Noticed the problem when searching for computers on AD using the Find option. Searching for all workstations on a specific OU, only returned about 14 computers, which is about 5%. The other 95% computers (273) are returning Event ID 5805 / 5723 on the domain controller logs and using the Test-ComputerSecureChannel on one of the computers, it returns that the trust relationship is broken. However, they can all login and access different resources from the network without any problems. I tried to reset one of the computer accounts and gave the error: Account WorkPC cannot be reset because: The password does not meet the password policy requirements.
I’m inclined to say that the computer password wasn’t updated because of the error above and that caused the trust to break, turning most of them in this state. I’ve re-joined some of the computers, but this problem might still happen so I’m looking for help on where to look to at least find the cause of this.
EDIT: I found out that setting the policy Password must meet complexity requirements to Disabled allows me to reset the account, meaning the machine account password for every computer is this OU is using the same password policy for the users (?), but that makes the users password less secure when they eventually change it.