Domain Join Best Practice

Hi,

I have my task sequences join the computers to our domain. The tricky thing is that a computer with the same name already exists. I am just re-imaging computers that have the same name with a new image. As soon as the image process starts I go into Active Directory Users and Computers and reset the target computer account, then delete the same computer from WSUS. Is that a good way to go about it, or should I delete the computer object all together and let the imaging process re-create it?

Thanks

June 17th, 2015 5:46pm

The problem here is, that most machines that are being deployed with MDT in a organization that has just started using (or has just implemented) MDT, is the use of a domain join account. Normally when PC's where installed manually or by something like Norton Ghost, machines where joined by the domain admin account, since every system administrator (or most of them do) knows the credentials for this account.

Now this results in the fact that machines created and joined into the domain by account A (your sysadmin account), cannot be recreated and joined by account B (your MDT domain join account). Therefore it would be my suggestion to remove every machine you are going to reinstall once, from active directory and wsus. And when you are sure no more old computer installations are present in your organization, it doesn't matter any more in the future, as long as you stick to using the same domain join account over and over again.

Cheers! Rens

Free Windows Admin Tool Kit Click here and download it now
June 18th, 2015 3:51am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics