Tech Support > Microsoft Windows > Windows Server > Computer lost correct SID (event 5513)
Computer lost correct SID (event 5513)
Posted by Adam V. on June 2nd, 2005


Hello: The "authorized Dell support technician" crashed my Windows Server
2003 domain controller while trying to rebuild a RAID-5 array. I had a
backup of my data but NOT the system state. I rebuilt the entire server
exactly as I had originally installed everything (computer name, domain name,
etc.). I added all the users back to the domain as well as all computers.
Sometimes it takes people multiple attempts to login to the server.
Eventually, it lets them login, but it may take 5 or 6 tries. The event log
shows event 5513, that the computer tried to connect to the server, but the
computer lost the correct SID when the domain was reconfigured. Re-establish
the trust relationship.

Is there any way, with Windows Server 2003 and Windows XP clients, to fix
the SID problem WITHOUT having to unjoin/rejoin each computer individually to
the domain? Obviously, I'd prefer NOT to have to migrate each user profile
if at all possible.

Thanks in advance for any advice you may have.

Adam V.

Posted by Albatross Singh on June 2nd, 2005


Greetings

This is probably not the solution to your question but the first thing that
popped to my mind was to reset the computer account.

Hope this helps
Albatross Singh

"Adam V." <Adam V.@discussions.microsoft.com> wrote in message
news:68A46BC9-9EAC-4FC0-A683-8FD2A5ACB243@microsoft.com...


Posted by Glenn LeCheminant on June 3rd, 2005


I rebuilt the entire server
What you really did here was create a NEW domain of the same name.
New domain means new domain SID.
You also created NEW computer accounts of the same name.
New computer means new SID.

It is amazing to me that your users are able to authenticate at all.
Your computers are already 'unjoined' from their original domain.
You must complete the process by using the wizard or netdom to remove them
and join them to the new domain.

I'm, sorry, but there is no other way.





--
Glenn LeCheminant
CCNA, MCSE 2000/2003 + Security

"Albatross Singh" <albatross_singh@hotREMOVE_CAPS_AND_INVALIDmail.co m> wrote
in message news:eiakO06ZFHA.1088@TK2MSFTNGP14.phx.gbl...


Posted by Chris Toffa on November 21st, 2005


I am having exactly the same problem. Users need to make 5/6 attempts when
they start in the morning. Thereafter it all works fine throught the day. Can
someone please elaborate on the wizard and/or netdom?

"Glenn LeCheminant" wrote: