VMware Cloud Community
jamie20
Enthusiast
Enthusiast

Domain admin not working in vms

Hi guys,

Last month we bought a dell server with ESXi 6.7. The initial configurations are done.

But the windows vms in this particular host are not accessible by domain admin. All network share , powershell functions(wmi,cim,winrm) are possible only through local admin credentials and not by domain admin.....Any help?

Reply
0 Kudos
9 Replies
scott28tt
VMware Employee
VMware Employee

But the VMs have network access to your other Windows resources? (including Domain Controllers)


-------------------------------------------------------------------------------------------------------------------------------------------------------------

Although I am a VMware employee I contribute to VMware Communities voluntarily (ie. not in any official capacity)
VMware Training & Certification blog
Reply
0 Kudos
jamie20
Enthusiast
Enthusiast

Hi Scott,

Yes...The windows vms in that host able to do network access with other windows resources and domain controllers.

Reply
0 Kudos
sjesse
Leadership
Leadership

This is a guest os problem then, and doesn't' really have anything to do with esxi, I'd review the template you made these by if you did or contact Microsoft to review if yo can't as detailed review of the security logs is probably needed to see why it isn't working.

Reply
0 Kudos
jamie20
Enthusiast
Enthusiast

Hi sjesse,

The windows vms in other hosts dont have this issue and all the windows vms in this host has the same issue. Also different os(8.1,10,server 2016). (:

Reply
0 Kudos
a_p_
Leadership
Leadership

One thing that I could think of is time synchronization. Can you confirm that the ESXi host (and also the VMs) are properly synchronized?


André

Reply
0 Kudos
jamie20
Enthusiast
Enthusiast

Hi Andre,

The host NTP service is in running state.

Also I tried a manual sync for a vm now. By options>vmware tools>synchronize guest time with host. Did this and restarted the VM.

But it didnt helped...Still the issue persist.

Reply
0 Kudos
a_p_
Leadership
Leadership

I assume that there's no firewall between the VMs and the domain controllers!?

Do the virtual servers log any errors in the Windows event logs for the failed logon attempts, or things like "schannel" issues?

André

Reply
0 Kudos
NathanosBlightc
Commander
Commander

Are you sure other ESXi hosts (and their VMs too) have the same networking (vSwitch, PortGroup, VLAN, ...) with this newly added host network structure?

Of course it seems the problem is related to the VM guest OS, not the ESXi host. First of all, check the DNS service function, name resolution, firewall rules especially related to the Domain authentication mechanism (LDAP and so on) on both DC and your client (VM). Then please check the windows event viewer when you try to login with a domain account, maybe you can investigate with more details about this issue.

Please mark my comment as the Correct Answer if this solution resolved your problem
Reply
0 Kudos
scott28tt
VMware Employee
VMware Employee

What happens if you migrate one of these VMs to another host, or migrate a VM from another host to this one?


-------------------------------------------------------------------------------------------------------------------------------------------------------------

Although I am a VMware employee I contribute to VMware Communities voluntarily (ie. not in any official capacity)
VMware Training & Certification blog
Reply
0 Kudos