ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    Windows Server 2012 Essentials Cannot Find Login Server for AD

    IT Discussion
    active directory domain controller windows windows server windows server 2012 windows server 2012 essentials
    13
    78
    4.3k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • scottalanmillerS
      scottalanmiller @DustinB3403
      last edited by

      @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

      @Donahue said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

      are you sure there is no local account that can be used to login?

      The local administrative account is automatically disabled on DC's. Has been this way since before I can remember.

      Someone could have added it back later, in theory.

      DustinB3403D dbeatoD 2 Replies Last reply Reply Quote 0
      • DustinB3403D
        DustinB3403 @scottalanmiller
        last edited by

        @scottalanmiller said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

        @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

        @Donahue said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

        are you sure there is no local account that can be used to login?

        The local administrative account is automatically disabled on DC's. Has been this way since before I can remember.

        Someone could have added it back later, in theory.

        I'm pretty certain they are disabled and not able to be reactivated. It's been a while since I've had to look.

        dafyreD scottalanmillerS 2 Replies Last reply Reply Quote 0
        • dafyreD
          dafyre @DustinB3403
          last edited by

          @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

          @scottalanmiller said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

          @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

          @Donahue said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

          are you sure there is no local account that can be used to login?

          The local administrative account is automatically disabled on DC's. Has been this way since before I can remember.

          Someone could have added it back later, in theory.

          I'm pretty certain they are disabled and not able to be reactivated. It's been a while since I've had to look.

          Right. You have to remove AD before it re-enables the local account. 😞

          1 Reply Last reply Reply Quote 1
          • scottalanmillerS
            scottalanmiller @DustinB3403
            last edited by

            @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

            @scottalanmiller said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

            @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

            @Donahue said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

            are you sure there is no local account that can be used to login?

            The local administrative account is automatically disabled on DC's. Has been this way since before I can remember.

            Someone could have added it back later, in theory.

            I'm pretty certain they are disabled and not able to be reactivated. It's been a while since I've had to look.

            Oh, I've not tried recently.

            1 Reply Last reply Reply Quote 0
            • notverypunnyN
              notverypunny
              last edited by

              From personal experience, have you double-checked the BIOS settings? I've seen Dell BIOS on those generation of servers flip from UEFI to Legacy (or vice-versa) after an update. I don't suppose that the server has an IDRAC enterprise with the lovely remote console that you could use to work some magic?
              From a diagnostics perspective, you could possibly get the remote hands to boot a live linux from USB and run team-viewer host to get access to the HW and data if not the OS.

              1 Reply Last reply Reply Quote 0
              • J
                Jimmy9008
                last edited by

                Take out the LAN cable. Restart. With the LAN cable our, are you able to login?

                JaredBuschJ 1 Reply Last reply Reply Quote 0
                • JaredBuschJ
                  JaredBusch @Jimmy9008
                  last edited by

                  @Jimmy9008 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                  Take out the LAN cable. Restart. With the LAN cable our, are you able to login?

                  This is the DC. It is not using the network to auth

                  1 Reply Last reply Reply Quote 0
                  • dbeatoD
                    dbeato @scottalanmiller
                    last edited by

                    @scottalanmiller said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                    @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                    @Donahue said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                    are you sure there is no local account that can be used to login?

                    The local administrative account is automatically disabled on DC's. Has been this way since before I can remember.

                    Someone could have added it back later, in theory.

                    On a DC you don't have local accounts period, like literally.

                    DustinB3403D 1 Reply Last reply Reply Quote 0
                    • dbeatoD
                      dbeato
                      last edited by

                      If the server is boot into DSRM, it is the safe mode option and it has a GUI as well, so from there check any setting that is causing the issue.

                      1 Reply Last reply Reply Quote 0
                      • DustinB3403D
                        DustinB3403 @dbeato
                        last edited by

                        @dbeato said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                        @scottalanmiller said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                        @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                        @Donahue said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                        are you sure there is no local account that can be used to login?

                        The local administrative account is automatically disabled on DC's. Has been this way since before I can remember.

                        Someone could have added it back later, in theory.

                        On a DC you don't have local accounts period, like literally.

                        I've said this several times regarding the account and yet, still it seems like I'm being ignored.

                        dbeatoD 1 Reply Last reply Reply Quote 0
                        • dbeatoD
                          dbeato @DustinB3403
                          last edited by

                          @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                          @dbeato said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                          @scottalanmiller said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                          @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                          @Donahue said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                          are you sure there is no local account that can be used to login?

                          The local administrative account is automatically disabled on DC's. Has been this way since before I can remember.

                          Someone could have added it back later, in theory.

                          On a DC you don't have local accounts period, like literally.

                          I've said this several times regarding the account and yet, still it seems like I'm being ignored.

                          I agree with you, should have I said, @DustinB3403 already mentioned this 😛

                          DustinB3403D 1 Reply Last reply Reply Quote 0
                          • DustinB3403D
                            DustinB3403 @dbeato
                            last edited by

                            @dbeato no no, not saying that at all.

                            Just I'm boggled by how this is still a talking point.

                            1 Reply Last reply Reply Quote 1
                            • M
                              manxam
                              last edited by

                              If you have CLI access (not sure where you're getting a shell if you can't login though), can you not just do a

                              net user /add [AccountName] [Password]
                              net localgroup administrators [AccountName] /add
                              

                              and add a local administrator account?
                              Log into the GUI using this new account and then diagnose from there now that you'll have access to the GUI, event viewer, etc.
                              You could have the user run an SC agent so you can inspect remotely (assuming the router has been fixed).

                              DustinB3403D 1 Reply Last reply Reply Quote 0
                              • DustinB3403D
                                DustinB3403 @manxam
                                last edited by

                                @manxam said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                                If you have CLI access (not sure where you're getting a shell if you can't login though), can you not just do a

                                net user /add [AccountName] [Password]
                                net localgroup administrators [AccountName] /add
                                

                                and add a local administrator account?
                                Log into the GUI using this new account and then diagnose from there now that you'll have access to the GUI, event viewer, etc.
                                You could have the user run an SC agent so you can inspect remotely (assuming the router has been fixed).

                                ffs


                                Please understand that when a Windows server is promoted to a domain controller, the server no longer uses the local account (Security Accounts Manager [SAM]) database during normal operations to store users and groups. When the promotion is complete, the new domain controller has a copy of the Active Directory database in which it stores users, groups, and computer accounts. The SAM database is present, but it is inaccessible when the server is running in Normal mode. The only time that the local SAM database is used is when you boot into Directory Services Restore mode or the Recovery Console.

                                If this new domain controller is the first domain controller in a new domain, the local SAM database that the new domain controller contained as a stand-alone server is migrated to the Active Directory database that is created during the promotion. All of the local user accounts that the local SAM database contained when it had been a stand-alone server are migrated from the local SAM database to the Active Directory database. In addition, any permissions that had been assigned to the local users, such as, NTFS permissions, are retained when the users are migrated to the Active Directory database.

                                As a result, you cannot create any local user account on a domain controller.

                                https://social.technet.microsoft.com/Forums/sharepoint/en-US/2f120e62-52a9-4001-b8e0-15a897f28b7e/is-there-any-possible-to-create-a-local-account-on-domain-controller-not-domain-account?forum=winserverDS

                                1 Reply Last reply Reply Quote 1
                                • DashrenderD
                                  Dashrender
                                  last edited by

                                  wooo - had no idea that previously created users would be migrated into AD like that. weird.

                                  dbeatoD 1 Reply Last reply Reply Quote 1
                                  • dbeatoD
                                    dbeato @Dashrender
                                    last edited by

                                    @Dashrender said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                                    dea that previously created users would be migrated into AD like that. weird.

                                    Yep

                                    1 Reply Last reply Reply Quote 0
                                    • dafyreD
                                      dafyre
                                      last edited by

                                      What's the latest @scottalanmiller ? Did you guys have to restore from backup and hope for the best?

                                      DustinB3403D scottalanmillerS 2 Replies Last reply Reply Quote 0
                                      • DustinB3403D
                                        DustinB3403 @dafyre
                                        last edited by

                                        @dafyre said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                                        What's the latest @scottalanmiller ? Did you guys have to restore from backup and hope for the best?

                                        I would hope they wouldn't restore back to bare metal (if they have backups) and instead restore to a VM.

                                        scottalanmillerS 1 Reply Last reply Reply Quote 0
                                        • scottalanmillerS
                                          scottalanmiller @dafyre
                                          last edited by

                                          @dafyre said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                                          What's the latest @scottalanmiller ? Did you guys have to restore from backup and hope for the best?

                                          Two day download of their backup!

                                          DustinB3403D 1 Reply Last reply Reply Quote 0
                                          • scottalanmillerS
                                            scottalanmiller @DustinB3403
                                            last edited by

                                            @DustinB3403 said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                                            @dafyre said in Windows Server 2012 Essentials Cannot Find Login Server for AD:

                                            What's the latest @scottalanmiller ? Did you guys have to restore from backup and hope for the best?

                                            I would hope they wouldn't restore back to bare metal (if they have backups) and instead restore to a VM.

                                            They have no hardware for doing a VM.

                                            DustinB3403D 1 Reply Last reply Reply Quote 0
                                            • 1
                                            • 2
                                            • 3
                                            • 4
                                            • 4 / 4
                                            • First post
                                              Last post