← Back to catalog
Network & Remote

OATH

Domain trust and secure channel diagnosis and repair.

Diagnoses and repairs "the trust relationship between this workstation and the primary domain failed" and the quieter faults before it — DC discovery and SRV records, public DNS resolvers on a domain member, DC port reachability, Kerberos clock skew, and the nltest secure channel with Netlogon status decoded into connectivity versus trust. -Action Audit (default) is read-only; -Action Repair resyncs time, resets the secure channel, and only when needed resets the computer account password with credentials the technician enters. Never changes DNS or unjoins. -WhatIf previews every repair.

Quick Launch

Run OATH

Run in an elevated PowerShell window. Downloads oath.ps1 from CursedTechnocrat/TechnicianToolkit and executes it.

Set-ExecutionPolicy Bypass -Scope Process -Force; $f="$(Get-Location)\oath.ps1"; irm https://raw.githubusercontent.com/CursedTechnocrat/TechnicianToolkit/main/oath.ps1 -OutFile $f; [IO.File]::WriteAllText($f,[IO.File]::ReadAllText($f,[Text.Encoding]::UTF8),[Text.UTF8Encoding]::new($true)); & $f
Category
Network & Remote
Identifier
OATH
Tags
active-directory, domain-trust, kerberos, repair