Windows clients lost trust relationship with domain

Razzi29 286 Reputation points
2020-10-16T12:03:41.763+00:00

We recently use the Offline Domain Join ODJ.exe utility to remotely re-deploy a DirectAccess Client GPO settings to a fleet of Windows users that lost the DirectAccess client due to a DA server rebuild. The majority seem to be fine, but we recently noticed on 5-7 clients that the domain trust relationship is broken for some reason and we manually need to re-add the PC to the domain. This is a pain since most of those users are working from home due to the pandemic. I spent countless hours trying to figure out what may be run, or if there any experts ton DirectAccess technologies that can assist. I am not 100% convinced is a DA issue and it may be coincidental at this point. As for the device losing the trust, I am trying also to figure out why is happening. We are at a lost stage :-( Reference: https://learn.microsoft.com/en-us/windows-server/remote/remote-access/directaccess/directaccess-offline-domain-join

Windows Server Infrastructure
Windows Server Infrastructure
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Infrastructure: A Microsoft solution area focused on providing organizations with a cloud solution that supports their real-world needs and meets evolving regulatory requirements.
502 questions
{count} votes

3 answers

Sort by: Most helpful
  1. Dave Patrick 426K Reputation points MVP
    2020-10-16T12:17:02.023+00:00

    I'd check the clocks are in sync, replication is good. This one may also help.
    https://learn.microsoft.com/en-us/powershell/module/microsoft.powershell.management/reset-computermachinepassword?view=powershell-5.1&viewFallbackFrom=powershell-3.0

    --please don't forget to Accept as answer if the reply is helpful--

    0 comments No comments

  2. Sunny Qi 10,931 Reputation points Microsoft Vendor
    2020-10-19T07:37:07.493+00:00

    Hi,

    Thanks for posting in Q&A platform.

    Regarding of your issue lost trust relationship with domain, please try if the following method is helpful.

    Reset the specific account in ADUC

    33112-image-1.jpg

    Best Regards,
    Sunny

    ----------

    If the Answer is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

  3. Odd-Steinar Mathisen 1 Reputation point
    2020-12-22T13:56:21.777+00:00

    none of these work.. we got the same problem.

    0 comments No comments