Update Root Certificates: Open Command Prompt as Administrator
👇 See all 3 solutions below
What is Error 8635?
Windows System Error Code 8635, known as ERROR_DS_FLAT_NAME_EXISTS_IN_FOREST, is a Active Directory error that occurs during Active Directory and directory services. The error indicates that: The flat name of the trusted domain already exists in the forest. When this error is encountered, the Windows operating system was unable to complete the requested operation within the directory services subsystem. The error code 8635 is returned by the GetLastError() function and provides developers with a specific identifier to diagnose the root cause of the failure. The symbolic name ERROR_DS_FLAT_NAME_EXISTS_IN_FOREST maps directly to this numeric code and is commonly referenced in Microsoft documentation, developer forums, and system logs. Understanding this error and its context within Active Directory and directory services is essential for effective troubleshooting.
Common Causes
- System date/time is incorrect, causing certificate validation to fail
- Root certification authorities are outdated or missing
- TLS protocol mismatch between client and server
- Antivirus or proxy is intercepting SSL traffic with an untrusted certificate
Advanced Network Troubleshooting: DNS Flushes, Winsock Resets, and Adapter Fixes
The ultimate encyclopedia on resolving Windows network stack failures, TCP/IP corruption, Winsock errors, and DNS cache poisoning.
Read the full guide →Step-by-Step Solutions
- Open Command Prompt as Administrator
- Run: certutil -generateSSTFromWU roots.sst
- This downloads the latest root certificates from Microsoft
- Open certmgr.msc → Trusted Root Certification Authorities → import roots.sst
- Restart your browser and applications
Video Tutorials
Diagnostic Command
Run this PowerShell command to find related events in your system log:
Get-EventLog -LogName System -Newest 20 | Where-Object {$_.Message -like "*8635*" -or $_.Message -like "*ERROR_DS_FLAT_NAME_EXISTS_IN_FOREST*"} | Format-List
💡 Open PowerShell as Administrator, paste the command above, and press Enter.
Prevention Tips
- Keep your system clock synchronized (Settings → Time & Language → Sync now)
- Install Windows Updates regularly to keep root certificates current
- Disable SSL inspection in antivirus software if it causes certificate errors