Microsoft warns that the October 2022 safety replace may trigger area becoming a member of issues in Home windows 11 and older

[ad_1]

Microsoft logo on glass building

Microsoft is warning customers of all the pieces from Home windows 11 to Home windows 7 that this month’s safety replace — particularly the KB5018427 replace — may trigger issues connecting to domains. The corporate says that these affected by the issue will see errors 0xaac (2732).

Regardless of flagging the problem within the Identified Points part of Home windows Launch Well being, Microsoft says the habits is intentional. Sadly there is no such thing as a correct resolution proper now, just a few recommendation and treatments – however that ought to change quickly.

See all:

In a notification a couple of identified concern, Microsoft states: “The area be part of operation could have failed deliberately “0xaac(2732): NERR_AccountReuseBlockedByPolicy” and the textual content “An account with the identical identify exists in Lively Listing.” Account reuse was blocked by the safety coverage”.

Stating that Home windows Dwelling customers are unlikely to expertise this drawback, the corporate additional explains:

This concern originated with the October 2022 safety replace (KB5018427), which launched some hardening adjustments enabled by default for area joins. Please see KB5020276 – NetJoin: Be a part of area strict adjustments to know the newly designed habits.

Affected situations embrace some area be part of or re-imaging operations the place a pc account was created or pre-staged by a unique id than the one used to hitch or rejoin computer systems within the area .

It isn’t solely affected Home windows 7-11, but additionally Home windows Server 2008-2022.

There are numerous options, however Microsoft is engaged on one other resolution that can be launched quickly:

Please consult with KB5020276 to know the designed habits. We have added insights to this KB, and are evaluating whether or not optimizations could be made in a future Home windows Replace. This steerage can be up to date after these adjustments are launched.

Within the linked article, Microsoft suggests numerous options, together with:

  1. Carry out the be part of operation utilizing the identical account that created the pc account within the goal area.
  2. If the present account is old-fashioned (unused), delete it earlier than making an attempt to hitch the area once more.
  3. Change the pc identify and be part of utilizing a unique account that does not exist already.

There’s additionally a registry hack that Microsoft explains right here.

picture credit score: leorpt / depositphoto

[ad_2]

Supply hyperlink