Local Sign-In Option Missing on Domain Controller

MoazzemHossain 65 Reputation points
2025-12-29T18:45:36.27+00:00

Hi Community,

I had previously attempted to rename my domain controller from TBBD-Ops-Desk to DC-01, but the rename did not persist. I have since reverted the hostname back to TBBD-Ops-Desk.

After this process, I noticed that the local sign-in option is missing on the Windows login screen.

Environment Details:

  • Domain: TBBD.local

Current Hostname: TBBD-Ops-Desk

Azure AD Connect is configured

Screenshot attached showing ipconfig /all and whoami /groups output

Question:

How can I restore the local sign-in option on Windows?

AAA

Any guidance or best practices would be greatly appreciated.

Best regards,

Moazzem Hossain

Windows for business | Windows Server | Directory services | User logon and profiles
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Marcin Policht 73,085 Reputation points MVP Volunteer Moderator
    2025-12-29T19:14:21.8133333+00:00

    That's expected. Domain controllers to not offer the option to log on locally - once promoted, they only allow logon via domain-based credentials (stored in AD DS database, not in the local SAM database - as would be the case on a workgroup or a domain-joined computer).


    If the above response helps answer your question, remember to "Accept Answer" so that others in the community facing similar issues can easily find the solution. Your contribution is highly appreciated.

    hth

    Marcin

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.