During AD authentication, PCS joins the AD domain controller as a member. This allows the PCS to obtain group information for all the authenticated users.
If the PCS machine account is manually deleted under "Active Directory Users/Computers", then PCS may takes up to 6 hours to re-join the domain controller and during this period all group lookups will fail. |