How to Reset Active Directory Secure Channel If Broken


Occasionally, a computer account can lose its secure channel to a domain controller.

How can secure channel be reset without rebooting the computer?

The computer in question is a clustered SQL Server running Server 2008 R2 in a 2008 R2 Functional Level Active Directory domain and forest.

Best Answer

I've had some instances where a machine will decide to use an off-site domain controller (elsewhere on our WAN) as it's logon server and map offsite network drives instead of local ones; that can be resolved by resetting the secure channel directly:

nltest /sc_reset:<domain>\<domain controller>