Joining a DC with SAM Account vs UPN

ComputerHabit 821 Reputation points

I was wondering what would make UPN work versus using the Pre-Win2K samaccount name when joining a DC to an existing domain.

I’m setting up DC’s between sites. When adding a DC at the remote site the list of domains wouldn’t come up and got errors about server not available. I was using the Domain\admin samaccount name.

When I switched to UPN everything worked as it should.

I’m trying to explain this to myself but I’m not sure why UPN worked and not Samaccount.

Can anyone give me an idea why?

Active Directory
Active Directory
A set of directory-based technologies included in Windows Server.
6,008 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. SChalakov 10,271 Reputation points MVP

    Hi @ComputerHabit ,

    hard to tell, because this could depend on DNS settings (or how the down level logon name - domain\SamAccountName is resolved) or it could also depend on some NTLM settings (Group Policy or so). This could play a keyy role, especially in bigger envirtonments with multiple domains in the same forest.
    This is a very intersting diuscssion on the topic, you might just find a some hints there:

    Any difference between DOMAIN\username and username@keyman .local?

    This one I would also recommend:

    User principal name vs SAM account name


    (If the reply was helpful please don't forget to upvote and/or accept as answer, thank you)
    Stoyan Chalakov

    0 comments No comments

  2. ComputerHabit 821 Reputation points

    Turns out that I was forgetting that other servers host different roles in the forest. Although I haven't tested, I had several servers I need to add to Firewall exceptions.

    0 comments No comments