{"id":281,"date":"2007-12-14T16:10:47","date_gmt":"2007-12-14T15:10:47","guid":{"rendered":"https:\/\/www.networknet.nl\/apps\/wp\/archives\/281"},"modified":"2007-12-14T16:12:31","modified_gmt":"2007-12-14T15:12:31","slug":"computer-account-sid-hell-with-virtual-machines-guests-and-gsgetsidexe-and-newsidexe-howto","status":"publish","type":"post","link":"https:\/\/www.networknet.nl\/apps\/wp\/archives\/281","title":{"rendered":"Computer Account SID hell with virtual machines guests and gsgetsid.exe and NewSid.exe howto"},"content":{"rendered":"<p>Today I configured new VMWare team and installed one domain controller and one other server as file server. I used my masterbuild server image of Win2k3 EE R2 and both images run the sysprep.exe routine. After the dc was setup to run AD and DNS I joined the second guest machine on the domain. The domain join on the second machine worked fine. <\/p>\n<p>I reboot and tried to logon with a domain account and than with the domain admin. Both accounts generated the Logon Message below. <\/p>\n<blockquote>\n<p>The system cannot log you on due the following error: <\/p>\n<p>The name or security ID (SID) of the domain specified is inconsistent with the trust information for that domain. <\/p>\n<p>Please try again or consult your system administrator.<\/p>\n<\/blockquote>\n<p><a href=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image00110.png\"><img loading=\"lazy\" decoding=\"async\" style=\"border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px\" height=\"356\" alt=\"clip_image001\" src=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image001-thumb7.png\" width=\"649\" border=\"0\"><\/a><\/p>\n<p>I logged on with the local administrator account and saw the event id 5516 Netlogon error as shown below. <\/p>\n<p><a href=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image0026.png\"><img loading=\"lazy\" decoding=\"async\" style=\"border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px\" height=\"459\" alt=\"clip_image002\" src=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image002-thumb6.png\" width=\"412\" border=\"0\"><\/a><\/p>\n<p><!--more--><\/p>\n<p>For some reason the sysprep did not work from my masterbuild and both virtual guest machines have the same SID id.  <\/p>\n<p>To verify both sid&#8217;s you can go and download the psgetsid.exe from Microsoft website. <\/p>\n<p><a href=\"http:\/\/www.microsoft.com\/technet\/sysinternals\/utilities\/psgetsid.mspx\">http:\/\/www.microsoft.com\/technet\/sysinternals\/utilities\/psgetsid.mspx<\/a> <\/p>\n<p>I downloaded the pstools.zip from Microsoft website and run psgetsid.exe <a href=\"file:\/\/\/\\\\fs-001-cert\">\\\\fs-001-cert<\/a> and psgetsid.exe <a href=\"file:\/\/\/\\\\dc-001-cert\">\\\\dc-001-cert<\/a>. As shown below both match. <\/p>\n<p><a href=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image0037.png\"><img loading=\"lazy\" decoding=\"async\" style=\"border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px\" height=\"360\" alt=\"clip_image003\" src=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image003-thumb7.png\" width=\"640\" border=\"0\"><\/a><\/p>\n<p>To quickly resolve this issue is to run the NewSid.exe tool and generate new SID for this computer account. <\/p>\n<p>This tool is available at: <a href=\"http:\/\/www.microsoft.com\/technet\/sysinternals\/Utilities\/NewSid.mspx\">http:\/\/www.microsoft.com\/technet\/sysinternals\/Utilities\/NewSid.mspx<\/a> <\/p>\n<p>Run the tool and generate new sid for you guest machine. <\/p>\n<p><a href=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image0046.png\"><img loading=\"lazy\" decoding=\"async\" style=\"border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px\" height=\"355\" alt=\"clip_image004\" src=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image004-thumb6.png\" width=\"534\" border=\"0\"><\/a><\/p>\n<p>Next <\/p>\n<p><a href=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image0056.png\"><img loading=\"lazy\" decoding=\"async\" style=\"border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px\" height=\"353\" alt=\"clip_image005\" src=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image005-thumb6.png\" width=\"530\" border=\"0\"><\/a><\/p>\n<p>Next <\/p>\n<p><a href=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image0066.png\"><img loading=\"lazy\" decoding=\"async\" style=\"border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px\" height=\"359\" alt=\"clip_image006\" src=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image006-thumb6.png\" width=\"529\" border=\"0\"><\/a><\/p>\n<p>Click Next and reboot the machine. <\/p>\n<h4><strong>Logon on the system with the local administrator account and join to the workgroup. Reboot the guest and rejoin to the domain.<\/strong><\/h4>\n<p>If these steps are not executed than domain membership connectivity will fail! <\/p>\n<p><a href=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image0076.png\"><img loading=\"lazy\" decoding=\"async\" style=\"border-right: 0px; border-top: 0px; border-left: 0px; border-bottom: 0px\" height=\"233\" alt=\"clip_image007\" src=\"https:\/\/www.networknet.nl\/apps\/wp\/wp-content\/uploads\/clip-image007-thumb6.png\" width=\"383\" border=\"0\"><\/a><\/p>\n<p>After the reboot I was successfully being able to logon as my test user &#8220;Finance Manager&#8221;. <\/p>\n","protected":false},"excerpt":{"rendered":"<p>Today I configured new VMWare team and installed one domain controller and one other server as file server. I used my masterbuild server image of Win2k3 EE R2 and both images run the sysprep.exe routine. After the dc was setup to run AD and DNS I joined the second guest machine on the domain. The domain join on the second machine worked fine. I reboot and tried to logon with a domain account and than with the domain admin. Both accounts generated the Logon Message below. The system cannot log you on due the following error: The name or security ID (SID) of the domain specified is inconsistent with the trust information for that domain. Please try again or consult your system administrator. I logged on with the local administrator account and saw the event id 5516 Netlogon error as shown below.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-281","post","type-post","status-publish","format-standard","hentry","category-windows-active-directory"],"_links":{"self":[{"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/posts\/281","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/comments?post=281"}],"version-history":[{"count":0,"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/posts\/281\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/media?parent=281"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/categories?post=281"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.networknet.nl\/apps\/wp\/wp-json\/wp\/v2\/tags?post=281"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}