Page 1 of 1

windows 7 image and AD trust relationship

Posted: 4. Jun 2015, 19:11
by derrellsimpson
I have a windows 7 domain joined VM that i use on multiple macs. I use the same VM file and copy and load it into each computers virtualbox inventory. Problem is that randomly, and usually ALWAYS after a password change, two if not all (there are three instances in total) lost their trust relationship with AD. I'm sure AD is seeing some anomaly because the same image is being connected from different machines. Is there some setting that i need to adjust to make the image indistinguishable from virtualbox instance to virtualbox instance?

thank you all in advance!

DS

Re: windows 7 image and AD trust relationship

Posted: 5. Jun 2015, 00:59
by noteirak
Your issue is because the Windows 7 image keeps a SID to uniquely identify the computer in the domain and use that token to talk to the AD DC. If two machines have the same SID, they'll loose trust relationship (since that SID is no longuer valid as a unique identifier).
This is related to AD and Windows, not to VirtualBox in any way.

If you want to be able to copy a VM around, you'll need to do it BEFORE joining the domain and modifying the computer name in the guest BEFORE joining as well.

Re: windows 7 image and AD trust relationship

Posted: 5. Jun 2015, 05:05
by derrellsimpson
if the VM image is identical, How does the win7 machine identify itself differently? is there a unique setting in virtualbox that i can make sure matches between all virtualbox installs so that AD will not see the VMs as different? they are never on at the same time.

thanks,

DS

Re: windows 7 image and AD trust relationship

Posted: 5. Jun 2015, 08:46
by Martin
That has nothing to do with VirtualBox.
You cannot have multiple "identical" systems connected to AD at different times, because each client communicates to the domain controller to create dynamic internal keys and passwords for the client system account.
As soon as one of the clients has done this all other clients are out of sync and don't have the correct keys anymore.

Re: windows 7 image and AD trust relationship

Posted: 5. Jun 2015, 09:31
by noteirak
noteirak wrote:This is related to AD and Windows, not to VirtualBox in any way.