so, i’m asking is, triggers these events, why these computers keep loosing trust relationship ad – , how fix this?

 

thanks in advance , help,
best  regards,

kristoffer kjelvik

hello,

are machines created image/clone not prepared sysprep?


best regards meinolf weber disclaimer: posting provided "as is" no warranties or guarantees , , confers no rights.


Windows Server  >  Directory Services



Comments

Popular posts from this blog

WIMMount (HSM) causing cluster storage to go redirected (2012r2 DC)

Failed to delete the test record dcdiag-test-record in zone test.com

Azure MFA with Azure AD and RDS