leco Posted August 19, 2010 Report Posted August 19, 2010 During investigation with regard to Group Policies I have discovered that two of my servers (both DCs) have the same SID. I think they should have different ones, if this is the case then how do I change one of them?
kili Posted August 19, 2010 Report Posted August 19, 2010 The only way you would have a duplicate SID is if the machine was cloned. If so you need a sid changer Google is your friend. Search for "Sid Changer"
AngryTechnician Posted August 19, 2010 Report Posted August 19, 2010 All domain controllers in a single domain are supposed to have the same machine SID. The DC SID is determined by the first DC, then all subsequent machines promoted to DC are reassigned that SID. More info here: Should Domain Controllers have the same SID?
robk Posted August 19, 2010 Report Posted August 19, 2010 Not sure how AD would respond to the SID of a machine just changing. How many servers are affected? Could you transfer all the roles to other DCs and demote the two affected ones? These aren`t virtual servers by any chance are they.
leco Posted August 19, 2010 Author Report Posted August 19, 2010 OK thanks everyone. I've read a blog from Mark Russinovich which talks about the myth of unique SIDs. So I'm content to leave things be.
p858snake Posted August 20, 2010 Report Posted August 20, 2010 OK thanks everyone. I've read a blog from Mark Russinovich which talks about the myth of unique SIDs. So I'm content to leave things be. That only covers the machine sid, there are other ones for things like wsus, which is why you are are ment to sysprep images.
leco Posted August 20, 2010 Author Report Posted August 20, 2010 Just for clarity: The two servers are running Windows 2003 and Windows 2008. They are physical machines. They are not cloned, imaged or copied from each other in any way.
sparkeh Posted August 20, 2010 Report Posted August 20, 2010 Just to be clear (and to reiterate what AngryTechnician said but seems to have been missed) all DCs in a domain should have the same machine SID. 1
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now