3

After enabling my AD role in my Windows Server 2012 R2 and promoting it as a Domain Controller, I am no longer able to login locally onto the Windows Server itself.

Specifying my computername\Administrator or .\Administrator doesn't work.

Is it normal?

Falcon Momot
  • 24,975
  • 13
  • 61
  • 92
Noob
  • 363
  • 2
  • 6
  • 16

1 Answers1

5

When you promote a server to a DC, it no longer uses the local account database. This database is only used when you boot your server in Directory Services Recovery Mode (DSRM), which makes the service inoperative as a DC while booted into this mode. This is the password you get to set when running dcpromo.

This is why your local account will not work - there is no local account any more.

Some more good info may be found in this forum thread on Technet.

Per von Zweigbergk
  • 2,615
  • 2
  • 17
  • 27
  • thanks Per-von, i hope you can also take a look at this thread below - http://serverfault.com/questions/728168/active-directory-domain-vs-dns-domain-are-they-the-same - hope to hear from you. – Noob Oct 11 '15 at 17:19