So, take KID2 out of the domain, read
http://www.akomolafe.com/docs/xferfsmos.htm
After you are done, join KID2 back to the Domain and dcpromo it.
HTH
--
Sincerely,
Dèjì Akómöláfé, MCSE MCSA MCP+I
www.akomolafe.com
www.iyaburo.com
Do you now realize that Today is the Tomorrow you were worried about
Yesterday? -anon
"kid" <(E-Mail Removed)> wrote in message
news:28DA76E5-BE1F-4872-80B1-(E-Mail Removed)...
> this is what i did , I took both of my DC's down, reformated one
,reinstalled 2003 server, brought it back up, then i started the other DC
with Exchange and now they wont talk, i know or think i did something wrong
how can i fix it, so they will talk, i add DC account, and DNS entrys but
still nothing, here is the Event viewer logg,
>
> EventID 5513:
> the computer KID2 tried to connect to the server \\KID1 using the trust
relationship established by the PORTROCKER domain. However, the computer
lost the correct security identifier (SID) when the domain was reconfigured.
Reestablish the trust relationship.
>
> EventID 4:
>
> The kerberos client received a KRB_AP_ERR_MODIFIED error from the server
host/kid2.portrocker.com. The target name used was PORTROCKER\KID2$. This
indicates that the password used to encrypt the kerberos service ticket is
different than that on the target server. Commonly, this is due to
identically named machine accounts in the target realm (PORTROCKER.COM),
and the client realm. Please contact your system administrator.
>
> EventId 5805:
>
> The session setup from the computer KID2 failed to authenticate. The
following error occurred:
> Access is denied.
>
>
> Please Help!!!!
>