Jump to content

Recommended Posts

Posted

We all know that you must change your XP client's SID when it has been imaged.

 

But... hypothetically speaking... what would happen if you cloned, let's say, a suite of computers and didn't change any of the SIDs - just Workstation name and IP address?

 

Just hypothetically, mind!

Posted
If you then joined them to the domain you should be ok but if they were in a workgroup then you would have problems as all of the local admin accounts would have the same SID in fact any account created on any of the machines would have the same SID.
Posted
If you then joined them to the domain you should be ok but if they were in a workgroup then you would have problems as all of the local admin accounts would have the same SID in fact any account created on any of the machines would have the same SID.

 

IIRC (hypothetically :p) One example is that Sophos will not recognise more than one workstation and as a result won't deploy remotely.

Posted

What about duplicate GUID's?

 

I have over 20 computers that all have the same GUID. The event viewver on the Remote Installation server is moaning about it all the while.

Guest AustenLowe
Posted
LOL Don't be lazy use newsid or sysprep
Posted

My brother in law does this a lot, and no matter how much I tell him to use sysprep he just keeps on deploying those images.

 

I'm just waiting for it to bite him in the bum.

Posted
We just use ghost here - but we image whilst it's disjoined. So in theory when you jpin the domain after imaging the SID should always be different?

 

Joining a domain doesn't give your computer a new SID, if that's what you mean. You should use newsid to set a new SID for the computer before joining the domain.

 

--

David Hicks

Posted (edited)
My brother...does this a lot, and no matter how much I tell him to use sysprep he just keeps on deploying those images.

 

I'm just waiting for it to bite him in the bum.

 

....This sounds familiar park_bench...

 

As mentioned above, matching SIDs mean that WSUS doesn't recognise each computer. They do get the updates intended - just no information on which updated correctly etc. etc.

 

Not sure which antivirus you use but it may cause problems with that. Here it's McAfee with ePO for central management. Each machine is given an "Agent ID" independently by the Agent installer - so this key has to be deleted before the image is taken.

 

Just get NewSID from Sysinternals to assign a new SID apres-image if sysprep is a no-no, like it is on a bunch of 5 year old PCs here with OEM versions of XP on them - that buggers up imaging.

Edited by mortstar
  • Thanks 1
Posted (edited)

The symptoms of WSUS (when multiple machines share the same SID) is that they appear then disappear in turn within the console! But they do receive updates still.

 

I could imagine it would create problems with some AV software, but I think the reason Active Directory works ok, is because the computer object account itself is also given a unique SID.

Edited by Michael

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...