The security database on the server does not have a computer account for this workstation trust

/ May 6th, 2010/ Posted in Server / 2 Comments »

Problem:

After joining a windows 2008 server to the domain you can not log in and it gives you the error:
The security database on the server does not have a computer account for this workstation trust

I’ve seen this on mostly 2008 Servers in my environment.

 

Resolution
  Open ADSI Edit
2.  Expand your domain
3.  Expand the DC=<yourdomain>,DC=com
4.  Expand CN=Computers
5.  Find the computer name in question and right click and select Properties
6.  Under the Attribute Editor find SERVICEPRINCIOLENAME
7.  Click Edit
8.  You should at a MINIMUM the following (you might have many others as well, but these
     two entries HAVE to be present to log into the domain)
               a.  HOST/<servername>
               b.  HOST/<servername.domainmame.com> 
9.  Click OK and then OK again
10.  Close ADSI Edit and reboot the server having the problems logging into the domain.


Tags: ,

2Comments

  1. Arun Asokan
    2011/07/06 at 02:23:38

    This issue no need these steps i tthink,
    I re-added to the domain then the computer worked fine.

    Thanks,
    Arnu
    7676 705376 India

    • Jamie
      2011/07/15 at 10:25:27

      I believe that could work as well.. if that is eaiser for you go ahead and unjoin and rejoin to the domain.. and reboot twice. or just edit the AD object and login.

Leave a Reply

Name required

Please Submit Answer * Time limit is exhausted. Please reload CAPTCHA.