How to log into a Domain controller that doesn’t trust itself

active-directorykerberoswindows-server-2008-r2

I have a windows 2008 R2 standalone Domain Controller that I restored from backup. The original DC is offline.

When I log in with valid user credentials I get the error:

"The security database on the server does not have a computer account for this workstation trust relationship"

How can I log into the domain controller and fix whatever is broken? This is the only DC in the Forest.

For what it's worth, I'm hosting this server at Rackspace, so my physical options are limited.

Best Answer

Active Directory Restore Mode is the only way, and it will require that you know the Directory Services Restore Mode administrator account password.

Incidentally, it looks like this problem was caused by improperly restoring a Domain Controller. Just doing a standard restore from backup will leave you with a non-functioning domain Controller every time. Next time, follow the technet guide here.