Dear Experts,
I have 3 Domain Controllers, 2 in Site A, 1 in Site B.
Whenever user changes any password, his PC loses trust relationship with the domain controller, and gives below error:
"The Security Database on the server does not have a computer account for this workstation trust relationship."
beside i have seen a lot of below errors in eventviewer of Domain Controller for different workstations:
Event ID 5722:
The session setup from the computer HR-13535-TR failed to authenticate. The name(s) of the account(s) referenced in the security database is HR-13535-TR$. The following error occurred: Access is denied.
Event ID 5723:
The session setup from computer 'HR-19092-TR' failed because the security database does not contain a trust account 'HR-19092-TR$' referenced by the specified computer. USER ACTION If this is the first occurrence of this event for the specified computer and account, this may be a transient issue that doesn't require any action at this time. If this is a Read-Only Domain Controller and 'HR-19092-TR$' is a legitimate machine account for the computer 'HR-19092-TR' then 'HR-19092-TR' should be marked cacheable for this location if appropriate or otherwise ensure connectivity to a domain controller capable of servicing the request (for example a writable domain controller). Otherwise, the following steps may be taken to resolve this problem: If 'HR-19092-TR$' is a legitimate machine account for the computer 'HR-19092-TR', then 'HR-19092-TR' should be rejoined to the domain. If 'HR-19092-TR$' is a legitimate interdomain trust account, then the trust should be recreated. Otherwise, assuming that 'HR-19092-TR$' is not a legitimate account, the following action should be taken on 'HR-19092-TR': If 'HR-19092-TR' is a Domain Controller, then the trust associated with 'HR-19092-TR$' should be deleted. Event ID: 37:
The Key Distribution Center (KDC) encountered a ticket that did not contain information about the account that requested the ticket while processing a request for another ticket. This prevented security checks from running and could open security vulnerabilities. See https://go.microsoft.com/fwlink/?linkid=2173051 to learn more. Ticket PAC constructed by: DC001 Client: Domain_Name\ICT-12260-TR$ Ticket for: krbtgt
There are other, but these are most common one's, any help will be highly appreciated.
Thanks